Backdoor Hupigon – sBgxClWX.dll – 50baa0a8848cc9c8fceec026d5ec71f3

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Backdoor Hupigon
Also known as: Trojan Generic, Backdoor Prosti
SHA256: 9b6aa75b6fa9fb3ea8d743aa0d5e2ccb62c4cf982a869fc1b399f4ac26b55947
SHA1: 22bd384a13940593bc775b3e028c4a4e521e73e3
MD5: 50baa0a8848cc9c8fceec026d5ec71f3
File size: 227406 bytes

Created files:

%SysDir%\drivers\etc\sBgxClWX.dll – Backdoor Hupigon

Backdoor Hupigon created autostart registry keys:

HKLM\System\CurrentControlSet\Services\SRAT_Service\Type: 10010000
HKLM\System\CurrentControlSet\Services\SRAT_Service\Start: 02000000
HKLM\System\CurrentControlSet\Services\SRAT_Service\DisplayName: SRAT_Service
HKLM\System\CurrentControlSet\Services\SRAT_Service\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\SRAT_Service\Description: SRAT??????
HKLM\System\CurrentControlSet\Services\SRAT_Service\Parameters\ServiceDLL: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0064007200690076006500720073005C006500740063005C00730042006700780043006C00570058002E0064006C006C000000

Leave a Reply