Malware

Generic.Dacic.1.Padodor.A.26B96AD1 (file analysis)

Malware Removal

The Generic.Dacic.1.Padodor.A.26B96AD1 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Padodor.A.26B96AD1 virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • Uses Windows utilities for basic functionality
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Padodor.A.26B96AD1?


File Info:

name: 245A2FBE3A3F9142A18E.mlw
path: /opt/CAPEv2/storage/binaries/bc41ac52bd771a2fa0b9c8be01d92d9a88e0f0d1ebecb20c844423219cb9243e
crc32: FEBC5B93
md5: 245a2fbe3a3f9142a18e007a8501c8b6
sha1: 52408f4ea348c764d82d3e5dc7865f5239c80f8f
sha256: bc41ac52bd771a2fa0b9c8be01d92d9a88e0f0d1ebecb20c844423219cb9243e
sha512: 9d99135c7a52ea7e93d491042eed3edf2590d1c0aa6b3b9495d40ff719274eb03bd0e0869af33db401d619c0f05630851515e0d133c6e67f10de502950e78976
ssdeep: 1536:4IeNltdiomCxk3Cu9us+7D7H/OUGjq2W+uYlKMaJkmyQm959ddduV9jojTIvjrH:wNl/AJ987D7HmU8H9uAKgNDddd69jc0X
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E0A39EDBA2616F32C7D206B105064E8EBF80D420A2DD84E6239ED66C354FE78877F657
sha3_384: ec0c0e0996220d8eee78ed273dceafc6ef0a7c04cb240438292d81ca13de199358cd5741c855aca83ed408ab9e893ad0
ep_bytes: 906090909090b8001040009090bb38de
timestamp: 1986-03-19 05:39:38

Version Info:

0: [No Data]

Generic.Dacic.1.Padodor.A.26B96AD1 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Padodor.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.1.Padodor.A.26B96AD1
ClamAVWin.Trojan.Crypted-30
CAT-QuickHealBackdoor.Berbew
McAfeeGenericRXPE-AP!A3AB954A0D7B
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Padodor.A.26B96AD1
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
AlibabaBackdoor:Win32/Padodor.08ac0868
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Backdoor.DKIC-2994
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Padodor.AB
APEXMalicious
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Padodor.gen
BitDefenderGeneric.Dacic.1.Padodor.A.26B96AD1
AvastWin32:Padodor-V [Trj]
TencentTrojan.Win32.Qukart.ya
EmsisoftGeneric.Dacic.1.Padodor.A.26B96AD1 (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.Wdozer
ZillyaTrojan.Padodor.Win32.566937
TrendMicroTROJ_GEN.R002C0DGR23
McAfee-GW-EditionBehavesLike.Win32.Generic.nc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.245a2fbe3a3f9142
SophosTroj/Padodo-Gen
IkarusTrojan.Win32.Padodor
GDataGeneric.Dacic.1.Padodor.A.26B96AD1
JiangminBackdoor.Padodor.etms
AviraTR/Crypt.XDR.Gen
MAXmalware (ai score=82)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Padodor.A.26B96AD1
ViRobotTrojan.Win.Z.Padodor.98304.WUG
ZoneAlarmBackdoor.Win32.Padodor.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
BitDefenderThetaAI:Packer.589FBE361E
ALYacGeneric.Dacic.1.Padodor.A.26B96AD1
TACHYONBackdoor/W32.Padodor
VBA32Backdoor.Padodor
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DGR23
RisingBackdoor.Padodor!8.118 (TFE:3:27PyKHGdL9Q)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
AVGWin32:Padodor-V [Trj]
Cybereasonmalicious.e3a3f9
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Padodor.A.26B96AD1?

Generic.Dacic.1.Padodor.A.26B96AD1 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment