Malware

Generic.Dacic.94CCEEA9.A.4728E86F (B) (file analysis)

Malware Removal

The Generic.Dacic.94CCEEA9.A.4728E86F (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.94CCEEA9.A.4728E86F (B) virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.Dacic.94CCEEA9.A.4728E86F (B)?


File Info:

name: C89D3FF79EF26D81229E.mlw
path: /opt/CAPEv2/storage/binaries/29e8273f0be70657b971434e8ad12dd59bf97b8fb16d707886684d0faf3aec97
crc32: 8A70C82C
md5: c89d3ff79ef26d81229e1d574b472920
sha1: 32945b1c8806b37fd442ff30370388d6a0bfc8a8
sha256: 29e8273f0be70657b971434e8ad12dd59bf97b8fb16d707886684d0faf3aec97
sha512: 2c057742fa2e184aa6225b9d4c26e3ff81e888f1ecda1f235dbf664be5fd6bc7e625044611a18f5fd2057c994e146bcd3b9bc2916a0192859774c41e7ed80dd6
ssdeep: 3072:tgkJUfo1R3tW2RVrUQZmjHuQI+dJYVWAvjFvD5kfBiE7cPPOFFY:tgxoVtRVLmruQIB7kd7cPPOF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119048F628970BB16E915093517A06BEA401D3C2F4BE9030DBCADDE4F3353DAB34AF942
sha3_384: 9afd95458269267703f087a6ac7245b88fb9a42b26925f584e179a01f6ecfe442349d143f51445be6d07fdde3b257630
ep_bytes: 68c0914200e8f0ffffff000000000000
timestamp: 2019-01-12 12:27:37

Version Info:

Translation: 0x0804 0x04b0
CompanyName: aaaa
ProductName: Kawaii-Unicorn
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Kawaii-Unicorn
OriginalFilename: Kawaii-Unicorn.exe

Generic.Dacic.94CCEEA9.A.4728E86F (B) also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGeneric.Dacic.94CCEEA9.A.4728E86F
ClamAVWin.Malware.Midie-6847892-0
FireEyeGeneric.mg.c89d3ff79ef26d81
ALYacGeneric.Dacic.94CCEEA9.A.4728E86F
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 004d83031 )
K7GWTrojan ( 004d83031 )
Cybereasonmalicious.79ef26
BitDefenderThetaAI:Packer.3C63DE941F
VirITTrojan.Win32.Banker1.BRRU
CyrenW32/S-f82eff59!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/VBClone.D
CynetMalicious (score: 100)
KasperskyTrojan.Win32.VB.dosb
BitDefenderGeneric.Dacic.94CCEEA9.A.4728E86F
NANO-AntivirusTrojan.Win32.VB.fmvqeg
AvastWin32:VB-AJKU [Trj]
TencentTrojan.Win32.Vb.b
Ad-AwareGeneric.Dacic.94CCEEA9.A.4728E86F
EmsisoftGeneric.Dacic.94CCEEA9.A.4728E86F (B)
ComodoTrojWare.Win32.VBClone.B@88ji29
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.MulDrop17.61497
VIPREGeneric.Dacic.94CCEEA9.A.4728E86F
McAfee-GW-EditionGenericRXHC-SS!C89D3FF79EF2
SophosML/PE-A + Troj/VB-KCP
IkarusTrojan.VB.VBClone
GDataWin32.Trojan.PSE.1FY1FUT
JiangminTrojan.VB.aqyg
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=81)
Antiy-AVLGrayWare/Win32.VP2.a
ArcabitGeneric.Dacic.94CCEEA9.A.4728E86F
ZoneAlarmTrojan.Win32.VB.dosb
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R252862
McAfeeGenericRXHC-SS!C89D3FF79EF2
VBA32SScope.Trojan.VB
MalwarebytesMalware.AI.2186998604
APEXMalicious
RisingTrojan.VBClone!1.B5C7 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Barys.AU!tr
AVGWin32:VB-AJKU [Trj]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Generic.Dacic.94CCEEA9.A.4728E86F (B)?

Generic.Dacic.94CCEEA9.A.4728E86F (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment