Backdoor

Generic.Dacic.1.Backdoor.Hangup.A.FE941B3B removal guide

Malware Removal

The Generic.Dacic.1.Backdoor.Hangup.A.FE941B3B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dacic.1.Backdoor.Hangup.A.FE941B3B virus can do?

  • Sample contains Overlay data
  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dacic.1.Backdoor.Hangup.A.FE941B3B?


File Info:

name: 16E0563CECED0F8E754A.mlw
path: /opt/CAPEv2/storage/binaries/849cdc0eeb2a6cdd147d18b6e81e69f03950dd5b720269c4a941fca33529bc56
crc32: F24941C4
md5: 16e0563ceced0f8e754afe76ef2b665c
sha1: a1653f85c85fbf8b09ede1cd9315b6ca716155e8
sha256: 849cdc0eeb2a6cdd147d18b6e81e69f03950dd5b720269c4a941fca33529bc56
sha512: f75592a25777640f9507398c9f905124e898d7a480d9f720d2c6229073462592718a364299ee7814038c1fef030323e78b7e80ef34ad946333b1639946218d67
ssdeep: 6144:9TZwDiTIyedZwlNPjLs+H8rtMsQBJyJyymeH:zwDxyGZwlNPjLYRMsXJvmeH
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C9744935F7AC0771CF8B027B263B1886DB39C4AC0F5451D317389B6A5A36C88C5B6B66
sha3_384: 25f329f50d70bfb8d917091ac7e583e8fa3fdb422a18beaee5e509ff01901bf8d592d5c0edd5e4608f1419b25afa7087
ep_bytes: 90909090906090b80010400090bb6c8f
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

Generic.Dacic.1.Backdoor.Hangup.A.FE941B3B also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Dacic.1.Backdoor.Hangup.A.FE941B3B
ClamAVWin.Trojan.Crypted-31
CAT-QuickHealBackdoor.Berbew.A6.MUE
McAfeeTrojan-FVOJ!16E0563CECED
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.Padodor.Win32.1145657
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Trojan-Spy.Quart.a
VirITWorm.Win32.Berbew.G
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGeneric.Dacic.1.Backdoor.Hangup.A.FE941B3B
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
EmsisoftGeneric.Dacic.1.Backdoor.Hangup.A.FE941B3B (B)
F-SecureTrojan.TR/Crypt.XDR.Gen
DrWebBackDoor.HangUp.43791
VIPREGeneric.Dacic.1.Backdoor.Hangup.A.FE941B3B
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.16e0563ceced0f8e
SophosTroj/Padodo-Fam
IkarusTrojan.Crypt
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XDR.Gen
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
Kingsoftmalware.kb.a.1000
ArcabitGeneric.Dacic.1.Backdoor.Hangup.A.FE941B3B
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
VBA32BScope.Backdoor.Berbew
ALYacGeneric.Dacic.1.Backdoor.Hangup.A.FE941B3B
MAXmalware (ai score=80)
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
YandexTrojan.PR.Qukart!MRIP3jtd7Kk
SentinelOneStatic AI – Malicious PE
MaxSecureProxy.Qukart.gen
FortinetW32/GenKryptik.FBNK!tr
BitDefenderThetaAI:Packer.8B6893E621
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.5c85fb
DeepInstinctMALICIOUS

How to remove Generic.Dacic.1.Backdoor.Hangup.A.FE941B3B?

Generic.Dacic.1.Backdoor.Hangup.A.FE941B3B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment