Malware

MSIL/DllInject.BBG potentially unsafe (file analysis)

Malware Removal

The MSIL/DllInject.BBG potentially unsafe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/DllInject.BBG potentially unsafe virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSIL/DllInject.BBG potentially unsafe?


File Info:

name: BE6E8E02C1A42191DD3C.mlw
path: /opt/CAPEv2/storage/binaries/1e5ad39e5e4f5890507879381b599d61e118bbcfc49bfcab488c7ce8b5448bdc
crc32: 816ACC3C
md5: be6e8e02c1a42191dd3c73f4c0e3b730
sha1: 21bcf9c3e0b0aaff323188f659d7a52c01649e74
sha256: 1e5ad39e5e4f5890507879381b599d61e118bbcfc49bfcab488c7ce8b5448bdc
sha512: 05dc10ba657048e59b4942c7f137f3e301cbf76052807510bd380256a391bbf56fa7560c10fdef0d7afa99652e14a11a5244031d107e4ea1a00e01429c60230b
ssdeep: 192:d1k1ePR+TR5leT2ot+w5fRIBBhR5JDP6xF4EKOM9wgCCCCCuJ0QGy3r:d1kaT2oZ5u5JDP6n4TFwgCCCCCu+QF3
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D452E8946BB8DB2BCC790BF108B3508103BAB6152532EE5E5CD524CF1E66B494223F9B
sha3_384: b2d56e93dbebda5110fd05b1d4887b7b4dc1c5991d78b5e27e12948cc156d50d51715651e6fb464dad89566f2b466ac1
ep_bytes: ff2500204000280029007b007d005b00
timestamp: 2064-05-18 06:24:02

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Exploits
FileVersion: 1.0.0.0
InternalName: Exploits.exe
LegalCopyright: Copyright © 2022
LegalTrademarks:
OriginalFilename: Exploits.exe
ProductName: Exploits
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/DllInject.BBG potentially unsafe also known as:

BkavW32.AIDetectNet.01
CynetMalicious (score: 100)
FireEyeTrojan.GenericKD.60051123
ALYacTrojan.GenericKD.60051123
CylanceUnsafe
SangforTrojan.Win32.Sabsik.FL
K7AntiVirusUnwanted-Program ( 00591f421 )
K7GWUnwanted-Program ( 00591f421 )
CrowdStrikewin/malicious_confidence_60% (W)
ESET-NOD32a variant of MSIL/DllInject.BBG potentially unsafe
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.60051123
MicroWorld-eScanTrojan.GenericKD.60051123
Ad-AwareTrojan.GenericKD.60051123
SophosGeneric PUA CB (PUA)
McAfee-GW-EditionArtemis
EmsisoftTrojan.GenericKD.60051123 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.GenericKD.60051123
ArcabitTrojan.Generic.D3944EB3
MicrosoftPUA:Win32/Puamson.A!ml
McAfeeArtemis!BE6E8E02C1A4
MAXmalware (ai score=81)
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/DllInject

How to remove MSIL/DllInject.BBG potentially unsafe?

MSIL/DllInject.BBG potentially unsafe removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment