Malware

Should I remove “Barys.73857”?

Malware Removal

The Barys.73857 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Barys.73857 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Barys.73857?


File Info:

crc32: 040E8459
md5: 6c420578f19e0d03b93aee5c30b5aee0
name: 6C420578F19E0D03B93AEE5C30B5AEE0.mlw
sha1: 95e82f9a5b3057085d1922d3c10868b6ae018987
sha256: ce2ce2f20f94dd7d273848ec513d73e61c1e3c0520359f249f7d5114f237e794
sha512: 34f503092fbc7466bb0dcedc133efba602145b657fa8802fbd069f4a1bf4666f1978578a23464fc85760418895b8f523c9dc19cedaff67bc880410f0136bbd56
ssdeep: 1536:3PLTcehmGEyRhjXowcobxnS9cKlWB8dNCVZ+U5vbqa:/LTHczyRhjXo1uSsBANCVUU5vb5
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: Todos os direitos reservados para Santa Mxf4nica e desenvolvedores.
InternalName: apRlEstatisticoCartoes
FileVersion: 1.00
CompanyName: Santa Mxf4nica CE
LegalTrademarks: Centro Educacional Santa Mxf4nica
Comments: 1xaa versxe3o deRelatxf3rio Estatxedstico de Cartxf5es 15.08.2013
ProductName: Premium 2.0
ProductVersion: 1.00
FileDescription: Executxe1vel para Relatxf3rio Estatxedstico de Cartxf5es
OriginalFilename: apRlEstatisticoCartoes.exe

Barys.73857 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Babar.4!c
ALYacGen:Variant.Barys.73857
CylanceUnsafe
AlibabaTrojanDropper:Win32/Dycler.2cccac63
Cybereasonmalicious.8f19e0
CyrenW32/S-9674a37a!Eldorado
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.Barys.73857
MicroWorld-eScanGen:Variant.Barys.73857
Ad-AwareGen:Variant.Barys.73857
ComodoMalware@#33dzx7henqlp3
McAfee-GW-EditionBehavesLike.Win32.Trojan.lc
FireEyeGen:Variant.Barys.73857
EmsisoftGen:Variant.Barys.73857 (B)
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Barys.73857
AhnLab-V3Malware/Win32.Generic.C3076982
McAfeeArtemis!6C420578F19E
MAXmalware (ai score=82)
VBA32BScope.TrojanDropper.Dycler
IkarusTrojan.Dropper.Dycler
MaxSecureTrojan.Malware.74173541.susgen
FortinetW32/PossibleThreat
AVGWin32:Malware-gen

How to remove Barys.73857?

Barys.73857 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment