Malware

Generic.Hupigon.YQA.9CC413C5 (file analysis)

Malware Removal

The Generic.Hupigon.YQA.9CC413C5 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Hupigon.YQA.9CC413C5 virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Generic.Hupigon.YQA.9CC413C5?


File Info:

name: 6B1A63D86089204AE086.mlw
path: /opt/CAPEv2/storage/binaries/538298164ba8bfbb60cd4a5c41745e997d1bd8ae8777ba68654b42a8aebeecc6
crc32: 73472D5C
md5: 6b1a63d86089204ae086f4bc3eb8e70a
sha1: 7e8004818f05e488697752749c3a774fbfd25cb9
sha256: 538298164ba8bfbb60cd4a5c41745e997d1bd8ae8777ba68654b42a8aebeecc6
sha512: 7a62df245342d3c0b3bdb8d52a0eb098636d6217a2fc5b8f12ac6e574b70de07f961efa8abc9219c2bcfdf012c760ba97c8b5b184f936b30713216bcad1bf96f
ssdeep: 12288:eRyTSktU4g/n/t0EW5A0zyYvJwQ5oAlK+GEIvebIk6bQQ52LgRg08y5HpnFY1:qStU4gf2EW5A2DJr/kSIvGIk6v3He
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11FF48D22F6919437D1732A38DC1B53999839BF102E28A84B7BF91D5C4F797823D292D3
sha3_384: f1a83ab98a9b10d551c6f9eddac1552fab57fa2d5e17cc6cf0c446cbd9365dd242a9e3f1d7e6d3dfa2d7e09d73a8d0e2
ep_bytes: b904000000558be1e90b12020075f951
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Generic.Hupigon.YQA.9CC413C5 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.Hupigon.YQA.9CC413C5
CAT-QuickHealBackdoor.Hupigon.DI8
McAfeeBackDoor-ARR
MalwarebytesGeneric.Malware.AI.DDS
ZillyaBackdoor.Hupigon.Win32.1
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a81c81 )
K7GWTrojan ( 005a81c81 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Trojan.Hupigon.b
VirITBackdoor.Win32.Hupigon.Y
CyrenW32/Hupigon.A.gen!Eldorado
SymantecBackdoor.Hupigeon
ESET-NOD32a variant of Win32/Hupigon
APEXMalicious
ClamAVWin.Trojan.Delf-1526
KasperskyBackdoor.Win32.Hupigon.dsx
BitDefenderGeneric.Hupigon.YQA.9CC413C5
SUPERAntiSpywareTrojan.Agent/Gen-Hupigon
AvastWin32:GenMalicious-BND [Trj]
TencentTrojan.Win32.Hupigon.pije
TACHYONBackdoor/W32.Hupigon.762880.CN
EmsisoftGeneric.Hupigon.YQA.9CC413C5 (B)
F-SecureBackdoor:W32/Hupigon.NMV
DrWebBackDoor.Pigeon1.5760
VIPREGeneric.Hupigon.YQA.9CC413C5
TrendMicroMal_HPGN-1
McAfee-GW-EditionBehavesLike.Win32.Backdoor.bh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.6b1a63d86089204a
SophosTroj/Hupig-Gen
IkarusBackdoor.Win32.Hupigon
GDataWin32.Trojan.PSE.12OKESO
JiangminBackdoor/Huigezi.Gen
GoogleDetected
AviraBDS/Hupigon.Gen
Antiy-AVLTrojan[Backdoor]/Win32.Hupigon.pv
XcitiumVirus.Win32.Downloader.BA@1cfxaq
ArcabitGeneric.Hupigon.YQA.9CC413C5
ZoneAlarmBackdoor.Win32.Hupigon.dsx
MicrosoftBackdoor:Win32/Hupigon.DI
CynetMalicious (score: 100)
AhnLab-V3Backdoor/Win32.Hupigon.R839
Acronissuspicious
VBA32SScope.Backdoor.Win32.Hupigon.cmpw
ALYacGeneric.Hupigon.YQA.9CC413C5
MAXmalware (ai score=84)
Cylanceunsafe
PandaBck/Hupigon.gen
ZonerTrojan.Win32.137180
TrendMicro-HouseCallMal_HPGN-1
RisingBackdoor.Hupigon!1.A04C (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureDropper.Binder.Rz
FortinetW32/Wacatac.B!tr
BitDefenderThetaAI:Packer.C8E208641F
AVGWin32:GenMalicious-BND [Trj]
Cybereasonmalicious.860892
DeepInstinctMALICIOUS

How to remove Generic.Hupigon.YQA.9CC413C5?

Generic.Hupigon.YQA.9CC413C5 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment