Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.C847EE8F removal

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.C847EE8F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.C847EE8F virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.C847EE8F?


File Info:

name: 1CF3888C96110BF2D5BB.mlw
path: /opt/CAPEv2/storage/binaries/792fe50bb5fdb17692b1947177b87627be3e79d8762ee576f8866668eb2ef74e
crc32: 1BA11495
md5: 1cf3888c96110bf2d5bb8557d998f2b0
sha1: fd4fa1fe241a0eed0d792e10d522b0b28fcf9504
sha256: 792fe50bb5fdb17692b1947177b87627be3e79d8762ee576f8866668eb2ef74e
sha512: 282f77af7477df42b8772a456add72b8596cd9f643945f884ae67fa220b2418cfcad3ca2087de0e7e601f5aeb0d2b8f1e9bc1fe274c2bf643f013ab5cd6a2097
ssdeep: 6144:2VFaGGIyedZwlNPjLs+H8rtMsQBJyJyymeH:2VFXyGZwlNPjLYRMsXJvmeH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T183744836FBA82771C7C60273271B1A97D738E46C1F5411D36278935A5A378B0C272BB6
sha3_384: 4029d2435b1789fedd356e4a3478dcc97a997bd02852a4961334edcccf5d73eed6abbd973b47ee89215b0e9ba4db267d
ep_bytes: 90609090909090b80010400090bb6c8f
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.C847EE8F also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.C847EE8F
FireEyeGeneric.mg.1cf3888c96110bf2
CAT-QuickHealBackdoor.Berbew.A6.MUE
McAfeeGenericRXVP-YB!1CF3888C9611
Cylanceunsafe
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.C847EE8F
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.C847EE8F
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
SophosTroj/Padodo-Fam
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
ZillyaTrojan.Qukart.Win32.1042082
McAfee-GW-EditionBehavesLike.Win32.Backdoor.fh
Trapminemalicious.high.ml.score
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.C847EE8F (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.C847EE8F
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
VBA32BScope.Backdoor.Berbew
MAXmalware (ai score=88)
MalwarebytesCrypt.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!MRIP3jtd7Kk
IkarusTrojan-Spy.Win32.Qukart
FortinetW32/Qukart.A!tr
BitDefenderThetaAI:Packer.8B6893E621
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.c96110
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.C847EE8F?

Generic.Dacic.1.Backdoor.Hangup.A.C847EE8F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment