Malware

How to remove “Barys.53924”?

Malware Removal

The Barys.53924 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.53924 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Barys.53924?


File Info:

crc32: 841A5CFE
md5: f77ef3fe1c46b69f5612cd9634cf6d10
name: F77EF3FE1C46B69F5612CD9634CF6D10.mlw
sha1: 4ea7e56e8d83dca257b7b13aff6990877873b7f9
sha256: 9dfd2b3aa2ccb2b72b53066d56ad77605c7e505cf69d6d886d58db67afc9b21a
sha512: dec66621f59877fc7b125eb0ff21a969cbdfb08c021eb4ea33ec3db605f5e4dbcb9f4dbfcdef4dcdc4cde4163d2d3ed5fee342e481af409c4466772944849862
ssdeep: 24576:DfNfz4b1qO/d7Xi6IL4l6NO4DKaAMUkh5JOrk6k13fe9:Zsb1qOFjm44DYMUkLJOrk6k13fe9
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: CVS Health Corp.
Assembly Version: 20.21.0.0
InternalName: x5b59u.exe
FileVersion: 20.21.0.0
CompanyName: Biogen Inc. (BIIB)
LegalTrademarks:
Comments: Bristol Myers Squibb
ProductName: Nursery Management System
ProductVersion: 20.21.0.0
FileDescription: Nursery Management System
OriginalFilename: x5b59u.exe

Barys.53924 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.405
MicroWorld-eScanGen:Variant.Barys.53924
FireEyeGeneric.mg.f77ef3fe1c46b69f
CAT-QuickHealTrojan.Multi
ALYacBackdoor.RAT.MSIL.NanoCore
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Barys.53924
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.e1c46b
BitDefenderThetaGen:NN.ZemsilF.34700.6u0@a0P1Mun
CyrenW32/MSIL_Kryptik.CNY.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Taskun.gen
AlibabaTrojan:MSIL/GenKryptik.32bac8b9
Ad-AwareGen:Variant.Barys.53924
EmsisoftTrojan.Agent (A)
ComodoMalware@#3cntikqnzoyrl
McAfee-GW-EditionBehavesLike.Win32.Packed.dc
SophosMal/Generic-S
IkarusTrojan.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
KingsoftWin32.Heur.KVMH008.a.(kcloud)
MicrosoftTrojan:Win32/Tnega!ml
GridinsoftTrojan.Heur!.03013281
ArcabitTrojan.Barys.DD2A4
ZoneAlarmHEUR:Trojan.MSIL.Taskun.gen
GDataGen:Variant.Barys.53924
CynetMalicious (score: 100)
McAfeeFareit-FXJ!F77EF3FE1C46
MAXmalware (ai score=84)
VBA32CIL.HeapOverride.Heur
MalwarebytesTrojan.MalPack
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/GenKryptik.EZFP
TrendMicro-HouseCallTROJ_GEN.R002H09LT20
YandexTrojan.AvsArher.bUx2VN
SentinelOneStatic AI – Malicious PE
FortinetMSIL/GenKryptik.EZFP!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (D)
Qihoo-360Generic/HEUR/QVM03.0.3F6E.Malware.Gen

How to remove Barys.53924?

Barys.53924 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment