Malware

Generic.Dacic.8952383F.A.C71C67AE (file analysis)

Malware Removal

The Generic.Dacic.8952383F.A.C71C67AE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.8952383F.A.C71C67AE virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine Generic.Dacic.8952383F.A.C71C67AE?


File Info:

name: 2A6600A537643408811C.mlw
path: /opt/CAPEv2/storage/binaries/f2db988798b523c09d702ef202407c180ed980419649d59a1cd2dc5ce5bd58f8
crc32: ABAC2EEF
md5: 2a6600a537643408811cc509f778aeb0
sha1: ff8a6dc0ccbc930dd1db50030aec5f08f6fc36f9
sha256: f2db988798b523c09d702ef202407c180ed980419649d59a1cd2dc5ce5bd58f8
sha512: 2fee6ff110540013424139d16c65ef10fb713d550ad734dd9135a94ef7803cee5b1b9fc457ac758b49aa6d66850db2ffe3fed9fb879942ea126cccdcdab243a7
ssdeep: 12288:CvBhXuWoFh/z86Jku3DfP+8RHfbFBQqk/GoVc02Y1ZKAfJpD+7/RjaBc:f1JnDfP+8xfJBb4QGvPqbRjau
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T131050151B0672BC9F3FDEDFAE4A4863CAC81C9C72B5F1796E4A10B0580A59B1BC5C358
sha3_384: 04ed7198c30c6b7dfe28873d037645583b9777d85f250320f15d4e1f1c127dafd9aa358698a976fd462a73dd2008efd3
ep_bytes: 642a2723347393a431a2aa35e3e5c28f
timestamp: 1970-01-01 00:00:00

Version Info:

Comments:
CompanyName: Microsoft
FileDescription: Host Process for Windows Services
Translation: 0x0409 0x04e4

Generic.Dacic.8952383F.A.C71C67AE also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
tehtrisGeneric.Malware
CynetMalicious (score: 100)
FireEyeGeneric.mg.2a6600a537643408
CAT-QuickHealTrojan.Skeeyah.J1
McAfeePacked-FJB!2A6600A53764
Cylanceunsafe
VIPREDeepScan:Generic.Dacic.8952383F.A.C71C67AE
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00574b221 )
AlibabaMalware:Win32/km_2ea51.None
K7GWTrojan ( 00574b221 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Kryptik.BQP.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HHBK
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Xcnfe-9870600-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderDeepScan:Generic.Dacic.8952383F.A.C71C67AE
NANO-AntivirusTrojan.Win32.FKM.foobnd
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanDeepScan:Generic.Dacic.8952383F.A.C71C67AE
AvastWin32:MalwareX-gen [Trj]
TencentTrojan.Win32.Kryptik.gify
SophosMal/Inject-GJ
F-SecureTrojan.TR/Crypt.FKM.Gen
DrWebTrojan.Packed2.41883
ZillyaTrojan.GenericGen.Win32.2
McAfee-GW-EditionBehavesLike.Win32.Dropper.cc
EmsisoftDeepScan:Generic.Dacic.8952383F.A.C71C67AE (B)
IkarusTrojan.Patched
GDataDeepScan:Generic.Dacic.8952383F.A.C71C67AE
JiangminTrojan.Generic.fpqpu
AviraTR/Crypt.FKM.Gen
MAXmalware (ai score=84)
Antiy-AVLTrojan/Win32.Kryptik.GIFY
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
ArcabitDeepScan:Generic.Dacic.8952383F.A.C71C67AE
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftVirTool:Win32/CeeInject.AKZ!bit
GoogleDetected
AhnLab-V3Malware/Win32.Generic.C2578679
Acronissuspicious
BitDefenderThetaAI:Packer.84E7B82D1B
ALYacDeepScan:Generic.Dacic.8952383F.A.C71C67AE
TACHYONTrojan/W32.Selfmod
VBA32Trojan.Khalesi
MalwarebytesCrypt.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.B34D (CLASSIC)
YandexTrojan.GenAsa!0xM7zILK7cg
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dacic.8952383F.A.C71C67AE?

Generic.Dacic.8952383F.A.C71C67AE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment