CFP threat detection after scan – backdoor.win32.hupigon.~dl


I am just switching over from Zone Alarm’s Firewall, and after installing comodo’s firewall and running the scan it detected 3 threats:

  • Trojan.Win32.Patched.m(ID = 0x517d0) C:\WINDOWS$hf_mig$\KB840987\SP1QFE\winlogon.exe
  • Trojan.Win32.Patched.m(ID = 0x517d0) C:\WINDOWS$hf_mig$\KB841533\SP1QFE\winlogon.exe
  • Backdoor.Win32.Hupigon.~DL(ID = 0x67551) C:\WINDOWS\twain_32\SiPix\SCBLINK2\srvany.exe

I gather from the forum that the first two are fine and should be unchecked, but what about the third?

I am running Windows XP (SP3) on a Toshiba Satellite laptop with Symantec Anti-virus, SUPERAntiSpyware, Spybot - Search & Destroy, Lavasoft Ad-Aware SE Personal, and Malewarebytes’ Anti-Malware, all of which I have updated and run recently.

Thanks for your help.


Have you tried uploading the files to ?
Given that you ran all those anti malware programs and all ended without detection it is possible that the files are false positives.

The scanner in Comodo is still new. If you other scanners found nothing then it most likely is a false positive.