Malware

Barys.60094 (file analysis)

Malware Removal

The Barys.60094 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.60094 virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Barys.60094?


File Info:

crc32: 436EE03B
md5: d6d892f2a72995eb88c157af5891a41a
name: D6D892F2A72995EB88C157AF5891A41A.mlw
sha1: 79d3b3e44871999995812a8a5c564bf238320e2f
sha256: 1a3a0a2971869944fbda56931b1bc0f823252e19347f8a24bd5882ab20d55f37
sha512: 2fa59d4282394a8897f8fa0084a7b5b1c4d65201ead23476e79ae81091c4a919d9a505621981559dd756d2f69717fa39373e424449ce873d62ab4976aedf0dfd
ssdeep: 12288:VNc5pdZLsFSHtj+CJvoePv+bJI0Ut1F/mOXsYRC6DEqKFEew:Xc5pfIFwVJN2intSlYM+2w
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
ProductVersion: 1.00
InternalName: x2022Sxf8x2026Oxf2xd7SYxf8Oxb8
FileVersion: 1.00
OriginalFilename: x2022Sxf8x2026Oxf2xd7SYxf8Oxb8.exe
ProductName: x2022Sxf8x2026Oxf2xd7SYxf8Oxb8

Barys.60094 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053c9e91 )
Elasticmalicious (high confidence)
DrWebBackDoor.Comet.2042
ClamAVWin.Packed.Score-6857640-0
ALYacGen:Variant.Barys.60094
MalwarebytesMachineLearning/Anomalous.94%
ZillyaDropper.Llac.Win32.1
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Fynloski.808cd7ad
K7GWTrojan ( 0053c9e91 )
Cybereasonmalicious.2a7299
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Fynloski.AA
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Llac.lmyf
BitDefenderGen:Variant.Barys.60094
NANO-AntivirusTrojan.Win32.Llac.fhxvzb
MicroWorld-eScanGen:Variant.Barys.60094
TencentMalware.Win32.Gencirc.10cb003e
Ad-AwareGen:Variant.Barys.60094
SophosMal/Generic-S
ComodoMalware@#4ai3fc2hbh66
BitDefenderThetaGen:NN.ZevbaF.34236.1n3@ayTTkMai
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Rontokbro.tt
FireEyeGeneric.mg.d6d892f2a72995eb
EmsisoftGen:Variant.Barys.60094 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Llac.ffz
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASMalwS.280F9CA
MicrosoftTrojan:Win32/Occamy.C1A
GDataGen:Variant.Barys.60094
McAfeePUP-XOG-IJ
MAXmalware (ai score=99)
VBA32Trojan.Llac
PandaTrj/GdSda.A
YandexTrojan.GenAsa!WKcQDXWHOyg
IkarusTrojan.Win32.Krypt
FortinetW32/Generic.AC.41A97D
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Barys.60094?

Barys.60094 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment