Malware

About “Generic.MSIL.Bladabindi.6F609CAE” infection

Malware Removal

The Generic.MSIL.Bladabindi.6F609CAE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Bladabindi.6F609CAE virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Uses Windows utilities for basic functionality
  • CAPE detected the Njrat malware family
  • Creates known Njrat/Bladabindi RAT registry keys

How to determine Generic.MSIL.Bladabindi.6F609CAE?


File Info:

name: F4D35B4DBE7C8F17A702.mlw
path: /opt/CAPEv2/storage/binaries/c10d96335e074fed75cc8e74f1cc07edd87a3ac21940d494c28248b089c3648c
crc32: 99B54F0D
md5: f4d35b4dbe7c8f17a7021887c2b16570
sha1: b5839927fc34843665ecf1e99159c737fc9c925e
sha256: c10d96335e074fed75cc8e74f1cc07edd87a3ac21940d494c28248b089c3648c
sha512: 86e274f00b322a028ae14114292c03dfc51117340a2eb58de91ddeb094fac630b5ca7779e36144f3b45eb748d6d8867f1363de142344d75674a52d17f7f347d7
ssdeep: 384:iHjrUiS6L1G5k2gyk/8If5e/QUZSgKrAF+rMRTyN/0L+EcoinblneHQM3epzXd0O:6jz32bk/8IQYUZS7rM+rMRa8Nu/0at
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17D032A4D7FE18168D5FD067B06B2D41207BAE04B6E23D90E8EE564DA37636C18B50EF2
sha3_384: 43e9df10d72ae38da05522a051403989f0625725315fde51ccff7b1753703c31fc25899f3ad792105554e2775d1f625d
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-11-26 09:26:30

Version Info:

0: [No Data]

Generic.MSIL.Bladabindi.6F609CAE also known as:

BkavW32.AIDetectNet.01
DrWebTrojan.MulDrop6.39241
MicroWorld-eScanGeneric.MSIL.Bladabindi.6F609CAE
CAT-QuickHealBackdoor.Bladabindi.B3
McAfeeTrojan-FIGN
MalwarebytesBladabindi.Backdoor.Bot.DDS
ZillyaTrojan.Bladabindi.Win32.74276
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
BitDefenderGeneric.MSIL.Bladabindi.6F609CAE
K7GWTrojan ( 700000121 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZemsilF.34796.cmW@aGxMV!l
VirITTrojan.Win32.DownLoader21.BPQW
CyrenW32/MSIL_Troj.AP.gen!Eldorado
ElasticWindows.Trojan.Njrat
ESET-NOD32MSIL/Bladabindi.NZ
APEXMalicious
ClamAVWin.Packed.Bladabindi-7994427-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Autoruner2.ebrjyu
AvastMSIL:Bladabindi-JK [Trj]
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
Ad-AwareGeneric.MSIL.Bladabindi.6F609CAE
EmsisoftWorm.Bladabindi (A)
ComodoTrojWare.MSIL.Spy.Agent.CP@4pqytu
F-SecureTrojan.TR/ATRAPS.Gen
BaiduMSIL.Backdoor.Bladabindi.a
VIPREGeneric.MSIL.Bladabindi.6F609CAE
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionBehavesLike.Win32.Trojan.nm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.f4d35b4dbe7c8f17
SophosML/PE-A + Troj/Bbindi-W
GDataMSIL.Trojan-Spy.Bladabindi.BQ
JiangminTrojanDropper.Autoit.dce
GoogleDetected
AviraTR/ATRAPS.Gen
MAXmalware (ai score=84)
Antiy-AVLTrojan[Backdoor]/MSIL.Bladabindi.as
ArcabitGeneric.MSIL.Bladabindi.6F609CAE
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:MSIL/njRAT.RDSA!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Korat.R207428
Acronissuspicious
VBA32Downloader.MSIL.gen
ALYacGeneric.MSIL.Bladabindi.6F609CAE
TACHYONTrojan/W32.DN-Agent.37888.BL
CylanceUnsafe
ZonerTrojan.Win32.84773
TencentTrojan.Msil.Bladabindi.fa
YandexTrojan.AvsMofer.dd6520
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Bladabindi.AS!tr
AVGMSIL:Bladabindi-JK [Trj]
Cybereasonmalicious.dbe7c8
PandaTrj/GdSda.A

How to remove Generic.MSIL.Bladabindi.6F609CAE?

Generic.MSIL.Bladabindi.6F609CAE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment