Malware

Generic.MSIL.Bladabindi.61B5FB85 information

Malware Removal

The Generic.MSIL.Bladabindi.61B5FB85 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Bladabindi.61B5FB85 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Uses Windows utilities for basic functionality
  • CAPE detected the njRat malware family
  • Creates known Njrat/Bladabindi RAT registry keys

How to determine Generic.MSIL.Bladabindi.61B5FB85?


File Info:

name: ABC797EE342D4164D686.mlw
path: /opt/CAPEv2/storage/binaries/b0e23192f0ab01afed2d3c6230f523b7621661eb50ab621c87d9fcc3ce85a1f7
crc32: E360725D
md5: abc797ee342d4164d6869f937094f4b6
sha1: 1e7da6cf497b3b8d3903da657c44056773fadb4b
sha256: b0e23192f0ab01afed2d3c6230f523b7621661eb50ab621c87d9fcc3ce85a1f7
sha512: afc1659164bf21fb46bf75c544f8009d75baa3d77d5bc59cf0b94d5f67eaa440dd8b733791e0930c587425d2324e2bcf05cb1a8a7a2acf4ff439437da0c40f32
ssdeep: 384:F6/gUiDrblmJEpRGyEfdDPTuWCYqAlLrAF+rMRTyN/0L+EcoinblneHQM3epzX5n:0/yHpR9EfdDCWClAprM+rMRa8NuL9t
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B603294D7FE18168C5FD167B05B2D41207BBE04B6E23D90E8EE564AA37636C18B50EF2
sha3_384: 90dc284942509d303980f10fac31f339cd0e2654862460b4dca4d141ddb930b78a6e08dfca6bb4c3f88812511116a255
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-08-12 13:30:39

Version Info:

0: [No Data]

Generic.MSIL.Bladabindi.61B5FB85 also known as:

BkavW32.AIDetectNet.01
CynetMalicious (score: 100)
FireEyeGeneric.mg.abc797ee342d4164
CAT-QuickHealBackdoor.Bladabindi.B3
McAfeeTrojan-FIGN
MalwarebytesBackdoor.NJRat.MSIL
ZillyaTrojan.Bladabindi.Win32.72266
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
K7GWTrojan ( 700000121 )
Cybereasonmalicious.e342d4
BitDefenderThetaGen:NN.ZemsilF.34592.cmW@aKYt@Ze
VirITTrojan.Win32.DownLoader21.BPQW
CyrenW32/MSIL_Troj.AP.gen!Eldorado
SymantecBackdoor.Ratenjay!gen3
ElasticWindows.Trojan.Njrat
ESET-NOD32a variant of MSIL/Bladabindi.AR
BaiduMSIL.Backdoor.Bladabindi.a
APEXMalicious
ClamAVWin.Packed.Bladabindi-7994427-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.MSIL.Bladabindi.61B5FB85
NANO-AntivirusTrojan.Win32.Autoruner2.ebrjyu
ViRobotBackdoor.Win32.Agent.37888.AL
MicroWorld-eScanGeneric.MSIL.Bladabindi.61B5FB85
AvastMSIL:Bladabindi-JK [Trj]
TencentTrojan.Msil.Bladabindi.fa
Ad-AwareGeneric.MSIL.Bladabindi.61B5FB85
EmsisoftWorm.Bladabindi (A)
ComodoTrojWare.MSIL.Spy.Agent.CP@4pqytu
DrWebTrojan.DownLoader20.55401
VIPREGeneric.MSIL.Bladabindi.61B5FB85
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionBehavesLike.Win32.Backdoor.nm
Trapminemalicious.high.ml.score
SophosML/PE-A + Troj/Bbindi-W
IkarusTrojan.MSIL.Bladabindi
GDataMSIL.Trojan-Spy.Bladabindi.BQ
JiangminTrojanDropper.Autoit.dce
AviraTR/ATRAPS.Gen
MAXmalware (ai score=85)
Antiy-AVLTrojan/Generic.ASBOL.A8F4
ArcabitGeneric.MSIL.Bladabindi.61B5FB85
MicrosoftBackdoor:MSIL/Bladabindi.B
GoogleDetected
AhnLab-V3Trojan/Win32.Korat.R207428
Acronissuspicious
ALYacGeneric.MSIL.Bladabindi.61B5FB85
TACHYONBackdoor/W32.DN-Bladabindi.37888.B
CylanceUnsafe
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
YandexTrojan.Agent!p6c+ZXj2T8I
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.AS!tr
AVGMSIL:Bladabindi-JK [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.MSIL.Bladabindi.61B5FB85?

Generic.MSIL.Bladabindi.61B5FB85 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment