Solved! Use NSJZ.SYS (Backdoor Koutodoor) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

NSJZ.SYS – Backdoor Koutodoor removal

File MD5 Virus Alias
NSJZ.SYS 6e56d2ed364cfe9b21161bb15b3669e6 Backdoor Koutodoor
NSJZ.SYS 6e56d2ed364cfe9b21161bb15b3669e6 Trojan Generic
NSJZ.SYS 6e56d2ed364cfe9b21161bb15b3669e6 Trojan Eldorado
NSJZ.SYS 6e56d2ed364cfe9b21161bb15b3669e6 Trojan Siggen
NSJZ.SYS 6e56d2ed364cfe9b21161bb15b3669e6 Trojan Crypt

NSJZ.SYS size: 36576 bytes
NSJZ.SYS hash: 6E56D2ED364CFE9B21161BB15B3669E6

Created files:

%SysDir%\djigmva.dll
%SysDir%\drivers\nsjz.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\nsjz\Type: 01000000
HKLM\System\CurrentControlSet\Services\nsjz\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\nsjz\DisplayName: nsjz
HKLM\System\CurrentControlSet\Services\nsjz\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C006E0073006A007A002E007300790073000000

Detected by UnHackMe:

NSJZ.SYS
Default location: %SYSDIR%\DRIVERS\NSJZ.SYS

Dropper information:
MD5: 7aeb808631038e1ca5b063965eae673f
File size: 118848 bytes

Leave a Reply