dr.web anti-virus - how to remove virus (backdoor.hupigon2.ybs) - [drwebhk

Upload: syazwan-hj-shah

Post on 04-Jun-2018

216 views

Category:

Documents


0 download

TRANSCRIPT

  • 8/13/2019 Dr.web Anti-Virus - How to Remove Virus (BackDoor.hupigon2.YBS) - [DRWEBHK

    1/2

    12/17/13 Dr.Web Anti-virus - How To Remove Virus (BackDoor.Hupigon2.YBS) - [DRWEBHK.COM]

    www.drwebhk.com/en/virus_removal/25383/BackDoor.Hupigon2.YBS.html

    Global Sites

    Full List

    |

    Latest Released Update : (HKT) 2013-12-17 15:31Virus Database Total Records : 4788605

    Home About Dr.Web Products Downloads Purchase FAQ Contact Us

    How To Remove Virus "BackDoor.Hupigon2.YBS"

    Brief Information

    Virus Name : BackDoor.Hupigon2.YBS

    Named By : AVG

    Known Aliases : BackDoor.Pigeon.21851 (Dr.Web), Backdoor.Win32.Hupigon.aabh(VirusBlokAda), Backdoor.Win32.Hupigon.bho (Kaspersky),BackDoor.Generic6.ECJ (AVG), Generic Delphi (McAfee),Backdoor.Hupigon.HGE (BitDefender), BKDR_HUPIGON.FKW (Trend Micro),Trojan:Win32/Anomaly (Microsoft), BDS/Hupigon.eko.34 (Avira),Packed.Win32.Yay.a (v) (SunBelt)

    Characteristics :(based on aliases)

    Trojan

    Trojan horses may allow a hacker remote access to a targetcomputer system, and perform various operations. The types ofoperations are limited by user privileges on target computer, whichnormally includes data theft, modification or de letion of files,keystroke logging, and use of machine as part of a botnet to performmass spamming or to distribute Denial-of-service attacks.

    Trojan horses can be installed through software bundling (includedas part of a software application available downloaded from file

    sharing network), email attachments, instant-messaging network,websites containing executable content (such as ActiveX control),etc. It can also be self-replicated by spreading itself through the useof application exploits.

    Trojan-Backdoor

    Backdoor is a Trojan which contains a Remote Administration Toolinside. This tool can bypass normally authentication to secretlycontrol a program, computer or even a network. Sometimes, aRemote Administration Tool is used for legitimate reasons byauthorized administrators, but it may also be misused by attackers.A backdoor may take the form of an insta lled program, or maysubvert the system through a roo tkit.

    Many computer worms install a backdoor on infected computer. Suchbackdoors appear to be installed so that spammers can send junkemail from infected machines. Modern backdoors usually send anotification to specific email when they are activated. They report IP

    address of infected computer together with other information, andwait silently for attacker's command.

    Viruses written for specific platforms

    The virus is designed to infect Windows 32-bit executable programs,and works in different Win32-environments.

    Compressed "packed" files which contains malware

    Being in a packed state reduces the size o f the file, and also acts asa form of protection for the malware because its binary data will bealtered. A packed file must be decompressed to its original statebefore it can be executed. Virus writers also commonly use a varietyof packing techniques to prevent security programs from analyzingthe file, including using multiple packers to compress the file.

    Steps to remove "BackDoor.Hupigon2.YBS" automatically

    1. Download Dr.Web CureIt!and save it in desktop.

    2. Download Security Space Pro 7.0 (32/64-bit), save it in desktop.

    3. Reboot computer to Safe Mode (press F8 before any Microsoft logo appears).

    4. Double click "cureit.exe" on desktop, follow on screen instructions to scan hard disk.(Wait patiently, it may take 20-60 minutes to perform an express scan.)

    5. After scanning is done, se lect all viruses found and choose "Cure".(If some files are not suitable to be cured, choose "Quarantine" or "Delete".)

    6. When all viruses found are cured, quarantined, or deleted, reboot to Normal Mode.

    7. Uninstall existing anti-virus software which cannot kill the viruses, and then reboot again.

    8. Locate the setup file of Security Space Pro on desktop , double click to run it.(For step-by-step procedures, please refer to installation video guide.)

    9. During setup, choose to obtain a demo key.

    10. After first time update, the scanne r will be launched again, quit the scanner at this point.

    11. Complete the se tup by rebooting computer.

    WINDOWS 7, VISTA, XPMAC OS X 10.4 OR ABOVE

    TOP 5 EMAIL VIRUSES (24HR) 15:31

    TOP 5 FILE VIRUSES (24HR) 15:31

    FREE ANTI-VIRUS TOOLS

    Dr.Web CureIt!

    Dr.Web LiveCD

    Dr.Web LiveUSB

    Dr.Web Light for Mac OS X

    LinkChecker for Google Chrome

    LinkChecker for Internet Explorer

    LinkChecker for Mozilla Firefox

    LinkChecker for Opera LinkChecker for Safari

    :: Privacy Policy Statement::

    Trojan.PWS.Panda.2401

    Win32.HLLM.MyDoom.33808

    Trojan.Siggen6.1747

    Win32.HLLM.Beagle

    Trojan.Siggen6.2654

    SCRIPT.Virus

    A dware.Downware.915

    Trojan.Fraudster.524

    Tool.Skymonk.14

    Trojan.DownLoader10.56820

    http://www.drwebhk.com/en/privacy.phphttp://www.chkci.org.hk/langs/enghttp://www.freedrweb.com/linkchecker/mozilla+firefox/?lng=enhttp://www.freedrweb.com/linkchecker/internet+explorer/?lng=enhttp://www.drwebhk.com/en/liveusb.phphttp://www.drwebhk.com/en/livecd.phphttp://www.drwebhk.com/linkid/ssp7http://www.drwebhk.com/en/privacy.phphttp://www.chkci.org.hk/langs/enghttp://www.freedrweb.com/linkchecker/safari/?lng=enhttp://www.freedrweb.com/linkchecker/opera/?lng=enhttp://www.freedrweb.com/linkchecker/mozilla+firefox/?lng=enhttp://www.freedrweb.com/linkchecker/internet+explorer/?lng=enhttp://www.freedrweb.com/linkchecker/google+chrome/?lng=enhttp://www.drwebhk.com/en/maclight.phphttp://www.drwebhk.com/en/liveusb.phphttp://www.drwebhk.com/en/livecd.phphttp://www.drwebhk.com/en/cureit.phphttp://www.drwebhk.com/linkid/macoshttp://www.drwebhk.com/linkid/ssp7http://www.drwebhk.com/en/faq.php?id=16http://www.youtube.com/drwebhkcomhttps://www.drwebhk.com/en/contact.phphttp://www.drwebhk.com/en/faq.phphttps://www.drwebhk.com/en/purchase.phphttp://www.drwebhk.com/en/downloads.phphttp://www.drwebhk.com/en/products.phphttp://www.drwebhk.com/en/about.phphttp://www.drwebhk.com/en/home.phphttp://www.drwebhk.com/en/history/2013-12-17/1.htmlhttp://www.drwebhk.com/enhttp://www.addthis.com/bookmark.php?v=300&winname=addthis&pub=unknown&source=tbx-300&lng=en-US&s=blogger&url=http%3A%2F%2Fwww.drwebhk.com%2Fen%2Fvirus_removal%2F25383%2FBackDoor.Hupigon2.YBS.html&title=Dr.Web%20Anti-virus%20-%20How%20To%20Remove%20Virus%20(BackDoor.Hupigon2.YBS)%20-%20%5BDRWEBHK.COM%5D&ate=AT-unknown/-/-/52b01aadd1246742/3&frommenu=1&uid=52b01aada7533ee1&ct=1&pre=https%3A%2F%2Fwww.google.com%2F&tt=0&captcha_provider=nucaptchahttp://www.addthis.com/bookmark.php?v=300&winname=addthis&pub=unknown&source=tbx-300&lng=en-US&s=myspace&url=http%3A%2F%2Fwww.drwebhk.com%2Fen%2Fvirus_removal%2F25383%2FBackDoor.Hupigon2.YBS.html&title=Dr.Web%20Anti-virus%20-%20How%20To%20Remove%20Virus%20(BackDoor.Hupigon2.YBS)%20-%20%5BDRWEBHK.COM%5D&ate=AT-unknown/-/-/52b01aadd1246742/2&frommenu=1&uid=52b01aad9fb924ff&ct=1&pre=https%3A%2F%2Fwww.google.com%2F&tt=0&captcha_provider=nucaptchahttp://www.drwebhk.com/en/virus/BackDoor.Pigeon.21851/1.html
  • 8/13/2019 Dr.web Anti-Virus - How to Remove Virus (BackDoor.hupigon2.YBS) - [DRWEBHK

    2/2

    12/17/13 Dr.Web Anti-virus - How To Remove Virus (BackDoor.Hupigon2.YBS) - [DRWEBHK.COM]

    www.drwebhk.com/en/virus_removal/25383/BackDoor.Hupigon2.YBS.html

    12. When time is allowed (may need several hours), perform a full scan in Dr.Web Scanner.

    Note :

    1. If it is unable to sta rt Windows due to virus infection, try Dr.Web LiveCDor Dr.Web LiveUSBinstead of Dr.Web CureIt!

    2. Time needed for express scan or full scan relies on many factors, such as systemperformance, available memory, running processes , number of drives and files, etc.

    Grand Tech Trading Limited 2010-2013 (Sole Distributor of Dr.Web in Hong Kong & Macau)

    Doctor Web 2003 - 2013

    Doctor W eb is a Russian IT-security solutions vendor. Dr.Web anti-virus software has been developed since 1992. The leader on t heRussian IT security services market, Doctor Web has been the first vendor that offered an anti-virus as a service in Russia. The companyalso offers proven anti-virus and ant i-spam solutions for businesses, government ent ities, and personal use. We have a solid record ofdetect ing malicious programs, and we adhere to all inte rnational security standards. Doctor Web has received numerous ce rtificates andawards; our satisfied customers spanning the g lobe are clear evidence of the complete trust customers have in our products.

    http://www.drwebhk.com/en/cureit.phphttp://www.drwebhk.com/en/liveusb.phphttp://www.drwebhk.com/en/livecd.php