Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.A4DFF4CF malicious file

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.A4DFF4CF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.A4DFF4CF virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.A4DFF4CF?


File Info:

name: 0BE362D14C1472268ECB.mlw
path: /opt/CAPEv2/storage/binaries/63c1687a8cc05e3678204531e1a391f342560cf06aedc9ba86f815bd0c434bfd
crc32: FCA30B13
md5: 0be362d14c1472268ecba83df671c6e0
sha1: dcab929aeb58fe4a1b408db529698190d7f0636e
sha256: 63c1687a8cc05e3678204531e1a391f342560cf06aedc9ba86f815bd0c434bfd
sha512: c3dcf201f8534185bd77c9feab6e28903155a8ca0b978fd69c8d715e33b69e268d4c555c36b6a57ba10736b9e83e4961d9ba596f42a431afe1ee9e5873b5fc1c
ssdeep: 3072:pqrDI26APgxed6BYudlNPMAvAURfE+Hxgu+tAcrbFAJc+RsUi1aVDkOvJ:pqvI26IyedZwlNPjLs+H8rtMs4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1AD344975FBA80B71C76A09321E2B18B3CB38E45C0FB555D3572CC3594A66883B1B2BB5
sha3_384: c92b87d096e428f6224469f2866a597c4e0021dfe7224c389baf1797b47d3bc5df44d1c1f55c8be42611d08195be598f
ep_bytes: 909090906090b80010400090bb6c8f40
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.A4DFF4CF also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.A4DFF4CF
FireEyeGeneric.mg.0be362d14c147226
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.A4DFF4CF
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.A4DFF4CF
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.2B8D4C3B21
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.A4DFF4CF
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.A4DFF4CF (B)
BaiduWin32.Trojan-Spy.Quart.a
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
ZillyaTrojan.Qukart.Win32.1042082
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.A4DFF4CF
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
McAfeeGenericRXVP-YB!0BE362D14C14
MAXmalware (ai score=87)
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!MRIP3jtd7Kk
IkarusTrojan-Spy.Win32.Qukart
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.A4DFF4CF?

Generic.Dacic.1.Backdoor.Hangup.A.A4DFF4CF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment