SVCHEST.EXE – Backdoor Hupigon

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SVCHEST.EXE – Backdoor Hupigon removal

FileMD5Virus Alias
SVCHEST.EXE 76ddfefd77a21a4a353eba5fedcfe73a Backdoor Hupigon
SVCHEST.EXE 76ddfefd77a21a4a353eba5fedcfe73a Trojan Eldorado
SVCHEST.EXE 76ddfefd77a21a4a353eba5fedcfe73a Backdoor Pigeon
SVCHEST.EXE 76ddfefd77a21a4a353eba5fedcfe73a Trojan CI
SVCHEST.EXE 76ddfefd77a21a4a353eba5fedcfe73a Trojan QQPass
SVCHEST.EXE 76ddfefd77a21a4a353eba5fedcfe73a Trojan Agent

SVCHEST.EXE size: 313909 bytes
SVCHEST.EXE hash: 76DDFEFD77A21A4A353EBA5FEDCFE73A

Created files:

%SysDir%\svchest.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Nerik\Type: 10010000
HKLM\System\CurrentControlSet\Services\Nerik\Start: 02000000
HKLM\System\CurrentControlSet\Services\Nerik\DisplayName: Network Connections work
HKLM\System\CurrentControlSet\Services\Nerik\ImagePath: %WinDir%\System32\svchest.exe

Detected by UnHackMe:

SVCHEST.EXE
Default location: %SYSDIR%\SVCHEST.EXE

Dropper information:
MD5: 76ddfefd77a21a4a353eba5fedcfe73a
File size: 313909 bytes

Leave a Reply