Malware

Generic.MSIL.Bladabindi.8CB79220 malicious file

Malware Removal

The Generic.MSIL.Bladabindi.8CB79220 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Bladabindi.8CB79220 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • CAPE detected the Njrat malware family
  • Creates a copy of itself

How to determine Generic.MSIL.Bladabindi.8CB79220?


File Info:

name: 2DC6422B2A8A75F1F99B.mlw
path: /opt/CAPEv2/storage/binaries/86aef5432fa9176b7db11396fac32ae5fab04ec61faed52b9562833b5a3fc079
crc32: 3A19F590
md5: 2dc6422b2a8a75f1f99bb2c460eab744
sha1: bb09cc05a1191bb1c37cdc707043940b5caf683a
sha256: 86aef5432fa9176b7db11396fac32ae5fab04ec61faed52b9562833b5a3fc079
sha512: 65e7cd9446dd4805cab87b42dd1460d26a63982c688a9b1edadaf6c416850be80b2c9c32e6f1a1bdbc09a752abae51c56ab503ff1a3d39c5957811ce01f21562
ssdeep: 768:gY31gnD9O/pBcxYsbae6GIXb9pDX2t98PL0OXLeuXxrjEtCdnl2pi1Rz4Rk3ysGK:9gxOx6baIa9RZj00ljEwzGi1dDODsgS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A093E84977E52524E5BF56F79871F2004E34B48B1602E39D48F219AA1B33AC44F89FEB
sha3_384: 207ff07d1ded64f903d5c83ec2f7eab720312c0ea6d77488356b1b5b5b048fa4afe542d4e49c90a1f5bedf8048034edc
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-11-20 09:53:58

Version Info:

0: [No Data]

Generic.MSIL.Bladabindi.8CB79220 also known as:

BkavW32.PrimeaClefAF.Trojan
ElasticWindows.Trojan.Njrat
CynetMalicious (score: 100)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGeneric.MSIL.Bladabindi.8CB79220
MalwarebytesBladabindi.Backdoor.Bot.DDS
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWEmailWorm ( 00555f371 )
K7AntiVirusEmailWorm ( 00555f371 )
VirITTrojan.Win32.MulDrop7.DOQR
CyrenW32/Trojan.BVX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Autorun.Spy.Agent.R
APEXMalicious
ClamAVWin.Packed.Generic-9795615-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.MSIL.Bladabindi.8CB79220
NANO-AntivirusTrojan.Win32.TrjGen.dkmeat
MicroWorld-eScanGeneric.MSIL.Bladabindi.8CB79220
AvastWin32:KeyloggerX-gen [Trj]
RisingBackdoor.njRAT!1.A096 (CLASSIC)
Ad-AwareGeneric.MSIL.Bladabindi.8CB79220
SophosML/PE-A + Mal/MsilPKill-C
DrWebTrojan.MulDrop7.62625
VIPREGeneric.MSIL.Bladabindi.8CB79220
TrendMicroBackdoor.MSIL.BLADABINDI.SMJJ
McAfee-GW-EditionTrojan-FIDH!2DC6422B2A8A
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.2dc6422b2a8a75f1
EmsisoftGeneric.MSIL.Bladabindi.8CB79220 (B)
IkarusTrojan.MSIL.Bladabindi
AviraTR/Dropper.Gen
MAXmalware (ai score=82)
MicrosoftBackdoor:MSIL/Bladabindi!rfn
ArcabitGeneric.MSIL.Bladabindi.8CB79220
GDataMSIL.Backdoor.Agent.AXJ
GoogleDetected
AhnLab-V3Trojan/Win32.Bladabindi.R295982
Acronissuspicious
McAfeeTrojan-FIDH!2DC6422B2A8A
TACHYONBackdoor/W32.DN-NjRat.95232.C
VBA32Trojan.MSIL.Bladabindi.Heur
CylanceUnsafe
ZonerTrojan.Win32.87452
TrendMicro-HouseCallBackdoor.MSIL.BLADABINDI.SMJJ
TencentWorm.Msil.Agent.zo
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.LX!tr
BitDefenderThetaGen:NN.ZemsilF.34796.fiW@aSxD73l
AVGWin32:KeyloggerX-gen [Trj]
Cybereasonmalicious.b2a8a7

How to remove Generic.MSIL.Bladabindi.8CB79220?

Generic.MSIL.Bladabindi.8CB79220 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment