Malware

Generic.Keylogger.2.463B872B (file analysis)

Malware Removal

The Generic.Keylogger.2.463B872B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Keylogger.2.463B872B virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Generic.Keylogger.2.463B872B?


File Info:

name: 30710A50A7D5DB98229D.mlw
path: /opt/CAPEv2/storage/binaries/0118221569e67fef0a995c554bab01dfe582f8e6a051f24656cf2bdb32101f91
crc32: 818A70FF
md5: 30710a50a7d5db98229d545d31cf9424
sha1: 9c5f60e6c56c2145cfd1b6ac5495633ca1bf65f2
sha256: 0118221569e67fef0a995c554bab01dfe582f8e6a051f24656cf2bdb32101f91
sha512: bfc597ece8516db9d7379fbe9ef7ff91f96f0da336d14a1841aaf46fad1d0d8639781ffe9b60abc7182e426b098e9d0586b72828d1c83f947d0d0f1aa83c41d7
ssdeep: 12288:U+Mhgdjf1Png+/Sjz9aTb7kJ428zbOOTBzxx+B9MdRIcTEpQLw/RKDaFTBv:6ET1PrSj5sbi4bH3fQEAl5saFTV
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B4058E22F2805673CD2A17358C3B8A655A35BFD02E38590E37ED3E5C6E7B6827D191C2
sha3_384: dc34173b86f5d74053f80f5a1fbf746a2c6fb9d5db520661dfdf02818b016fda5ec768909335c57a910563e22d2792a4
ep_bytes: e994fb0300509f40f8489e58e9eefb03
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Generic.Keylogger.2.463B872B also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebBackDoor.Pigeon1.12496
MicroWorld-eScanGeneric.Keylogger.2.463B872B
ClamAVWin.Trojan.Hupigon-9883514-0
FireEyeGeneric.mg.30710a50a7d5db98
CAT-QuickHealBackdoor.Hupigon.20797
ALYacGeneric.Keylogger.2.463B872B
MalwarebytesFlyStudio.Trojan.Packer.DDS
VIPREGeneric.Keylogger.2.463B872B
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 7000000f1 )
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.0a7d5d
BitDefenderThetaGen:NN.ZelphiF.36250.ZKW@a49sQDpj
VirITBackdoor.Win32.Hupigon6.ITC
SymantecSMG.Heur!gen
ESET-NOD32a variant of Win32/Hupigon
APEXMalicious
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Hupigon.sqck
BitDefenderGeneric.Keylogger.2.463B872B
SUPERAntiSpywareTrojan.Agent/Gen-Hupigon
AvastWin32:BackdoorX-gen [Trj]
TencentBackdoor.Win32.Hupigon.aan
EmsisoftGeneric.Keylogger.2.463B872B (B)
F-SecureBackdoor.BDS/Hupigon.Gen
BaiduWin32.Trojan.Hupigon.a
TrendMicroPAK_Xed-21
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
Trapminemalicious.high.ml.score
SophosMal/Hupigon-I
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan.PSE.5F963Z
AviraBDS/Hupigon.Gen
Antiy-AVLTrojan[Backdoor]/Win32.Hupigon.sqck
ArcabitGeneric.Keylogger.2.463B872B
ZoneAlarmBackdoor.Win32.Hupigon.sqck
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
AhnLab-V3Backdoor/Win32.Hupigon.R97644
Acronissuspicious
McAfeeGenericRXEN-TF!30710A50A7D5
MAXmalware (ai score=80)
VBA32MalwareScope.Trojan-PSW.Game.16
Cylanceunsafe
PandaGeneric Malware
TrendMicro-HouseCallPAK_Xed-21
RisingTrojan.KillAV!1.9EAB (CLASSIC)
YandexTrojan.GenAsa!CWF8oQb0wJs
IkarusBackdoor.Win32.Hupigon
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Wacatac.B!tr
AVGWin32:BackdoorX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.Keylogger.2.463B872B?

Generic.Keylogger.2.463B872B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment