SVCHOST_HOOK.DLL – Backdoor Hupigon

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SVCHOST_HOOK.DLL – Backdoor Hupigon removal

File MD5 Virus Alias
SVCHOST_HOOK.DLL 75ecaa7d0ba0824f8165bfe9f7bd1c58 Backdoor Hupigon
SVCHOST_HOOK.DLL 75ecaa7d0ba0824f8165bfe9f7bd1c58 Trojan Generic
SVCHOST_HOOK.DLL 75ecaa7d0ba0824f8165bfe9f7bd1c58 Backdoor Pigeon

SVCHOST_HOOK.DLL size: 102400 bytes
SVCHOST_HOOK.DLL hash: 75ECAA7D0BA0824F8165BFE9F7BD1C58

Created files:

%WinDir%\svchost.DLL
%WinDir%\svchost.exe
%WinDir%\svchost_HOOk.DLL

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\DnsLanuch Network\Type: 10010000
HKLM\System\CurrentControlSet\Services\DnsLanuch Network\Start: 02000000
HKLM\System\CurrentControlSet\Services\DnsLanuch Network\DisplayName: DNS Server Process Launcher
HKLM\System\CurrentControlSet\Services\DnsLanuch Network\ImagePath: %WinDir%\svchost.exe

Detected by UnHackMe:

SVCHOST_HOOK.DLL
Default location: %WinDir%\SVCHOST_HOOK.DLL

Dropper information:
MD5: 1237ef0144b5f22aaaf0704b9010954e
File size: 931840 bytes

Leave a Reply