Malware

Barys.127258 removal guide

Malware Removal

The Barys.127258 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.127258 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Finnish
  • Creates a copy of itself

How to determine Barys.127258?


File Info:

crc32: 4B2D0376
md5: a6d5b81667c82e6ac6222e5b24bd24ff
name: A6D5B81667C82E6AC6222E5B24BD24FF.mlw
sha1: 0211b44399c8ffb4199416b8f1f818fe071c35a1
sha256: 60293d73aea755bcbb7e53821623be0d06098e724d65f07e6ee2332303423c85
sha512: f9aabb8091956ccda76faff430ffac37009537497e56192f6347cb001b0a3d683d432db7b223bbef01e6c364ae2eff912310e8006261c0e49de268baa884ab36
ssdeep: 6144:MHxJWA3nOBTmepnSqai1uAmawu2nxzj7AG71MRGHCQ+bwJCrOQZJnS2jiZ4gB:MJtep1xURaExzj7gQ+2CrTZJdGB
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 2.13.9.3
CompanyName: Viu Ltd.
ProductName: Viuxae tehno
ProductVersion: 2.13.9.3
FileDescription: Viu Ltd. gui application
OriginalFilename: Viu
Translation: 0x0409 0x04b1

Barys.127258 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0051b3ac1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Trick.45170
CynetMalicious (score: 100)
ALYacGen:Variant.Barys.127258
CylanceUnsafe
ZillyaTrojan.Mansabo.Win32.299
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Kryptik.b9969f12
K7GWTrojan ( 0051b3ac1 )
Cybereasonmalicious.667c82
SymantecTrojan.Trickybot!g7
ESET-NOD32a variant of Win32/Kryptik.FYQF
APEXMalicious
AvastWin32:BankerX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Barys.127258
NANO-AntivirusTrojan.Win32.Inject.euvcbd
ViRobotTrojan.Win32.Z.Ursu.448000.A
MicroWorld-eScanGen:Variant.Barys.127258
TencentWin32.Trojan.Mansabo.Lorl
Ad-AwareGen:Variant.Barys.127258
ComodoMalware@#17rh5af2qx2ty
BitDefenderThetaGen:NN.ZexaF.34236.Bm0@aqF1BwaG
VIPRETrojan.Win32.Generic!BT
TrendMicroTSPY_HPTRICKBOT.SMA
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
FireEyeGeneric.mg.a6d5b81667c82e6a
EmsisoftGen:Variant.Barys.127258 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Trickster.aza
AviraHEUR/AGEN.1115123
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Tiggre!rfn
SUPERAntiSpywareTrojan.Agent/Gen-TrickBot
GDataGen:Variant.Barys.127258
AhnLab-V3Trojan/Win32.Trickster.C2268531
McAfeeTrojan-FOPU!A6D5B81667C8
MAXmalware (ai score=98)
VBA32Trojan.Mansabo
PandaTrj/GdSda.A
TrendMicro-HouseCallTSPY_HPTRICKBOT.SMA
RisingTrojan.Generic@ML.100 (RDML:C95ska29vh06noCY0QhJTQ)
IkarusTrojan-Banker.TrickBot
FortinetW32/GenKryptik.BCDU!tr
AVGWin32:BankerX-gen [Trj]
Paloaltogeneric.ml

How to remove Barys.127258?

Barys.127258 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment