Backdoor

Should I remove “Generic.Dacic.1.Backdoor.Hangup.A.1D932EF0”?

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.1D932EF0 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.1D932EF0 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.1D932EF0?


File Info:

name: E04247F22F4D987F2B83.mlw
path: /opt/CAPEv2/storage/binaries/87b8f5a4a5ef2f4e40f395492ea119f72af18bc7343ace8a36c970969ecf6c3b
crc32: AB1C9935
md5: e04247f22f4d987f2b833578fe1d2030
sha1: 8f177407fca2bc8fc2e89032c7ed271c74c3bfd9
sha256: 87b8f5a4a5ef2f4e40f395492ea119f72af18bc7343ace8a36c970969ecf6c3b
sha512: 80ef7bfc8f219f2e68c2417199bd70c3e7f88b064536e8c985e1f59f307740ea21609b4558fadecdb7b6ce9ce45fde218af6dc841237d16c0900a71fa2245bb7
ssdeep: 768:G8KbHaWWr8oCiIWz1wcTYoJX0YnBLBbvPvQBNwmwdwN0/1H5PVB8W44jzo1MkEJC:G8maZldGztSZ35dwgB5YMkhohBE8VGh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CE836C9FB2C52BB2C9C302B1237646D6B72D917863E98294B05CD52EE3D3D7C9275B80
sha3_384: 0526bdab030178ed65d5c33321f372bde758a3ef212213d3abf0cbab5d3b5c94b9dccd596af3b20f97afb4b373dd68c9
ep_bytes: 90909060909090b800104000bbd08e40
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.1D932EF0 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.1D932EF0
FireEyeGeneric.mg.e04247f22f4d987f
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.1D932EF0
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.1D932EF0
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.1D932EF0
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Spy.Qukart
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
TACHYONBackdoor/W32.Padodor
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
DrWebTrojan.Siggen13.42746
ZillyaTrojan.Qukart.Win32.2222502
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Gen
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.dzrgt
VaristW32/S-705d01a1!Eldorado
AviraTR/Crypt.ZPACK.Gen2
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.1D932EF0
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
GDataWin32.Trojan.PSE.1VR6SI3
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
BitDefenderThetaAI:Packer.61E432B221
MAXmalware (ai score=86)
DeepInstinctMALICIOUS
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan-Ransom.Win32.Pornoasset.a
IkarusTrojan-Spy.Win32.Qukart
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.7fca2b
AvastWin32:TrojanX-gen [Trj]

How to remove Generic.Dacic.1.Backdoor.Hangup.A.1D932EF0?

Generic.Dacic.1.Backdoor.Hangup.A.1D932EF0 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment