Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.52DA2495 information

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.52DA2495 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.52DA2495 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.52DA2495?


File Info:

name: 21858B474A5847FF00FB.mlw
path: /opt/CAPEv2/storage/binaries/3def54f5c0226ace77b3ea324720fea7e575ff6476fca81d2cfdada3f67882eb
crc32: 3E88A9EC
md5: 21858b474a5847ff00fbd9b1410f302e
sha1: 92ada2aed4f9236dda7ab7538fa94e8000c63c0a
sha256: 3def54f5c0226ace77b3ea324720fea7e575ff6476fca81d2cfdada3f67882eb
sha512: 5adccb31b6e76fec48df98fc3f9fec20a3b149a898660e306929a8e4c2282fe3bcbbbac45445af074ece0c949a79936e78be3eaf2ded57344491d3567c0bec68
ssdeep: 6144:CncHWKcfdmUTYaT15f7o+STYaT15fOkHs+yoO:mc2NdmUTYapJoTYapXHZtO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15C64260BA125CEE3E974833C2AE52389E3E5437E03A6945DF8D4C47CBF735A591AE640
sha3_384: e047751e8877b1f34498acc1df0c3d757df2e6da5ab0ff8d603361e19ca1d2d832c71df9dfd03d85b537d39587fb775c
ep_bytes: 60909090909090b800104000bb6c8f40
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.52DA2495 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.52DA2495
FireEyeGeneric.mg.21858b474a5847ff
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.52DA2495
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Qukart.Win32.1032189
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.52DA2495
BitDefenderThetaAI:Packer.9DF4A2E821
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-28
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.52DA2495
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
SophosTroj/Padodo-Fam
BaiduWin32.Trojan-Spy.Quart.a
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.52DA2495
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
Trapminemalicious.high.ml.score
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.52DA2495 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.BU
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
GDataWin32.Trojan.PSE.11RRK8R
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
McAfeeTrojan-FVOJ!21858B474A58
MAXmalware (ai score=80)
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!niMNmBPy9Os
IkarusTrojan-Spy.Win32.Qukart
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.52DA2495?

Generic.Dacic.1.Backdoor.Hangup.A.52DA2495 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment