Malware

About “Generic.Dacic.94CCEEA9.A.D1C3B485” infection

Malware Removal

The Generic.Dacic.94CCEEA9.A.D1C3B485 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.94CCEEA9.A.D1C3B485 virus can do?

  • Sample contains Overlay data
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Generic.Dacic.94CCEEA9.A.D1C3B485?


File Info:

name: 2126F59A220D6523B525.mlw
path: /opt/CAPEv2/storage/binaries/8d558ce802c091b5172f559310b5778d4f8cc7c333a850341f0d376c67aa5317
crc32: 1D842BE2
md5: 2126f59a220d6523b52551b1605c968b
sha1: ba0ed95d62ff082c297e207d9ff7e71a957d2a6d
sha256: 8d558ce802c091b5172f559310b5778d4f8cc7c333a850341f0d376c67aa5317
sha512: dc41dfabb295218d7d60cc3fba29e20d0d2927751f3a667034f250d9f3059084f08ce15e898c0b6c405993923c836fc90a03fa0c79fa33e7896005702f344f46
ssdeep: 3072:k2/b5KoTtSRQ2HF16mNgiqAcikk1AATjDrrsn5kXBqCpcxAOFk:k2Ioi7HFZghAci//1rpcxAOF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D8048F628970BB16ED15093517A46BEA401D3C2F4BE9030DBCADDE5F3353DAA34AF942
sha3_384: f50a9c7190d6470c8ce38973f7f94627dda1299b26431908836f383196fb1b5881103fc521b8e172444a0da90a094d3b
ep_bytes: 68c0914200e8f0ffffff000000000000
timestamp: 2019-01-12 12:27:37

Version Info:

Translation: 0x0804 0x04b0
CompanyName: aaaa
ProductName: Kawaii-Unicor桮
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Kawaii-Unicorn
OriginalFilename: Kawaii-Unicorn.exe

Generic.Dacic.94CCEEA9.A.D1C3B485 also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGeneric.Dacic.94CCEEA9.A.D1C3B485
ClamAVWin.Malware.Midie-6847892-0
FireEyeGeneric.mg.2126f59a220d6523
CAT-QuickHealTrojan.MuldVMF.S21469993
ALYacGeneric.Dacic.94CCEEA9.A.D1C3B485
SangforSuspicious.Win32.Save.vb
K7AntiVirusP2PWorm ( 0054601e1 )
K7GWP2PWorm ( 0054601e1 )
Cybereasonmalicious.a220d6
VirITTrojan.Win32.Banker1.BRRU
CyrenW32/S-8ed456b2!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/VBClone.D
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.VB.dosb
BitDefenderGeneric.Dacic.94CCEEA9.A.D1C3B485
NANO-AntivirusTrojan.Win32.VB.fmvxlx
AvastWin32:VB-AJKU [Trj]
RisingTrojan.VBClone!1.B5C7 (CLASSIC)
Ad-AwareGeneric.Dacic.94CCEEA9.A.D1C3B485
SophosML/PE-A + Troj/VB-KCP
ComodoTrojWare.Win32.VBClone.B@88ji29
DrWebTrojan.MulDrop17.61497
VIPREGeneric.Dacic.94CCEEA9.A.D1C3B485
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
EmsisoftGeneric.Dacic.94CCEEA9.A.D1C3B485 (B)
SentinelOneStatic AI – Malicious PE
GDataGeneric.Dacic.94CCEEA9.A.D1C3B485
JiangminTrojan.VB.aqyg
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan/Generic.ASBOL.C594
ZoneAlarmTrojan.Win32.VB.dosb
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
AhnLab-V3Trojan/Win32.Agent.R252862
McAfeeGenericRXHC-SS!2126F59A220D
VBA32SScope.Trojan.VB
MalwarebytesMalware.AI.805865463
TencentTrojan.Win32.Vb.b
IkarusTrojan.VB.VBClone
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Barys.AU!tr
BitDefenderThetaAI:Packer.3C63DE941F
AVGWin32:VB-AJKU [Trj]
CrowdStrikewin/malicious_confidence_90% (D)

How to remove Generic.Dacic.94CCEEA9.A.D1C3B485?

Generic.Dacic.94CCEEA9.A.D1C3B485 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment