Malware

What is “Generic.MSIL.Bladabindi.EF2B2632”?

Malware Removal

The Generic.MSIL.Bladabindi.EF2B2632 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.Bladabindi.EF2B2632 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • CAPE detected the Njrat malware family

How to determine Generic.MSIL.Bladabindi.EF2B2632?


File Info:

name: EACED5952BFCD93B7F46.mlw
path: /opt/CAPEv2/storage/binaries/7b5e0297183129b61fcac6f797485ddac48bb876afc348e4ffbdee93d7c5df70
crc32: 02897E41
md5: eaced5952bfcd93b7f46805c3f3b083a
sha1: 7d8a1bd1b28c665a1b579c809e66f1d9b4efa0be
sha256: 7b5e0297183129b61fcac6f797485ddac48bb876afc348e4ffbdee93d7c5df70
sha512: e88d22d0e42b1fe9f49c536fba633a6e77e9411267a37a191d104520f591e8d3e5babb90d2b0a30b1a5d64b2b121447d61b637564901774a4147e5bcb69b7eac
ssdeep: 768:SY33UnD9O/pBcxYsbae6GIXb9pDX2t9zPL0OXLeuXxrjEtCdnl2pi1Rz4Rk3GsGi:NUxOx6baIa9ROj00ljEwzGi1dDCD8gS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AD93E74977E52524E5BF56F79871F2004E34B48B1602E39D48F219AA1B33AC44F89FEB
sha3_384: 1c598a16306933cf67c66859dc847b89c154cc8d3dcdaaf6d7335b3293ed3750b8a4ac53b085cf50d704ef52749f1e3f
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-11-01 08:36:20

Version Info:

0: [No Data]

Generic.MSIL.Bladabindi.EF2B2632 also known as:

BkavW32.PrimeaClefAF.Trojan
ElasticWindows.Trojan.Njrat
CynetMalicious (score: 100)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGeneric.MSIL.Bladabindi.EF2B2632
MalwarebytesGeneric.Worm.Autorun.DDS
ZillyaWorm.AutoRun.Win32.135987
SangforSuspicious.Win32.Save.a
K7AntiVirusEmailWorm ( 00555f371 )
K7GWEmailWorm ( 00555f371 )
Cybereasonmalicious.52bfcd
VirITTrojan.Win32.MulDrop7.DOQR
CyrenW32/Trojan.BVX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Autorun.Spy.Agent.R
APEXMalicious
ClamAVWin.Packed.Generic-9795615-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.MSIL.Bladabindi.EF2B2632
NANO-AntivirusTrojan.Win32.TrjGen.dkmeat
MicroWorld-eScanGeneric.MSIL.Bladabindi.EF2B2632
AvastWin32:KeyloggerX-gen [Trj]
RisingBackdoor.njRAT!1.A096 (CLASSIC)
Ad-AwareGeneric.MSIL.Bladabindi.EF2B2632
TACHYONBackdoor/W32.DN-NjRat.95232.C
EmsisoftGeneric.MSIL.Bladabindi.EF2B2632 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.MulDrop7.62625
VIPREGeneric.MSIL.Bladabindi.EF2B2632
TrendMicroBackdoor.MSIL.BLADABINDI.SMJJ
McAfee-GW-EditionTrojan-FIDH!EACED5952BFC
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.eaced5952bfcd93b
SophosML/PE-A + Mal/MsilPKill-C
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.3303
MicrosoftBackdoor:MSIL/Bladabindi!rfn
ArcabitGeneric.MSIL.Bladabindi.EF2B2632
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Backdoor.Agent.AXJ
GoogleDetected
AhnLab-V3Trojan/Win32.RL_Generic.R258331
Acronissuspicious
McAfeeTrojan-FIDH!EACED5952BFC
MAXmalware (ai score=84)
VBA32Trojan.MSIL.Bladabindi.Heur
CylanceUnsafe
TrendMicro-HouseCallBackdoor.MSIL.BLADABINDI.SMJJ
TencentWorm.Msil.Agent.zo
YandexTrojan.Agent!Y7cCfvk2lSY
IkarusTrojan.MSIL.Bladabindi
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.LX!tr
BitDefenderThetaGen:NN.ZemsilF.34754.fiW@ai24JSm
AVGWin32:KeyloggerX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.MSIL.Bladabindi.EF2B2632?

Generic.MSIL.Bladabindi.EF2B2632 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment