Malware

Generic.Dacic.94CCEEA9.A.860327B8 (file analysis)

Malware Removal

The Generic.Dacic.94CCEEA9.A.860327B8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.94CCEEA9.A.860327B8 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Deletes executed files from disk
  • Anomalous binary characteristics

How to determine Generic.Dacic.94CCEEA9.A.860327B8?


File Info:

name: D3409FF9FF2A8175888E.mlw
path: /opt/CAPEv2/storage/binaries/6180090523f83c2bfc4243c76d8fc49ee708112183fb5681cf85fc30d00217b2
crc32: 96897EFC
md5: d3409ff9ff2a8175888e56d317ed5260
sha1: 051c4b97cc021bf345db5a4a3edcc3552184d6c3
sha256: 6180090523f83c2bfc4243c76d8fc49ee708112183fb5681cf85fc30d00217b2
sha512: 5ca4d2c24484c025e47f043c3144cae623d4fd4a47184a8e303a113b443f5f74a74b83a287e199b6728eda4b73b1453f94a481c9c2aaddd4b287024ef04057b6
ssdeep: 3072:QFq7oXlIStlBR9Y3k0/KrfKkAF83E9n7OgxmqBKxVlPBeFt:QFuozXBRWkqKrf25wTVlPBeF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T157048F629971BB16E915097817A06BFA001D3C2F47E9030DBCADDE5F3353DAA34AF942
sha3_384: 10a8556ee16ea512d918397aa6e2f79d745cae9b2e5a212ee16574a2d84f8d29d551ee552045328d80104b4cb3a24c89
ep_bytes: 68c0914200e8f0ffffffcd0000000000
timestamp: 2019-01-12 12:27:37

Version Info:

Translation: 0x0804 0x04b0
CompanyName: aaaa
ProductName: Kawaii娭Unicorn
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Kawaii-Unicorn
OriginalFilename: Kawaii-Unicorn.exe

Generic.Dacic.94CCEEA9.A.860327B8 also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.VB.tpHc
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.94CCEEA9.A.860327B8
FireEyeGeneric.mg.d3409ff9ff2a8175
CAT-QuickHealTrojan.VBClone.S6370754
McAfeeGenericRXHC-SS!D3409FF9FF2A
CylanceUnsafe
ZillyaTrojan.VBGen.Win32.1
SangforSuspicious.Win32.Save.vb
K7AntiVirusP2PWorm ( 0054601e1 )
AlibabaTrojanDropper:Win32/Muldrop.85a90d10
K7GWP2PWorm ( 0054601e1 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Banker1.BRRU
CyrenW32/S-1ce64e4a!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/VBClone.E
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Generic-9967832-0
KasperskyTrojan.Win32.VB.dosp
BitDefenderGeneric.Dacic.94CCEEA9.A.860327B8
NANO-AntivirusTrojan.Win32.Banker1.fnwqkb
ViRobotTrojan.Win32.Z.Midie.188633.E
AvastWin32:VB-AJKU [Trj]
TencentTrojan.Win32.Wacatac.yaw
Ad-AwareGeneric.Dacic.94CCEEA9.A.860327B8
EmsisoftGeneric.Dacic.94CCEEA9.A.860327B8 (B)
ComodoTrojWare.Win32.VBClone.B@88ji29
DrWebTrojan.PWS.Banker1.29530
VIPREGeneric.Dacic.94CCEEA9.A.860327B8
TrendMicroTROJ_GEN.R002C0DIJ22
McAfee-GW-EditionGenericRXHC-SS!D3409FF9FF2A
SophosMal/Generic-R + Troj/VB-KAS
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.17C6NRF
JiangminTrojan.VB.aqyg
GoogleDetected
AviraTR/Dropper.Gen5
MAXmalware (ai score=83)
Antiy-AVLTrojan/Generic.ASBOL.C594
SUPERAntiSpywareTrojan.Agent/Generic
MicrosoftTrojanDropper:Win32/Muldrop.V!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R252862
Acronissuspicious
BitDefenderThetaAI:Packer.F8623B2520
ALYacGeneric.Dacic.94CCEEA9.A.860327B8
VBA32SScope.Trojan.VB
MalwarebytesMalware.AI.2186998604
TrendMicro-HouseCallTROJ_GEN.R002C0DIJ22
RisingTrojan.VBClone!1.E032 (CLASSIC)
YandexTrojan.GenAsa!szPELjCFIKg
IkarusTrojan.VB.VBClone
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBClone.D!tr
AVGWin32:VB-AJKU [Trj]
Cybereasonmalicious.9ff2a8
PandaTrj/Genetic.gen

How to remove Generic.Dacic.94CCEEA9.A.860327B8?

Generic.Dacic.94CCEEA9.A.860327B8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment