Malware

Barys.381598 removal tips

Malware Removal

The Barys.381598 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.381598 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Barys.381598?


File Info:

name: B6C8A28BABA5EEF01241.mlw
path: /opt/CAPEv2/storage/binaries/55f9c0c0023e7150c0df6b2aacb5445247aad8c55d8d8bedcd5063e300647d69
crc32: D25DAF7A
md5: b6c8a28baba5eef012410b85f0281fcd
sha1: 7b584d15a017fffd9b1f366849170d0c75d8da52
sha256: 55f9c0c0023e7150c0df6b2aacb5445247aad8c55d8d8bedcd5063e300647d69
sha512: 33e93436264889e41531b1a3007bdc213ff45332cbeb5fb27f691082a494e9c0482417c3bbfc8d005df4c0a225a10d045a6be034afe951806a83e19f38efb45f
ssdeep: 96:hy859x0P8MasTfXvLfLAy20euliywjpwyhjpv6E09JhZliop0pCpguNgu:F5oLV/TG
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T114D19437819BC980FD3B983F1E89714DB69280C56A9CE1F8A085D5307D6C08BBFA7479
sha3_384: 26a1b7965c339351f3bfe0b05977993f645308de19fb6fb381a95e657cfe0e58fcc266b342b7e6e903308e07f732df08
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2013-06-12 12:49:36

Version Info:

0: [No Data]

Barys.381598 also known as:

BkavW32.FamVT.DebrisA.Worm
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Barys.381598
FireEyeGeneric.mg.b6c8a28baba5eef0
CAT-QuickHealTrojan.Agent.WL
SkyhighBehavesLike.Win32.Worm.xt
McAfeeW32/Worm-FJV!B6C8A28BABA5
MalwarebytesBundpil.Worm.AutoRun.DDS
ZillyaWorm.DebrisGen.Win32.11
SangforSuspicious.Win32.Save.ins
K7AntiVirusEmailWorm ( 0040f5281 )
K7GWEmailWorm ( 0040f5281 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Worm.Bundpil.y
VirITWorm.Win32.Generic.GRN
SymantecDownloader.Dromedan
tehtrisGeneric.Malware
ESET-NOD32Win32/Bundpil.AO
APEXMalicious
TrendMicro-HouseCallWORM_GAMARUE.SML
ClamAVWin.Adware.Downware-251
KasperskyWorm.Win32.Debris.b
BitDefenderGen:Variant.Barys.381598
NANO-AntivirusTrojan.Win32.Debris.cqkxyu
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
AvastWin32:Sg-I [Trj]
TencentWorm.Win32.Debris.c
SophosW32/Gamarue-BL
F-SecureWorm.WORM/Gamarue.511265
DrWebTrojan.MulDrop4.25343
VIPREGen:Variant.Barys.381598
TrendMicroWORM_GAMARUE.SML
EmsisoftGen:Variant.Barys.381598 (B)
IkarusWorm.Win32.Bundpil
JiangminTrojan/Generic.axdgt
GoogleDetected
AviraWORM/Gamarue.511265
VaristW32/Csyr.B.gen!Eldorado
Antiy-AVLWorm/Win32.Debris
Kingsoftmalware.kb.a.998
MicrosoftTrojanDownloader:Win32/Andromeda!pz
XcitiumWorm.Win32.Bundpil.AH@4yjufs
ArcabitTrojan.Barys.D5D29E
ZoneAlarmWorm.Win32.Debris.b
GDataWin32.Worm.Bundpil.B
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Debris.R71328
VBA32Worm.Gamarue
ALYacGen:Variant.Barys.381598
MAXmalware (ai score=82)
Cylanceunsafe
PandaGeneric Malware
RisingWorm.Gamarue!1.9CB3 (CLASSIC)
YandexTrojan.GenAsa!VJN5611Pa6Y
SentinelOneStatic AI – Malicious PE
MaxSecureWorm.Debris.Gen
FortinetW32/Bundpil.AO!tr
BitDefenderThetaGen:NN.ZedlaF.36802.aq5@ae9rVOn
AVGWin32:Sg-I [Trj]
DeepInstinctMALICIOUS
alibabacloudWorm:Win/Gamarue.66c7f521

How to remove Barys.381598?

Barys.381598 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment