Malware

What is “Dropped:Generic.Dacic.93C8AA58.A.0BBDB3B9”?

Malware Removal

The Dropped:Generic.Dacic.93C8AA58.A.0BBDB3B9 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Generic.Dacic.93C8AA58.A.0BBDB3B9 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Korean
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk

How to determine Dropped:Generic.Dacic.93C8AA58.A.0BBDB3B9?


File Info:

name: BFAC86F25729C37FC3A2.mlw
path: /opt/CAPEv2/storage/binaries/1606099a6965b93a38e5e1a27320c5bbc866dfc348cff970f8c1d8079dd14f72
crc32: 50654755
md5: bfac86f25729c37fc3a2cda354e86aab
sha1: 4255c1882e8417ec9175196241931bee5df09363
sha256: 1606099a6965b93a38e5e1a27320c5bbc866dfc348cff970f8c1d8079dd14f72
sha512: ac296b7e398af790ef5719cb05604a97629fa7ab9ee47f57c4df2a96037f438dbcd3cc159cf5cf94208787d7c0d4acf88c6bb7b6024ccde94ce835388e0ada47
ssdeep: 6144:HMxmPEwO0l5rLuuAVvwBGwTV2qZcDJphestvyiucHU2fth8ZQtNopewS:HMxqO0l5rCuAuB94q6Dom/7HUqtCZKX1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T164D4BF216240C039F3A6073589A6E6F459687D392794E48FF3687E7A5B312D79A3330F
sha3_384: d93747299bf0ac47c93788ad11e82883005283d12f2130ea2ed1f96ccbe195e7992f6a93a7a16f262bb1ba3c035bafce
ep_bytes: e8b6720000e979feffff8bff558bec81
timestamp: 2013-09-20 17:27:35

Version Info:

0: [No Data]

Dropped:Generic.Dacic.93C8AA58.A.0BBDB3B9 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebTrojan.DownLoader10.24944
MicroWorld-eScanDropped:Generic.Dacic.93C8AA58.A.0BBDB3B9
ClamAVWin.Malware.Urelas-9655843-0
FireEyeGeneric.mg.bfac86f25729c37f
CAT-QuickHealTrojan.Gupboot.G.mue
SkyhighBehavesLike.Win32.Corrupt.jm
McAfeeCorrupt-FY!BFAC86F25729
MalwarebytesGeneric.Malware.AI.DDS
VIPREDropped:Generic.Dacic.93C8AA58.A.0BBDB3B9
SangforTrojan.Win32.Save.a
K7AntiVirusBackdoor ( 0053e8561 )
K7GWTrojan ( 004bb7de1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitGeneric.Dacic.93C8AA58.A.0BBDB3B9
BitDefenderThetaGen:NN.ZexaF.36792.NmX@aiH!18jO
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Urelas.S
APEXMalicious
CynetMalicious (score: 100)
KasperskyVHO:Backdoor.Win32.Plite.gen
BitDefenderDropped:Generic.Dacic.93C8AA58.A.0BBDB3B9
NANO-AntivirusTrojan.Win32.Urelas.elodpz
SUPERAntiSpywareTrojan.Agent/Gen-Urelas
AvastWin32:Dropper-NEN [Drp]
TencentTrojan.Win32.Urelas.16000132
SophosTroj/Urelas-Q
F-SecureHeuristic.HEUR/AGEN.1366760
BaiduWin32.Rootkit.Agent.s
ZillyaTrojan.Urelas.Win32.42979
Trapminemalicious.high.ml.score
EmsisoftDropped:Generic.Dacic.93C8AA58.A.0BBDB3B9 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Generic.aaoe
AviraHEUR/AGEN.1366760
MAXmalware (ai score=80)
Antiy-AVLTrojan[Downloader]/Win32.Urelas.ab
Kingsoftmalware.kb.a.999
XcitiumTrojWare.Win32.Urelas.DAQ@5qwr5f
MicrosoftTrojan:Win32/Urelas.AA
ZoneAlarmVHO:Backdoor.Win32.Plite.gen
GDataWin32.Trojan.PSE1.192WKOR
VaristW32/Urelas.E.gen!Eldorado
AhnLab-V3Malware/Win32.RL_Generic.R280147
Acronissuspicious
ALYacDropped:Generic.Dacic.93C8AA58.A.0BBDB3B9
VBA32BScope.Trojan.AVKill
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Gupboot!1.9CEA (CLASSIC)
YandexTrojan.GenAsa!8tmxzAnNpCU
IkarusTrojan.Win32.Gupboot
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Urelas.U!tr
AVGWin32:Dropper-NEN [Drp]
Cybereasonmalicious.82e841
DeepInstinctMALICIOUS

How to remove Dropped:Generic.Dacic.93C8AA58.A.0BBDB3B9?

Dropped:Generic.Dacic.93C8AA58.A.0BBDB3B9 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment