Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.1D35A1A6 removal

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.1D35A1A6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.1D35A1A6 virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.1D35A1A6?


File Info:

name: CF3022F9B8E7C610F164.mlw
path: /opt/CAPEv2/storage/binaries/ed9a17603ea9eb34c07b3f1754a520524ad1048bbc0216536aedb14dfaac9f6c
crc32: E152218B
md5: cf3022f9b8e7c610f164629aafc2d1a0
sha1: b4be9c3e4df1a48a378deee30b83ad78c525bed1
sha256: ed9a17603ea9eb34c07b3f1754a520524ad1048bbc0216536aedb14dfaac9f6c
sha512: fc5e28cb74c8aea9e9fecceb1fefd36a3f6f4cd3cf24652f1ba10280b3b748966fe5f7fb07ddfb38f0dfc50ba5448ae22ae3ee3b2bca845f3128b00f65813ac1
ssdeep: 1536:H51pdWB0TfKkKmV0qUv0rSklX6/WJi4O1ql14DEr5BiMG7e:/XTKFmpnST/WJXO4sOBiMG7e
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A5837C1BB3757F72CEB402F1025759D6E33A10AE5379C4AD3454C10922AFAE8AAF17A4
sha3_384: 0bc9ceddc3ba7a2dd9270b39ebfa2347cfc3c6f7b36ec2b6800a1bba23a6962faa708dffc32f58254a81b550927ccb37
ep_bytes: 60909090909090b80010400090bb6c8f
timestamp: 2017-02-24 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.1D35A1A6 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebBackDoor.HangUp.43791
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.1D35A1A6
FireEyeGeneric.mg.cf3022f9b8e7c610
CAT-QuickHealBackdoor.Berbew.A6.MUE
SkyhighBehavesLike.Win32.Generic.mh
McAfeeTrojan-FVOJ!CF3022F9B8E7
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.4D48F88121
VirITWorm.Win32.Berbew.G
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-28
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.1D35A1A6
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.1D35A1A6 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen2
BaiduWin32.Trojan-Spy.Quart.a
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.1D35A1A6
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=87)
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XPACK.Gen2
VaristW32/Padodor.F.gen!Eldorado
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.1D35A1A6
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.1D35A1A6
TACHYONBackdoor/W32.Padodor
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.e4df1a
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.1D35A1A6?

Generic.Dacic.1.Backdoor.Hangup.A.1D35A1A6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment