Trojan

What is “Trojan:MSIL/Bladabindi.NEC!MTB”?

Malware Removal

The Trojan:MSIL/Bladabindi.NEC!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Bladabindi.NEC!MTB virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Trojan:MSIL/Bladabindi.NEC!MTB?


File Info:

name: 27F21AB339565FA10788.mlw
path: /opt/CAPEv2/storage/binaries/a864b81bd8c847b2818f8e9084bc0f1aa27fa3ca4a80e082a6c14ed8209425ab
crc32: B44ABC4D
md5: 27f21ab339565fa10788ef10fc6e8b4f
sha1: 98b5bb6f64fc6a36e5d52afa4cf67dcd34cf6789
sha256: a864b81bd8c847b2818f8e9084bc0f1aa27fa3ca4a80e082a6c14ed8209425ab
sha512: 436e057715d117c98dcf3b7805c8d9a3ea39ec6264b97737de28527002941666ffe4fcedce8e8e79299cadc7464d668b02b727f4b9eb8590a2e7d0b6e46bc551
ssdeep: 6144:sHT1t7G8xJFfuvjW/vqTHdyWOZqV+4irGbk+svHPObthzIN:6G8EHyWOZqV+4iPCI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10644171138F69CCDF1B3AD2A12ECF646DEAFE3112E0247C67B55C34254CA9478F1AA16
sha3_384: 180be49841ba34eee25d890c2aaa910e535cf7c7eb003ed696f2f6d3622e1c49ffa876e0d00fd7b230696bc09c8b402b
ep_bytes: ff250020400000000000000000000000
timestamp: 2043-07-07 13:43:14

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: WindowsFormsApp1
FileVersion: 1.0.0.0
InternalName: WindowsFormsApp1.exe
LegalCopyright: Copyright © 2022
LegalTrademarks:
OriginalFilename: WindowsFormsApp1.exe
ProductName: WindowsFormsApp1
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/Bladabindi.NEC!MTB also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.Bladabindi.m!c
DrWebTrojan.Siggen18.26686
MicroWorld-eScanIL:Trojan.MSILZilla.17470
FireEyeGeneric.mg.27f21ab339565fa1
ALYacIL:Trojan.MSILZilla.17470
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3835967
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004b0bd61 )
AlibabaBackdoor:MSIL/Bladabindi.3bd5a12e
K7GWTrojan ( 004b0bd61 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/MSIL_Kryptik.GQN.gen!Eldorado
SymantecTrojan Horse
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.AOC
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Backdoor.MSIL.Bladabindi.gen
BitDefenderIL:Trojan.MSILZilla.17470
NANO-AntivirusTrojan.Win32.Bladabindi.jqiyqd
AvastWin32:Trojan-gen
TencentMsil.Backdoor.Bladabindi.Hufy
Ad-AwareIL:Trojan.MSILZilla.17470
EmsisoftIL:Trojan.MSILZilla.17470 (B)
ComodoMalware@#zq5gb2xtoj91
F-SecureTrojan.TR/Dropper.Gen
VIPREIL:Trojan.MSILZilla.17470
TrendMicroTROJ_GEN.R002C0DGM22
McAfee-GW-EditionRDN/GenericAC
SophosMal/Generic-S + Mal/MSIL-SQ
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILZilla.17470
JiangminBackdoor.MSIL.ftlo
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan/MSIL.Bladabindi
KingsoftWin32.Hack.Undef.(kcloud)
ArcabitIL:Trojan.MSILZilla.D443E
ViRobotTrojan.Win32.Z.Agent.263680.ASN
ZoneAlarmHEUR:Backdoor.MSIL.Bladabindi.gen
MicrosoftTrojan:MSIL/Bladabindi.NEC!MTB
CynetMalicious (score: 99)
AhnLab-V3Backdoor/Win.NJRat.C5214900
Acronissuspicious
McAfeeRDN/GenericAC
VBA32Backdoor.njRAT
MalwarebytesBackdoor.Bladabindi
TrendMicro-HouseCallTROJ_GEN.R002C0DGM22
RisingTrojan.Generic/MSIL@AI.90 (RDM.MSIL:vjJW+1USsJW4aZ+lma0TPA)
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.73686729.susgen
FortinetPossibleThreat
AVGWin32:Trojan-gen
Cybereasonmalicious.f64fc6
PandaTrj/GdSda.A

How to remove Trojan:MSIL/Bladabindi.NEC!MTB?

Trojan:MSIL/Bladabindi.NEC!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment