Backdoor

Backdoor.Hupigon.148763 removal instruction

Malware Removal

The Backdoor.Hupigon.148763 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Hupigon.148763 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Backdoor.Hupigon.148763?


File Info:

name: ABEAFD905C1A002E5DE6.mlw
path: /opt/CAPEv2/storage/binaries/9ad37766a0727066762c85b86fed68a23f7a7a3f3ae2a43dd84a545697e25443
crc32: 94D8A317
md5: abeafd905c1a002e5de689ae4e4bfeab
sha1: f7e8fed00adc8d9be1a4da5ba12d80349e3c696a
sha256: 9ad37766a0727066762c85b86fed68a23f7a7a3f3ae2a43dd84a545697e25443
sha512: 38cc3b1649a20d686bb548ffa432c8b0b0261ba85f9add5cef1b15afe958f49e99b018d2adf65438b4ad916c00119180c2a2439fed44bad49dfd3653c97d319e
ssdeep: 768:cUSX1FFq1QN+QnhVt/cEfXh53opzWf4yU3HGrQfhWiJ+QGDxKOIhGowxqzUds52+:c1C6NtVtE+AdWf5oHGLijeKzhl
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T149530203F59E100DF5AB75365A8A507C246426C1FA6AA573837FB9DEEC7602A103873A
sha3_384: bf2df527bf18f1e115cc3dbf153f991e3e79eb534ea583709f69a71d76c2764db802ed018d9e0d08d938a807fac56871
ep_bytes: 60be00a041008dbe0070feff5783cdff
timestamp: 2003-06-10 12:53:40

Version Info:

0: [No Data]

Backdoor.Hupigon.148763 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanBackdoor.Hupigon.148763
FireEyeGeneric.mg.abeafd905c1a002e
McAfeeArtemis!ABEAFD905C1A
SangforRiskware.Win32.Agent.ky
K7GWUnwanted-Program ( 004be1001 )
K7AntiVirusUnwanted-Program ( 004be1001 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Keygen.BP potentially unsafe
TrendMicro-HouseCallTROJ_GEN.R002C0PB422
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderBackdoor.Hupigon.148763
AvastWin32:Malware-gen
SophosKeygen (PUA)
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PB422
McAfee-GW-EditionGenericRXEC-HV!24C0379F6852
EmsisoftBackdoor.Hupigon.148763 (B)
IkarusTrojan-Dropper.Win32.Small.aww
JiangminTrojan/Genome.ahrb
WebrootW32.Trojan.Gen
Antiy-AVLTrojan/Generic.ASMalwS.1C9E8E8
KingsoftWin32.Hack.Huigezi.v.(kcloud)
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftProgram:Win32/Wacapew.C!ml
GDataBackdoor.Hupigon.148763
CynetMalicious (score: 100)
MAXmalware (ai score=86)
APEXMalicious
RisingPUA.Presenoker!8.F608 (RDMK:cmRtazp86T5t09WlVw4FDb4ZhMdq)
YandexTrojan.GenAsa!7q15Qr0yfzo
FortinetW32/Hupigon.RQLR!tr.bdr
AVGWin32:Malware-gen
Cybereasonmalicious.05c1a0
PandaTrj/CI.A

How to remove Backdoor.Hupigon.148763?

Backdoor.Hupigon.148763 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment