Malware

Dropped:Generic.Dacic.C35DC41E.A.194F596B information

Malware Removal

The Dropped:Generic.Dacic.C35DC41E.A.194F596B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Dropped:Generic.Dacic.C35DC41E.A.194F596B virus can do?

  • Sample contains Overlay data
  • Uses Windows utilities for basic functionality
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Binary compilation timestomping detected
  • Uses suspicious command line tools or Windows utilities
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Dropped:Generic.Dacic.C35DC41E.A.194F596B?


File Info:

name: 16918ED84743EEBD3D9D.mlw
path: /opt/CAPEv2/storage/binaries/35031736331a5d54b94bc623be57ef352cb46f0990674fb34a453323f99a4c00
crc32: 4A256460
md5: 16918ed84743eebd3d9d406ead0a348c
sha1: ba7dd394fae7ed028a6c20ae7874c2cc912500a5
sha256: 35031736331a5d54b94bc623be57ef352cb46f0990674fb34a453323f99a4c00
sha512: ede1dd6233e3cf9580e7dad9aa2211d4d95a227af844b4b17c8bc448d0d4948b6e5945a15dfce3254acaead99b50e915e1d48562659150c9976b9974cb274760
ssdeep: 768:KcezIbwMnU4JmmJ9R9iWYXasjZXA/MCrcioVLGq6jK:K7iwMUdKZiesj9n9iMLGq6jK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CA03F19E675508D2F0B8CFBE8F2C9503E837775C61A5EB4A2423F60F4C623A9A444791
sha3_384: a1e22d854e9e9abacad62fa3969aa33ef9a5f8a38ad7120ce15238efe47b62ee2810542446bdbf49f48af169685c5a18
ep_bytes: 60be00d040008dbe0040ffff5783cdff
timestamp: 2033-06-15 13:22:36

Version Info:

CompanyName:
FileDescription: DlgServer Microsoft 基础类应用程序
FileVersion: 1, 0, 0, 1
InternalName: DlgServer
LegalCopyright: 版权所有 (C) 2011
LegalTrademarks:
OriginalFilename: DlgServer.EXE
ProductName: DlgServer 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Dropped:Generic.Dacic.C35DC41E.A.194F596B also known as:

BkavW32.AIDetectMalware
Elasticmalicious (moderate confidence)
MicroWorld-eScanDropped:Generic.Dacic.C35DC41E.A.194F596B
FireEyeGeneric.mg.16918ed84743eebd
SkyhighBehavesLike.Win32.CoinMiner.nc
McAfeeGeneric PWS.vv
MalwarebytesMachineLearning/Anomalous.100%
ZillyaTrojan.OnLineGames.Win32.105853
SangforTrojan.Win32.Save.a
K7AntiVirusPassword-Stealer ( 000250261 )
BitDefenderDropped:Generic.Dacic.C35DC41E.A.194F596B
K7GWPassword-Stealer ( 000250261 )
Cybereasonmalicious.4fae7e
BaiduWin32.Trojan-Dropper.Dycler.a
SymantecInfostealer.Gampass
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/PSW.OnLineGames.PIR
APEXMalicious
ClamAVWin.Malware.Onlinegames-7647999-0
KasperskyTrojan-GameThief.Win32.OnLineGames.ajscz
NANO-AntivirusTrojan.Win32.Gamania.evhvb
RisingStealer.OnlineGames!1.65EB (CLOUD)
EmsisoftDropped:Generic.Dacic.C35DC41E.A.194F596B (B)
F-SecureTrojan.TR/PSW.Lolyda.BY
DrWebTrojan.PWS.Gamania.30164
VIPREDropped:Generic.Dacic.C35DC41E.A.194F596B
TrendMicroTROJ_RVERSE.SMI
Trapminemalicious.moderate.ml.score
SophosTroj/Vakooja-Q
SentinelOneStatic AI – Suspicious PE
MAXmalware (ai score=89)
JiangminTrojan/Generic.vksb
GoogleDetected
AviraTR/PSW.Lolyda.BY
VaristW32/Agent.JT.gen!Eldorado
Antiy-AVLTrojan[GameThief]/Win32.OnLineGames
Kingsoftmalware.kb.b.949
MicrosoftTrojan:Win32/Wacatac.B!ml
XcitiumTrojWare.Win32.PSW.GamePass.AHD@4l3ra2
ArcabitGeneric.Dacic.C35DC41E.A.194F596B
ZoneAlarmVHO:Trojan-GameThief.Win32.OnLineGames.gen
GDataDropped:Generic.Dacic.C35DC41E.A.194F596B
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.OnlineGameHack.R3318
BitDefenderThetaAI:Packer.B099BD541F
ALYacDropped:Generic.Dacic.C35DC41E.A.194F596B
DeepInstinctMALICIOUS
VBA32BScope.Trojan.Dynamer
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_RVERSE.SMI
IkarusTrojan-GameThief.Win32.OnLineGames
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/OnLineGames.PIR!tr.pws
AVGWin32:Agent-AMTO [Spy]
AvastWin32:Agent-AMTO [Spy]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Dropped:Generic.Dacic.C35DC41E.A.194F596B?

Dropped:Generic.Dacic.C35DC41E.A.194F596B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment