Malware

Barys.54 removal instruction

Malware Removal

The Barys.54 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.54 virus can do?

  • A process attempted to delay the analysis task.
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Anomalous binary characteristics

Related domains:

hao.dakacp2.com

How to determine Barys.54?


File Info:

crc32: 81B0F441
md5: d06f8ddb534c1738eb285fee6d3e4d04
name: 3308.exe
sha1: 59a505f3b00bdbe94ca4d3a84ab9b4715f7f2a1b
sha256: 5eaa83fa3837a0177f184bace15f0f361473e4c448c91739a8378f4b9cac9f37
sha512: 33be56257176950324c5c48930e575d2d12f3f35c8b43a604becc83fb897526bce10b0daf89dd839ce83312fbc96b4c0fe965bbe16185a98a224f5db3f0b7421
ssdeep: 768:aHREBK+o6yMPqgRDMa6RwuFQXQ/6c/4Jk8gqCfFC:aHK1Rt2/BwJkkUF
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Barys.54 also known as:

BkavW32.Svchobst.Trojan
MicroWorld-eScanGen:Variant.Barys.54
CAT-QuickHealTrojan.Mauvaise.SL1
Qihoo-360Win32/Trojan.Dropper.eed
McAfeeDoS-FAR!D06F8DDB534C
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Barys.54
K7GWTrojan ( 0049587e1 )
K7AntiVirusTrojan ( 0049587e1 )
ArcabitTrojan.Barys.54
TrendMicroTROJ_YODDOS.SMR
BaiduWin32.Trojan.Agent.gr
CyrenW32/QQhelper.C.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.VOM
APEXMalicious
AvastWin32:Nitol-B [Trj]
ClamAVWin.Trojan.Agent-1279654
KasperskyTrojan-Dropper.Win32.Dorifel.axfp
AlibabaTrojanDropper:Win32/Dorifel.9f2ae07d
NANO-AntivirusTrojan.Win32.Click3.ctkwdy
ViRobotTrojan.Win32.Agent.53760.AU
RisingTrojan.Farfli!1.65C0 (RDMK:cmRtazqjbT1hI0M6VXkCaeoDorim)
Ad-AwareGen:Variant.Barys.54
EmsisoftGen:Variant.Barys.54 (B)
ComodoTrojWare.Win32.Dynamer.JLS@5s363p
F-SecureTrojan.TR/Graftor.ytsgd
DrWebTrojan.Click3.28277
ZillyaTrojan.Agent.Win32.460378
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.qt
FortinetW32/Agent.VOM!tr
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.d06f8ddb534c1738
SophosMal/Generic-S
IkarusTrojan.Win32.Togapy
F-ProtW32/S-d71876f0!Eldorado
JiangminTrojan/Generic.baish
WebrootW32.Malware.Gen
AviraTR/Graftor.ytsgd
MAXmalware (ai score=83)
Antiy-AVLTrojan[Dropper]/Win32.Dorifel
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Togapy.A!bit
ZoneAlarmTrojan-Dropper.Win32.Dorifel.axfp
AhnLab-V3Trojan/Win32.Downloader.R97609
Acronissuspicious
ALYacGen:Variant.Barys.54
TACHYONTrojan/W32.Agent.53760.AGX
VBA32BScope.Trojan.Bulta
MalwarebytesTrojan.Dropper
PandaTrj/Genetic.gen
ZonerTrojan.Win32.29069
TrendMicro-HouseCallTROJ_YODDOS.SMR
TencentMalware.Win32.Gencirc.10b704f5
YandexTrojan.Graftor!Yk/ayiYcGzo
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
GDataGen:Variant.Barys.54
BitDefenderThetaAI:Packer.F019B6621F
AVGWin32:Nitol-B [Trj]
Cybereasonmalicious.b534c1
MaxSecureTrojan.Malware.2588.susgen

How to remove Barys.54?

Barys.54 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment