Backdoor

About “Generic.Dacic.1.Backdoor.Hangup.A.09FB867F” infection

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.09FB867F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.09FB867F virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.09FB867F?


File Info:

name: DB825BBBE763B554431D.mlw
path: /opt/CAPEv2/storage/binaries/7b5a493b57ef606f7e49255dfd6b9c65a1395eb0ef45b9ff2feae02df7eaec50
crc32: 4B4C3BE5
md5: db825bbbe763b554431d78b5579b36af
sha1: 03df06be03e56654bde2977b43ded947d0cc02d6
sha256: 7b5a493b57ef606f7e49255dfd6b9c65a1395eb0ef45b9ff2feae02df7eaec50
sha512: c15b10d02be1975e324a04ceddc29bec852afef555dc404271ea374086f3ed55143812e51856085eb5d6dac242cb523695a0c73db1d3f6d810aa571a21891578
ssdeep: 3072:4PijnWYyBLnNUsGy+WHAaAURfE+Hj+hgd6n24qfVr:4GzyBRUsx+WgCs+HWg821
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BB145B7AF7581BB1C346027226A619C6FB7CC4794FAA859C3428C65DC377E14C3BA6B0
sha3_384: eb0d31194b0a222c9ec6dbf0f95ea982e9380d09455f65296d8e81edb9e239d4d485d18104c9bcfe6d17a5f475ceaf78
ep_bytes: 909090906090b80010400090bb6c8f40
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.09FB867F also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.09FB867F
ClamAVWin.Trojan.Crypted-29
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.09FB867F
MalwarebytesMalware.AI.1520611931
ZillyaTrojan.Qukart.Win32.1042082
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.3FF1DE5D1D
VirITWorm.Win32.Berbew.G
CyrenW32/Qukart.L.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.09FB867F
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
SophosTroj/Padodo-Fam
BaiduWin32.Trojan-Spy.Quart.a
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.09FB867F
TrendMicroTROJ_GEN.R03BC0CF723
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.db825bbbe763b554
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.09FB867F (B)
IkarusTrojan-Spy.Win32.Qukart
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.09FB867F
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
McAfeeGenericRXVP-YB!DB825BBBE763
MAXmalware (ai score=86)
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0CF723
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!MRIP3jtd7Kk
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.be763b
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.09FB867F?

Generic.Dacic.1.Backdoor.Hangup.A.09FB867F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment