Malware

MSIL/DllInject.II potentially unsafe removal

Malware Removal

The MSIL/DllInject.II potentially unsafe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/DllInject.II potentially unsafe virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSIL/DllInject.II potentially unsafe?


File Info:

name: 28620B9CDAEECCC47875.mlw
path: /opt/CAPEv2/storage/binaries/437c65e61fc32927cc554402981f3f414f245fa9a42ba5debffb7b6f2e933fa1
crc32: CCCBA4CE
md5: 28620b9cdaeeccc47875f911f68ee254
sha1: 522b2766d2fbdd59239ad0d9f509c685b95c9f94
sha256: 437c65e61fc32927cc554402981f3f414f245fa9a42ba5debffb7b6f2e933fa1
sha512: 3d034eb7ae49ae75ee525034a71c96bf7d8cd6350616b59f21bd15f71d7058004a1855175a27bfd62db528e3bdd77c4095e5c13a6ecec494da801641a9d391f6
ssdeep: 384:h6a9OTDYx3a3y2WbdbGLhwXdrqhtl/B1yOt/Xy6fPDRBxc9z/i6sptYcFOKc03K:hj9UDYx3Xbd2YK/SOtvyU3y1YtYcFOKY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17FA2385102D4C231C67916B6DDA387F19B76ED0AC80A9FAB399C7C1E3FB361183532A1
sha3_384: 1225eb743f3cc8ec8aec491f0ffad883e58ce7a0648ba6e89df19523db04360912f8c2ebd4e4c845017446c686ab3773
ep_bytes: ff250020400000000000000000000000
timestamp: 2018-08-26 12:41:25

Version Info:

Translation: 0x0000 0x04b0
Comments: patcher_cf2
CompanyName: patcher_cf2
FileDescription: patcher_cf2
FileVersion: 1.0.0.0
InternalName: patcher_cf.exe
LegalCopyright: Copyright © 2013
LegalTrademarks: patcher_cf2
OriginalFilename: patcher_cf.exe
ProductName: EzInject
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/DllInject.II potentially unsafe also known as:

BkavW32.AIDetectMalware.CS
SkyhighArtemis!Trojan
McAfeeRDN/Generic.dx
Cylanceunsafe
ZillyaTrojan.DllInject.Win32.12700
SangforTrojan.Win32.Save.a
Cybereasonmalicious.6d2fbd
BitDefenderThetaGen:NN.ZemsilCO.36680.bm0@aWblm7o
ESET-NOD32a variant of MSIL/DllInject.II potentially unsafe
AvastWin32:Malware-gen
SophosGeneric Reputation PUA (PUA)
IkarusTrojan-Spy.Agent
Antiy-AVLRiskWare/MSIL.DllInject
Kingsoftmalware.kb.c.945
XcitiumMalware@#3p7tdduvakhma
MalwarebytesGeneric.Malware/Suspicious
RisingPUA.DllInject!8.6CC (CLOUD)
YandexRiskware.Agent!aO/Lo2v+EiU
MaxSecureTrojan.Malware.109035872.susgen
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)

How to remove MSIL/DllInject.II potentially unsafe?

MSIL/DllInject.II potentially unsafe removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment