25D482.DLL – Backdoor Hupigon

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

25D482.DLL – Backdoor Hupigon removal

FileMD5Virus Alias
25D482.DLL 67a157ce6b822b224ed615c1e463f7f8 Backdoor Hupigon
25D482.DLL 67a157ce6b822b224ed615c1e463f7f8 Suspicious File
25D482.DLL 67a157ce6b822b224ed615c1e463f7f8 Trojan Artemis
25D482.DLL 67a157ce6b822b224ed615c1e463f7f8 Trojan XPACK
25D482.DLL 67a157ce6b822b224ed615c1e463f7f8 Trojan Generic
25D482.DLL 67a157ce6b822b224ed615c1e463f7f8 Trojan DNAScan

25D482.DLL size: 596865 bytes
25D482.DLL hash: 67A157CE6B822B224ED615C1E463F7F8

Created files:

%SysDir%\25d482.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\.Net CLR\Type: 10010000
HKLM\System\CurrentControlSet\Services\.Net CLR\Start: 02000000
HKLM\System\CurrentControlSet\Services\.Net CLR\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\.Net CLR\DisplayName: ssMicsrosoft .Nswdsase1sts Framsework COM+ Support
HKLM\System\CurrentControlSet\Services\.Net CLR\ImagePath: %SystemRoot%\System32\svchost.exe -k “.Net CLR”
HKLM\System\CurrentControlSet\Services\.Net CLR\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C003200350064003400380032002E0064006C006C000000

Detected by UnHackMe:

25D482.DLL
Default location: %SYSDIR%\25D482.DLL

Dropper information:
MD5: 1953ae59f9fff16d56406a5389641118
File size: 624368 bytes

Leave a Reply