Malware

What is “GenPack:Generic.Hupigon.PAS.CF68109B”?

Malware Removal

The GenPack:Generic.Hupigon.PAS.CF68109B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What GenPack:Generic.Hupigon.PAS.CF68109B virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Drops a binary and executes it
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Deletes its original binary from disk
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Created a service that was not started
  • Anomalous binary characteristics

Related domains:

isgeziis.1a.cn

How to determine GenPack:Generic.Hupigon.PAS.CF68109B?


File Info:

crc32: C2114410
md5: 302ef36f5d3b05c6708bb2266fa7aadc
name: 302EF36F5D3B05C6708BB2266FA7AADC.mlw
sha1: 245a0452347083e35191e4a717204e14659dbc29
sha256: eee260ff47b4463bb54fd26056aca2c7d85e77102d3d087d5accbed21a3aa534
sha512: 26d5f340e00a3e605e2b1ec4bce3ca972554bc1833022f2863fba1dcf090a57c621fd3b58b0109904db32d3a9bf31271e0d516b8eda8c1cc3f14d1cee9a83a15
ssdeep: 12288:NHrEWn6W1Tue49pX0GG5afPqtxu2XGTc:NLEs4PS528u2s
type: MS-DOS executable

Version Info:

0: [No Data]

GenPack:Generic.Hupigon.PAS.CF68109B also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
ALYacGenPack:Generic.Hupigon.PAS.CF68109B
CylanceUnsafe
ZillyaBackdoor.Hupigon.Win32.24398
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.f5d3b0
CyrenW32/Heuristic-162!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Hupigon
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyVHO:Trojan.Win32.Staser.gen
BitDefenderGenPack:Generic.Hupigon.PAS.CF68109B
ViRobotBackdoor.Win32.A.Hupigon.400384.E
MicroWorld-eScanGenPack:Generic.Hupigon.PAS.CF68109B
Ad-AwareGenPack:Generic.Hupigon.PAS.CF68109B
SophosML/PE-A + Mal/EncPk-DF
DrWebTrojan.DownLoad.40447
VIPRETrojan.Win32.Packer.INCrypter0.3 (ep)
McAfee-GW-EditionBehavesLike.Win32.VirRansom.fc
FireEyeGeneric.mg.302ef36f5d3b05c6
EmsisoftGenPack:Generic.Hupigon.PAS.CF68109B (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/RBot.dsq
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_93%
Antiy-AVLTrojan/Generic.ASMalwFH.E6CA1B
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataGenPack:Generic.Hupigon.PAS.CF68109B
Acronissuspicious
MAXmalware (ai score=84)
VBA32TScope.Trojan.Delf
RisingMalware.Heuristic!ET#99% (RDMK:cmRtazrMtgWTnJiYWbtjklqwr4Q1)
YandexTrojan.Hupigon!l1vYd1kq96k
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PEMask.A!tr
AVGWin32:Trojan-gen

How to remove GenPack:Generic.Hupigon.PAS.CF68109B?

GenPack:Generic.Hupigon.PAS.CF68109B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment