Backdoor

What is “Backdoor.Hupigon.266107”?

Malware Removal

The Backdoor.Hupigon.266107 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Hupigon.266107 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor.Hupigon.266107?


File Info:

crc32: 812D763A
md5: 73faba2aaac73658cb90d1d2ae289cd8
name: 73FABA2AAAC73658CB90D1D2AE289CD8.mlw
sha1: 591cc6357e63a6f54f4e4b902a791ef481833f42
sha256: df9f5e12cb60ea6c20230f374cc104e5f918cab17d46e3d17f3e25157999f059
sha512: fae96e462858e49d57e97174ead546af628343d36faf44f1a3d249b0f621c8d78ee048d5045a1535b5c0d3046cae94b15aaa4b3c8ca6a01b746531a88d6174a1
ssdeep: 24576:WMbUUAcZTZsJ0Nbsp0h0z/N5LA2VvsSHCAbTpYVqLBbTHxLNfFmIi0kkwo:PbUUAcZFGGbt0z/DLA2lbHCAbTpzLB3F
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2011. All right reserved
InternalName:
FileVersion: 3.4.0.9170
CompanyName: alim hape
LegalTrademarks:
Comments:
ProductName: MXKEY Executable
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename:
Translation: 0x0409 0x04e4

Backdoor.Hupigon.266107 also known as:

LionicTrojan.Win32.Boht.mgO5
CynetMalicious (score: 99)
ALYacBackdoor.Hupigon.266107
CylanceUnsafe
ZillyaTrojan.Agent.Win32.256991
AlibabaBackdoor:Win32/EncPk.f5353b21
Cybereasonmalicious.aaac73
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Hupigon-38786
BitDefenderBackdoor.Hupigon.266107
NANO-AntivirusTrojan.Win32.Offend.otpcj
MicroWorld-eScanBackdoor.Hupigon.266107
TencentWin32.Trojan.Falsesign.Ajly
Ad-AwareBackdoor.Hupigon.266107
SophosMal/EncPk-MK
ComodoMalware@#2iw0gkcw429ha
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGeneric.lr
FireEyeGeneric.mg.73faba2aaac73658
EmsisoftBackdoor.Hupigon.266107 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Genome.bkpz
WebrootW32.Trojan.Gen
AviraTR/Offend.6780400.1
Antiy-AVLTrojan/Generic.ASMalwS.867A74
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitBackdoor.Hupigon.D40F7B
GDataBackdoor.Hupigon.266107
McAfeeGeneric.lr
MAXmalware (ai score=89)
VBA32Malware-Cryptor.Inject.gen
MalwarebytesBackdoor.Hupigon
YandexTrojan.Offend!/MUM2p5yuYE
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.300983.susgen
FortinetMalware_fam.NB
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Backdoor.Hupigon.266107?

Backdoor.Hupigon.266107 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment