Backdoor

Should I remove “Backdoor.Bladabindi.AJ6”?

Malware Removal

The Backdoor.Bladabindi.AJ6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Bladabindi.AJ6 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the NjRATGolden malware family
  • Anomalous binary characteristics

How to determine Backdoor.Bladabindi.AJ6?


File Info:

name: 3602267D2369CA10911E.mlw
path: /opt/CAPEv2/storage/binaries/3d11419911f6845584a79e295d4a7f601c82cb11ae05758e9e4800c0c1f553d2
crc32: 137A75AA
md5: 3602267d2369ca10911e9155a4730f9c
sha1: 2c4a4c3e8ef14e16ac45043579b6583e8e480a8e
sha256: 3d11419911f6845584a79e295d4a7f601c82cb11ae05758e9e4800c0c1f553d2
sha512: 797367f160190c95a9b20b92e9a6578e9261235e388ad615f87b564c2ff246584f2185b7fcfbf77c78f2ff11bbfa4180d684c05990ebb496b9ec66d545166c96
ssdeep: 384:N6DZHLRqjbvSIbOaEQHvlstO3ktuW0LE2QGSj1bigvxw2ZMJzcMA7nu:GZHkHVOyPuV0LG/1b0cB7u
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10AD21A18BAF5A651D0FC1BB8449343A606BDA2039133D7BFCEC998DB1FA72E55444EE0
sha3_384: 14429e84a476af97d5dfaca49b5bb317ed4000a01c8e51daa16ba9889ec3b4eaf38151e4fb9789465076d063e47c843a
timestamp: 2015-06-01 00:54:53

Version Info:

0: [No Data]

Backdoor.Bladabindi.AJ6 also known as:

LionicTrojan.Win32.Generic.4!c
ElasticWindows.Trojan.Njrat
MicroWorld-eScanGen:Variant.Zusy.102077
FireEyeGeneric.mg.3602267d2369ca10
CAT-QuickHealBackdoor.Bladabindi.AJ6
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusUnwanted-Program ( 0059886f1 )
AlibabaBackdoor:MSIL/Bladabindi.0fa1c4f1
K7GWUnwanted-Program ( 0059886f1 )
Cybereasonmalicious.d2369c
ArcabitTrojan.Zusy.D18EBD
VirITTrojan.Win32.DownLoader10.CFLL
CyrenW32/MSIL_Bladabindi.A.gen!Eldorado
SymantecBackdoor.Ratenjay!gen3
ESET-NOD32a variant of MSIL/Bladabindi.AS
APEXMalicious
ClamAVWin.Packed.Bladabindi-7086597-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.102077
NANO-AntivirusTrojan.Win32.Dwn.ctopxm
SUPERAntiSpywareTrojan.Agent/Gen-Barys
AvastMSIL:Agent-CTT [Trj]
TencentTrojan.Win32.Bladabindi.16000442
EmsisoftGen:Variant.Zusy.102077 (B)
BaiduMSIL.Backdoor.Bladabindi.a
F-SecureTrojan.TR/ATRAPS.Gen
DrWebTrojan.DownLoader10.35064
VIPREGen:Variant.Zusy.102077
TrendMicroTROJ_GEN.R002C0DHG23
McAfee-GW-EditionBehavesLike.Win32.BackdoorNJRat.mm
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Autoit.dce
GoogleDetected
AviraTR/ATRAPS.Gen
XcitiumHeur.Corrupt.PE@1z141z3
MicrosoftBackdoor:MSIL/Bladabindi.AJ
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Trojan-Spy.Bladabindi.BX
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Generic.R108665
Acronissuspicious
ALYacGen:Variant.Zusy.102077
MAXmalware (ai score=80)
MalwarebytesTrojan.Agent.MSIL
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DHG23
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
IkarusTrojan.MSIL.Bladabindi
FortinetMSIL/Bladabindi.L!tr
AVGMSIL:Agent-CTT [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Backdoor.Bladabindi.AJ6?

Backdoor.Bladabindi.AJ6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment