G_Server.DLL – Backdoor Hupigon

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

G_Server.DLL – Backdoor Hupigon removal

FileVirus Alias
G_Server.DLL Backdoor Hupigon
G_Server.DLL Trojan Agent
G_Server.DLL Trojan Delf
G_Server.DLL Trojan Buzus

Created files:

%WinDir%\G_Server.DLL – Backdoor Hupigon
%WinDir%\G_Server.exe – Backdoor Hupigon
%WinDir%\G_ServerHooK.DLL – Backdoor Hupigon

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\GrayPigeonServer\Type: 10010000
HKLM\System\CurrentControlSet\Services\GrayPigeonServer\Start: 02000000
HKLM\System\CurrentControlSet\Services\GrayPigeonServer\DisplayName: Gray_Pigeon_Server
HKLM\System\CurrentControlSet\Services\GrayPigeonServer\ImagePath: %WinDir%\G_Server.exe

Detected by UnHackMe:

G_Server.DLL
Default location: %WinDir%\G_Server.DLL

Dropper information:
SHA256: 3b997831794c7d997da69f80ce996409ceffa88df779fcdd6c8346d8748d554a
SHA1: 9d9775c0aff550d47de38ffaf575d3e5e65b71ed
MD5: 018dd397c28615821afccd0a0f9747b7
File size: 726884 bytes

Leave a Reply