Malware

Barys.53458 (file analysis)

Malware Removal

The Barys.53458 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.53458 virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs

How to determine Barys.53458?


File Info:

crc32: 1BC64976
md5: bdbd07bb63293494fafd5113e63b1c3d
name: BDBD07BB63293494FAFD5113E63B1C3D.mlw
sha1: 1cb2c164237f5ee99305bfc990e70504c4bcf5c7
sha256: 0f950f2ae207c0db730735b895897fb9b2d330fe1ff5896f21a72d1191a66160
sha512: 57f6b8199a9d1f4168b36c34980083dfa91de2f6b928bbcb1f6507bee98d995524eb1e25c8166d71049e39bc35d853062398943ffc1fdd47de01710ab35431ea
ssdeep: 3072:ET+Xcgn+kdY2DkPpZt7t2QCBGkT6h69S4pxFa2EoMLkY26YhcNAMknbpPzYcAZ:vX3nXDkhZRtCxT7Q4psLl26YhLfbac
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Sx29FnNa3s
Assembly Version: 8.9.28.19
InternalName: jd0i3u3j.exe
FileVersion: 8.9.28.19
CompanyName: Yi0y9
LegalTrademarks: Se0x9J
Comments: y5N3Drj8SC
ProductName: Jd0z3
ProductVersion: 8.9.28.19
FileDescription: Hj1w8P3Tm
OriginalFilename: jd0i3u3j.exe

Barys.53458 also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Barys.53458
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 700000121 )
Cybereasonmalicious.b63293
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Trojan-gen
BitDefenderGen:Variant.Barys.53458
MicroWorld-eScanGen:Variant.Barys.53458
Ad-AwareGen:Variant.Barys.53458
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34236.rm0@aSdhXGp
McAfee-GW-EditionRDN/Generic.grp
FireEyeGeneric.mg.bdbd07bb63293494
EmsisoftGen:Variant.Barys.53458 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Multi.efh
Antiy-AVLTrojan/Generic.ASMalwS.34BD9B4
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Barys.DD0D2
GDataGen:Variant.Barys.53458
AhnLab-V3Trojan/Win.Generic.C4712023
McAfeeRDN/Generic.grp
MAXmalware (ai score=83)
VBA32TScope.Trojan.MSIL
TrendMicro-HouseCallTROJ_GEN.R014H09JA21
YandexTrojan.Agent!kkm7KhCUYIg
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.82199810.susgen
FortinetPossibleThreat
AVGWin32:Trojan-gen

How to remove Barys.53458?

Barys.53458 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment