SERVER_SETUP.EXE – Backdoor Hupigon

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SERVER_SETUP.EXE – Backdoor Hupigon removal

File MD5 Virus Alias
SERVER_SETUP.EXE 28b258e69ce735b615faff86f0f502cd Backdoor Hupigon
SERVER_SETUP.EXE 28b258e69ce735b615faff86f0f502cd Trojan SuspiciousFile
SERVER_SETUP.EXE 28b258e69ce735b615faff86f0f502cd Trojan Generic
SERVER_SETUP.EXE 28b258e69ce735b615faff86f0f502cd Backdoor Pigeon
SERVER_SETUP.EXE 28b258e69ce735b615faff86f0f502cd Trojan Agent
SERVER_SETUP.EXE 28b258e69ce735b615faff86f0f502cd Trojan Delf

SERVER_SETUP.EXE size: 761344 bytes
SERVER_SETUP.EXE hash: 28B258E69CE735B615FAFF86F0F502CD

Created files:

%WinDir%\Hacker.com.cn.exe
%TEMP%\46404C.dmp
%TEMP%\Server_Setup.exe
%TEMP%\?ã???????????????????????? S

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn\Type: 10010000
HKLM\System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn\Start: 02000000
HKLM\System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn\DisplayName: GrayPigeon_Hacker.com.cn
HKLM\System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn\ImagePath: %WinDir%\Hacker.com.cn.exe

Detected by UnHackMe:

SERVER_SETUP.EXE
Default location: %TEMP%\SERVER_SETUP.EXE

Dropper information:
MD5: aa82a854f1b115084eb13c43257de6b1
File size: 2776656 bytes

Leave a Reply