Home Malware Programs Trojans MalwareScope.Backdoor.Hupigon.3

MalwareScope.Backdoor.Hupigon.3

Posted: November 29, 2010

MalwareScope.Backdoor.Hupigon.3 is a malicious backdoor Trojan that runs in the background and allows remote access to the compromised system. MalwareScope.Backdoor.Hupigon.3 attempts to propagate by exploiting local network shares. MalwareScope.Backdoor.Hupigon.3 will also attempt to join a predefined IRC server and channel stolen data in order to participate in distributed denial-of-service (DDoS) attack. The DDoS attacks will attempt to crash the computer. It is recommended that MalwareScope.Backdoor.Hupigon.3 be removed immediately.

Aliases

VirTool:Win32/Obfuscator.ER (Microsoft)
MalwareScope.Backdoor.Hupigon.3 (Ikarus)
Suspicious File (eSafe)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %Temp%\del.bat

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce][HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
Loading...