Malware

Should I remove “Barys.381856 (B)”?

Malware Removal

The Barys.381856 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.381856 (B) virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Barys.381856 (B)?


File Info:

name: E669F926FAF4C6E311C1.mlw
path: /opt/CAPEv2/storage/binaries/5af9a1c2440ef8cc5dd211de7c4df2a48d033ea1b3fa78ac94017c997070a1bb
crc32: E4164371
md5: e669f926faf4c6e311c17faa222e253f
sha1: ecfc2ca012ff752c96db00c8b4005db1f6293271
sha256: 5af9a1c2440ef8cc5dd211de7c4df2a48d033ea1b3fa78ac94017c997070a1bb
sha512: 3999f0fc4acaeb9ad72c83178b7ee30c7a5bf75ff9874d35e8f6c3904c78f6183e9afd6ae7eb7cc87a47e150066b7915d2e5e938852193ad175340a141e6d897
ssdeep: 48:CCy86+Wet9Q/iooHeiefhe+/lSMYEq4vIln9MgdbWJwcbeIpmz5L0kNI1g6y:hy859x0P8Ma4It9VdEwufmzFA1Vy
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T10FB1E10F5765D122D9395BBEAF6F2497A4FB8C49EEA82711F0C9ACC4024001DEFAC995
sha3_384: 03f79592a4910ccf237458413c173881fd4ca9ca0c1f8cb0303f2d55a63b4ee91ae64b9f246377b8d75ca83fd42f6d5f
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2013-06-12 12:49:36

Version Info:

0: [No Data]

Barys.381856 (B) also known as:

BkavW32.FamVT.DebrisA.Worm
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Barys.381856
CAT-QuickHealTrojan.Agent.WL
SkyhighBehavesLike.Win32.Worm.zt
McAfeeW32/Worm-FJV!E669F926FAF4
Cylanceunsafe
ZillyaWorm.DebrisGen.Win32.11
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
K7GWEmailWorm ( 0040f5281 )
K7AntiVirusEmailWorm ( 0040f5281 )
ArcabitTrojan.Barys.D5D3A0
BaiduWin32.Worm.Bundpil.y
VirITWorm.Win32.Generic.GRN
SymantecDownloader.Dromedan
tehtrisGeneric.Malware
ESET-NOD32Win32/Bundpil.AO
APEXMalicious
ClamAVWin.Adware.Downware-251
KasperskyWorm.Win32.Debris.b
BitDefenderGen:Variant.Barys.381856
NANO-AntivirusTrojan.Win32.Debris.cqkxyu
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
AvastWin32:Sg-I [Trj]
TencentWorm.Win32.Debris.c
EmsisoftGen:Variant.Barys.381856 (B)
GoogleDetected
F-SecureWorm.WORM/Gamarue.511265
DrWebTrojan.MulDrop4.25343
VIPREGen:Variant.Barys.381856
TrendMicroWORM_GAMARUE.SML
FireEyeGeneric.mg.e669f926faf4c6e3
SophosW32/Gamarue-BL
IkarusWorm.Win32.Bundpil
JiangminTrojan/Generic.axdgt
WebrootW32.Worm.Gen
VaristW32/Csyr.B.gen!Eldorado
AviraWORM/Gamarue.511265
Antiy-AVLWorm/Win32.Debris
Kingsoftmalware.kb.a.997
XcitiumWorm.Win32.Bundpil.AH@4yjufs
MicrosoftTrojanDownloader:Win32/Andromeda!pz
ZoneAlarmWorm.Win32.Debris.b
GDataWin32.Worm.Bundpil.B
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Debris.R71328
BitDefenderThetaGen:NN.ZedlaF.36802.aq5@ae9rVOn
MAXmalware (ai score=84)
VBA32Worm.Gamarue
MalwarebytesBundpil.Worm.AutoRun.DDS
PandaGeneric Malware
TrendMicro-HouseCallWORM_GAMARUE.SML
RisingWorm.Gamarue!1.9CB3 (CLASSIC)
YandexTrojan.GenAsa!VJN5611Pa6Y
SentinelOneStatic AI – Malicious PE
MaxSecureWorm.Debris.Gen
FortinetW32/Bundpil.AO!tr
AVGWin32:Sg-I [Trj]
DeepInstinctMALICIOUS
alibabacloudWorm:Win/Gamarue.66c7f521

How to remove Barys.381856 (B)?

Barys.381856 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment