Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.9DDBEC73 (file analysis)

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.9DDBEC73 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.9DDBEC73 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.9DDBEC73?


File Info:

name: B2B3AC9D7357A936DD04.mlw
path: /opt/CAPEv2/storage/binaries/abdffdf7e979d808269d08d56203b5fab67b5856b236212c404c08b2118c895e
crc32: 6AF38C34
md5: b2b3ac9d7357a936dd0419aeb7661946
sha1: f86b56ca92a871cc9286c9f824ce8118c3580751
sha256: abdffdf7e979d808269d08d56203b5fab67b5856b236212c404c08b2118c895e
sha512: 7677eb348dd4270790db1068e6758f3808baccf18976127a7c1ba802ee900994e9673c795ec0b95025ff07251ca04e7aaf0ea5be940dab67e2618ba7c58ab981
ssdeep: 1536:CSaKkC6+/tyQxuQfD6wiAPgnDNBrcN4i6tBYuR3PlNPMAvNtBqqGBABiovRXlhQ:ChKv6s9HuwiAPgxed6BYudlNPMAvAUR4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B2D38D7FBE52DFB1C58732B73AD61AC2EB1880B946A685901479C31C132FB14927B793
sha3_384: 4d07bf12d3033e04af14c043849c41182fa600bb4f27414c08a68d064ea976fef1e1bf1376c6cf06f7e1d78c0741b2be
ep_bytes: 909090906090b80010400090bb6c8f40
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.9DDBEC73 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.9DDBEC73
FireEyeGeneric.mg.b2b3ac9d7357a936
CAT-QuickHealBackdoor.Berbew.A6.MUE
SkyhighBehavesLike.Win32.Generic.cc
McAfeeTrojan-FVOJ!B2B3AC9D7357
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Padodor.Win32.697029
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 005780dd1 )
K7AntiVirusTrojan ( 005780dd1 )
BitDefenderThetaAI:Packer.81FD860821
VirITWorm.Win32.Berbew.G
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.9DDBEC73
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.9DDBEC73 (B)
BaiduWin32.Trojan-Spy.Quart.a
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.9DDBEC73
TrendMicroTROJ_GEN.R03BC0CJ623
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=83)
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XDR.Gen
VaristW32/Padodor.F.gen!Eldorado
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.9DDBEC73
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.9DDBEC73
TACHYONBackdoor/W32.Padodor
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R03BC0CJ623
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.a92a87
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.9DDBEC73?

Generic.Dacic.1.Backdoor.Hangup.A.9DDBEC73 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment