Backdoor

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035 (file analysis)

Malware Removal

The GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035 virus can do?

  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • A process attempted to delay the analysis task by a long amount of time.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Attempts to modify browser security settings
  • Creates a copy of itself

How to determine GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035?


File Info:

crc32: 989028EF
md5: dab6dc5531d329a0d22bded61c6ea2b4
name: DAB6DC5531D329A0D22BDED61C6EA2B4.mlw
sha1: 1a8da75eab37601bf45d53adb2626d3ea4e8ba23
sha256: ffe53e36304bc25aa703cae5c4930d809031e5aa84fd6b4e4179932f82ae38f8
sha512: 35fb4458a1f3a65bf77e09e54df16800551587da3dc10daf042160adc7390070e1f082684508194b9dfd3eb952f672e43ec21143690a7a9e045faaf871957f5f
ssdeep: 768:8yZjENCC0jNPWCan2jwd24FFwqn+5nUef8HQiA2R8HiDhBYkACor7utW2p/1H5W:8qgCHphgdBFFwqnqUtJZFIuQ2L0p
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005780dd1 )
Elasticmalicious (high confidence)
DrWebBackDoor.HangUp.43874
CynetMalicious (score: 100)
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035
CylanceUnsafe
SangforWin.Trojan.Crypted-29
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.531d32
BaiduWin32.Trojan-Spy.Quart.a
CyrenW32/Kryptik.DAI.gen!Eldorado
SymantecBackdoor.Berbew.F
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Trojan.Crypted-29
KasperskyTrojan-Proxy.Win32.Qukart.vih
BitDefenderGenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
MicroWorld-eScanGenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035
TencentTrojan-Ransom.Win32.Pornoasset.a
Ad-AwareGenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035
SophosML/PE-A + Troj/Agent-BGRP
ComodoTrojWare.Win32.TrojanDownloader.Berbew.DA@8iilci
BitDefenderThetaAI:Packer.6B00B60D1D
VIPREBehavesLike.Win32.Malware.ssc (mx-v)
McAfee-GW-EditionBehavesLike.Win32.Backdoor.qc
FireEyeGeneric.mg.dab6dc5531d329a0
EmsisoftGenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XDR.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GridinsoftTrojan.Heur!.03216121
ArcabitGenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035
ZoneAlarmTrojan-Proxy.Win32.Qukart.vih
GDataWin32.Trojan.PSE.14IV1C2
TACHYONBackdoor/W32.Padodor
AhnLab-V3Win-Trojan/Berbew.51712
Acronissuspicious
McAfeeGeneric Malware.bj
MAXmalware (ai score=85)
VBA32Backdoor.HangUp
MalwarebytesTrojan.Nymaim.Generic
PandaTrj/Genetic.gen
RisingSpyware.Qukart!1.AE0A (CLASSIC)
IkarusTrojan-Spy.Win32.Qukart
MaxSecureProxy.Qukart.gen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]

How to remove GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035?

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment