Malware

How to remove “Barys.2267 (B)”?

Malware Removal

The Barys.2267 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.2267 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs

How to determine Barys.2267 (B)?


File Info:

crc32: CD7E1920
md5: 6e858f264cb64ac096fd7edd7fdc1ba2
name: 6E858F264CB64AC096FD7EDD7FDC1BA2.mlw
sha1: 8200fec215520fffcc4c07b1d8d97c70ed260d2c
sha256: 64e5eaef3b2ffec4f6ca35f8e3a1f4dc595b1a3ad8d443b2cd3561087fea577a
sha512: 39099880a649319837aa7890aa972f9db49b5fd239eabd612a0e0bc72287276a70e2cd64c262c8175a5895a1db438dc4d77b1325916ba06f43dda52911e0aa1d
ssdeep: 49152:YaI1N3tt7HdDnPNxLt91XDjVJBl5j/pBlGaNF9jrHrFjbXJhjp15YW8m9H7R5fT:qQlfi
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: RS DDoS Tool.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: RS DDoS Tool.exe

Barys.2267 (B) also known as:

K7AntiVirusTrojan ( 004ba8741 )
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner.25074
CynetMalicious (score: 99)
ALYacGen:Variant.Barys.2267
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.252175
SangforTrojan.Win32.Kazy.frIu
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004ba8741 )
Cybereasonmalicious.64cb64
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.XE
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Barys.2267
NANO-AntivirusTrojan.Win32.Autoruner.rkbon
MicroWorld-eScanGen:Variant.Barys.2267
TencentWin32.Trojan.Generic.bpwf
Ad-AwareGen:Variant.Barys.2267
SophosML/PE-A
ComodoMalware@#2ywx8qtcveqsd
BitDefenderThetaGen:NN.ZemsilF.34294.Wn0@a0mIeli
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.6e858f264cb64ac0
EmsisoftGen:Variant.Barys.2267 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Injector.ras
AviraHEUR/AGEN.1129527
Antiy-AVLTrojan/Generic.ASMalwS.29779C3
MicrosoftTrojan:Win32/Wacatac.B!ml
SUPERAntiSpywareTrojan.Agent/Gen-Falint[Cont]
GDataGen:Variant.Barys.2267
McAfeeArtemis!6E858F264CB6
MAXmalware (ai score=85)
IkarusVirus.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Generic
AVGWin32:TrojanX-gen [Trj]

How to remove Barys.2267 (B)?

Barys.2267 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment