Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.AC5F56E6 (file analysis)

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.AC5F56E6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.AC5F56E6 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.AC5F56E6?


File Info:

name: 02EB3ECC4904E49E46D3.mlw
path: /opt/CAPEv2/storage/binaries/3e77be3994bca142a47a816495687046091768dfd56cc8e11af8ee7df654639e
crc32: 1E51D2E4
md5: 02eb3ecc4904e49e46d3b9b77263797f
sha1: b4181699de57ed79b8884b2e0aea7083f7a04a11
sha256: 3e77be3994bca142a47a816495687046091768dfd56cc8e11af8ee7df654639e
sha512: eef04e3e0468b6a4342f6a9e391b867bf6b64d78863b484a10ee098624b195be54d1404eef2a675082e39f989cb5a51684b3c08a87d8e3f7f2f41c27cc8fd6ae
ssdeep: 6144:VdoYqFlEIyedZwlNPjLs+H8rtMsQBJyJyymeH:CFFyGZwlNPjLYRMsXJvmeH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18B74493EFBA80771C7860273261B1D96DB38C86C0F5441D35378CB5A1F269A4D3B6BA6
sha3_384: 092e3c11c4b992b8c650fd214c496adb9583e54e18086c43c6732aa79da1f355049d5ba508828690e52e317b2b998a9b
ep_bytes: 90909090906090b800104000bb6c8f40
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.AC5F56E6 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Qukart.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.AC5F56E6
ClamAVWin.Trojan.Crypted-31
CAT-QuickHealBackdoor.Berbew.A6.MUE
McAfeeTrojan-FVOJ!02EB3ECC4904
Cylanceunsafe
ZillyaTrojan.Qukart.Win32.1042082
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
AlibabaBackdoor:Win32/Berbew.36d
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.9de57e
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.AC5F56E6
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.AC5F56E6 (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.AC5F56E6
TrendMicroTROJ_GEN.R002C0CHR23
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.02eb3ecc4904e49e
SophosTroj/Padodo-Fam
IkarusTrojan.Crypt
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XDR.Gen
MAXmalware (ai score=80)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.AC5F56E6
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.AC5F56E6
TACHYONBackdoor/W32.Padodor
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0CHR23
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureProxy.Qukart.gen
FortinetW32/GenKryptik.BJQV!tr
BitDefenderThetaAI:Packer.8B6893E621
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Dacic.1.Backdoor.Hangup.A.AC5F56E6?

Generic.Dacic.1.Backdoor.Hangup.A.AC5F56E6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment