Malware

About “Generic.Dacic.0B66ABC5.A.E5EF630E” infection

Malware Removal

The Generic.Dacic.0B66ABC5.A.E5EF630E is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.0B66ABC5.A.E5EF630E virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Generic.Dacic.0B66ABC5.A.E5EF630E?


File Info:

name: C5093699D630AACE5272.mlw
path: /opt/CAPEv2/storage/binaries/c91e4d807a1478af422553079603dd3c1d26c56c875366c5c2608c4c7666c047
crc32: 7BDE66AF
md5: c5093699d630aace5272884ba3a213ad
sha1: 6851ac5c0e86dc39f8b9906b9373a48936cce959
sha256: c91e4d807a1478af422553079603dd3c1d26c56c875366c5c2608c4c7666c047
sha512: 9927ac2f512ffd7adbfb626ed920647c160b3e1eee8dfaa2d5665996cf8a3d39ba3050689e0216c6211c78aa1d9b715a111e6916749fdd1a56428d1f9b9e04fc
ssdeep: 3072:+yhtv20tQ9nLHbB9WJvA7DejJuKvEhfm:I4QxL7B9WSvejJuB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16B34E5937F36B445F86569306CFB86FA7783F84D4A0701475B30226A9EDBE322D24693
sha3_384: d1c80d82404ca7410029ceabe637ef08da55951271e0a75dc76edbc23fb48988b96987651e4f41384f7346377ec35ab7
ep_bytes: 6824124000e8eeffffff000000000000
timestamp: 2002-06-21 10:26:09

Version Info:

0: [No Data]

Generic.Dacic.0B66ABC5.A.E5EF630E also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGeneric.Dacic.0B66ABC5.A.E5EF630E
ClamAVWin.Trojan.Acnu-7601993-0
CAT-QuickHealTrojan.Beebone.D
McAfeeVBObfus.dv
MalwarebytesGeneric.Worm.AutoRun.DDS
VIPREGeneric.Dacic.0B66ABC5.A.E5EF630E
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 003c363a1 )
K7GWEmailWorm ( 003c363a1 )
Cybereasonmalicious.9d630a
BaiduWin32.Worm.VB.mf
VirITTrojan.Win32.Cryptor.H
CyrenW32/Vobfus.SP.gen!Eldorado
SymantecW32.Changeup
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.VB.AVF
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.VB.budw
BitDefenderGeneric.Dacic.0B66ABC5.A.E5EF630E
NANO-AntivirusTrojan.Win32.VB.rilpg
AvastWin32:VB-ADDH [Trj]
TencentTrojan.Win32.Vb.wb
EmsisoftGeneric.Dacic.0B66ABC5.A.E5EF630E (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner1.15097
TrendMicroTROJ_AGENT_037768.TOMB
McAfee-GW-EditionBehavesLike.Win32.VBObfus.dt
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.c5093699d630aace
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE1.ARBXVV
JiangminTrojan/VB.clfr
AviraTR/Dropper.Gen
MAXmalware (ai score=84)
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumTrojWare.Win32.VB.AVF@4ol6o1
ArcabitGeneric.Dacic.0B66ABC5.A.E5EF630E
ViRobotTrojan.Win32.A.VB.200704.H
ZoneAlarmTrojan.Win32.VB.budw
MicrosoftVirTool:Win32/VBInject.WX
GoogleDetected
AhnLab-V3Trojan/Win.VB.R560502
Acronissuspicious
BitDefenderThetaGen:NN.ZevbaF.36196.pqZ@aW6Pgvm
ALYacGeneric.Dacic.0B66ABC5.A.E5EF630E
TACHYONTrojan/W32.VB-Agent.245760.BS
VBA32SScope.Malware-Cryptor.VBCR.3042
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_AGENT_037768.TOMB
RisingWorm.Pronny!1.E3E8 (CLASSIC)
YandexTrojan.GenAsa!dMYWIGcmXQw
IkarusVirus.Win32.Cryptor
FortinetW32/VBObfus.AU!tr
AVGWin32:VB-ADDH [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.Dacic.0B66ABC5.A.E5EF630E?

Generic.Dacic.0B66ABC5.A.E5EF630E removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment