Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.531B5276 malicious file

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.531B5276 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.531B5276 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.531B5276?


File Info:

name: 11FB442B143778DD6F0E.mlw
path: /opt/CAPEv2/storage/binaries/1004e59ddd99f80662d62053db1bfd22dd49d6838d61e14eb4d62d7f21a944ce
crc32: 7D5A46F0
md5: 11fb442b143778dd6f0e9751508d357e
sha1: 3c36a66357c6aa69046ac521f5e0534c526b6b5a
sha256: 1004e59ddd99f80662d62053db1bfd22dd49d6838d61e14eb4d62d7f21a944ce
sha512: fe232f7dc2a51ade7537b67d1f822d2d750e48e990246aac4a09db8b0b259d86a9dff6c864467efb1aea425b831857f31b0f9f0e3e9c30f6f178327d4174d982
ssdeep: 24576:JVjWdXHfNIVyeNIVy2jU13fS2hEYM9RIPqcNaAarJWw6j0dFZg0ZktGlIOfSJbui:nidXeyjC3a2hEY2RIPqcNaAarJWwq0d6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T147056D3BF24617A1C7C903B22F9A48C9A719413912BE72D2D469865D1BE7B1C42F7EC3
sha3_384: 7c8f761e71370ba6ca8b2b28591c629c23ecab3eb41ca34fd6cbd990020c90ae2bf3f1d8a7c8d85f6a697e79d904132d
ep_bytes: 90909090906090b80010400090bb6c8f
timestamp: 2011-09-04 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.531B5276 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebBackDoor.HangUp.43791
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.531B5276
ClamAVWin.Trojan.Crypted-31
FireEyeGeneric.mg.11fb442b143778dd
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.531B5276
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005780dd1 )
K7AntiVirusTrojan ( 005780dd1 )
BitDefenderThetaAI:Packer.4E8CD85221
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.531B5276
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.531B5276 (B)
F-SecureTrojan.TR/Patched.Ren.Gen
BaiduWin32.Trojan-Spy.Quart.a
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.531B5276
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
IkarusTrojan-Spy.Win32.Qukart
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=80)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.531B5276
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
McAfeeTrojan-FVOJ!11FB442B1437
TACHYONBackdoor/W32.Padodor
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexBackDoor.Tdongs!HW8fo9qvMKI
SentinelOneStatic AI – Malicious PE
MaxSecureProxy.Qukart.gen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.531B5276?

Generic.Dacic.1.Backdoor.Hangup.A.531B5276 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment