Malware

Generic.MSIL.Bladabindi.66246553 removal tips

Malware Removal

The Generic.MSIL.Bladabindi.66246553 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Bladabindi.66246553 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Uses Windows utilities for basic functionality
  • CAPE detected the Njrat malware family
  • Creates a copy of itself
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.MSIL.Bladabindi.66246553?


File Info:

name: E7E2B60202EB7F1D5386.mlw
path: /opt/CAPEv2/storage/binaries/820aac07b5edbd69d9f3507beb26920f3e0302bc77c6a6607450271e28fbd26e
crc32: 4CE539A0
md5: e7e2b60202eb7f1d5386ca08068b7ba3
sha1: 2d4fe4eb142c101df6030cfdd8b0b6acfcc02a90
sha256: 820aac07b5edbd69d9f3507beb26920f3e0302bc77c6a6607450271e28fbd26e
sha512: 40896386ef6aac4c120a0b97cf8ed0e85c905e528741ad8a2865f892b7ad0ba6363a5d3c6e61c2a2620a2dc82ecf9ad6dd164a53394385cc228eee8a6f5ca112
ssdeep: 384:T+c8D4x4ISH3t0aEMJjYMJxudfy2CD7N2W8HXVEu59uLS5U/ANpp4Dd0sezW+KKz:T+kSHnJjYCQy2yd8HXVEu5TWiSA/vOa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T100C21A89B3B54A16C67F57B90520931103F592078323EF9D9DED90EA4F673A08EC06E7
sha3_384: 723addfa41b9525e07a90fc438e8d272331c3abfa7970df5e0d2e22e267dab66df346190f076b263152406e515b4317c
ep_bytes: ff250020400000000000000000000000
timestamp: 2014-04-24 22:39:05

Version Info:

0: [No Data]

Generic.MSIL.Bladabindi.66246553 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Generic.lzR3
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.MSIL.Bladabindi.66246553
ClamAVWin.Packed.Barys-8336269-0
CAT-QuickHealBackdoor.Bladabindi.B3
ALYacGeneric.MSIL.Bladabindi.66246553
Cylanceunsafe
ZillyaTrojan.Zapchast.Win32.9825
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 700000121 )
K7AntiVirusTrojan ( 700000121 )
BaiduMSIL.Backdoor.Bladabindi.a
VirITTrojan.Win32.Agent.AWPM
CyrenW32/MSIL_Troj.AP.gen!Eldorado
SymantecBackdoor.Ratenjay!gen1
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Bladabindi.AS
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.MSIL.Bladabindi.66246553
NANO-AntivirusTrojan.Win32.Bladabindi.dcjffa
SUPERAntiSpywareTrojan.Agent/Gen-MSIL
AvastMSIL:Agent-SR [Spy]
TencentTrojan.Win32.Bladabindi.16000442
EmsisoftGeneric.MSIL.Bladabindi.66246553 (B)
F-SecureTrojan.TR/Dropper.Gen7
DrWebTrojan.MulDrop6.8196
VIPREGeneric.MSIL.Bladabindi.66246553
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionBehavesLike.Win32.Trojan.mm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.e7e2b60202eb7f1d
SophosMal/MSIL-GL
IkarusTrojan.Msil
GDataMSIL.Backdoor.Bladabindi.AV
JiangminTrojan.Generic.hjva
WebrootW32.Trojan.Gen
AviraTR/Dropper.Gen7
Antiy-AVLTrojan[Backdoor]/MSIL.Bladabindi.as
XcitiumTrojWare.MSIL.Spy.Agent.CPC@4qco7f
ArcabitGeneric.MSIL.Bladabindi.D3F2D799
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftBackdoor:MSIL/Bladabindi.AJ
GoogleDetected
AhnLab-V3Trojan/Win32.Zapchast.R31729
Acronissuspicious
McAfeeTrojan-FIGN
MAXmalware (ai score=86)
MalwarebytesBladabindi.Backdoor.Bot.DDS
PandaGeneric Malware
TrendMicro-HouseCallBKDR_BLBINDI.SMN
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.MSIL.Bladabindi.b
FortinetMSIL/Agent.PPV!tr
BitDefenderThetaGen:NN.ZemsilF.36132.bmW@a00I!kn
AVGMSIL:Agent-SR [Spy]
DeepInstinctMALICIOUS

How to remove Generic.MSIL.Bladabindi.66246553?

Generic.MSIL.Bladabindi.66246553 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment