Remove Backdoor.Win32.Hupigon. Description and removal instructions

 
Title: Backdoor.Win32.Hupigon
Also known as: Hupigon.fixn
Type: Adware
Severity scale:Backdoor.Win32.Hupigon severity is 34  (34 / 100)
 
Backdoor.Win32.Hupigon is a computer threat reported by the rogue anti-spyware application called Windows Antivirus Pro. This bogus software claims that Internet Explorer is probably injected with worm Backdoor.Win32.Hupigon.fixn.he fake warning reads:

"Windows Antivirus Pro
Windows Antivirus Pro has denied
internet access of the program.
Internet Explorer is possible injected with worm Backdoor.Win32.Hupigon.fixn. This worm
attempts to send your personal information to remote host thought Internet Explorer."

You must remove Windows Antivirus Pro, otherwise this fake alert will pop up again each time you open Internet Explorer. Likely, your computer is not infected with Backdoor.Win32.Hupigon, but it is definitely infected with malware. Please use the removal guide below to remove Windows Antivirus Pro from your computer manually for free.


Related files: Windows Antivirus Pro.lnk, ANTI_files.exe, msvcm80.dll, msvcp80.dll, msvcr80.dll, Windows Antivirus Pro.exe, dbsinit.exe, wispex.html, i1.gif, i2.gif, i3.gif, j1.gif, j2.gif, j3.gif, jj1.gif, jj2.gif, jj3.gif, l1.gif, l2.gif, l3.gif, pix.gif, t1.gif, t2.gif, up1.gif, up2.gif, w1.gif, w11.gif, w2.gif, w3.gif, w3.jpg, wt1.gif, wt2.gif, wt3.gif, ppp3.dat, ppp4.dat, svchast.exe, bennuar.old, dddesot.dll, desot.exe, sysnet.dat

Backdoor.Win32.Hupigon properties:
• Changes browser settings
• Shows commercial adverts
• Connects itself to the internet
• Stays resident in background

Backdoor.Win32.Hupigon snapshot:
Backdoor.Win32.Hupigon removal

Automatic Backdoor.Win32.Hupigon removal:

remover for Backdoor.Win32.Hupigon

Backdoor.Win32.Hupigon manual removal:

Kill processes:
Windows Antivirus Pro.exe ANTI_files.exe dbsinit.exe svchast.exe desot.exe
Delete registry values:
HKEY_CURRENT_USER\Software\Softimer
HKEY_CURRENT_USER\Software\Windows Antivirus Pro
HKEY_CLASSES_ROOT\CLSID\{425882B0-B0BF-11CE-B59F-00AA006CB37D}
HKEY_CLASSES_ROOT\CLSID\{F54AF7DE-6038-4026-8433-CC30E3F17212}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F54AF7DE-6038-4026-8433-CC30E3F17212}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Win Antivirus Pro
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AntipPro2009_12
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AntipPro2009_12
Unregister DLLs:
msvcm80.dll msvcp80.dll msvcr80.dll dddesot.dll

Delete files:
Desktop\\\\Windows Antivirus Pro.lnk ANTI_files.exe msvcm80.dll msvcp80.dll msvcr80.dll Windows Antivirus Pro.exe dbsinit.exe wispex.html i1.gif i2.gif i3.gif j1.gif j2.gif j3.gif jj1.gif jj2.gif jj3.gif l1.gif l2.gif l3.gif pix.gif t1.gif t2.gif up1.gif up2.gif w1.gif w11.gif w2.gif w3.gif w3.jpg wt1.gif wt2.gif wt3.gif ppp3.dat ppp4.dat svchast.exe bennuar.old dddesot.dll desot.exe sysnet.dat

Other programs to remove Backdoor.Win32.Hupigon:

• Malwarebytes Anti Malware - Review - Download
• Malwarebytes Anti Malware - Review - Download
• Windows Defender - Review - Download

Information added: 30/07/09
Information updated: 03/10/09

Additional resources related to Backdoor.Win32.Hupigon:

Attention: If you know or you have a website or page about Backdoor.Win32.Hupigon removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about Backdoor.Win32.Hupigon parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:


Comments from visitors:


1. by . 2009-10-03 19:10:18
Another possible registry item is here:
HKEY_LOCAL_MACHINESYSTEMControlSet001ServicesAntiPol


Latest spyware news:
Similar parasites:
Related discussions: