Backdoor

What is “Generic.Dacic.1.Backdoor.Hangup.A.4790CBF8”?

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.4790CBF8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.4790CBF8 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.4790CBF8?


File Info:

name: A2F1A7BFD9D50BAC1D0C.mlw
path: /opt/CAPEv2/storage/binaries/43d6a2d90b2fd997e84c3f4611ab612ab8d73a4cdc6f177a614a82f2e312d85f
crc32: 58D0CBD4
md5: a2f1a7bfd9d50bac1d0c6f7ef4f4d7de
sha1: c108a3d97229de432521f9a919ff624f7a30073a
sha256: 43d6a2d90b2fd997e84c3f4611ab612ab8d73a4cdc6f177a614a82f2e312d85f
sha512: b8c7741bec8dd4580e4cac1e398cd55daed06c4403099a348d02bc70605428ceee7bf734060bbe4c899d9f0398dad06a0f9590be14ffd24a7fa76e26b91a9b15
ssdeep: 1536:Cv1dSIczhubpPYz0uAWmju6ZqWFafZviw5YMkhohBE8VGh:CTSZzQbpwGDoZvicUAEQGh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D5836C2E75472BB2FE833271278B0FEEF3D550B8937992451055D0EE322BC6A5236B91
sha3_384: 0bee08105db4690e2ea15e9224bbcd137a3da0517751e9ae279d4603d169b723cd3b9401aa05a4bf586ffad2a7d6dc5e
ep_bytes: 609090909090b80010400090bbd08e40
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.4790CBF8 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.4790CBF8
FireEyeGeneric.mg.a2f1a7bfd9d50bac
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.4790CBF8
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.97229d
BitDefenderThetaAI:Packer.61E432B221
VirITWorm.Win32.Berbew.G
CyrenW32/Qukart.L.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Spy.Qukart
APEXMalicious
ClamAVWin.Trojan.Crypted-28
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.4790CBF8
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.4790CBF8 (B)
BaiduWin32.Trojan-Spy.Quart.a
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
DrWebTrojan.Siggen13.42746
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.4790CBF8
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Gen
IkarusTrojan-Spy.Win32.Qukart
GDataWin32.Trojan.PSE.1VR6SI3
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.ZPACK.Gen2
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.4790CBF8
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftTrojan:Win32/Vindor!pz
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
McAfeeTrojan-FVOJ!A2F1A7BFD9D5
MAXmalware (ai score=86)
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.Dacic.1.Backdoor.Hangup.A.4790CBF8?

Generic.Dacic.1.Backdoor.Hangup.A.4790CBF8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment