Malware

Barys.52456 (file analysis)

Malware Removal

The Barys.52456 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.52456 virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Barys.52456?


File Info:

crc32: 38E823CB
md5: 2bd0394601a1a4006bc56efa2f405d25
name: 2BD0394601A1A4006BC56EFA2F405D25.mlw
sha1: 373bff8a86a336976bea0cd8ab86ff897984c872
sha256: 9eeaa4a0bcfc641d7f395c5a7d5ac15a8d50b18f8ef1ac3545c55c5679367228
sha512: 705419f6e38a45a7858df73764744e891318f1b4d2ff2aff1e134af009f21c433deb6e9a55040f419f750fe4f27d3259a224ad8c994aeb4d6a209b1d7e1c9951
ssdeep: 768:IMZabZ+J8L7/1AcXwvyfd/rUUektdCLs/l8Yx6eiLveJQV6yY0vA5ENbOm52aXEe:IMZg+J8vlBjN1Q+8iAT
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 Murray Hurps Software Pty Ltd
CompanyName: Murray Hurps Software Pty Ltd
LegalTrademarks: f31b90f8 db7c 4768 a738 39466a6b8d1e
Comments: de93f95b 1729 4d80 bf53 8b84a1c75884
ProductName: Ad Muncher
FileDescription: Ad Muncher
Guid: 25329d7f-48f5-4642-9d0a-21d52a730e72
Translation: 0x0000 0x04e4

Barys.52456 also known as:

K7AntiVirusTrojan ( 0057bbf11 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Barys.52456
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:MSIL/GenKryptik.e214c2d5
K7GWTrojan ( 0057bbf11 )
Cybereasonmalicious.601a1a
CyrenW32/MSIL_Kryptik.ECN.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.AASE
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan-PSW.MSIL.Coins.gen
BitDefenderGen:Variant.Barys.52456
MicroWorld-eScanGen:Variant.Barys.52456
TencentWin32.Trojan.Falsesign.Huzo
Ad-AwareGen:Variant.Barys.52456
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34686.2m2@aOLDnWji
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionRDN/Generic.dx
FireEyeGeneric.mg.2bd0394601a1a400
EmsisoftGen:Variant.Barys.52456 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Kryptik.ecszq
eGambitPE.Heur.InvalidSig
MicrosoftTrojan:Win32/AgentTesla!ml
AegisLabTrojan.MSIL.Coins.i!c
GDataGen:Variant.Barys.52456
McAfeeRDN/Generic.dx
MAXmalware (ai score=82)
MalwarebytesTrojan.BitCoinStealer
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002H0CE121
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
IkarusTrojan.MSIL.Krypt
FortinetW32/Coins!tr.pws
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Barys.52456?

Barys.52456 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment