Malware

Generic.Dacic.304514EE.A.22DA5879 (file analysis)

Malware Removal

The Generic.Dacic.304514EE.A.22DA5879 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.304514EE.A.22DA5879 virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.304514EE.A.22DA5879?


File Info:

name: 0AFCD43BAF34235BD983.mlw
path: /opt/CAPEv2/storage/binaries/fb8e919b50a936f960c7435e62f3f94b23d15f5c4df8e9764c62850abfbc7476
crc32: 445293CD
md5: 0afcd43baf34235bd9832651cc09766c
sha1: 3e9b22dea44ae1b54b95e77172f6fdbfaa1db6b3
sha256: fb8e919b50a936f960c7435e62f3f94b23d15f5c4df8e9764c62850abfbc7476
sha512: 31bab7f40dd6ee0b3bb242f052a3c451638f581233eadcc58cef76f7b32ec49c4dc76ba689bb911476d15c729a737a10eeec462021a2edb6ac45163da146e385
ssdeep: 3072:jL8FDa8x3/GDPMeO6c+1WdTCn93OGey/ZhJakrPF:n8FHejNc1TCndOGeKTaG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T108C33BDFB1CFDB52C1920EB1D55B85D1F72A943B226981901CACC07E2297E2C47BB69C
sha3_384: 449e624e35b979c67095e6d4597220ac477549b22fcdfb9c944fbfa7fcc7992234fbcdcccffdf7d4a70aa9e25a4607d4
ep_bytes: 60909090909067e80000000090909058
timestamp: 1993-01-21 05:39:38

Version Info:

0: [No Data]

Generic.Dacic.304514EE.A.22DA5879 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Padodor.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.304514EE.A.22DA5879
ClamAVWin.Trojan.Crypted-36
FireEyeGeneric.mg.0afcd43baf34235b
McAfeeGenericRXAA-FA!0AFCD43BAF34
Cylanceunsafe
ZillyaTrojan.Padodor.Win32.851526
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
AlibabaBackdoor:Win32/Padodor.0017bbc3
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.baf342
BitDefenderThetaAI:Packer.780C268C21
CyrenW32/Backdoor.DKIC-2994
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32Win32/Padodor.AB
APEXMalicious
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Padodor.gen
BitDefenderGeneric.Dacic.304514EE.A.22DA5879
NANO-AntivirusTrojan.Win32.Padodor.jxuesl
AvastWin32:Padodor-V [Trj]
TencentTrojan.Win32.Qukart.ya
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.304514EE.A.22DA5879 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
DrWebBackDoor.Wdozer
VIPREGeneric.Dacic.304514EE.A.22DA5879
TrendMicroTROJ_GEN.R002C0DGU23
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Gen
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Padodor.erlx
AviraTR/Crypt.ZPACK.Gen2
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.304514EE.A.22DA5879
ViRobotTrojan.Win.Z.Padodor.128000.EPJ
ZoneAlarmBackdoor.Win32.Padodor.gen
GDataGeneric.Dacic.304514EE.A.22DA5879
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
VBA32Backdoor.Padodor
ALYacGeneric.Dacic.304514EE.A.22DA5879
MAXmalware (ai score=83)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DGU23
RisingBackdoor.Berbew!8.115 (TFE:3:aa0U4RqxF7K)
IkarusTrojan.Win32.Padodor
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
AVGWin32:Padodor-V [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Dacic.304514EE.A.22DA5879?

Generic.Dacic.304514EE.A.22DA5879 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment