Malware

Generic.Dacic.467A5BC0.A.F5051F60 (file analysis)

Malware Removal

The Generic.Dacic.467A5BC0.A.F5051F60 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.467A5BC0.A.F5051F60 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.467A5BC0.A.F5051F60?


File Info:

name: 6E6EDF86CB789B753F38.mlw
path: /opt/CAPEv2/storage/binaries/1e4edb8e0b97f115a8a90cf8818744c7e7dc58a1228674ba6b581a666bc626ce
crc32: 0DF63A95
md5: 6e6edf86cb789b753f38d6893fe483a5
sha1: a7d342d5e5156e766f166816be8912ac0202df12
sha256: 1e4edb8e0b97f115a8a90cf8818744c7e7dc58a1228674ba6b581a666bc626ce
sha512: 828c975c32c94666fa5aeb1377264a015e89b9fcae87c0f4e2155a00ed5f4220a7c73a72e95cfeb14de6495a9aad252939f00b6b4dabf5b870df24e7d07074c1
ssdeep: 6144:8flfAMd4TlIJjiJcbI03GBc3ucY5DCSjX:8flfA84wGjSGecvX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F8747C04BAA4F0F6DD95047804EBAF36967EB4281726CBC3E354CE5D9A113C3A93469F
sha3_384: 73208ab0ffbfbba4357d985c9f55a6bd60d6b87c4b0091e583c0ee33a0947113f6095ae589488d8ab53a227b98bd2848
ep_bytes: e8692f0000e979feffff8bff558bec81
timestamp: 2012-07-12 02:56:49

Version Info:

FileDescription: ....................请点击允许,拒绝将无法使用!!!!!!!!!!!!!!!!!!!!!!!!!!!
FileVersion: 1, 0, 0, 1
InternalName: help
LegalCopyright: Copyright (C) 2012
OriginalFilename: no
ProductName: 辅助 应用程序
ProductVersion: 1, 0, 0, 1
Translation: 0x0804 0x04b0

Generic.Dacic.467A5BC0.A.F5051F60 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.Click2.32800
MicroWorld-eScanGeneric.Dacic.467A5BC0.A.F5051F60
CAT-QuickHealTrojan.Mauvaise.SL1
SkyhighBehavesLike.Win32.Generic.fh
McAfeeGenericRXAC-YK!6E6EDF86CB78
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.467A5BC0.A.F5051F60
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a81c81 )
BitDefenderGeneric.Dacic.467A5BC0.A.F5051F60
K7GWTrojan ( 005a81c81 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.58CAC2AE20
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Agent.PGA
APEXMalicious
ClamAVWin.Malware.Mikey-9949492-0
KasperskyUDS:Trojan.Win32.GenericML.xnet
AlibabaTrojan:Win32/Systex.2d2ce665
NANO-AntivirusTrojan.Win32.Invader.vxfyv
RisingTrojan.Agent!1.C16F (CLASSIC)
SophosMal/Generic-R
F-SecureTrojan.TR/Rogue.7909438
BaiduWin32.Rootkit.Agent.w
TrendMicroTROJ_GEN.R002C0DH523
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.6e6edf86cb789b75
EmsisoftGeneric.Dacic.467A5BC0.A.F5051F60 (B)
IkarusTrojan.SuspectCRC
MAXmalware (ai score=85)
JiangminTrojan/Invader.gje
GoogleDetected
AviraTR/Rogue.7909438
VaristW32/Pleh.A.gen!Eldorado
Antiy-AVLVirus/Win32.Expiro.ropf
MicrosoftTrojan:WinNT/Systex.A
XcitiumTrojWare.Win32.Clicker.naf@4qkqfk
ArcabitGeneric.Dacic.467A5BC0.A.F5051F60
SUPERAntiSpywareTrojan.Agent/GenericKD
ZoneAlarmUDS:Trojan.Win32.GenericML.xnet
GDataWin32.Trojan.PSE1.YSVY3N
CynetMalicious (score: 100)
AhnLab-V3Dropper/Win.YK.C5284538
Acronissuspicious
VBA32Rootkit.Agent
ALYacGeneric.Dacic.467A5BC0.A.F5051F60
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DH523
TencentTrojan.Win32.Nthook.a
SentinelOneStatic AI – Malicious PE
MaxSecureDropper.Daws.aumx
FortinetW32/Wacatac.B!tr
AVGWin32:Agent-AUSD [Rtk]
Cybereasonmalicious.5e5156
AvastWin32:Agent-AUSD [Rtk]

How to remove Generic.Dacic.467A5BC0.A.F5051F60?

Generic.Dacic.467A5BC0.A.F5051F60 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment