Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.C7FE2377 removal guide

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.C7FE2377 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.C7FE2377 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.C7FE2377?


File Info:

name: E7D4600A1F18BF044ABE.mlw
path: /opt/CAPEv2/storage/binaries/26b3eeaf53824fb42ef2fd01570d14d087b9c9dd0d26b7d5253c409fb832d8e6
crc32: 9BE263F9
md5: e7d4600a1f18bf044abe963cce67ffad
sha1: 1c60b0b9cbda9bd47dcb7516af87651c0f8f839f
sha256: 26b3eeaf53824fb42ef2fd01570d14d087b9c9dd0d26b7d5253c409fb832d8e6
sha512: a359baa4512a54a9cf33d8a407f611d760f87360ff5833afa9c09fb895fc931b3471c1fca31dfc5636e32a560eb4294de36429b4f15da91ddec9e56773b878dd
ssdeep: 6144:j52CZx1IyedZwlNPjLs+H8rtMsQBJyJyymeH:jgCZgyGZwlNPjLYRMsXJvmeH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11B746B76FBA82771C3860233121B1D81DBB8C85C0FA576FB53788B5A5936990C1B2F67
sha3_384: 9e8d26f7240aabdeb4fc5d43ddf2353454eef13046022b86ab0ed72d192e5bb9f463fd8556a9b4f7ab7ba74eda5e0389
ep_bytes: 60909090909090b80010400090bb6c8f
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.C7FE2377 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebBackDoor.HangUp.43791
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.C7FE2377
FireEyeGeneric.mg.e7d4600a1f18bf04
CAT-QuickHealBackdoor.Berbew.A6.MUE
McAfeeGenericRXVP-YB!E7D4600A1F18
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.C7FE2377
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderThetaAI:Packer.8B6893E621
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-28
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.C7FE2377
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.C7FE2377 (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
BaiduWin32.Trojan-Spy.Quart.a
ZillyaTrojan.Qukart.Win32.1042082
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.C7FE2377
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
VBA32BScope.Backdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.C7FE2377
MAXmalware (ai score=84)
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan-Spy.Win32.Qukart
MaxSecureProxy.Qukart.gen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.a1f18b
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.C7FE2377?

Generic.Dacic.1.Backdoor.Hangup.A.C7FE2377 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment