Backdoor

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B) removal tips

Malware Removal

The GenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B) virus can do?

  • Creates an indicator observed in Territorial Disputes report SIG40
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine GenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B)?


File Info:

name: 25285C64807F211DA37A.mlw
path: /opt/CAPEv2/storage/binaries/ce4c78e06bde9436eb728e122efd5865a53a81257a5683e3b60300f4fff62ac1
crc32: 4879D5A1
md5: 25285c64807f211da37a3f5f9faeaa23
sha1: 4b0b203605167348c5c85fe9095baff404f05878
sha256: ce4c78e06bde9436eb728e122efd5865a53a81257a5683e3b60300f4fff62ac1
sha512: 34820146700e040c88a64a88c03f1ac74641d1f1f20262270c629ff02b30eb442513e900b99560160990f7cfd5c7a0b733673c2c304d478fff2f1f683dd08a38
ssdeep: 1536:v3BGCrua/Croyc+z5aJxwSWkbJ45SYbH/0MYsGRun+pDk5MUAK:vBGCru0IoT+zsJxwSWkbJ45SMHVYsGyz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T108736D4BBD6F1F73C18102B517A744A6F22CE07953B68A985738C20E9773E5957B22CC
sha3_384: 8b2128da73443c90970a3fb91a6ffc0004300c92a12f56196fafed363ceebe39a7b9a42c1ef1cb5fec5da4e13042cfa7
ep_bytes: 90909060909090b8001040006a049090
timestamp: 2018-07-09 22:06:51

Version Info:

0: [No Data]

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B) also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebBackDoor.HangUp.43791
MicroWorld-eScanGenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571
ClamAVWin.Trojan.Crypted-29
FireEyeGeneric.mg.25285c64807f211d
CAT-QuickHealBackdoor.Berbew.A6.MUE
ALYacGenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571
MalwarebytesCrypt.Trojan.Malicious.DDS
VIPREGenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005780dd1 )
K7GWTrojan ( 005780dd1 )
Cybereasonmalicious.4807f2
BitDefenderThetaAI:Packer.6AC2DC3A1D
CyrenW32/Qukart.L.gen!Eldorado
SymantecBackdoor.Berbew.F
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Padodor.NAX
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Proxy.Win32.Qukart.gen
BitDefenderGenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571
NANO-AntivirusTrojan.Win32.Qukart.fokxzm
AvastWin32:TrojanX-gen [Trj]
TencentTrojan-Ransom.Win32.Pornoasset.a
EmsisoftGenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B)
F-SecureTrojan.TR/Crypt.ZPACK.Gen
BaiduWin32.Trojan-Spy.Quart.a
McAfee-GW-EditionBehavesLike.Win32.Generic.lc
Trapminemalicious.high.ml.score
SophosTroj/Padodo-Fam
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.11RRK8R
JiangminTrojan.Generic.dzrgt
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=86)
Antiy-AVLTrojan[Proxy]/Win32.Qukart.gen
ArcabitGenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571
ZoneAlarmTrojan-Proxy.Win32.Qukart.gen
MicrosoftBackdoor:Win32/Berbew.AA!MTB
GoogleDetected
AhnLab-V3Win-Trojan/Berbew.51712
McAfeeBackDoor-AXJ.d
TACHYONBackdoor/W32.Padodor
VBA32BScope.Backdoor.Berbew
Cylanceunsafe
PandaTrj/Genetic.gen
RisingBackdoor.Berbew!1.AE0A (CLASSIC)
IkarusTrojan-Spy.Win32.Qukart
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Qukart.A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove GenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B)?

GenPack:Generic.Dacic.1.Backdoor.Hangup.A.2B18A571 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment