Malware

Generic.Dacic.49348E91.A.7B0B33CC (file analysis)

Malware Removal

The Generic.Dacic.49348E91.A.7B0B33CC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.49348E91.A.7B0B33CC virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to disable UAC
  • Attempts to modify UAC prompt behavior

How to determine Generic.Dacic.49348E91.A.7B0B33CC?


File Info:

name: 08058D9988B1CC99C1B8.mlw
path: /opt/CAPEv2/storage/binaries/274d7441e25593b20c095a4c153373c204f8ef4372bced5d00501b1616006604
crc32: 943B10C0
md5: 08058d9988b1cc99c1b881153f8182e0
sha1: e00c7b09cad695f0b9f11e64e8859a393d5d3be9
sha256: 274d7441e25593b20c095a4c153373c204f8ef4372bced5d00501b1616006604
sha512: 2f89aa370743249287db47a803f1e778fe64dfe9507a0a5eb41d03838b014587d8b56dba148e3ab7b58a7afc4fe8270a28f58e9bef1a19fdf9dc9294ddbdcf7a
ssdeep: 6144:Z3ue8ySm8hQAAIfFrRXuEE+0l97mKwKSqHVV86JQPDHDdx/Qtqa:D/zkFF+EExZmKbSuVVPJQPDHvd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T162A5CF3AB7C1CCB2C485803176959F136DF5AC300261AA6BDB64DE092EF61E5D72A34F
sha3_384: 07dc710dfafe5ca91474ae7b8cb6edb46609c726bf092b1f1c2f024c682a7d041e542c854c17065acf3bd5ec4903157f
ep_bytes: 6a6068f0b74200e8edf7ffffbf940000
timestamp: 2006-12-09 03:26:46

Version Info:

0: [No Data]

Generic.Dacic.49348E91.A.7B0B33CC also known as:

BkavW32.FxcaxMMUqhATTc.Worm
DrWebTrojan.Siggen.36621
MicroWorld-eScanGeneric.Dacic.49348E91.A.7B0B33CC
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGeneric.Dacic.49348E91.A.7B0B33CC
CylanceUnsafe
ZillyaTrojan.Vilsel.Win32.2602
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 003da8d71 )
K7GWTrojan ( 003da8d71 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.34726.coW@auFEbbi
VirITTrojan.Win32.Generic.SXQ
CyrenW32/Risk.BZSN-6837
SymantecW32.Pykspa.D
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.Agent.TG
APEXMalicious
ClamAVWin.Worm.Pykspa-1
KasperskyTrojan-Ransom.Win32.Blocker.jcen
BitDefenderGeneric.Dacic.49348E91.A.7B0B33CC
NANO-AntivirusTrojan.Win32.Agent.ctkmgw
SUPERAntiSpywareWorm.SkypeBot
AvastWin32:Renos-KY [Trj]
TencentWorm.Win32.Pykspa.a
Ad-AwareGeneric.Dacic.49348E91.A.7B0B33CC
EmsisoftGeneric.Dacic.49348E91.A.7B0B33CC (B)
ComodoWorm.Win32.Autorun.Agent_TG0@1isiwy
F-SecureTrojan-Downloader:W32/Renos.gen!T
BaiduWin32.Worm.Autorun.o
VIPREGeneric.Dacic.49348E91.A.7B0B33CC
TrendMicroWORM_AUTORUN_EK040404.UVPM
McAfee-GW-EditionBehavesLike.Win32.Dropper.vz
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.08058d9988b1cc99
SophosML/PE-A + W32/Pykse-F
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.BSE.1JWSKP9
JiangminTrojan/Blocker.lhz
WebrootW32.Trojan.Vilsel.Gen
GoogleDetected
AviraTR/Agent.327680.A
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.AntiAV
ArcabitGeneric.Dacic.49348E91.A.7B0B33CC
ViRobotTrojan.Win32.Blocker.Gen.B
ZoneAlarmTrojan-Ransom.Win32.Blocker.jcen
MicrosoftTrojan:Win32/Dinwod.A!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Zepfod.R4378
McAfeeW32/Pykse.worm.gen.a
TACHYONRansom/W32.Blocker.2142208
VBA32Trojan.ChidikSun.28205
MalwarebytesGeneric.Worm.Agent.DDS
TrendMicro-HouseCallWORM_AUTORUN_EK040404.UVPM
RisingWorm.Autorun!1.BC87 (CLASSIC)
YandexTrojan.GenAsa!R41E4MI3PTc
IkarusTrojan.Win32.AntiAV
MaxSecureTrojan.Ransom.Blocker.iprw
FortinetW32/Agent.XEK!tr
AVGWin32:Renos-KY [Trj]
Cybereasonmalicious.988b1c
PandaTrj/Vilsel.B

How to remove Generic.Dacic.49348E91.A.7B0B33CC?

Generic.Dacic.49348E91.A.7B0B33CC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment