Malware

How to remove “Application.Barys.60443”?

Malware Removal

The Application.Barys.60443 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Application.Barys.60443 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

bin.memoryson.bid
alt.zincbutter.download

How to determine Application.Barys.60443?


File Info:

crc32: ED9F5CD0
md5: 4dc54c541164e4ca34cf2e09cbdd3c58
name: 4DC54C541164E4CA34CF2E09CBDD3C58.mlw
sha1: d98a47fe97920e5773126e1cd62682b5d48ac302
sha256: 266017c4dec04eed8d9a5e3ba933a4ad1000bc7374b5aa0bcd6b120b86e2cc94
sha512: 3eb47b17a76769440b657edbdf7cf223c733c3d0f627008ea1be584d08c7894bf8fbe773fee5dda5857469d2eb14a6bf480ef43792300e7f7da3bef9304f45a7
ssdeep: 24576:8Cv+zkEz3/NBpaSJjnqRLTH2bxvR50Uon6xwm:fvhEzDpaStnWLb+x
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Sutitlor tooledn
InternalName: KOCOY.EXE
FileVersion: 4.3.4.4
CompanyName: xa9Sutitlor tooledn
ProductName: KOCOY
ProductVersion: 4.3.4.4
OriginalFilename: kocoy.exe
Translation: 0x0409 0x04e4

Application.Barys.60443 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.17914
MicroWorld-eScanGen:Variant.Application.Barys.60443
CAT-QuickHealSwbndlr.Dlhelper.V2
ALYacGen:Variant.Application.Barys.60443
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1479490
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaDownloader:Win32/Kryptik.7a477983
K7GWTrojan ( 0053ba2f1 )
K7AntiVirusTrojan ( 0053ba2f1 )
CyrenW32/Kryptik.CZS.gen!Eldorado
ESET-NOD32a variant of Win32/Kryptik.GJAJ
APEXMalicious
AvastFileRepMalware
CynetMalicious (score: 100)
Kasperskynot-a-virus:HEUR:Downloader.Win32.Generic
BitDefenderGen:Variant.Application.Barys.60443
NANO-AntivirusTrojan.Win32.Kryptik.fhgfnh
TencentMalware.Win32.Gencirc.10cc5c77
SophosMal/Generic-R + Mal/EncPk-AOA
ComodoApplication.Win32.Dlhelper.GJ@8137f9
BitDefenderThetaGen:NN.ZexaF.34236.yM0@autl28pi
McAfee-GW-EditionBehavesLike.Win32.Dropper.vz
FireEyeGeneric.mg.4dc54c541164e4ca
EmsisoftGen:Variant.Application.Barys.60443 (B)
SentinelOneStatic AI – Malicious PE
JiangminDownloader.Generic.aard
AviraTR/Crypt.XPACK.Gen4
eGambitUnsafe.AI_Score_70%
ArcabitTrojan.Application.Barys.DEC1B
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
MicrosoftTrojan:Win32/Wacatac.A!rfn
AhnLab-V3Malware/Win32.Generic.C2701435
Acronissuspicious
McAfeePacked-FKC!4DC54C541164
MAXmalware (ai score=100)
VBA32BScope.Adware.DownloadHelper
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B33C (CLASSIC)
IkarusPUA.Win32.Prepscram
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GJJV!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Application.Barys.60443?

Application.Barys.60443 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment