Malware

About “Barys.431082” infection

Malware Removal

The Barys.431082 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.431082 virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Barys.431082?


File Info:

name: E58E2732A06359032C15.mlw
path: /opt/CAPEv2/storage/binaries/9c57dedbf9d10f36ce90ea86b4e9e91df384fd3c3c2efacfe7ed6ba0174e3403
crc32: 9413159D
md5: e58e2732a06359032c15b225eab42770
sha1: 3dc3716cf5812c761001de50340d483c98ae1409
sha256: 9c57dedbf9d10f36ce90ea86b4e9e91df384fd3c3c2efacfe7ed6ba0174e3403
sha512: 416eb528e3d2f770cadd10419d2c0e8e31cc4d3fff0e17ce0d30e0c49b15757e2031336c02865f9456001e7d8e10a01192b44d60c2fa932839d71eb8b7ba3849
ssdeep: 48:SWkO0IoyTnXz+ihZjokgDBSeRPG6tHhJy+R:ZJTnXzvokgtSszy+R
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T10691A63FB36C5F76D028EF3B176B68EA786B977413551E1B8461320724151239CB8F46
sha3_384: 489ea2b1b5e6f6cbdf38113f5c7693ae7a3361f00fe1fd75a0543fea98dfe78314162698aa3b1411370907ecccf48112
ep_bytes: 558bec538b5d08568b750c578b7d1085
timestamp: 2013-04-07 20:00:59

Version Info:

0: [No Data]

Barys.431082 also known as:

BkavW32.FamVT.DebrisB.Worm
Elasticmalicious (high confidence)
ClamAVWin.Adware.Downware-246
CAT-QuickHealTrojan.Agent.WL
SkyhighBehavesLike.Win32.Downloader.xt
ALYacGen:Variant.Barys.431082
Cylanceunsafe
VIPREGen:Variant.Barys.431082
SangforSuspicious.Win32.Save.ins
K7AntiVirusEmailWorm ( 0040f50c1 )
BitDefenderGen:Variant.Barys.431082
K7GWEmailWorm ( 0040f50c1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Barys.D693EA
BaiduWin32.Worm.Bundpil.ah
VirITTrojan.Win32.Small.FAU
SymantecTrojan.Dropper
ESET-NOD32Win32/Bundpil.T
APEXMalicious
CynetMalicious (score: 100)
KasperskyWorm.Win32.Debris.b
NANO-AntivirusTrojan.Win32.Drop.bqqvjw
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
MicroWorld-eScanGen:Variant.Barys.431082
AvastWin32:Atraps-PZ [Trj]
RisingWorm.Bundpil!1.E3E2 (CLASSIC)
EmsisoftGen:Variant.Barys.431082 (B)
F-SecureTrojan.TR/Downloader.Gen
DrWebTrojan.MulDrop4.25343
ZillyaWorm.Bundpil.Win32.1334
TrendMicroWORM_GAMARUE.SMB
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.e58e2732a0635903
SophosW32/Gamarue-BM
IkarusWorm.Debris
JiangminWorm/Generic.aftt
VaristW32/Csyr.A!Eldorado
AviraTR/Downloader.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.Csyr
Kingsoftmalware.kb.a.970
XcitiumWorm.Win32.Bundpil.T@4wizl6
MicrosoftWorm:Win32/Gamarue.DK!MTB
ZoneAlarmWorm.Win32.Debris.b
GDataWin32.Trojan.PSE.1Y5UO7M
GoogleDetected
AhnLab-V3Worm/Win32.Bundpil.R63957
Acronissuspicious
McAfeeDownloader-FKP!E58E2732A063
VBA32Worm.Gamarue
MalwarebytesBundpil.Worm.AutoRun.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallWORM_GAMARUE.SMB
TencentTrojan.Win32.Csyr.A
YandexTrojan.GenAsa!w+9VHPFiOJM
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic!worm
BitDefenderThetaGen:NN.ZedlaF.36802.aq5@aejr6Qm
AVGWin32:Atraps-PZ [Trj]
DeepInstinctMALICIOUS
alibabacloudWorm:Win/Gamarue.28f0ce19

How to remove Barys.431082?

Barys.431082 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment