Backdoor

About “Generic.Dacic.1.Backdoor.Hangup.A.96C14A17” infection

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.96C14A17 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.96C14A17 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.96C14A17?


File Info:

name: A64C8C42DA2F0CDA7B7A.mlw
path: /opt/CAPEv2/storage/binaries/5b7eda9bf4cb1ebd6d440d1aa812a29645683d099f9476383381f01c6232e9dc
crc32: 0289324C
md5: a64c8c42da2f0cda7b7ac7a942e147b3
sha1: 7e11fed6d9f4a330acb9ddc499aa16e82e0539d5
sha256: 5b7eda9bf4cb1ebd6d440d1aa812a29645683d099f9476383381f01c6232e9dc
sha512: 1a1e34ed2d8e05874f9ddee1de95a087483fbd3eea0de605305a0a455226e922ce488d0fc1a6eb89927013345294a50a3290b96059eb34430eb62588c1aac440
ssdeep: 3072:pL2dDimCbNtCBUAEQGBcHN0OlaxP3DZyN/+oeRpxPdZFibDyxn:pL9mCBo6AHj05xP3DZyN1eRppzcexn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T108E3295FB2C507B3C18332B2E60B59F5B7298779336985AC7468C01EC267E78767B281
sha3_384: f6572c500cc24490d94349f8efda1fb80f984b36f31ee07da5951fdff0f0cba546f4cf29ca0865f441d5563ea8202afd
ep_bytes: 909090906090b8001040009090bbd08e
timestamp: 1972-09-27 00:00:00

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.96C14A17 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebTrojan.Siggen13.42746
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.96C14A17
FireEyeGeneric.mg.a64c8c42da2f0cda
CAT-QuickHealBackdoor.Berbew.A6.MUE
SkyhighBehavesLike.Win32.Generic.cm
McAfeeTrojan-FVOJ!A64C8C42DA2F
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.96C14A17
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.A3320B7E21
VirITWorm.Win32.Berbew.G
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Spy.Qukart
APEXMalicious
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.96C14A17
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.96C14A17 (B)
GoogleDetected
F-SecureTrojan.TR/Dropper.Gen
BaiduWin32.Trojan-Spy.Quart.a
TrendMicroTROJ_GEN.R03BC0CJ723
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Gen
SentinelOneStatic AI – Malicious PE
GDataGeneric.Dacic.1.Backdoor.Hangup.A.96C14A17
JiangminTrojan.Generic.dzrgt
VaristW32/Qukart.L.gen!Eldorado
AviraTR/Dropper.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.96C14A17
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftTrojan:Win32/Vindor!pz
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.96C14A17
TACHYONBackdoor/W32.Padodor
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0CJ723
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan-Spy.Win32.Qukart
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.6d9f4a
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.96C14A17?

Generic.Dacic.1.Backdoor.Hangup.A.96C14A17 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment