Malware

Barys.2467 removal tips

Malware Removal

The Barys.2467 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.2467 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.

How to determine Barys.2467?


File Info:

crc32: 2E6904BB
md5: d2c36af430c555df2222c1e6a45ef6fa
name: D2C36AF430C555DF2222C1E6A45EF6FA.mlw
sha1: c04475adb8e26fd2d9be322d112828e632a429d4
sha256: 7a9e44e1f1b50a78d600b5ab2f81b1ff69733a77e71711dae9e738fd8699f1b7
sha512: 50e423edf6fd67cf4c0be5574ef2792125ba40d35c5fffd1edb3c94e74085112b571fc7083be03a2eb27edcc7e96cdeb5e07b440bc85f87ae06a943dbf35fcb1
ssdeep: 1536:7AEJj6W0usiNSwuk7d35ndQut4h1RIVM5k3Hj+VExhsDXbCYiidcW7aU:XjTs/k7dNdKIV+sHj+OvgXbCVa3
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Barys.2467 also known as:

TotalDefenseWin32/Wapomi.CD
MicroWorld-eScanGen:Variant.Barys.2467
nProtectTrojan/W32.Agent.82432.IE
McAfeeArtemis!D2C36AF430C5
MalwarebytesRootkit.Agent
K7AntiVirusBackdoor
TheHackerBackdoor/Agent.bffb
NANO-AntivirusTrojan.Win32.Agent.csalr
F-ProtW32/QQhelper.C.gen!Eldorado
SymantecTrojan.Gen.2
NormanW32/Suspicious_Gen2.SECXK
TrendMicro-HouseCallTROJ_GEN.USHXC01
AvastWin32:Qmgr-C [Trj]
KasperskyBackdoor.Win32.Agent.bfax
BitDefenderGen:Variant.Barys.2467
AgnitumBackdoor.Agent!LCIE2krxIu4
ComodoTrojWare.Win32.Agent.kajoh
F-SecureGen:Variant.Barys.2467
DrWebBackDoor.Siggen.40151
VIPRETrojan.Win32.Wapomi.AO (v) (not malicious)
AntiVirEXP/Shellcode.psa
McAfee-GW-EditionHeuristic.BehavesLike.Win32.Suspicious-BAY.G
EmsisoftGen:Variant.Barys.2467 (B)
JiangminBackdoor/Agent.dcdo
KingsoftWin32.Malware.Heur_Generic.B.(kcloud)
MicrosoftExploit:Win32/ShellCode.gen!B
GDataGen:Variant.Barys.2467
CommtouchW32/QQhelper.C.gen!Eldorado
AhnLab-V3Backdoor/Win32.Agent
VBA32Backdoor.Agent.beaf
PCToolsTrojan.Gen
ESET-NOD32Win32/Wapomi.X
RisingTrojan.Win32.Generic.126B5631
IkarusExploit.Win32.ShellCode
AVGGeneric_r.QV
PandaTrj/Agent.OJS

How to remove Barys.2467?

Barys.2467 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment