Backdoor

Backdoor.Hupigon.AYPE information

Malware Removal

The Backdoor.Hupigon.AYPE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.Hupigon.AYPE virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family

How to determine Backdoor.Hupigon.AYPE?


File Info:

name: B7B39B6F1AA1E2815927.mlw
path: /opt/CAPEv2/storage/binaries/94838bbf1e253430c358fb6d71164e4c15d3a65cfc56838390d6de77eb30c853
crc32: 2BFB81DA
md5: b7b39b6f1aa1e2815927f0769c7c6e24
sha1: 3471d4b7b20ab697ce2344211f1d9cf073ddd0e9
sha256: 94838bbf1e253430c358fb6d71164e4c15d3a65cfc56838390d6de77eb30c853
sha512: f5f97f7d72fce6575e7c63cff17e56292c4c2835a69651f27d524c11ad6bc7ca5319638242d5a96a228c0433968a503833d6c5bbdb3ac41e6536169b2debe043
ssdeep: 12288:tQl5mNxSBugTAha5n8UWUg65xWIeZqdEjDsIsKrQwvppMqXJQ/M19yh:GUvgzwTUoxZ/4KrQwUq571
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16C05DF0EAEE7C099F3969F72BD322A6B12EA16DE269FF505138B835CE07D3534056344
sha3_384: 406cf8497aa88cce44562ad1820d924c17e45a8422edb3e422359a6313562fce1dfe691c06e60e127482ef85f22c693d
ep_bytes: f8730a8b484891052ed85a865960f972
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Backdoor.Hupigon.AYPE also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Hupigon.m!c
Elasticmalicious (high confidence)
DrWebBackDoor.Pigeon.194
MicroWorld-eScanBackdoor.Hupigon.AYPE
FireEyeGeneric.mg.b7b39b6f1aa1e281
SkyhighBehavesLike.Win32.PWSGoft.ch
McAfeeBackDoor-ARR
MalwarebytesGeneric.Malware.AI.DDS
ZillyaBackdoor.Hupigon.Win32.131898
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 7000000f1 )
AlibabaBackdoor:Win32/Hupigon.cd1c1de3
K7GWTrojan ( 7000000f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZelphiF.36744.Z8W@a4I4Wqmb
SymantecBackdoor.Graybird
ESET-NOD32a variant of Win32/Hupigon
APEXMalicious
KasperskyBackdoor.Win32.Hupigon.pv
BitDefenderBackdoor.Hupigon.AYPE
NANO-AntivirusVirus.Win32.Agent.dvixmz
AvastWin32:Hupigon-DKZ [Trj]
TencentWin32.Backdoor.Hupigon.Ekjl
EmsisoftBackdoor.Hupigon.AYPE (B)
F-SecureBackdoor.BDS/Hupigon.Gen
VIPREBackdoor.Hupigon.AYPE
TrendMicroMal_HPGN-1
Trapminemalicious.high.ml.score
SophosTroj/GrayBrd-CD
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=100)
GDataBackdoor.Hupigon.AYPE
JiangminBackdoor/Huigezi.Gen
WebrootW32.Backdoor.Hupigon
GoogleDetected
AviraBDS/Hupigon.Gen
VaristW32/Hupigon.A.gen!Eldorado
Antiy-AVLGrayWare/Win32.Kryptik.pe
KingsoftWin32.Hack.HuigeziT.cz
XcitiumTrojWare.Win32.Spy.Banker.Gen@1qlojk
ArcabitBackdoor.Hupigon.AYPE
ViRobotBackdoor.Win32.A.Hupigon.843776.P
ZoneAlarmBackdoor.Win32.Hupigon.pv
MicrosoftBackdoor:Win32/Hupigon
CynetMalicious (score: 100)
AhnLab-V3Backdoor/Win32.Hupigon.R1743
VBA32SScope.Backdoor.Win32.Hupigon.cmpw
ALYacBackdoor.Hupigon.AYPE
TACHYONBackdoor/W32.Hupigon.843776.BH
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallMal_HPGN-1
RisingBackdoor.Win32.Gpigeon2008.gy (CLASSIC)
YandexTrojan.GenAsa!mUgMtszSHpM
IkarusBackdoor.Hupigon
MaxSecureTrojan.Malware.21073.susgen
FortinetW32/CoinMiner.BELF!tr
AVGWin32:Hupigon-DKZ [Trj]
Cybereasonmalicious.7b20ab
DeepInstinctMALICIOUS

How to remove Backdoor.Hupigon.AYPE?

Backdoor.Hupigon.AYPE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment