Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.87EAF74C removal guide

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.87EAF74C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.87EAF74C virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.87EAF74C?


File Info:

name: A89570ED8E259076B1BB.mlw
path: /opt/CAPEv2/storage/binaries/38253ecae8e8f4824e774bf6ad101668dd4edd21f835e4456884aa5c9b3939ec
crc32: 24B69786
md5: a89570ed8e259076b1bb340fc39d3c6d
sha1: f594dc433b62188008583d18c68d21d0f0706683
sha256: 38253ecae8e8f4824e774bf6ad101668dd4edd21f835e4456884aa5c9b3939ec
sha512: 7196e2582b9d626d4d2442d9a18574c9f5d57182d8571ec5b74bccecd21aa9cc5e5891b42fde588d44ee1a07108b4986febc515648f80df00ad30ca644c86138
ssdeep: 24576:mNdXHfNIVyeNIVy2jU13fS2hEYM9RIPqcNaAarJWw6j0dFZg0ZktGlIOfSJbuIsg:KdXeyjC3a2hEY2RIPqcNaAarJWwq0dFo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F2057D3FE24607A1C3C807F22F9A49C9A719453912AE72D29469825D2BD7F1C42F6FD3
sha3_384: 7cddc46da028587ffe69b21fe84531698d95fcf0401ac645629c8c9b30a02bc4a0202b553f5ff945cb8ed1edb9930d1a
ep_bytes: 90609090909090b800104000bb6c8f40
timestamp: 2011-09-04 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.87EAF74C also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebBackDoor.HangUp.43791
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.87EAF74C
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.87EAF74C
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.4E8CD85221
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-30
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.87EAF74C
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.87EAF74C (B)
F-SecureTrojan.TR/Patched.Ren.Gen
BaiduWin32.Trojan-Spy.Quart.a
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.87EAF74C
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.a89570ed8e259076
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.87EAF74C
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
McAfeeTrojan-FVOJ!A89570ED8E25
TACHYONBackdoor/W32.Padodor
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexBackDoor.Tdongs!HW8fo9qvMKI
IkarusTrojan-Spy.Win32.Qukart
MaxSecureProxy.Qukart.gen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.33b621
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.87EAF74C?

Generic.Dacic.1.Backdoor.Hangup.A.87EAF74C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment