Backdoor: Win32/Hupigon

What is Backdoor:Win32/Hupigon infection?

In this article you will certainly locate regarding the definition of Backdoor:Win32/Hupigon and also its negative influence on your computer. Such ransomware are a type of malware that is elaborated by online scams to demand paying the ransom money by a victim.

Most of the instances, Backdoor:Win32/Hupigon virus will advise its sufferers to launch funds move for the function of neutralizing the modifications that the Trojan infection has presented to the sufferer’s tool.

Backdoor:Win32/Hupigon Summary

These alterations can be as follows:

  • Reads data out of its own binary image. The trick that allows the malware to read data out of your computer’s memory.

    Everything you run, type, or click on your computer goes through the memory. This includes passwords, bank account numbers, emails, and other confidential information. With this vulnerability, there is the potential for a malicious program to read that data.

  • Unconventionial language used in binary resources: Chinese (Simplified);
  • The binary likely contains encrypted or compressed data. In this case, encryption is a way of hiding virus’ code from antiviruses and virus’ analysts.
  • The executable is compressed using UPX;
  • Ciphering the papers found on the victim’s hard disk — so the sufferer can no more make use of the data;
  • Preventing regular accessibility to the victim’s workstation;

Backdoor:Win32/Hupigon

The most normal networks through which Backdoor:Win32/Hupigon are infused are:

  • By methods of phishing e-mails. Email phishing is a cyber attack that uses disguised email as a goal is to trick the recipient into believing that the message is something they want or need — a request from their bank, for instance, or a note from someone in their company — and to click a link for download a malware.
  • As a consequence of customer ending up on a resource that hosts a harmful software;

As soon as the Trojan is effectively injected, it will either cipher the data on the target’s computer or stop the tool from working in a correct way – while also putting a ransom money note that mentions the demand for the victims to effect the settlement for the purpose of decrypting the records or restoring the data system back to the initial condition. In many instances, the ransom note will come up when the customer restarts the PC after the system has currently been harmed.

Backdoor:Win32/Hupigon circulation networks.

In different edges of the globe, Backdoor:Win32/Hupigon expands by leaps as well as bounds. However, the ransom notes as well as tricks of extorting the ransom money quantity might differ relying on certain neighborhood (local) settings. The ransom notes and also methods of extorting the ransom money quantity may vary depending on particular neighborhood (regional) settings.

For example:

    Faulty signals regarding unlicensed software program.

    In particular areas, the Trojans commonly wrongfully report having actually detected some unlicensed applications enabled on the victim’s tool. The sharp then requires the individual to pay the ransom money.

    Faulty statements concerning illegal content.

    In countries where software program piracy is less preferred, this method is not as efficient for the cyber frauds. Conversely, the Backdoor:Win32/Hupigon popup alert might incorrectly assert to be deriving from a law enforcement institution and also will certainly report having situated youngster porn or other illegal information on the gadget.

    Backdoor:Win32/Hupigon popup alert might falsely declare to be acquiring from a legislation enforcement establishment and will certainly report having located youngster porn or other illegal information on the device. The alert will in a similar way contain a demand for the customer to pay the ransom.

Technical details

File Info:

crc32: 1EC3FF90md5: 82caf9153b8395b2c77300ac1ee22295name: 82CAF9153B8395B2C77300AC1EE22295.mlwsha1: e039cd50011311d483cddccda5cea3a62919077dsha256: 3f43953757d66fb625d34e2286131e1394190e7d0521f868353ab1811d15b8c4sha512: d6e58e3d019cdc8e9af8146f6ee973e4c7a46623fadafaf3be6ac70588f0c8268679be561dbeea69684f20946c8a34686da3b9ab98d83a623d675b96cafd4383ssdeep: 12288:nsaY8rt4GmkeKHXPO4+EcSG2IAloHQyvKZqrVWQI:B/rt4p3KfEEcStlKbvKsrVWQItype: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Backdoor:Win32/Hupigon also known as:

GridinSoftTrojan.Ransom.Gen
BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0030b2a81 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop.32183
CynetMalicious ()
CAT-QuickHealTrojan.Agent.8142
ALYacBackdoor.Hupigon.AYPE
CylanceUnsafe
ZillyaDropper.Agent.Win32.379508
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0030b2a81 )
Cybereasonmalicious.53b839
BaiduWin32.Trojan-Dropper.Agent.v
CyrenW32/Agent.FI.gen!Eldorado
SymantecBackdoor.Graybird
ESET-NOD32a variant of Win32/TrojanDropper.Agent.OBM
ZonerTrojan.Win32.36891
APEXMalicious
TotalDefenseWin32/Tnega.TD
AvastWin32:Rootkit-gen [Rtk]
ClamAVWin.Dropper.Ramnit-7081815-0
KasperskyTrojan-Dropper.Win32.Agent.gato
BitDefenderBackdoor.Hupigon.AYPE
NANO-AntivirusTrojan.Win32.Crypter.wpmb
ViRobotBackdoor.Win32.Hupigon.48640.I
SUPERAntiSpyware
MicroWorld-eScanBackdoor.Hupigon.AYPE
TencentTrojan.Win32.Dropper.abh
Ad-AwareBackdoor.Hupigon.AYPE
SophosML/PE-A + Troj/Mdrop-CGE
ComodoTrojWare.Win32.TrojanDropper.Agent.~VQ@13ntw0
BitDefenderThetaAI:Packer.212C6C801F
VIPRETrojanDropper.Win32.Agent.DO (v)
TrendMicroTROJ_AGENT.SMX
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.82caf9153b8395b2
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Suspicious PE
JiangminTrojanDropper.Crypter.gg
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_100%
KingsoftWin32.Troj.Agent.ga.(kcloud)
MicrosoftBackdoor:Win32/Hupigon
GridinsoftTrojan.Win32.Agent.vb!s2
ArcabitBackdoor.Hupigon.AYPE
ZoneAlarmTrojan-Dropper.Win32.Agent.gato
GDataBackdoor.Hupigon.AYPE
AhnLab-V3Dropper/Win32.Crypter.R3134
McAfeegeneric!bg.fgl
MAXmalware (ai score=87)
VBA32Trojan.Win32.Genome.dfab
MalwarebytesRansom.Cerber
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_AGENT.SMX
RisingTrojan.Lock!1.B303 (RDMK:cmRtazo+1Rt8uj+IB0CU8k7SxTor)
YandexTrojan.GenAsa!MLVuNpIpKLw
IkarusBackdoor.Win32.Hupigon
FortinetW32/Generic.AC.12FB!tr
AVGWin32:Rootkit-gen [Rtk]
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Hupigon.HwsBBPsC
Robert Thorne

Robert Thorne

Automotive & Future Transportation Editor

Robert Thorne covers electric vehicle innovations, autonomous driving systems, global mobility trends, and automotive engineering developments.

Share this article
Twitter Facebook Pinterest