Worm

Should I remove “Worm:MSIL/Bladabindi.G”?

Malware Removal

The Worm:MSIL/Bladabindi.G is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:MSIL/Bladabindi.G virus can do?

  • Network activity detected but not expressed in API logs

How to determine Worm:MSIL/Bladabindi.G?


File Info:

crc32: 6098B078
md5: 7be3b9554d610a9784d76b47b5fa92c5
name: 7BE3B9554D610A9784D76B47B5FA92C5.mlw
sha1: cbc69fc31a9ea6375d694ed757de5075e882ebaf
sha256: de693735a5bb6a4d26e4aaf2fad7d0be3e34e114e76ecb65f4a94bfc212c5d5e
sha512: ec492240bf278fa91f620bc82a9dbd6e9f6973cf7435987892703bfb598f650a38e034c62cebba205635d18d7b8ee684e49ba7c0c9f060fdbf41fbc1593c9ca8
ssdeep: 768:5Cq0kbnB9hZ5edlM4kyCtcjpoiMYka7jR:hCM9yCtcjuSk0
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Stub.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Stub.exe

Worm:MSIL/Bladabindi.G also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.MSIL.Bladabindi.4B04C57C
FireEyeGeneric.mg.7be3b9554d610a97
CAT-QuickHealBackdoor.Bladabindi.AJ3
ALYacGeneric.MSIL.Bladabindi.4B04C57C
CylanceUnsafe
VIPRETrojan.MSIL.Bladabindi.b (v)
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGeneric.MSIL.Bladabindi.4B04C57C
K7GWTrojan ( 700000121 )
K7AntiVirusTrojan ( 700000121 )
BaiduMSIL.Backdoor.Bladabindi.a
CyrenW32/S-342d5538!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastMSIL:Agent-CIB [Trj]
ClamAVWin.Worm.Njrat-2
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Autoruner.dbygjv
TencentMalware.Win32.Gencirc.10b38e5e
Ad-AwareGeneric.MSIL.Bladabindi.4B04C57C
EmsisoftGeneric.MSIL.Bladabindi.4B04C57C (B)
ComodoTrojWare.MSIL.Spy.Agent.EF@4r4nna
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader20.64218
ZillyaAdware.FirstFloor.Win32.514
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionTrojan-FIGN
SophosML/PE-A + Mal/MSIL-QB
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.ijxa
WebrootW32.Trojan.MSIL.Bladabindi
AviraTR/Dropper.Gen
eGambitRAT.njRat
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftWorm:MSIL/Bladabindi.G
GridinsoftBackdoor.Win32.Gen.ab!ni
ArcabitGeneric.MSIL.Bladabindi.4B04C57C
SUPERAntiSpywareBackdoor.Bladabindi/Variant
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Backdoor.Bladabindi.AV
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Bladabi.C1360412
Acronissuspicious
McAfeeTrojan-FIGN
MAXmalware (ai score=84)
VBA32Trojan.MSIL.Crypt
MalwarebytesTrojan.MalPack
ESET-NOD32a variant of MSIL/Bladabindi.AH
TrendMicro-HouseCallBKDR_BLADABI.SMC
RisingBackdoor.Bot!1.6675 (CLASSIC)
YandexTrojan.Agent!gZTRm/i0KYU
IkarusTrojan-Spy.HawkEye
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.PPV!tr
BitDefenderThetaGen:NN.ZemsilF.34658.cm0@a42jVsd
AVGMSIL:Agent-CIB [Trj]
Cybereasonmalicious.54d610
Qihoo-360HEUR/QVM03.0.9367.Malware.Gen

How to remove Worm:MSIL/Bladabindi.G?

Worm:MSIL/Bladabindi.G removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment