Backdoor

Should I remove “Backdoor.Hupigon.240278”?

Malware Removal

The Backdoor.Hupigon.240278 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Hupigon.240278 virus can do?

  • Attempts to connect to a dead IP:Port (3 unique times)
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

www.bing.com
www.uzzf.com
pic.uzzf.com
nz.qqtn.com

How to determine Backdoor.Hupigon.240278?


File Info:

crc32: 633B3DC8
md5: 46223f280c07d929431c69333eb7d23a
name: nrl2014r2.exe
sha1: b89cdff00524085f7c83870b7b5a275f365b5d83
sha256: 7e28d1777b81228e9fc3982d6688045312dfcc4426a79a085975f0f2aee6cc5c
sha512: 49059e139ce2b665c8238ecce9be9d5274053dab372f5530d7c85ddc1da600f396ca1da0a732263f64e2783864643675dc55b196a64d17ac1cca852e47fc1820
ssdeep: 49152:4CUM5nZbEJ/lnd70jAsAhuzwy0XTOnw1+SBY/et48r1jgpV5eqABusXfXwwBNab4:thEJ/lndOWhuijxHBY/G/wVMq+PwwBNh
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor.Hupigon.240278 also known as:

MicroWorld-eScanBackdoor.Hupigon.240278
nProtectBackdoor.Hupigon.240278
CAT-QuickHealHackTool.Patcher.A
VIPRETrojan.Win32.Generic!BT
K7AntiVirusBackdoor ( 04c4cfe41 )
BitDefenderBackdoor.Hupigon.240278
K7GWBackdoor ( 04c4cfe41 )
TheHackerTrojan/Qhost.kfi
AgnitumRiskware.HackTool!kgo/c8CQqe8
F-ProtW32/MalwareS.BJBL
SymantecBackdoor.Trojan
Normankeygen.X
TrendMicro-HouseCallTROJ_GEN.R047C0DCJ15
NANO-AntivirusTrojan.Win32.Gampass.dhcbug
Ad-AwareBackdoor.Hupigon.240278
SophosMal/FakeAV-FG
ZillyaTrojan.FakeAV.Win32.261650
TrendMicroTROJ_GEN.R047C0DCJ15
EmsisoftBackdoor.Hupigon.240278 (B)
CyrenW32/Risk.MIWG-5919
JiangminTrojanDropper.Delf.ebf
Antiy-AVLTrojan/Win32.Genome
KingsoftWin32.Troj.Generic.(kcloud)
GDataBackdoor.Hupigon.240278
McAfeeArtemis!46223F280C07
AVwareTrojan.Win32.Generic!BT
VBA32TrojanDropper.Delf
PandaGeneric Suspicious
ESET-NOD32a variant of Win32/HackTool.Patcher.T potentially unsafe
TencentWin32.Backdoor.Hupigon.Pavi
IkarusTrojan-Dropper.Win32.Delf
FortinetW32/FakeAV.FG
AVGBackDoor.Hupigon5.BJYZ
Baidu-InternationalHacktool.Win32.Patcher.T
Qihoo-360Win32/Backdoor.Hupigon.505

How to remove Backdoor.Hupigon.240278?

Backdoor.Hupigon.240278 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment