Malware

What is “Generic.Dacic.D6DFC400.A.8108DDF6”?

Malware Removal

The Generic.Dacic.D6DFC400.A.8108DDF6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.D6DFC400.A.8108DDF6 virus can do?

  • Uses Windows utilities for basic functionality
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the NjRATGolden malware family
  • Creates a copy of itself
  • Creates known Njrat/Bladabindi RAT registry keys
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.D6DFC400.A.8108DDF6?


File Info:

name: CE711F79FDBB399FE646.mlw
path: /opt/CAPEv2/storage/binaries/733e18597fd4e0cefbe08b52339f99e85c2c837a6bb152327ec78ec405a8e6f9
crc32: 8D64B1FF
md5: ce711f79fdbb399fe64643d70baa56c6
sha1: b9a1e5cdbf4e025c91d547dbedd87c04f3007769
sha256: 733e18597fd4e0cefbe08b52339f99e85c2c837a6bb152327ec78ec405a8e6f9
sha512: 8a695ba38dc0e10bc4c1ea2fc170e2a9ed0a07f9a9f1f7f7139f13956dbd80ea58647223c55c4c247033f00f9cc3c1d14185d21e109bde29fac4eeccefc53aad
ssdeep: 384:LtLwtJZbwvesushg7DLDXEFopVGWwb3wEuyQEUN3B0JHgDpHVkw3ccNwifGIyLs9:LVwtJZbwvOjz3wb3wEAAw3ccrfL+Tr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F3E2F84D73A48A23C67E57B84D70864207F1D14B5522EFAF8EC960DA1DA77E41E00AFB
sha3_384: bf1aec1e744e34763667dd1b363170a11c1b244e3e531a9094547847892ca13019e1ccf027fb88cf69d541a1f02f3701
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-10-17 03:37:37

Version Info:

0: [No Data]

Generic.Dacic.D6DFC400.A.8108DDF6 also known as:

BkavW32.Common.C327BFF2
LionicTrojan.Win32.Generic.4!c
ElasticWindows.Trojan.Njrat
MicroWorld-eScanGeneric.Dacic.D6DFC400.A.8108DDF6
FireEyeGeneric.mg.ce711f79fdbb399f
CAT-QuickHealTrojan.GenericFC.S6059373
SkyhighBehavesLike.Win32.BackdoorNJRat.nm
McAfeeTrojan-FIGN
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Bladabindi.Win32.72085
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
AlibabaBackdoor:MSIL/Bladabindi.fb95c28d
K7GWTrojan ( 700000121 )
Cybereasonmalicious.dbf4e0
BaiduMSIL.Backdoor.Bladabindi.a
VirITTrojan.Win32.Dnldr26.CXVI
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Autorun.Spy.Agent.DF
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Generic-9795615-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Dacic.D6DFC400.A.8108DDF6
NANO-AntivirusTrojan.Win32.Bladabindi.hyvvyu
AvastMSIL:Agent-CIB [Trj]
TencentTrojan.Win32.Bladabindi.16000442
TACHYONTrojan/W32.DN-Agent.33280.AX
SophosMal/Bladabi-V
F-SecureTrojan.TR/ATRAPS.Gen
DrWebBackDoor.BladabindiNET.10
VIPREGeneric.Dacic.D6DFC400.A.8108DDF6
TrendMicroBKDR_BLADABI.SMC
Trapminemalicious.moderate.ml.score
EmsisoftGeneric.Dacic.D6DFC400.A.8108DDF6 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDropper.Autoit.dce
VaristW32/MSIL_Bladabindi.A.gen!Eldorado
AviraTR/ATRAPS.Gen
Kingsoftmalware.kb.c.1000
MicrosoftBackdoor:MSIL/Bladabindi.AJ
ArcabitGeneric.Dacic.D6DFC400.A.8108DDF6
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Backdoor.Bladabindi.AV
GoogleDetected
AhnLab-V3Trojan/RL.Generic.R250481
VBA32Trojan.MSIL.Bladabindi.Heur
ALYacGeneric.Dacic.D6DFC400.A.8108DDF6
MAXmalware (ai score=81)
Cylanceunsafe
PandaTrj/GdSda.A
RisingBackdoor.njRAT!1.D4D6 (CLASSIC)
IkarusWorm.MSIL.Autorun
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.LI!tr
BitDefenderThetaGen:NN.ZemsilF.36792.cmW@aC7CSYo
AVGMSIL:Agent-CIB [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Dacic.D6DFC400.A.8108DDF6?

Generic.Dacic.D6DFC400.A.8108DDF6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment