Malware

Generic.MSIL.Bladabindi.52D39FB1 removal

Malware Removal

The Generic.MSIL.Bladabindi.52D39FB1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Bladabindi.52D39FB1 virus can do?

  • Creates RWX memory
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup

Related domains:

uyu.hopto.org

How to determine Generic.MSIL.Bladabindi.52D39FB1?


File Info:

crc32: C95AFB84
md5: 6780f56b89ba0c8c6a48f13dba7c1d66
name: upload_file
sha1: 5f74bb0ebc10a84430baafa89c3f570e82c5dda6
sha256: f2292fec01b4672cf1bd05d2022e7ab814c53378e900cf7679b3917fe317965b
sha512: 178e18401e5e83d536255cf886b4022ee1b2b967f5a4fd2de82806b25263440bc6802712583ee9ca9aa91979e17c701d60ee373ebf608248dbfb420aec814aa0
ssdeep: 384:uLW7Db06chkGurhuChdzBWOcXu25r/CPpi2V4SSHCkkLDOHYCFXPzlpmIMxTZin:4W7Db0nkGqkuxpVPvmF7m71Z
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: k.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: k.exe

Generic.MSIL.Bladabindi.52D39FB1 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.MSIL.Bladabindi.52D39FB1
FireEyeGeneric.mg.6780f56b89ba0c8c
CAT-QuickHealTrojan.GenericFC.S6059376
Qihoo-360HEUR/QVM03.0.253F.Malware.Gen
ALYacGeneric.MSIL.Bladabindi.52D39FB1
CylanceUnsafe
VIPREBackdoor.MSIL.Bladabindi.a (v)
SangforMalware
K7AntiVirusTrojan ( 004b99501 )
BitDefenderGeneric.MSIL.Bladabindi.52D39FB1
K7GWTrojan ( 004b99501 )
Cybereasonmalicious.b89ba0
TrendMicroBKDR_BLADABI.SMC
BaiduMSIL.Backdoor.Bladabindi.a
CyrenW32/MSIL_Agent.CP.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastMSIL:Agent-CIB [Trj]
ClamAVWin.Trojan.B-468
KasperskyHEUR:Trojan.Win32.Generic
RisingBackdoor.Njrat!1.9E49 (CLASSIC)
Ad-AwareGeneric.MSIL.Bladabindi.52D39FB1
SophosMal/Bladabi-T
ComodoBackdoor.MSIL.Bladabindi.BSS@7pzdvl
F-SecureTrojan.TR/ATRAPS.Gen
DrWebTrojan.DownLoader25.2566
ZillyaWorm.Bladabindi.Win32.7954
InvinceaML/PE-A + Mal/Bladabi-T
McAfee-GW-EditionBehavesLike.Win32.Generic.nm
EmsisoftGeneric.MSIL.Bladabindi.52D39FB1 (B)
IkarusTrojan-Spy.HawkEye
JiangminTrojanSpy.Agent.aaxh
AviraTR/ATRAPS.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftBackdoor:MSIL/Bladabindi.BO
ArcabitGeneric.MSIL.Bladabindi.52D39FB1
SUPERAntiSpywareBackdoor.NJRat/Variant
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Backdoor.Bladabindi.AV
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/NjRAT01.Exp
Acronissuspicious
McAfeeTrojan-FIGN
VBA32Trojan.Downloader
MalwarebytesBackdoor.NJRat
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Autorun.Agent.LW
TrendMicro-HouseCallBKDR_BLADABI.SMC
YandexTrojan.Agent!FZBh3fKYMJo
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Agent.LI!tr
BitDefenderThetaGen:NN.ZemsilF.34254.cm0@aiQ!FTp
AVGMSIL:Agent-CIB [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Generic.MSIL.Bladabindi.52D39FB1?

Generic.MSIL.Bladabindi.52D39FB1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment