Malware

Should I remove “Barys.431459”?

Malware Removal

The Barys.431459 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.431459 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Barys.431459?


File Info:

name: C07A0730D9B6DD5DFED0.mlw
path: /opt/CAPEv2/storage/binaries/f961129fce1d4d222647f8d7651d477d4ce2858a60cc2e9a6ebbb35d355e41e0
crc32: 5286946D
md5: c07a0730d9b6dd5dfed0d9e6bdd0fb4c
sha1: dafdff04f8c7e653ac6597540a281b150a481767
sha256: f961129fce1d4d222647f8d7651d477d4ce2858a60cc2e9a6ebbb35d355e41e0
sha512: 237687e1f58fd348b2e7edd196cb21914d249f940291d9aba73aca79b94884955bbd7a72a213e55e153f7e9ca566add5abac3cf6b300a749847ccf49ddd0643c
ssdeep: 3072:MWoOextIrNP1JuPUDXSJMT+mzMfU4Fm1MyWmriamT:NodtIDfTm
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T178A3D74533E48A44F4BAD77FA67949944B39F952A411C10ECFD1F89E4EB0B80881FBA3
sha3_384: b8a5bdb822440a65b6cb85b2ccba5f918372e13c3e7a59b81895c0cc05694ec2a129a0c51da845b1fdd17ae972dec373
ep_bytes: ff250020001000000000000000000000
timestamp: 2024-03-06 17:22:05

Version Info:

0: [No Data]

Barys.431459 also known as:

BkavW32.AIDetectMalware.CS
AVGWin32:BackdoorX-gen [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Barys.431459
CAT-QuickHealTrojan.AgentFC.S22016640
SkyhighGenericRXWF-AB!C07A0730D9B6
McAfeeGenericRXWF-AB!C07A0730D9B6
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Variant.Barys.431459
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005ab4bd1 )
K7AntiVirusTrojan ( 005ab4bd1 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/Webshell.AU
APEXMalicious
ClamAVWin.Packed.Bulz-9891413-0
KasperskyHEUR:Backdoor.MSIL.Convagent.gen
BitDefenderGen:Variant.Barys.431459
NANO-AntivirusTrojan.Win32.Convagent.klopsa
AvastWin32:BackdoorX-gen [Trj]
TencentTrojan.Win32.Webshell.16000396
EmsisoftGen:Variant.Barys.431459 (B)
F-SecureHeuristic.HEUR/AGEN.1362733
DrWebBackDoor.WebshellNET.8
TrendMicroTROJ_GEN.R03BC0PDE24
FireEyeGeneric.mg.c07a0730d9b6dd5d
SentinelOneStatic AI – Malicious PE
VaristW32/MSIL_Kryptik.JGP.gen!Eldorado
AviraHEUR/AGEN.1362733
MAXmalware (ai score=81)
Antiy-AVLTrojan/MSIL.WebShell
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Barys.D69563
ZoneAlarmHEUR:Backdoor.MSIL.Convagent.gen
GDataMSIL.Trojan.PSE.1502OL3
GoogleDetected
AhnLab-V3Trojan/Win.AB.C5612604
ALYacGen:Variant.Barys.431459
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R03BC0PDE24
IkarusTrojan.MSIL.Webshell
MaxSecureTrojan.Malware.121218.susgen
FortinetMSIL/Webshell.AZ!tr
DeepInstinctMALICIOUS
alibabacloudBackdoor:MSIL/Webshell.AU

How to remove Barys.431459?

Barys.431459 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment