Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.24BF5682 removal tips

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.24BF5682 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.24BF5682 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.24BF5682?


File Info:

name: E411675E484883183487.mlw
path: /opt/CAPEv2/storage/binaries/b9d4d885466de33a3c84ff0e1a6cec4a90788824e2300677a2b2f7744875052b
crc32: 53C0B58E
md5: e411675e4848831834870931a7f76d78
sha1: 6eda02fed537cd818c9dad54b517a57017ce9d87
sha256: b9d4d885466de33a3c84ff0e1a6cec4a90788824e2300677a2b2f7744875052b
sha512: 0bdbf8b092747eb6c83a5cb25f8f147e3409f118c63bbc39fd6d29bb9466e646d96131c79267b101845eda3bd9af99c12b613c7d419b5f89a1a5e068cc5f4045
ssdeep: 3072:fD/idDJAhohiEeBAPgxed6BYudlNPMAvAURfE+Hxgu+tAcrbFAJc+RsUi1aVDkOh:ji1mhoEBIyedZwlNPjLs+H8rtMs4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119345935F7A80B31C74A03363E6B19B1CB38C49C8F5581D25338935A493698A9DB7B7E
sha3_384: db9f920af1cb4ec50c0ffc758cbf72102d01568700fab80166553a066cb541ad96c5254589e660a16ee203aa2f920605
ep_bytes: 90609090909090b80010400090bb6c8f
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.24BF5682 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.24BF5682
ClamAVWin.Trojan.Crypted-30
FireEyeGeneric.mg.e411675e48488318
CAT-QuickHealBackdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.24BF5682
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.24BF5682
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 005780dd1 )
K7AntiVirusTrojan ( 005780dd1 )
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.24BF5682
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
SophosTroj/Padodo-Fam
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
ZillyaTrojan.Qukart.Win32.1042082
TrendMicroTROJ_GEN.R03BC0CIG23
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
Trapminemalicious.high.ml.score
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.24BF5682 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.24BF5682
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
McAfeeTrojan-FVOJ!E411675E4848
MAXmalware (ai score=84)
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0CIG23
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!MRIP3jtd7Kk
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
BitDefenderThetaAI:Packer.2B8D4C3B21
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.ed537c
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.24BF5682?

Generic.Dacic.1.Backdoor.Hangup.A.24BF5682 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment