Malware

Should I remove “Generic.Dacic.D6DFC400.A.33350471”?

Malware Removal

The Generic.Dacic.D6DFC400.A.33350471 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.D6DFC400.A.33350471 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Uses Windows utilities for basic functionality
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the NjRATGolden malware family
  • Creates a copy of itself
  • Creates known Njrat/Bladabindi RAT registry keys
  • Uses suspicious command line tools or Windows utilities
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.D6DFC400.A.33350471?


File Info:

name: 9F97B07208C83FF62DD3.mlw
path: /opt/CAPEv2/storage/binaries/cf7db576dfc653de5464505afda0230a9e96dee3efdcf8dad82233a5956ad9b9
crc32: 147F984F
md5: 9f97b07208c83ff62dd3930b8053f654
sha1: f3cfc19275d2429c51556ce4131752fd3be9b1a5
sha256: cf7db576dfc653de5464505afda0230a9e96dee3efdcf8dad82233a5956ad9b9
sha512: f850192cf4118686b69449d8c4f547b9de29917878322248248411dcd8873cbee78ec17dfad87c2906e445b9e010574cc3d58e4e07561a94ad2aedeb0f3b72c2
ssdeep: 768:d4SkNXqhqT0Z5YwSqU209kpsEhq5lxOBcmZPtrtjC:d4Sk9qQo5YwSqUZ9F5lxOWmDw
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T146F20A8CBFE24594C2FD5D734671D2220376F01B1A23DA6D8EE884B75BA36848F58ED1
sha3_384: 52f0c6139c41cca7e9df9a6c25471e4a724b5221b2bd572224c0d4485aeb14a7aad37e3a950de5a158ef6264eb4b2171
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-08-21 08:17:06

Version Info:

0: [No Data]

Generic.Dacic.D6DFC400.A.33350471 also known as:

BkavW32.Common.35DEEACD
LionicTrojan.Win32.Generic.4!c
ElasticWindows.Trojan.Njrat
MicroWorld-eScanGeneric.Dacic.D6DFC400.A.33350471
ClamAVWin.Trojan.B-468
FireEyeGeneric.mg.9f97b07208c83ff6
CAT-QuickHealTrojan.GenericFC.S19436243
McAfeeTrojan-FIGN
Cylanceunsafe
ZillyaWorm.Bladabindi.Win32.15558
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/njRAT.c26bd6b6
K7GWTrojan ( 700000121 )
K7AntiVirusTrojan ( 700000121 )
BaiduMSIL.Backdoor.Bladabindi.a
VirITTrojan.Win32.MSIL.IM
CyrenW32/MSIL_Troj.AP.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Bladabindi.AR
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Dacic.D6DFC400.A.33350471
NANO-AntivirusTrojan.Win32.Bladabindi.jyrdon
AvastMSIL:Bladabindi-JK [Trj]
TencentTrojan.Win32.Bladabindi.16000442
SophosTroj/Bbindi-W
F-SecureTrojan.TR/ATRAPS.Gen
DrWebBackDoor.BladabindiNET.8
VIPREGeneric.Dacic.D6DFC400.A.33350471
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionBehavesLike.Win32.Generic.nm
Trapminemalicious.high.ml.score
EmsisoftWorm.Bladabindi (A)
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan.PSE.13IYHXI
JiangminTrojanDropper.Autoit.dce
AviraTR/ATRAPS.Gen
XcitiumTrojWare.MSIL.Spy.Agent.CP@4pqytu
ArcabitGeneric.Dacic.D6DFC400.A.33350471
ViRobotTrojan.Win.Z.Bladabindi.36864.SW
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:MSIL/njRAT.RDSA!MTB
GoogleDetected
AhnLab-V3Trojan/Win.Generic.R419483
Acronissuspicious
BitDefenderThetaGen:NN.ZemsilF.36350.cmW@aSOx1rj
ALYacGeneric.Dacic.D6DFC400.A.33350471
MAXmalware (ai score=86)
VBA32Trojan.MSIL.Bladabindi.Heur
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/GdSda.A
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
YandexTrojan.AvsMofer.dd6520
IkarusTrojan.Crypter
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.AS!tr
AVGMSIL:Bladabindi-JK [Trj]
Cybereasonmalicious.275d24
DeepInstinctMALICIOUS

How to remove Generic.Dacic.D6DFC400.A.33350471?

Generic.Dacic.D6DFC400.A.33350471 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment