Backdoor

About “Backdoor.Hupigon.157114” infection

Malware Removal

The Backdoor.Hupigon.157114 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Hupigon.157114 virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.Hupigon.157114?


File Info:

crc32: 3D28F10F
md5: f33166e9041636cf1498bb92cbb7f683
name: F33166E9041636CF1498BB92CBB7F683.mlw
sha1: 887691a87a8927df9dadbc6397e89bf93dbca1e9
sha256: 67fcea23350767eb441b0f062c91ef8e8ed5fe6473e439e06d1b4d930f85e4b3
sha512: 01bad6165d16458fea0e66ef5b000140ba36e2e817d38b565c159d858d801068d9869232e696f745273a0d9c4b61c18331b65ad9d56117efa58e3db47ac3b204
ssdeep: 12288:ERyTSktU4g/n/t0EW5A0zyYvJwQ5oAlK+GE4vebIk6bQQ52LgRg08y5Hpnrz1:oStU4gf2EW5A2DJr/kS4vGIk6v3Hf
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Hupigon.157114 also known as:

BkavW32.AIDetect.malware1
K7AntiVirusBackdoor ( 00014abd1 )
Elasticmalicious (high confidence)
DrWebBackDoor.Pigeon.32525
CynetMalicious (score: 100)
CAT-QuickHealBackdoor.Hupigon.DI10
ALYacBackdoor.Hupigon.157114
CylanceUnsafe
ZillyaBackdoor.Hupigon.Win32.1
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWBackdoor ( 00014abd1 )
Cybereasonmalicious.904163
BaiduWin32.Trojan.Hupigon.b
CyrenW32/Hupigon.OPEN-0055
SymantecBackdoor.Hupigeon
ESET-NOD32Win32/Hupigon
APEXMalicious
AvastWin32:GenMalicious-BND [Trj]
ClamAVWin.Trojan.Hupigon-69
KasperskyBackdoor.Win32.Hupigon.pv
BitDefenderBackdoor.Hupigon.157114
NANO-AntivirusTrojan.Win32.Hupigon.ekqe
ViRobotBackdoor.Win32.Hupigon.32567
SUPERAntiSpywareTrojan.Agent/Gen-FakeAlert
MicroWorld-eScanBackdoor.Hupigon.157114
TencentTrojan.Win32.Hupigon.pije
Ad-AwareBackdoor.Hupigon.157114
SophosML/PE-A + Troj/GrayBrd-CD
ComodoBackdoor.Win32.Hupigon@3nh2
BitDefenderThetaAI:Packer.317FC51424
VIPRETrojan.Win32.Generic!BT
TrendMicroBKDR_HUPIGON.ABU
McAfee-GW-EditionBehavesLike.Win32.Dropper.bh
FireEyeGeneric.mg.f33166e9041636cf
EmsisoftBackdoor.Hupigon.157114 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/Huigezi.qy
Webroot
AviraBDS/Hupigon.BR
eGambitUnsafe.AI_Score_73%
Antiy-AVLTrojan[Backdoor]/Win32.Hupigon.pv
MicrosoftBackdoor:Win32/Hupigon
GridinsoftBackdoor.Win32.Hupigon.vb!s1
ArcabitBackdoor.Hupigon.D265BA
GDataBackdoor.Hupigon.157114
TACHYONBackdoor/W32.DP-Hupigon.761344.B
AhnLab-V3Win-Trojan/Hupigon.Gen
Acronissuspicious
McAfeeBackDoor-AWQ.ah
MAXmalware (ai score=89)
VBA32SScope.Backdoor.Win32.Hupigon.cmpw
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaBck/Hupigon.gen
TrendMicro-HouseCallBKDR_HUPIGON.ABU
RisingBackdoor.Gpigeon.urw (CLASSIC)
YandexTrojan.GenAsa!mUgMtszSHpM
IkarusBackdoor.Win32.Hupigon
MaxSecureDropper.Binder.Rz
FortinetW32/Hupigon!tr
AVGWin32:GenMalicious-BND [Trj]
Paloaltogeneric.ml

How to remove Backdoor.Hupigon.157114?

Backdoor.Hupigon.157114 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment