Malware

Generic.Dacic.D6DFC400.A.D8011676 malicious file

Malware Removal

The Generic.Dacic.D6DFC400.A.D8011676 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.D6DFC400.A.D8011676 virus can do?

  • Uses Windows utilities for basic functionality
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the NjRATGolden malware family
  • Creates known Njrat/Bladabindi RAT registry keys

How to determine Generic.Dacic.D6DFC400.A.D8011676?


File Info:

name: 252C267C3C0B5277ECCA.mlw
path: /opt/CAPEv2/storage/binaries/006dd3f965741ed0c3799619a0ba943b988f4d470f9e60d1a7b774fda02f02dc
crc32: 641CE440
md5: 252c267c3c0b5277eccac361d13a022f
sha1: 234091c7ab7bb1502fc8f6f1502894feba6b365b
sha256: 006dd3f965741ed0c3799619a0ba943b988f4d470f9e60d1a7b774fda02f02dc
sha512: d40ff690db3f8f4ba51aee3bffdd1740d134b56b31cad99174ac2497b9affdb86571f975a1ad0f67a2d458927c9b8464f8a430e70fe372cb1f6849f604085ebd
ssdeep: 768:87orD78pdvXyzx9uFqza3nnW3TvM9QmIDUu0ti5/j:vw6cnQb4QVk8j
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T159E22CADFBE64466D1BC1AB60571950017B4D103E523FB7E4ECA24E62B2B3D84B84DF2
sha3_384: 4756f9337c29a1eef7e0b78c805a6dbb3eb1043524d03873bab95f5d63731973bc596565e82eb51af700dfca2b80c8f4
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-03-13 07:53:19

Version Info:

0: [No Data]

Generic.Dacic.D6DFC400.A.D8011676 also known as:

BkavW32.HarMinerLL.Trojan
LionicTrojan.Win32.Generic.lA1H
MicroWorld-eScanGeneric.Dacic.D6DFC400.A.D8011676
ClamAVWin.Packed.Generic-9795615-0
FireEyeGeneric.mg.252c267c3c0b5277
CAT-QuickHealTrojan.GenericFC.S20328680
McAfeeBackDoor-NJRat!252C267C3C0B
MalwarebytesBladabindi.Backdoor.Bot.DDS
ZillyaTrojan.Bladabindi.Win32.99364
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
AlibabaBackdoor:MSIL/Bladabindi.4923c1f4
K7GWTrojan ( 700000121 )
Cybereasonmalicious.7ab7bb
BitDefenderThetaGen:NN.ZemsilF.36350.bmW@aOnd4Wg
VirITBackdoor.Win32.Bladabindi.XIP
CyrenW32/MSIL_Bladabindi.A.gen!Eldorado
SymantecMSIL.Trojan!gen2
ElasticWindows.Trojan.Njrat
ESET-NOD32a variant of MSIL/Bladabindi.AS
ZonerTrojan.Win32.85838
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGeneric.Dacic.D6DFC400.A.D8011676
NANO-AntivirusTrojan.Win32.Gen8.ecsqgn
AvastMSIL:Bladabindi-JK [Trj]
TencentTrojan.Msil.Bladabindi.fb
TACHYONBackdoor/W32.DN-NjRat.32256
EmsisoftGeneric.Dacic.D6DFC400.A.D8011676 (B)
BaiduMSIL.Backdoor.Bladabindi.a
F-SecureTrojan.TR/Dropper.Gen7
DrWebBackDoor.Bladabindi.15771
VIPREGeneric.Dacic.D6DFC400.A.D8011676
TrendMicroBKDR_BLADABI.SMC
McAfee-GW-EditionBehavesLike.Win32.BackdoorNJRat.nm
Trapminemalicious.high.ml.score
SophosMal/Bladabi-D
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan-Spy.Bladabindi.BQ
JiangminTrojanDropper.Autoit.dce
AviraTR/Dropper.Gen7
Antiy-AVLTrojan[Backdoor]/MSIL.Bladabindi.as
XcitiumBackdoor.MSIL.Bladabindi.BA@7oej5x
ArcabitGeneric.Dacic.D6DFC400.A.D8011676
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftBackdoor:MSIL/Bladabindi
GoogleDetected
AhnLab-V3Trojan/Win32.Bladabindi.R130484
Acronissuspicious
VBA32Trojan.MSIL.Bladabindi.Heur
ALYacGeneric.Dacic.D6DFC400.A.D8011676
MAXmalware (ai score=81)
Cylanceunsafe
PandaTrj/GdSda.A
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
YandexTrojan.Agent!TCZyAbJGVG0
IkarusTrojan.MSIL.Bladabindi
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.AS!tr
AVGMSIL:Bladabindi-JK [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Dacic.D6DFC400.A.D8011676?

Generic.Dacic.D6DFC400.A.D8011676 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment