Backdoor

Should I remove “Generic.Dacic.1.Backdoor.Hangup.A.FD365DB8”?

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.FD365DB8 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.FD365DB8 virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.FD365DB8?


File Info:

name: C4ED0723228A7CF652A1.mlw
path: /opt/CAPEv2/storage/binaries/f05f9cf135c3a13f057e0ca8dcffce1a095036b127daea947fd3012893d69e67
crc32: 2D488D85
md5: c4ed0723228a7cf652a1399cb608e682
sha1: 13af2efcae89a3b7df0fbffa5866b60dabd00b15
sha256: f05f9cf135c3a13f057e0ca8dcffce1a095036b127daea947fd3012893d69e67
sha512: d672aadbd5a08ba265673b67183b3ac6e61ebffc11641a740195d7ffef512c9c2b7067cc0c9edc41f6085aee70ace7ef957a80cd3708af369e4dc1b5e760b684
ssdeep: 24576:ZpEFfyvzecvHPh2kkkkK4kXkkkkkkkkhLX3a20R0v50+YNpsKv2EvZHp3oWAU:ZpEFfyvKcvXbazR0vKLXZ6U
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15A75AD13FA57A932C09B12B6217F9F31D06ECCE58F2345D309989AF1AAB12D315743E6
sha3_384: 816afa817550b421a1e2cbeaea076b6188e1304176eef39360bfcf73e6c4b8ad2e0fff13d4e980e66c9ce106efea43c4
ep_bytes: 90906090909090b80010400090bb6c8f
timestamp: 2021-04-04 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.FD365DB8 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebBackDoor.HangUp.43791
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.FD365DB8
ClamAVWin.Trojan.Crypted-32
CAT-QuickHealBackdoor.Berbew.A6.MUE
SkyhighBehavesLike.Win32.Generic.tc
McAfeeTrojan-FVOJ!C4ED0723228A
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Padodor.Win32.344895
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.cae89a
BitDefenderThetaAI:Packer.ABFF2A9921
VirITWorm.Win32.Berbew.G
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.FD365DB8
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.FD365DB8 (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
BaiduWin32.Trojan-Spy.Quart.a
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.FD365DB8
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.c4ed0723228a7cf6
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
GoogleDetected
AviraTR/Crypt.XDR.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.998
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.FD365DB8
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
VaristW32/Qukart.L.gen!Eldorado
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.FD365DB8
TACHYONBackdoor/W32.Padodor
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!7x4N/APncCU
IkarusTrojan-Spy.Win32.Qukart
MaxSecureProxy.Qukart.gen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.Dacic.1.Backdoor.Hangup.A.FD365DB8?

Generic.Dacic.1.Backdoor.Hangup.A.FD365DB8 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment