Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.9000D8DB removal

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.9000D8DB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.9000D8DB virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.9000D8DB?


File Info:

name: B2D984BC5CAAFFD6A6D3.mlw
path: /opt/CAPEv2/storage/binaries/5ab721bb200109f6a98a27f68e86ea8aaa21fb4c5fca0087f1f5a4e88292e746
crc32: CE04F460
md5: b2d984bc5caaffd6a6d3debaf7dfda59
sha1: 2a0a55d7f9cf7d4d4be72d5e1dcc386a95809183
sha256: 5ab721bb200109f6a98a27f68e86ea8aaa21fb4c5fca0087f1f5a4e88292e746
sha512: 717cf0b2cd0080a898adb174beb910808b3c619b19f49db47b9b4d217be1eeeef7aab6d33c2fbb0748559236b70d38c26fc5d2d8300c5d81a9a82d367f0b8b58
ssdeep: 24576:CdXHfNIVyeNIVy2jU13fS2hEYM9RIPqcNaAarJWw6j0dFZg0ZktGlIOfSJbuIs8N:CdXeyjC3a2hEY2RIPqcNaAarJWwq0dFo
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EF056D3BE28207A1C3D903B22F9A58C9E7194179227E72D2D469815D1BE7F1C52F6EC3
sha3_384: a873f7d0f3f53258df4e4daba4b1750da9d30eade522cd196c8c815cf647546c312ec6974fc2011f8e16b4ee83f7be43
ep_bytes: 609090909090b8001040009090bb6c8f
timestamp: 2011-09-04 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.9000D8DB also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.9000D8DB
FireEyeGeneric.mg.b2d984bc5caaffd6
CAT-QuickHealBackdoor.Berbew.A6.MUE
SkyhighBehavesLike.Win32.Generic.ch
McAfeeTrojan-FVOJ!B2D984BC5CAA
Cylanceunsafe
ZillyaTrojan.Padodor.Win32.1030397
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.7f9cf7
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.9000D8DB
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Crypted-28
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.9000D8DB
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.9000D8DB (B)
F-SecureTrojan.TR/Patched.Ren.Gen
DrWebBackDoor.HangUp.43791
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.9000D8DB
TrendMicroTROJ_GEN.R03BC0CKL23
Trapminemalicious.high.ml.score
SophosMal/Padodor-A
IkarusTrojan.Win32.Cerber
JiangminTrojan.Generic.dzrgt
VaristW32/Agent.HJI.gen!Eldorado
AviraTR/Patched.Ren.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
MicrosoftBackdoor:Win32/Berbew.AA!MTB
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
GDataWin32.Trojan.PSE.11RRK8R
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
BitDefenderThetaAI:Packer.4E8CD85221
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.9000D8DB
MAXmalware (ai score=82)
VBA32BScope.Backdoor.Berbew
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0CKL23
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureProxy.Qukart.gen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Dacic.1.Backdoor.Hangup.A.9000D8DB?

Generic.Dacic.1.Backdoor.Hangup.A.9000D8DB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment