Solved! Use G_SERVER2007.EXE (Backdoor Hupigon) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

G_SERVER2007.EXE – Backdoor Hupigon removal

File MD5 Virus Alias
G_SERVER2007.EXE 7c69ef799360eda28e8630c3faa294e9 Backdoor Hupigon
G_SERVER2007.EXE 7c69ef799360eda28e8630c3faa294e9 Trojan Generic
G_SERVER2007.EXE 7c69ef799360eda28e8630c3faa294e9 Backdoor Pigeon
G_SERVER2007.EXE 7c69ef799360eda28e8630c3faa294e9 Trojan Downloader
G_SERVER2007.EXE 7c69ef799360eda28e8630c3faa294e9 Trojan Bdld

G_SERVER2007.EXE size: 659456 bytes
G_SERVER2007.EXE hash: 7C69EF799360EDA28E8630C3FAA294E9

Created files:

%WinDir%\G_Server2007.DLL
%WinDir%\G_Server2007.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\ServerGrayPigeon2007\Type: 10010000
HKLM\System\CurrentControlSet\Services\ServerGrayPigeon2007\Start: 02000000
HKLM\System\CurrentControlSet\Services\ServerGrayPigeon2007\DisplayName: GrayPigeon2007
HKLM\System\CurrentControlSet\Services\ServerGrayPigeon2007\ImagePath: %WinDir%\G_Server2007.exe

Detected by UnHackMe:

G_SERVER2007.EXE
Default location: %WinDir%\G_SERVER2007.EXE

Dropper information:
MD5: 7c69ef799360eda28e8630c3faa294e9
File size: 659456 bytes

Leave a Reply