Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.B89C2D51 removal tips

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.B89C2D51 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.B89C2D51 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.B89C2D51?


File Info:

name: 56EE4A1E1EDA40F64CDE.mlw
path: /opt/CAPEv2/storage/binaries/bffb6bd72348ba41e17a110312791b8aaccdf2caf01226abf04b02e2506f33ca
crc32: ABA051B6
md5: 56ee4a1e1eda40f64cde1425276efdff
sha1: 0a065b1c2c9ad9aa306b1635998fa3384b2b723f
sha256: bffb6bd72348ba41e17a110312791b8aaccdf2caf01226abf04b02e2506f33ca
sha512: 8654514f10f9b7d647cf0ac9c34ec77d28d02ecc2ba13a1f1c3172c47f7117a5e7e90df467bc929f7256cc0a58fed8526ea36861a202ce7e5b9f43337e277f6b
ssdeep: 3072:y+MA8ypgmzYwI0ZjjX2+NufQPHMNeG+U:l8yiWYn0ZjjX2+6QPsNGU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T162E329BB6E550BF1D78102BF151A89D6EF1970781F6BC4E36469C04E2363AD843BAF84
sha3_384: eec6b0d85f238158f7149f523616b176947dc568c82834fa88935964c5be9a76607d0ee5d04b86ab5b4c7401d8a54d30
ep_bytes: 90909060909090b800104000bb6c8f40
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.B89C2D51 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebBackDoor.HangUp.43791
CynetMalicious (score: 100)
CAT-QuickHealBackdoor.Berbew.A6.MUE
McAfeeGenericRXVP-YB!56EE4A1E1EDA
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.3731454721
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.B89C2D51
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.B89C2D51
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.B89C2D51 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen2
BaiduWin32.Trojan-Spy.Quart.a
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.B89C2D51
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.56ee4a1e1eda40f6
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.B89C2D51
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
VBA32BScope.Backdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.B89C2D51
MAXmalware (ai score=86)
MalwarebytesCrypt.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan-Spy.Win32.Qukart
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.B89C2D51?

Generic.Dacic.1.Backdoor.Hangup.A.B89C2D51 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment