Malware

ML/PE-A + Mal/Bbindi-C removal tips

Malware Removal

The ML/PE-A + Mal/Bbindi-C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What ML/PE-A + Mal/Bbindi-C virus can do?

  • Creates RWX memory
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself

How to determine ML/PE-A + Mal/Bbindi-C?


File Info:

crc32: 8BC333C1
md5: d990a81bfc7af0047792d75a37e53fec
name: D990A81BFC7AF0047792D75A37E53FEC.mlw
sha1: 72f71b5b2da351426b999aaecdfcabdefc8fa8b2
sha256: 51ea3d88168c26ac2c09d5016db15ecea516351639f8cd572b6c4a32bb2f7c80
sha512: b48d7ca64fa846fc75693897184c4be0921472c57c2ee3ce67f3ae1b75c606270551bf3d560cceed6734aefeb86ffa799bdd05b25b778e25e5f73347e0c91883
ssdeep: 768:+7bXEI+Ge1gFaYqwzLeiBKh0p29SgRjy:+7bXh7RznKhG29jjy
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

ML/PE-A + Mal/Bbindi-C also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader34.47691
CynetMalicious (score: 100)
CAT-QuickHealBackdoor.Bladabindi.AL3
ALYacIL:Trojan.MSILZilla.6820
CylanceUnsafe
ZillyaTrojan.Bladabindi.Win32.14971
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 700000121 )
Cybereasonmalicious.bfc7af
BaiduMSIL.Backdoor.Bladabindi.a
CyrenW32/MSIL_Bladabindi.A.gen!Eldorado
SymantecBackdoor.Ratenjay
ESET-NOD32a variant of MSIL/Bladabindi.AS
APEXMalicious
AvastMSIL:Agent-BXF [Trj]
ClamAVWin.Packed.Bladabindi-7086597-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderIL:Trojan.MSILZilla.6820
NANO-AntivirusTrojan.Win32.Dwn.dbxzfj
ViRobotBackdoor.Win32.Bladabindi.Gen.A
MicroWorld-eScanIL:Trojan.MSILZilla.6820
Ad-AwareIL:Trojan.MSILZilla.6820
SophosML/PE-A + Mal/Bbindi-C
ComodoTrojWare.MSIL.Bladabindi.KX@52g0y5
F-SecureTrojan.TR/ATRAPS.Gen
BitDefenderThetaGen:NN.ZemsilF.34236.bmW@aGGFcAp
VIPRETrojan.MSIL.Bladabindi.agxy (v)
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionBehavesLike.Win32.BackdoorNJRat.mm
FireEyeGeneric.mg.d990a81bfc7af004
EmsisoftIL:Trojan.MSILZilla.6820 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Autoit.dce
AviraTR/ATRAPS.Gen
eGambitRAT.njRat
Antiy-AVLTrojan/Generic.ASBOL.A8F4
KingsoftHeur.SSC.2685715.1216.(kcloud)
MicrosoftBackdoor:MSIL/Bladabindi.AJ
ArcabitIL:Trojan.MSILZilla.D1AA4
SUPERAntiSpywareTrojan.Agent/Gen-Barys
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Backdoor.Bladabindi.AV
AhnLab-V3Trojan/Win32.Bladabindi.C202658
Acronissuspicious
McAfeeTrojan-FIGN
MAXmalware (ai score=80)
VBA32Trojan.MSIL.Disfa
MalwarebytesBackdoor.Bladabindi.MSIL
PandaGeneric Malware
TrendMicro-HouseCallBKDR_BLADABI.SMC
RisingBackdoor.Njrat!1.9E49 (CLASSIC)
YandexTrojan.Agent!1IJ7ODVC/Xw
IkarusTrojan.Msil
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.PPV!tr
AVGMSIL:Agent-BXF [Trj]

How to remove ML/PE-A + Mal/Bbindi-C?

ML/PE-A + Mal/Bbindi-C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment