Solved! Use SR.EXE (Backdoor Hupigon) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SR.EXE – Backdoor Hupigon removal

File MD5 Virus Alias
SR.EXE ec05204d66a991a0825ba0807adc08ed Backdoor Hupigon
SR.EXE ec05204d66a991a0825ba0807adc08ed Trojan Artemis
SR.EXE ec05204d66a991a0825ba0807adc08ed Trojan Eldorado
SR.EXE ec05204d66a991a0825ba0807adc08ed Trojan Downloader
SR.EXE ec05204d66a991a0825ba0807adc08ed Trojan Agent
SR.EXE ec05204d66a991a0825ba0807adc08ed Trojan Delf

SR.EXE size: 122368 bytes
SR.EXE hash: EC05204D66A991A0825BA0807ADC08ED

Created files:

%SysDir%\bkp.exe
%SysDir%\desktop.exe
%SysDir%\sr.exe
%SysDir%\wnhelp.exe
%AppData%\server.exe
%AppData%\tasks.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\System: %AppData%\tasks.exe

Detected by UnHackMe:

SR.EXE
Default location: %SYSDIR%\SR.EXE

Dropper information:
MD5: 2488b86e6b84eca4a2f3935f204c3611
File size: 754203 bytes

Leave a Reply