Malware

Should I remove “Generic.Dacic.D6DFC400.A.9B75E2CB”?

Malware Removal

The Generic.Dacic.D6DFC400.A.9B75E2CB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.D6DFC400.A.9B75E2CB virus can do?

  • Uses Windows utilities for basic functionality
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the NjRATGolden malware family
  • Creates a copy of itself
  • Creates known Njrat/Bladabindi RAT registry keys
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.D6DFC400.A.9B75E2CB?


File Info:

name: BD3A6170B4DD167EDF69.mlw
path: /opt/CAPEv2/storage/binaries/917ce0a96d4bc6bf8e614ac4c2890a697814bfad01bfd595633c718854c0c06a
crc32: 26F864C2
md5: bd3a6170b4dd167edf694b23d9e6764c
sha1: a77f4e056fdfb1ca0a6b6114a06b110cdff0c2a2
sha256: 917ce0a96d4bc6bf8e614ac4c2890a697814bfad01bfd595633c718854c0c06a
sha512: 12d0e124f01f800e48f8219d5d6984f317628b3b0985a8d3148bbc05a037eef33aa92f2d119d804b12f583d2f8a7cda51ef4d7b0881ea1c0cb4943711dc5a7c9
ssdeep: 768:MzU5YZxTDezxp+BIFaH2Z3vKvQmIDUu0tieGj:Bsa5hsQVkkj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T178E20B6DFBFA4466D2BC0AB50571950013B4D103E523F77E4ECB24A62B6B6D84B88DF2
sha3_384: a79e687e47428856bafb3b83638583fda4f124eb6c81ef15663a2e36bccc073b31006685cbbf138e2d366d47f9c366a5
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-09-02 13:47:47

Version Info:

0: [No Data]

Generic.Dacic.D6DFC400.A.9B75E2CB also known as:

ElasticWindows.Trojan.Njrat
DrWebBackDoor.Bladabindi.15771
MicroWorld-eScanGeneric.Dacic.D6DFC400.A.9B75E2CB
ClamAVWin.Packed.Generic-9795615-0
CAT-QuickHealTrojan.GenericFC.S20328680
MalwarebytesBladabindi.Backdoor.Bot.DDS
ZillyaTrojan.Bladabindi.Win32.99141
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
K7GWTrojan ( 700000121 )
Cybereasonmalicious.0b4dd1
BitDefenderThetaGen:NN.ZemsilF.36662.bmW@auDbZKj
VirITTrojan.Win32.Dnldr25.DDDI
CyrenW32/MSIL_Bladabindi.A.gen!Eldorado
SymantecMSIL.Trojan!gen2
ESET-NOD32a variant of MSIL/Bladabindi.AS
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Dacic.D6DFC400.A.9B75E2CB
NANO-AntivirusTrojan.Win32.Gen8.ecsqgn
AvastMSIL:Bladabindi-JK [Trj]
TencentTrojan.Msil.Bladabindi.fb
EmsisoftGeneric.Dacic.D6DFC400.A.9B75E2CB (B)
F-SecureTrojan.TR/Dropper.Gen7
BaiduMSIL.Backdoor.Bladabindi.a
VIPREGeneric.Dacic.D6DFC400.A.9B75E2CB
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionBehavesLike.Win32.BackdoorNJRat.nm
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.bd3a6170b4dd167e
SophosMal/Bladabi-D
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan-Spy.Bladabindi.BQ
AviraTR/Dropper.Gen7
Antiy-AVLTrojan[Backdoor]/MSIL.Bladabindi.as
XcitiumBackdoor.MSIL.Bladabindi.BA@7oej5x
ArcabitGeneric.Dacic.D6DFC400.A.9B75E2CB
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftBackdoor:MSIL/Bladabindi
GoogleDetected
AhnLab-V3Trojan/Win32.Bladabindi.R130484
Acronissuspicious
VBA32Trojan.MSIL.Bladabindi.Heur
MAXmalware (ai score=83)
Cylanceunsafe
PandaTrj/GdSda.A
APEXMalicious
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
TACHYONBackdoor/W32.DN-NjRat.32256
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.AS!tr
AVGMSIL:Bladabindi-JK [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.Dacic.D6DFC400.A.9B75E2CB?

Generic.Dacic.D6DFC400.A.9B75E2CB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment