Backdoor

About “Generic.Dacic.1.Backdoor.Hangup.A.EB2A359F” infection

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.EB2A359F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.EB2A359F virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.EB2A359F?


File Info:

name: D6591D29DA1E9450B65B.mlw
path: /opt/CAPEv2/storage/binaries/7581625d6b5f8674ed82c079ee8156261b6b2f1a32cc5a5d4cfbb2f83b67b2ae
crc32: 3DEAAC7E
md5: d6591d29da1e9450b65b6791f7cdf8f9
sha1: 6e5a62255ce03088865cf931d7224e94b9314d09
sha256: 7581625d6b5f8674ed82c079ee8156261b6b2f1a32cc5a5d4cfbb2f83b67b2ae
sha512: ec42e8dc84b9b838b6117367f5bc61979315333987c536981f0ede4c6313d0d170e423d7d8b63aaae8bfa1f2ccef7a1f3695d973cb7a0f2d9ebcdd9c8112fe4c
ssdeep: 24576:vcgfyvzecvHPh2kkkkK4kXkkkkkkkkhLX3a20R0v50+YNpsKv2EvZHp3oWAU:vcgfyvKcvXbazR0vKLXZ6U
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17975AE13FA97A932C49B1275217F5F32D0ADC8E58F2341E309989AF1EEA22C315753E5
sha3_384: 8b8cfba6a7a381a78c365b0c1b8b578e5c4290d9acfa9489076798d5e19e2b3740b567809706ddc4adc9def4ae79cc1f
ep_bytes: 909090906090b8001040009090bb6c8f
timestamp: 2021-04-04 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.EB2A359F also known as:

tehtrisGeneric.Malware
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.EB2A359F
FireEyeGeneric.mg.d6591d29da1e9450
CAT-QuickHealBackdoor.Berbew.A6.MUE
SkyhighBehavesLike.Win32.Generic.tc
McAfeeTrojan-FVOJ!D6591D29DA1E
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.EB2A359F
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.EB2A359F
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.55ce03
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Proxy.Win32.Qukart.gen
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.EB2A359F (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
ZillyaTrojan.Padodor.Win32.344895
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=87)
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XDR.Gen
VaristW32/Agent.HJI.gen!Eldorado
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.997
MicrosoftBackdoor:Win32/Berbew.AA!MTB
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.EB2A359F
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
GDataWin32.Trojan.PSE.11RRK8R
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
BitDefenderThetaAI:Packer.ABFF2A9921
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.EB2A359F
TACHYONBackdoor/W32.Padodor
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
TencentTrojan-Ransom.Win32.Pornoasset.a
YandexTrojan.PR.Qukart!7x4N/APncCU
IkarusTrojan-Spy.Win32.Qukart
MaxSecureProxy.Qukart.gen
FortinetW32/GenKryptik.BJQV!tr
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.Dacic.1.Backdoor.Hangup.A.EB2A359F?

Generic.Dacic.1.Backdoor.Hangup.A.EB2A359F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment