Malware

Generic.Dacic.1.Padodor.A.52AD016C (file analysis)

Malware Removal

The Generic.Dacic.1.Padodor.A.52AD016C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Padodor.A.52AD016C virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Padodor.A.52AD016C?


File Info:

name: B80E72F63BBAFA532AFF.mlw
path: /opt/CAPEv2/storage/binaries/9e3815cdd40e4afb14fe3482e227abf7109f17c988291c686dd59c19bc6f303f
crc32: 1C64A525
md5: b80e72f63bbafa532aff112ff61019a5
sha1: 4bd9290a8f541b998758f4ddf901483d95f00ae6
sha256: 9e3815cdd40e4afb14fe3482e227abf7109f17c988291c686dd59c19bc6f303f
sha512: 716f0c482889f045411b7da03dce8c0d0a9a0edd9cdd4b178c6bc9c624f0595001f83d86d18a116cbb4a3f07c2aec02e6605dec2ff7468e65c847d62c2e282b1
ssdeep: 1536:u3VsAT33Y2uP+moEHYALyTc+BoaQUCYdhduV9jojTIvjrH:ulP3I2uCE4AoolU5hd69jc0vf
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T107A38D5BF3AA0EF7C2F30170121F94EBB32516B457BD46BA14158CED296781AF87A780
sha3_384: 5d0812062824674ddaebbc102f818390730c2daff8e7d89043f8ee682445ddfd7bcce8897971e9b5fc75ec4d5b5857c1
ep_bytes: 909090909060b80010400090bb38de40
timestamp: 1986-03-19 05:39:38

Version Info:

0: [No Data]

Generic.Dacic.1.Padodor.A.52AD016C also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Padodor.A.52AD016C
FireEyeGeneric.mg.b80e72f63bbafa53
ALYacGeneric.Dacic.1.Padodor.A.52AD016C
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005780dd1 )
K7AntiVirusTrojan ( 005780dd1 )
BitDefenderThetaAI:Packer.589FBE361E
CyrenW32/Backdoor.DKIC-2994
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Padodor.AB
APEXMalicious
ClamAVWin.Trojan.Crypted-31
KasperskyBackdoor.Win32.Padodor.gen
BitDefenderGeneric.Dacic.1.Padodor.A.52AD016C
NANO-AntivirusTrojan.Win32.Padodor.jynaky
AvastWin32:Padodor-V [Trj]
TencentTrojan.Win32.Qukart.ya
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.1.Padodor.A.52AD016C (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.Wdozer
VIPREGeneric.Dacic.1.Padodor.A.52AD016C
McAfee-GW-EditionBehavesLike.Win32.Generic.nc
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Gen
SentinelOneStatic AI – Malicious PE
GDataGeneric.Dacic.1.Padodor.A.52AD016C
JiangminBackdoor.Padodor.etms
GoogleDetected
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Padodor.A.52AD016C
ZoneAlarmBackdoor.Win32.Padodor.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32Backdoor.Padodor
MAXmalware (ai score=82)
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!8.115 (TFE:2:ikGRsos59rF)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:Padodor-V [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Padodor.A.52AD016C?

Generic.Dacic.1.Padodor.A.52AD016C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment