Solved! Use SERVER.EXE (Backdoor Bifrose) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SERVER.EXE – Backdoor Bifrose removal

File MD5 Virus Alias
SERVER.EXE 41a82ec36104ddf2ac69506c6ea06acc Backdoor Bifrose
SERVER.EXE 41a82ec36104ddf2ac69506c6ea06acc Trojan Generic
SERVER.EXE 41a82ec36104ddf2ac69506c6ea06acc Trojan Agent

SERVER.EXE size: 89796 bytes
SERVER.EXE hash: 41A82EC36104DDF2AC69506C6EA06ACC

Created files:

%WinDir%\server.exe
%WinDir%\SysPr.prx
%Temp%\server.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\startkey: %WinDir%\server.exe

Detected by UnHackMe:

SERVER.EXE
Default location: %WinDir%\SERVER.EXE

Dropper information:
MD5: 321f6fa6fb330093478ec5166d5f529b
File size: 696108 bytes

Leave a Reply