Malware

Generic.Dacic.D6DFC400.A.91843E4C removal instruction

Malware Removal

The Generic.Dacic.D6DFC400.A.91843E4C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.D6DFC400.A.91843E4C virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Creates an autorun.inf file
  • Authenticode signature is invalid
  • CAPE detected the NjRATGolden malware family
  • Creates a copy of itself
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.D6DFC400.A.91843E4C?


File Info:

name: 93AB1185CF881CF81201.mlw
path: /opt/CAPEv2/storage/binaries/367f87e10fe6a1dc0bb1e08b7703aa8da2e9c16abacb5f1f96574d2c564ba505
crc32: B5DD8F71
md5: 93ab1185cf881cf8120101ce9b416ff3
sha1: 02e6df01edb23d1ccd55a4562d02108fddc87510
sha256: 367f87e10fe6a1dc0bb1e08b7703aa8da2e9c16abacb5f1f96574d2c564ba505
sha512: 3a31dc2062667cd28bab1fddb69840d0da9e43095af75f21ec585a9aa19c6c7f2d955a2faf2f37393ad8ee0fcbbff63ae4086397b751120d0c2a99f6590d800e
ssdeep: 768:KY3ryBD9O/pBcxYsbae6GIXb9pDX2b9zPL0OXLeuXxrjEtCdnl2pi1Rz4Rk3usGC:1yzOx6baIa9RIj00ljEwzGi1dDqDsgS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A493E74977E52524E5BF56F79871F2004E34B48B1602E39D48F219AA1B33AC44F89FEB
sha3_384: e8aef5fdbf8532986e24e830d2905fe36544d6791c36be6b95d279448a5ce671f7189f7e1f362581588a690c6df8ceb1
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-11-26 21:33:16

Version Info:

0: [No Data]

Generic.Dacic.D6DFC400.A.91843E4C also known as:

BkavW32.PrimeaClefAF.Trojan
ElasticWindows.Trojan.Njrat
CynetMalicious (score: 100)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
SkyhighBehavesLike.Win32.Trojan.nm
ALYacGeneric.Dacic.D6DFC400.A.91843E4C
Cylanceunsafe
VIPREGeneric.Dacic.D6DFC400.A.91843E4C
SangforSuspicious.Win32.Save.a
K7AntiVirusEmailWorm ( 00555f371 )
K7GWEmailWorm ( 00555f371 )
CrowdStrikewin/malicious_confidence_100% (D)
VirITTrojan.Win32.MulDrop7.DOQR
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Autorun.Spy.Agent.R
APEXMalicious
ClamAVWin.Packed.Generic-9795615-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Dacic.D6DFC400.A.91843E4C
NANO-AntivirusTrojan.Win32.TrjGen.dkmeat
MicroWorld-eScanGeneric.Dacic.D6DFC400.A.91843E4C
AvastWin32:KeyloggerX-gen [Trj]
Ad-AwareGeneric.Dacic.D6DFC400.A.91843E4C
TACHYONBackdoor/W32.DN-NjRat.95232.C
EmsisoftGeneric.Dacic.D6DFC400.A.91843E4C (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.MulDrop7.62625
TrendMicroBackdoor.MSIL.BLADABINDI.SMJJ
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.93ab1185cf881cf8
SophosMal/ILAgent-E
SentinelOneStatic AI – Malicious PE
GDataMSIL.Backdoor.Agent.AXJ
VaristW32/Trojan.BVX.gen!Eldorado
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.AGeneric
ArcabitGeneric.Dacic.D6DFC400.A.91843E4C
MicrosoftBackdoor:MSIL/Bladabindi!rfn
GoogleDetected
AhnLab-V3Trojan/Win32.Bladabindi.R295982
McAfeeTrojan-FUTJ!93AB1185CF88
MAXmalware (ai score=86)
VBA32Trojan.MSIL.Bladabindi.Heur
MalwarebytesAutoRun.Spyware.Stealer.DDS
ZonerTrojan.Win32.87452
TrendMicro-HouseCallBackdoor.MSIL.BLADABINDI.SMJJ
RisingBackdoor.njRAT!1.A096 (CLASSIC)
YandexTrojan.Agent!mvIOYl9Ze14
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.LX!tr
BitDefenderThetaGen:NN.ZemsilF.36792.fiW@au0yag
AVGWin32:KeyloggerX-gen [Trj]
Cybereasonmalicious.1edb23
DeepInstinctMALICIOUS

How to remove Generic.Dacic.D6DFC400.A.91843E4C?

Generic.Dacic.D6DFC400.A.91843E4C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment