Malware

What is “Generic.Dacic.1.Padodor.A.1C5CDBB8”?

Malware Removal

The Generic.Dacic.1.Padodor.A.1C5CDBB8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Padodor.A.1C5CDBB8 virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Padodor.A.1C5CDBB8?


File Info:

name: 70CD1AFC9B8B67396E98.mlw
path: /opt/CAPEv2/storage/binaries/7796ec2e78a7c26e6598913ab1afd014a694c62c875dadc2b4c7096bf3dad1a3
crc32: E00119CC
md5: 70cd1afc9b8b67396e98432033baa48d
sha1: c9cd11d66beb3c3bdc4ab10ca32bbdf9e374eb5c
sha256: 7796ec2e78a7c26e6598913ab1afd014a694c62c875dadc2b4c7096bf3dad1a3
sha512: 46fc7080aa8c3a72f39e78c4c54392ea2f3245e7ccaaba92d719ba82191f41af034eb8a581f1a12e2ef96e3a69442ffc41ba037da543c8a8ca9da5dc5526b7e9
ssdeep: 1536:RQOFPxapWMDqhw0Dkr+hYncGxgu/Ub0VkVNK:iWMmS0Dkr+h0cG+u/Ub0+NK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DA938D7A7F171FEADBB11BB2118C9E4BAABD75384D9482578300811E14AAC67C72DBD0
sha3_384: bd6529a0e1ccd04be7c18f32d4d481def0490c76e7c8dfd00e7e91e518e56fd3304986df2ee9efe6a5338b41d31a0340
ep_bytes: 909090609090b8001040009090bb38de
timestamp: 1984-11-04 05:39:38

Version Info:

0: [No Data]

Generic.Dacic.1.Padodor.A.1C5CDBB8 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebBackDoor.Wdozer
MicroWorld-eScanGeneric.Dacic.1.Padodor.A.1C5CDBB8
ClamAVWin.Trojan.Crypted-29
McAfeeGenericRXPE-AP!B04738A65027
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.c9b8b6
BitDefenderThetaAI:Packer.60D6216921
CyrenW32/Backdoor.DKIC-2994
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Padodor.AB
APEXMalicious
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Padodor.gen
BitDefenderGeneric.Dacic.1.Padodor.A.1C5CDBB8
AvastWin32:Padodor-V [Trj]
TACHYONBackdoor/W32.Padodor
SophosTroj/Padodo-Gen
F-SecureTrojan.TR/Crypt.XDR.Gen
VIPREGeneric.Dacic.1.Padodor.A.1C5CDBB8
McAfee-GW-EditionBehavesLike.Win32.Generic.nc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.70cd1afc9b8b6739
EmsisoftGeneric.Dacic.1.Padodor.A.1C5CDBB8 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/Padodor.fo
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
ArcabitGeneric.Dacic.1.Padodor.A.1C5CDBB8
ZoneAlarmBackdoor.Win32.Padodor.gen
GDataGeneric.Dacic.1.Padodor.A.1C5CDBB8
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
VBA32Backdoor.Padodor
ALYacGeneric.Dacic.1.Padodor.A.1C5CDBB8
MAXmalware (ai score=89)
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!8.115 (TFE:2:UcHyz6q6Y7K)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:Padodor-V [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Dacic.1.Padodor.A.1C5CDBB8?

Generic.Dacic.1.Padodor.A.1C5CDBB8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment