I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
KQHQBN.EXE – Trojan PcClient removal
File | MD5 | Virus Alias |
---|---|---|
KQHQBN.EXE | d77664714071d172b02eacea5e6d63a0 | Trojan PcClient |
KQHQBN.EXE | d77664714071d172b02eacea5e6d63a0 | Trojan Generic |
KQHQBN.EXE | d77664714071d172b02eacea5e6d63a0 | Trojan Eldorado |
KQHQBN.EXE | d77664714071d172b02eacea5e6d63a0 | Backdoor PcClien |
KQHQBN.EXE | d77664714071d172b02eacea5e6d63a0 | Trojan Agent |
KQHQBN.EXE | d77664714071d172b02eacea5e6d63a0 | Backdoor IRCBot |
KQHQBN.EXE size: 90624 bytes
KQHQBN.EXE hash: D77664714071D172B02EACEA5E6D63A0
Created files:
%Program Files Common%\Microsoft Shared\kqhqbn.dll
%Program Files Common%\Microsoft Shared\kqhqbn.exe
%Temp%\kqhqbn.dll
%Temp%\kqhqbnreg.dll
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\COMSysApp\Type: 10010000
HKLM\System\CurrentControlSet\Services\COMSysApp\Start: 02000000
HKLM\System\CurrentControlSet\Services\COMSysApp\ImagePath: 43003A005C00500072006F006700720061006D002000460069006C00650073005C0043006F006D006D006F006E002000460069006C00650073005C004D006900630072006F0073006F006600740020005300680061007200650064005C006B0071006800710062006E002E00650078006500200063006F006D007300790073006100700070000000
Detected by UnHackMe:
KQHQBN.EXE
Default location: %PROGRAM FILES COMMON%\MICROSOFT SHARED\KQHQBN.EXE
Dropper information:
MD5: d77664714071d172b02eacea5e6d63a0
File size: 90624 bytes