Malware

Should I remove “MSIL/DllInject.BAC potentially unsafe”?

Malware Removal

The MSIL/DllInject.BAC potentially unsafe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/DllInject.BAC potentially unsafe virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSIL/DllInject.BAC potentially unsafe?


File Info:

name: EEFA17BDA5F03345F2C0.mlw
path: /opt/CAPEv2/storage/binaries/585a0c118d817447a7209bbf708e5532a2cad54fd1c3360000b122aea0b3ecc9
crc32: 1EB46970
md5: eefa17bda5f03345f2c0ea67915f889d
sha1: 98a5f3def2509ad78ca320eeba65471283d8324d
sha256: 585a0c118d817447a7209bbf708e5532a2cad54fd1c3360000b122aea0b3ecc9
sha512: 71601582fadfc18a17c5b868ac4340274a2e9c252bb750817bd8c8ed866128b2ac1926dcda3790e6128d22047de1df2eabde50334fd2fc57b84683b92b43e726
ssdeep: 384:b6twSV0P/M8GiJaEerCCaFlJO4gsjjjs4w3AX32VKOyR3gcBc9sdhgJL6r08bYWJ:+S3lGiJaEefaFlXCIiMKqyxael0R
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B834C180DA10D60DE239EAF7C3E1EEC42AD62BD8BD1584B65B5A2F950B2431C15F05BF
sha3_384: 15e889840652646f0e8810692f0f81cf4787a09282f793b6c6863d11955fe5fca2885105aa34740e57f93383c395f17d
ep_bytes: ff2500204000280029007b007d005b00
timestamp: 2021-10-22 20:58:55

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: TunaPloit
FileVersion: 1.0.0.0
InternalName: TunaPloit.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: TunaPloit.exe
ProductName: TunaPloit
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/DllInject.BAC potentially unsafe also known as:

MicroWorld-eScanTrojan.GenericKD.38247519
FireEyeTrojan.GenericKD.38247519
McAfeeArtemis!EEFA17BDA5F0
CylanceUnsafe
K7AntiVirusUnwanted-Program ( 0058ace71 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/DllInject.BAC potentially unsafe
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.38247519
AvastWin32:Malware-gen
Ad-AwareTrojan.GenericKD.38247519
EmsisoftTrojan.GenericKD.38247519 (B)
McAfee-GW-EditionArtemis
SophosGeneric PUA JI (PUA)
GDataTrojan.GenericKD.38247519
MAXmalware (ai score=86)
GridinsoftRansom.Win32.Sabsik.sa
APEXMalicious
CynetMalicious (score: 100)
SentinelOneStatic AI – Suspicious PE
FortinetAdware/DllInject
AVGWin32:Malware-gen

How to remove MSIL/DllInject.BAC potentially unsafe?

MSIL/DllInject.BAC potentially unsafe removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment