Categories: Backdoor

Backdoor.Hupigon.239940 removal

The Backdoor.Hupigon.239940 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Hupigon.239940 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Attempts to modify Internet Explorer’s start page
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid
  • Checks for the presence of known devices from debuggers and forensic tools
  • Checks for the presence of known devices from debuggers and forensic tools
  • Harvests cookies for information gathering

How to determine Backdoor.Hupigon.239940?


File Info:

name: A7C878FD07F9FDEB049C.mlwpath: /opt/CAPEv2/storage/binaries/9fd14e6d82e0c5646f178b7db75e14353552195b8f53bb8d871fd628ea4d32b7crc32: AF1F1FD4md5: a7c878fd07f9fdeb049c3dc646f1d35fsha1: d8596c89ced3f997f5d72752e8862b95d454c42asha256: 9fd14e6d82e0c5646f178b7db75e14353552195b8f53bb8d871fd628ea4d32b7sha512: 477fab7f8ee8b63a031855e44863baad8f329cd1cd92caa64af46f181530dbda08b376265d01ea929cb712e5b3deadbc0aad6e93889ef48906c2e7bf6d619205ssdeep: 24576:W8pkDYbz3RoCGvLzNJ6aCA3a2EUxmkUKsGpl5RUB48jxD2qB7r7P:W8eknGCGvLzD6y/lk10qB7type: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T13E4533D2A7FFE3B9C9C40230BCD2E9797058BD000F099673A95AB89B01717585A1D7FAsha3_384: d9707c8eaa0ee20d8cf3fd510b584f4a5a6d184907078256c5210f90cc6ab7c72a1b0f49ca2483d9e21411ef57b47a48ep_bytes: 6859b754f6e87cc60400000047657456timestamp: 2010-11-10 12:15:31

Version Info:

0: [No Data]

Backdoor.Hupigon.239940 also known as:

Bkav W32.AIDetect.malware1
Lionic Trojan.Win32.Generic.4!c
MicroWorld-eScan Backdoor.Hupigon.239940
ClamAV Win.Trojan.Hupigon-52885
FireEye Generic.mg.a7c878fd07f9fdeb
ALYac Backdoor.Hupigon.239940
Cylance Unsafe
Zillya Trojan.Pasta.Win32.9082
Cybereason malicious.d07f9f
Elastic malicious (high confidence)
ESET-NOD32 a variant of Win32/Injector.DGXX
APEX Malicious
Paloalto generic.ml
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender Backdoor.Hupigon.239940
NANO-Antivirus Trojan.Win32.Hupigon.tnwbh
Avast Win32:Trojan-gen
Rising Malware.Undefined!8.C (TFE:5:G6WILxuFrZG)
Ad-Aware Backdoor.Hupigon.239940
Emsisoft Backdoor.Hupigon.239940 (B)
Comodo Malware@#3ijogy295dunw
DrWeb Trojan.Swizzor.16445
VIPRE Backdoor.Hupigon.239940
McAfee-GW-Edition BehavesLike.Win32.Generic.tc
Trapmine malicious.moderate.ml.score
Sophos Generic PUA NI (PUA)
SentinelOne Static AI – Malicious PE
GData Backdoor.Hupigon.239940
Jiangmin Backdoor/Hupigon.bhyd
Avira BDS/Hupigon.msyn
MAX malware (ai score=99)
Antiy-AVL Trojan/Generic.ASMalwS.1EC
Kingsoft Win32.Troj.DeepScan.x.(kcloud)
Microsoft Trojan:Win32/Wacatac.B!ml
Google Detected
AhnLab-V3 Backdoor/Win32.Hupigon.C19995
McAfee Artemis!A7C878FD07F9
Malwarebytes Malware.Heuristic.1003
Tencent Win32.Trojan.Generic.Unkl
Yandex Trojan.GenAsa!4aMpDasfcvQ
Ikarus Trojan.Win32.Pasta
MaxSecure Trojan.Malware.7164915.susgen
BitDefenderTheta Gen:NN.ZexaF.34698.jDW@aCOX1kn
AVG Win32:Trojan-gen
Panda Trj/CI.A
CrowdStrike win/malicious_confidence_70% (W)

How to remove Backdoor.Hupigon.239940?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Malware.AI.4183435755 information

The Malware.AI.4183435755 is considered dangerous by lots of security experts. When this infection is active,…

24 mins ago

Dropped:Application.Generic.3571726 removal instruction

The Dropped:Application.Generic.3571726 is considered dangerous by lots of security experts. When this infection is active,…

29 mins ago

What is “Trojan.Generic.35245150”?

The Trojan.Generic.35245150 is considered dangerous by lots of security experts. When this infection is active,…

35 mins ago

Malware.AI.1658877817 removal tips

The Malware.AI.1658877817 is considered dangerous by lots of security experts. When this infection is active,…

39 mins ago

About “Win32/Pronny.JI” infection

The Win32/Pronny.JI is considered dangerous by lots of security experts. When this infection is active,…

50 mins ago

Adware.Ursu.14752 removal

The Adware.Ursu.14752 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago