Backdoor

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B) malicious file

Malware Removal

The GenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B) virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine GenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B)?


File Info:

name: 46B5E644DE97DA8A1D06.mlw
path: /opt/CAPEv2/storage/binaries/da649d86b1e42d4f1cd5071da820e24b1a4729120589d60ee0edc313342b89ec
crc32: 00E82352
md5: 46b5e644de97da8a1d06ab78a7318606
sha1: 8f17c48a00ba24207c30a03dc20449deacc6ccfe
sha256: da649d86b1e42d4f1cd5071da820e24b1a4729120589d60ee0edc313342b89ec
sha512: 862672ecf8e4252d812308a074d2e750b1fbad46f82e8296ed341888cdc56e2c20ac77e86bfa50c023aeb03c2915e24da1b7217b82f4b138930e0ef7fafd713e
ssdeep: 1536:flxVjNXdT5iERrTtdyj2zB5eKNJi4O1ql14DEr5BiMG7e:flxVDr6jwjNJXO4sOBiMG7e
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T173836D4BE2293F33C24602B73CDA9AD5E629559D63A9C758EC38C01E12B7D5C83B7780
sha3_384: 7c4c70759545d44d739be8365b8fd0e5f9d316f9c35365305b18a01fc246ff3ea33f32698dea6be76e39f4b46b9a9f00
ep_bytes: 609090909090b8001040009090909090
timestamp: 2017-02-24 22:06:51

Version Info:

0: [No Data]

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B) also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
DrWebBackDoor.HangUp.43791
MicroWorld-eScanGenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F
ClamAVWin.Trojan.Crypted-28
FireEyeGeneric.mg.46b5e644de97da8a
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
BitDefenderThetaAI:Packer.4D48F88121
CyrenW32/Padodor.F.gen!Eldorado
SymantecBackdoor.Berbew.F
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
TACHYONBackdoor/W32.Padodor
EmsisoftGenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen2
BaiduWin32.Trojan-Spy.Quart.a
VIPREGenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
McAfeeGenericRXVP-YB!46B5E644DE97
MAXmalware (ai score=84)
VBA32BScope.Backdoor.Berbew
MalwarebytesCrypt.Trojan.Malicious.DDS
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan-Spy.Win32.Qukart
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS

How to remove GenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B)?

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.0EB3137F (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment