Malware

How to remove “Win32/Hupigon.NCT”?

Malware Removal

The Win32/Hupigon.NCT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Hupigon.NCT virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Checks for the presence of known devices from debuggers and forensic tools
  • Checks for the presence of known devices from debuggers and forensic tools

How to determine Win32/Hupigon.NCT?


File Info:

name: 10FB294F6D78439BCE80.mlw
path: /opt/CAPEv2/storage/binaries/0da77930c30abe595d98c490e812c11c412a98c202b99ef01ede3b949ebd1de8
crc32: 01DBB1B4
md5: 10fb294f6d78439bce80a00fe6f2e8b0
sha1: 80ee37ebc3d87632b6549c06496666eed044aa8a
sha256: 0da77930c30abe595d98c490e812c11c412a98c202b99ef01ede3b949ebd1de8
sha512: c2189573852da0d6f8e19ef521e4c17f62d1e2adc3d9684d30e06b92f6727689fdc2132e9f554239c270e9fd8f7c8e1d59ae05163b27d947b4321af857c34c3e
ssdeep: 6144:okx/D1+vsTfHvJ//BP2Fv1lYUt+ke771ob7o38DNB4+vb4LCEYp7kjbYzrl:jPxvUev1o3AMNCmiC0jbY1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1438412B1ED8B0CA1E58BA4FAD6054E60F7B67C5110E2B2BF31803D56AF741FA8476538
sha3_384: 3ab9ec22e58c4c8be83ae132eac819569893cafff5b7bf7983608e930a8c85c1ed5389ef7b159f4a8e28c57e81ec70e6
ep_bytes: 9ce8000000005d8bd581edc62b40002b
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Win32/Hupigon.NCT also known as:

BkavW32.AIDetectMalware
LionicHacktool.Win32.Klone.kYPD
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Delf.Inject.Z
FireEyeGeneric.mg.10fb294f6d78439b
SkyhighBehavesLike.Win32.Xanfpezes.fc
McAfeeArtemis!10FB294F6D78
MalwarebytesGeneric.Malware.AI.DDS
ZillyaBackdoor.Hupigon.Win32.200918
SangforBackdoor.Win32.Hupigon.Vteb
K7AntiVirusBackdoor ( 0006b0671 )
AlibabaBackdoor:Win32/Hupigon.d6e0ed32
K7GWBackdoor ( 0006b0671 )
Cybereasonmalicious.f6d784
BitDefenderThetaAI:Packer.B29A59D31D
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Hupigon.NCT
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002C0DBB24
KasperskyBackdoor.Win32.Hupigon.rt
BitDefenderTrojan.Delf.Inject.Z
NANO-AntivirusTrojan.Win32.Hupigon.bgzsxa
AvastWin32:Agent-KLT [Trj]
TencentMalware.Win32.Gencirc.14011789
EmsisoftTrojan.Delf.Inject.Z (B)
F-SecureBackdoor.BDS/Hupigon.Gen
DrWebBackDoor.Pigeon.41464
VIPRETrojan.Delf.Inject.Z
TrendMicroTROJ_GEN.R002C0DBB24
Trapminemalicious.high.ml.score
SophosMal/Agent-AZ
SentinelOneStatic AI – Malicious PE
JiangminBackdoor/Huigezi.2007.bev
ALYacTrojan.Delf.Inject.Z
WebrootW32.Zegost.B
VaristW32/Hupigon.H.gen!Eldorado
AviraBDS/Hupigon.Gen
MAXmalware (ai score=100)
KingsoftWin32.Infected.AutoInfector.a
MicrosoftBackdoor:Win32/Hupigon.FI
XcitiumTrojWare.Win32.Spy.Banker.Gen@1qlojk
ArcabitTrojan.Delf.Inject.Z
ViRobotBackdoor.Win32.Hupigon.390656.AW
ZoneAlarmBackdoor.Win32.Hupigon.rt
GDataTrojan.Delf.Inject.Z
CynetMalicious (score: 100)
AhnLab-V3Backdoor/Win32.Hupigon.R839
VBA32suspected of Trojan-Dropper.Agent.109
GoogleDetected
Cylanceunsafe
PandaTrj/Genetic.gen
ZonerProbably Heur.ExeHeaderL
RisingBackdoor.Win32.Gpigeon2007.chk (CLASSIC)
YandexTrojan.GenAsa!OMwk4sM5Y10
IkarusPacked.Win32.Klone
MaxSecureTrojan.Malware.18898.susgen
FortinetW32/Hupigon.OSE!tr.bdr
AVGWin32:Agent-KLT [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_90% (W)
alibabacloudBackdoor:Win/Hupigon.NCT

How to remove Win32/Hupigon.NCT?

Win32/Hupigon.NCT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment