Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.89F480B6 removal guide

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.89F480B6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.89F480B6 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.89F480B6?


File Info:

name: 147E0CDF8B9BE9CC5A1D.mlw
path: /opt/CAPEv2/storage/binaries/ca7fdbb4af3ee9a09900a55aac07870801ac93869274ea893d9d7aac9f5d4d69
crc32: 0FD3D990
md5: 147e0cdf8b9be9cc5a1d301f01f48d2c
sha1: 3a4dd1b2a75f6982af36a8f815d2cb3e1f2ff2be
sha256: ca7fdbb4af3ee9a09900a55aac07870801ac93869274ea893d9d7aac9f5d4d69
sha512: e2b6ba74199b157274ae2540d0d6453a2bb1fdc1a3d0e5f242dbc9e50e7dea3035ea7604b844f64b38a7cd9b2e93b0a244c2fcb7904f154fb6b1e2e5b895e36f
ssdeep: 12288:zUbqI8aKSPh2kkkkK4kXkkkkkkkkl888888888888888888n6:ziqI8gPh2kkkkK4kXkkkkkkkko
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T191A4F843FF93E537C53E8A3441378F1A9626AC20FF8128C71DB8A93A2DF15D995246E1
sha3_384: 243f8b7e95f8f500970584e27348381660efd0c76395313b7591976e943de8dc30a3f6a9f1cc5ed293c2a6d6b6537372
ep_bytes: 90909090609090b800104000bb6c8f40
timestamp: 2014-05-31 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.89F480B6 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.89F480B6
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.89F480B6
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.89F480B6
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.2a75f6
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
CyrenW32/Qukart.L.gen!Eldorado
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.89F480B6
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.89F480B6 (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
ZillyaTrojan.Padodor.Win32.382158
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.147e0cdf8b9be9cc
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XDR.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.89F480B6
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
McAfeeTrojan-FVOJ!147E0CDF8B9B
TACHYONBackdoor/W32.Padodor
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!E5prQA1pCrY
IkarusTrojan-Spy.Win32.Qukart
MaxSecureProxy.Qukart.gen
FortinetW32/GenKryptik.BJQV!tr
BitDefenderThetaAI:Packer.F29FD97721
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.Dacic.1.Backdoor.Hangup.A.89F480B6?

Generic.Dacic.1.Backdoor.Hangup.A.89F480B6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment