Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.7883FF71 removal guide

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.7883FF71 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.7883FF71 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.7883FF71?


File Info:

name: D130CD5B95335023582E.mlw
path: /opt/CAPEv2/storage/binaries/d267ec1219c5bd4e829947784cfdd0338bcadb7f0321bfad0118487ed2860eff
crc32: 7A0BDD26
md5: d130cd5b95335023582e815eec2c193a
sha1: 1c7ff395cb98549b493ee6168af8d1cde130fec1
sha256: d267ec1219c5bd4e829947784cfdd0338bcadb7f0321bfad0118487ed2860eff
sha512: 378ce73a540409b34ae9f10ca0d6cf28bf50fd71f42acbcaad368f0a0456beeed81edbefa19b8ef21e985789cad67f8a8e7329c5a88a8e5f5c179de8de73d3db
ssdeep: 1536:5TBPE7P559iZoR8jm0UouoIxJZW835YMkhohBE8VGh:5TBsH9HmmHjJUAEQGh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B4837B2EB6414FA3C6930236E25A5AD3B72EB6711335E5D03487B01CF317978A67EB80
sha3_384: bd47b2907ff73a0bbbddb236b1920af1a519d3605aa319a6f2d79eb159cd3f1227f821ff89b43e385fbf2e7064fe21c5
ep_bytes: 90909090906090b800104000bbd08e40
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.7883FF71 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.7883FF71
FireEyeGeneric.mg.d130cd5b95335023
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.7883FF71
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.61E432B221
VirITWorm.Win32.Berbew.G
CyrenW32/Qukart.L.gen!Eldorado
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Spy.Qukart
APEXMalicious
ClamAVWin.Trojan.Crypted-31
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.7883FF71
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.7883FF71 (B)
BaiduWin32.Trojan-Spy.Quart.a
F-SecureTrojan.TR/Crypt.ZPACK.Gen2
DrWebTrojan.Siggen13.42746
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.7883FF71
TrendMicroTROJ_GEN.R03BC0CIC23
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Gen
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.1VR6SI3
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.ZPACK.Gen2
MAXmalware (ai score=84)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.7883FF71
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftTrojan:Win32/Vindor!pz
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
TACHYONBackdoor/W32.Padodor
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0CIC23
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan-Spy.Win32.Qukart
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.5cb985
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.7883FF71?

Generic.Dacic.1.Backdoor.Hangup.A.7883FF71 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment