Malware

Should I remove “Generic.Dacic.49348E91.A.EFBBDE89”?

Malware Removal

The Generic.Dacic.49348E91.A.EFBBDE89 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.49348E91.A.EFBBDE89 virus can do?

  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Attempts to disable UAC
  • Attempts to modify UAC prompt behavior
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.49348E91.A.EFBBDE89?


File Info:

name: 2878E74BCB86247A2B92.mlw
path: /opt/CAPEv2/storage/binaries/4911b01532a496900918d31ed372f2586ace7e65038349493180a917f10cff53
crc32: 1CCCC5C6
md5: 2878e74bcb86247a2b92fd33060330bd
sha1: f530d25538357a7491565e377ab5c18775289aa6
sha256: 4911b01532a496900918d31ed372f2586ace7e65038349493180a917f10cff53
sha512: 481b7a89d5a61e6f98127573234dd8854e5768430a77db50a380ab9c22342c4473402d0d2eb6e3114f4ca4598fa7328ab46856486bfd4131f1808d1bd8485ae0
ssdeep: 6144:wcFvrd1rWkNYiclkBw1x42dy8r1YAxycKhae86JQPDHDdx/QtqV:51dCicWy1xFc8r1NxZKhtPJQPDHvd
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17C26BE3677C0C8F1C4468035329AAF276EF5AC701564A69BD764CE092FF95E0E72A34B
sha3_384: bc54f0683c65562f3bc887e97939f7ccc8523463e78b02f0ed5fe559227c00f1febaa3bd074cb274072a0b8657c4d9ca
ep_bytes: 6a6068f0b74200e896f7ffffbf940000
timestamp: 2006-12-09 08:35:07

Version Info:

0: [No Data]

Generic.Dacic.49348E91.A.EFBBDE89 also known as:

BkavW32.AIDetectMalware
DrWebTrojan.DownLoader9.50363
MicroWorld-eScanGeneric.Dacic.49348E91.A.EFBBDE89
FireEyeGeneric.mg.2878e74bcb86247a
CAT-QuickHealWorm.Pykspa.C3
SkyhighBehavesLike.Win32.Dropper.rz
McAfeeW32/Pykse.worm.gen.a
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.49348E91.A.EFBBDE89
SangforSuspicious.Win32.Save.ins
K7AntiVirusTrojan ( 003da8d71 )
BitDefenderGeneric.Dacic.49348E91.A.EFBBDE89
K7GWTrojan ( 003da8d71 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaGen:NN.ZexaF.36792.@pW@aSiMKB
SymantecW32.Pykspa.D
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.Agent.TG
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Worm.Pykspa-9869413-0
KasperskyHEUR:Worm.Win32.Agent.gen
NANO-AntivirusTrojan.Win32.RMUT0758.efnmsy
RisingWorm.Autorun!1.BC87 (CLASSIC)
SophosW32/Pykse-F
F-SecureTrojan.TR/Crypt.XPACK.Gen
BaiduWin32.Worm.Autorun.o
ZillyaTrojan.Vilsel.Win32.3437
TrendMicroWORM_PYKSPA_EK160281.UVPM
Trapminemalicious.high.ml.score
EmsisoftGeneric.Dacic.49348E91.A.EFBBDE89 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Vilsel.bmz
WebrootW32.Trojan.Gen
VaristW32/Pykspa.A.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Vilsel
MicrosoftWorm:Win32/Pykspa.C
XcitiumTrojWare.Win32.Vilsel.Y@1v571n
ArcabitGeneric.Dacic.49348E91.A.EFBBDE89
ZoneAlarmHEUR:Worm.Win32.Agent.gen
GDataWin32.Trojan.BSE.1TBVG19
GoogleDetected
AhnLab-V3Trojan/Win32.Zepfod.R4378
Acronissuspicious
VBA32Trojan.Vilsel
ALYacGeneric.Dacic.49348E91.A.EFBBDE89
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Genetic.gen
ZonerTrojan.Win32.34350
TrendMicro-HouseCallWORM_PYKSPA_EK160281.UVPM
TencentTrojan.Win32.Vilsel.za
IkarusWorm.Win32.AutoRun
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/AutoRun.AGENT.AUA!tr
AVGWin32:Renos-KY [Trj]
Cybereasonmalicious.538357
AvastWin32:Renos-KY [Trj]

How to remove Generic.Dacic.49348E91.A.EFBBDE89?

Generic.Dacic.49348E91.A.EFBBDE89 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment