Backdoor

Should I remove “Generic.Dacic.1.Backdoor.Hangup.A.B6598D6A”?

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.B6598D6A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.B6598D6A virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.B6598D6A?


File Info:

name: D7E1988D9722BD33ECE4.mlw
path: /opt/CAPEv2/storage/binaries/fe51225dde606a21d4b576422755fb73103ed146c804d279f2516a895dc80454
crc32: B23ACFE7
md5: d7e1988d9722bd33ece491ffdd558d65
sha1: 82d8f70bfd856cfe4c12852de42f5ede067c7b3a
sha256: fe51225dde606a21d4b576422755fb73103ed146c804d279f2516a895dc80454
sha512: 9367ac1ad6db4a0e479fd3efe3c1a31e5131e9ee0e70606deab254fbfa41cfd4e280914fc916b04d1da58002a1b45c0716f7856b32ab416fe2f6bfd9a08e859d
ssdeep: 3072:QPduAtYeKcbLhn1UAEQGBcHN0OlaxP3DZyN/+oeRpxPdZFibDyxn:QPdltYIRmAHj05xP3DZyN1eRppzcexn
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T186E33B2FF64517B2C6D203B3274A99E6B7299479136585A06438C02D2B3BE7C5FBB3D0
sha3_384: 109ece2268a117a186b8383e4ad2265ec2747a82b63450394ace96fa014b6d9d99d6b561d458caf536a26398edf96c1d
ep_bytes: 909090609090b80010400090bbd08e40
timestamp: 1972-09-27 00:00:00

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.B6598D6A also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.B6598D6A
ClamAVWin.Trojan.Crypted-29
CAT-QuickHealBackdoor.Berbew.A6.MUE
McAfeeTrojan-FVOJ!D7E1988D9722
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.bfd856
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
CyrenW32/Qukart.L.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Spy.Qukart
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.B6598D6A
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Qukart.ya
TACHYONBackdoor/W32.Padodor
SophosTroj/Padodo-Gen
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Siggen13.42746
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.B6598D6A
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.d7e1988d9722bd33
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.B6598D6A (B)
IkarusTrojan-Spy.Win32.Qukart
GDataGeneric.Dacic.1.Backdoor.Hangup.A.B6598D6A
JiangminTrojan.Generic.dzrgt
AviraTR/Dropper.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.B6598D6A
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftTrojan:Win32/Vindor!pz
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
BitDefenderThetaAI:Packer.A3320B7E21
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.B6598D6A
MAXmalware (ai score=82)
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.Dacic.1.Backdoor.Hangup.A.B6598D6A?

Generic.Dacic.1.Backdoor.Hangup.A.B6598D6A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment