Categories: Malware

Generic.Dacic.94CCEEA9.A.9DFC6159 (B) removal guide

The Generic.Dacic.94CCEEA9.A.9DFC6159 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.94CCEEA9.A.9DFC6159 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.Dacic.94CCEEA9.A.9DFC6159 (B)?


File Info:

name: C25630E48EC5B7D751F1.mlwpath: /opt/CAPEv2/storage/binaries/93d6fe6cb06dd3a249cf05808f2666b2dc1683aa58750d0bc9cb9a66abc52a2ecrc32: CC36B2CBmd5: c25630e48ec5b7d751f16d409e94cb71sha1: ba713d272d863e53f118755bad0c2aef233b3135sha256: 93d6fe6cb06dd3a249cf05808f2666b2dc1683aa58750d0bc9cb9a66abc52a2esha512: 05e31d649c753bdb7f507dab5996693b11632e2124699b904ae613e71e1236401a674308bbd9ef3be0973c440dddbaefe2f21d6941041736170d925a2654ea89ssdeep: 3072:7F2l9SoYHebx2HoNWsnGgGuXIqOuMFNIT+2SO5/JUDpBlfVOFLn/:7FzojEHoVGTuXI4iCEBlfVOFLtype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T16A04806299B0BB16E915497517A02BFA001D3C2F47E5030DBCAEDE5B3353DAA34AFD42sha3_384: 73f490d73d3c6afc0285af9f78a487638921dfba812f5106e189bf045454b051de0598b336ca5612b2f17f5a90e9c6fcep_bytes: 68c0914200e8f0ffffffcd0000000000timestamp: 2019-01-12 12:27:37

Version Info:

Translation: 0x0804 0x04b0CompanyName: aaaaProductName: Kawaii-UnicornFileVersion: 1.00ProductVersion: 1.00InternalName: Kawaii-UnicornOriginalFilename: Kawaii-Unicorn.exe

Generic.Dacic.94CCEEA9.A.9DFC6159 (B) also known as:

Bkav W32.AIDetect.malware1
Elastic malicious (high confidence)
DrWeb Trojan.MulDrop17.61497
MicroWorld-eScan Generic.Dacic.94CCEEA9.A.9DFC6159
FireEye Generic.mg.c25630e48ec5b7d7
ALYac Generic.Dacic.94CCEEA9.A.9DFC6159
Malwarebytes Malware.AI.2472914881
VIPRE Generic.Dacic.94CCEEA9.A.9DFC6159
Sangfor Suspicious.Win32.Save.vb
K7AntiVirus P2PWorm ( 00581a9e1 )
K7GW P2PWorm ( 005499db1 )
Cybereason malicious.48ec5b
BitDefenderTheta AI:Packer.C2A4C2A61D
VirIT Trojan.Win32.Banker1.BRRU
Cyren W32/VB_Troj.J.gen!Eldorado
Symantec ML.Attribute.HighConfidence
ESET-NOD32 a variant of Win32/VBClone.D
APEX Malicious
Avast Win32:VB-AJKU [Trj]
ClamAV Win.Trojan.Generic-9959068-0
Kaspersky Trojan.Win32.VB.dosp
BitDefender Generic.Dacic.94CCEEA9.A.9DFC6159
NANO-Antivirus Trojan.Win32.Banker1.gmmecy
SUPERAntiSpyware Trojan.Agent/Gen-Zusy
Tencent Trojan.Win32.Wacatac.yaw
Ad-Aware Generic.Dacic.94CCEEA9.A.9DFC6159
Sophos ML/PE-A + Mal/VB-AQT
McAfee-GW-Edition GenericRXHC-SS!C25630E48EC5
Emsisoft Generic.Dacic.94CCEEA9.A.9DFC6159 (B)
Jiangmin Trojan.VB.aqyg
Google Detected
Avira TR/Crypt.XPACK.Gen
Antiy-AVL Trojan/Generic.ASBOL.C594
Arcabit Generic.Dacic.94CCEEA9.A.9DFC6159
GData Win32.Trojan.PSE.11JHPJJ
Cynet Malicious (score: 100)
AhnLab-V3 Trojan/Win32.Agent.R252862
McAfee GenericRXHC-SS!C25630E48EC5
MAX malware (ai score=88)
VBA32 SScope.Trojan.VB
Rising Trojan.VBClone!1.E032 (CLASSIC)
SentinelOne Static AI – Malicious PE
MaxSecure Trojan.Malware.121218.susgen
Fortinet W32/VBClone.D!tr
AVG Win32:VB-AJKU [Trj]

How to remove Generic.Dacic.94CCEEA9.A.9DFC6159 (B)?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Go For Files (PUA) information

The Go For Files (PUA) is considered dangerous by lots of security experts. When this…

3 mins ago

About “TrojanDownloader:Win32/VB.ZJ” infection

The TrojanDownloader:Win32/VB.ZJ is considered dangerous by lots of security experts. When this infection is active,…

3 mins ago

Win32:ExpressDload-AH [PUP] malicious file

The Win32:ExpressDload-AH [PUP] is considered dangerous by lots of security experts. When this infection is…

3 mins ago

Win32/SimpleFiles.A potentially unwanted removal guide

The Win32/SimpleFiles.A potentially unwanted is considered dangerous by lots of security experts. When this infection…

8 mins ago

Trojan.Win32.Agent.xbocpk malicious file

The Trojan.Win32.Agent.xbocpk is considered dangerous by lots of security experts. When this infection is active,…

9 mins ago

How to remove “Trojan.Win32.Cossta.ahjt”?

The Trojan.Win32.Cossta.ahjt is considered dangerous by lots of security experts. When this infection is active,…

18 mins ago