Security Stronghold security made easy

How to Remove Graybird.K

Trojans is one of the most wide-spread threat in the internet. They can spread in lot of ways (torrents, e-mail attachments, video codecs etc.). Graybird.K as well as any other trojan can harm your PC in different ways. Originally, trojans stole just your e-mail contacts and some personal data. Nowadays, they can steal any type of private information, being serious threat. In this tutorial we will show how to deal with Graybird.K detect and remove it from your PC.

Choose option :

* Graybird.K description and technical details.

* Manual removal of Graybird.Kl.

* Download tool that will solve your problem automatically.

* Professional support that will help you remove Graybird.K from our Security Support Team.

Graybird.K at first meant hardware required for spy targets. There were a wheen of acts of legislations passed to control setting up of program suspecting to be Graybird.K when combating to remove Graybird.K. If you don't wish to remove Graybird.K or purchase Graybird.K removal tool, you can lessen privileges of specific defenceless Internet-facing advances such as Internet Explorer software. Some types of Graybird.K turn off firewalls and anti malware, reduce browser program shield settings, opening the computer for further contagions. Graybird.K that acts as WWW site proxy or BHO can replace HTML links with the ones to Graybird.K hacker Web site. It's often when Graybird.K display publicities.


Threat indicator: HIGH

Trojan's detail table

Trojan alias:

Executable file:

Threat class:

Affected OS:

Graybird.K

G-Server.exe

Trojan

Win32 (Windows 9x, Windows XP, Windows Vista, Windows Seven)



Graybird.K infiltration

As we already said there numerous ways trojan can get to your PC from the internet. Graybird.K copies its file(s) to your hard disk. File name typical to Graybird.K is G-Server.exe. Then it runs itself and creates new startup key in registry with name Graybird.K and value G-Server.exe. If you will look into running processes list you will see some extra process with name like G-Server.exe or any random name that uses decent amount of your CPU.

If you would like to remove Graybird.K use WiperSoft Antispyware Malware Remediation Tool (see below)

Automatic Trojan Removal

So what is Graybird.K Removal Tool? Basically, it is the tool that will remove every file and registry key that was created by Graybird.K. It was created after analyzing all versions and types of this threat on test PCs and every file and key was added to the database. Removal Tool is updated regularly to make sure it can remove latest versions of Graybird.K:

Download WiperSoft Antispyware to remove Graybird.K

* WiperSoft Antispyware was developed to remove threats like Graybird.K in automatic mode. Remover has active module to protect PC from hijackers, trojans, ransomware and other viruses. Trial version of Wipersoft provides detection of computer viruses for FREE. To remove malware, you have to purchase the full version of Wipersoft.

How to remove Graybird.K manually?

During all time since adding Graybird.K to our database we track it changes and add them in the list below, removing files mentioned from your hard drive and deleting them from starup list and also unregistering all corresponding DLLs will result cleaning your computer drom the trojan. But also, missing DLL's that can be removed or corrupted by Graybird.K should be restored from your Windows CD .

So, here is the simple process to remove Graybird.K:

1. Delete following processes form startup and files from your hard drive:

  • g_server1.23.exe
  • 2006gg.cn
  • G-Server.exe
  • G_Server.DLL
  • G_Server_Hook.DLL
  • G_Server_Hook?.DLL

2. Delete the following folders that are assosiated with Graybird.K:

no information

3. Finally, remove this registry keys:

  • Key: SYSTEM\CURRENTCONTROLSET\SERVICES\GrayPigeon_Hacker.com.cn\Enum
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007
    Value: Type
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007
    Value: Start
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007
    Value: ErrorControl
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007
    Value: ImagePath
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007
    Value: DisplayName
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007\Security
    Value: Security
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007
    Value: ObjectName
  • Key: System\CurrentControlSet\Services\Windows_rejoice2007
    Value: Description
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: Type
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: Start
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: ErrorControl
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: ImagePath
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: DisplayName
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn\Security
    Value: Security
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: ObjectName
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: Description
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN
    Value: NextInstance
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000
    \Control

    Value: *NewlyCreated*
  • Key:
    SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000

    Value: Service
  • Key:
    SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000

    Value: Legacy
  • Key:
    SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000

    Value: ConfigFlags
  • Key:
    SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000

    Value: Class
  • Key:
    SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000

    Value: ClassGUID
  • Key:
    SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000

    Value: DeviceDesc
  • Key: SYSTEM\CURRENTCONTROLSET\SERVICES\GrayPigeon_Hacker.com.cn\Enum
    Value: Count
  • Key: SYSTEM\CURRENTCONTROLSET\SERVICES\GrayPigeon_Hacker.com.cn\Enum
    Value: NextInstance
  • Key: System\CurrentControlSet\Enum\Root\LEGACY_GRAYPIGEON_HACKER.COM.CN\0000
    \Control

    Value: ActiveService
  • Key: System\CurrentControlSet\Services\ServerThe
    Value: Type
  • Key: System\CurrentControlSet\Services\ServerThe
    Value: Start
  • Key: System\CurrentControlSet\Services\ServerThe
    Value: ErrorControl
  • Key: System\CurrentControlSet\Services\ServerThe
    Value: ImagePath
  • Key: System\CurrentControlSet\Services\ServerThe
    Value: DisplayName
  • Key: System\CurrentControlSet\Services\ServerThe\Security
    Value: Security
  • Key: System\CurrentControlSet\Services\ServerThe
    Value: ObjectName
  • Key: System\CurrentControlSet\Services\ServerThe
    Value: Description
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE
    Value: NextInstance
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE\0000\Control
    Value: *NewlyCreated*
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE\0000
    Value: Service
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE\0000
    Value: Legacy
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE\0000
    Value: ConfigFlags
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE\0000
    Value: Class
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE\0000
    Value: ClassGUID
  • Key: SYSTEM\CURRENTCONTROLSET\ENUM\ROOT\LEGACY_SERVERTHE\0000
    Value: DeviceDesc
  • Key: SYSTEM\CURRENTCONTROLSET\SERVICES\ServerThe\Enum
  • Key: SYSTEM\CURRENTCONTROLSET\SERVICES\ServerThe\Enum
    Value: Count
  • Key: SYSTEM\CURRENTCONTROLSET\SERVICES\ServerThe\Enum
    Value: NextInstance
  • Key: System\CurrentControlSet\Services\GrayPigeon_Hacker.com.cn
    Value: ImagePath

Warning: Sometimes, trojan can use system file names or randomly generated names for its executable. We recommend you to use WiperSoft Antispyware Malware Remediation Tool for safe problem solution.

If you are already our customer or you have additional questions ask our support team for help in removing Graybird.K!

Let our support team solve your problem with Graybird.K and remove Graybird.K right now!

support person

Submit support ticket below and describe your problem with Graybird.K. Support team will offer you solution in several minutes and give a step-by-step instruction on how to remove Graybird.K. Trouble-free tech support with over 10 years experience removing malware.


Submit support ticket


Write a few words of how you got Graybird.K with all circunstances in the form below. Our support team open support ticket for you in an hour and we will start solving your problem with Graybird.K. Attach suspicious files that you see that possibly a part of Graybird.K.

Click to ask professional of Graybird.K solution

Describe your problem here and we'll contact you in several minutes:

We'll reply you in 10 minutes or less
* Your Name:
* Your E-mail:
* Problem summary:
* Detailed description:
Attach suspicious file:
Here you can attach file you suspect to be virus or source of problem. If you want to attach several files, put them into one archive and attach it instead.

Click on this button to submit request.

Solution guaranteed!

 

It is important:

  1. We hate spam as much as you do. We will not share your email with any third party or publish it anywhere. Your email is used only to contact you and give you Graybird.K removal solution.
  2. All fields of this form are obligatory.

 

Next threat: GrayP Trojan »

« Back to catalog

Home | Partners | Shop | Support | Terms of use | Contact Us | Privacy Policy | Sitemap

Copyright © 2021 Security Stronghold. All Rights Reserved. All content on this website is protected and belongs to Security Stronghold LLC.