Solved! Use QJYSKRY.DLL (Backdoor Koutodoor) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

QJYSKRY.DLL – Backdoor Koutodoor removal

FileMD5Virus Alias
QJYSKRY.DLL d04fad03f4f8f128729e8822c88b5862 Backdoor Koutodoor
QJYSKRY.DLL d04fad03f4f8f128729e8822c88b5862 Trojan Generic
QJYSKRY.DLL d04fad03f4f8f128729e8822c88b5862 Trojan MLW
QJYSKRY.DLL d04fad03f4f8f128729e8822c88b5862 Trojan Eldorado
QJYSKRY.DLL d04fad03f4f8f128729e8822c88b5862 Trojan Adload
QJYSKRY.DLL d04fad03f4f8f128729e8822c88b5862 Trojan Agent

QJYSKRY.DLL size: 53248 bytes
QJYSKRY.DLL hash: D04FAD03F4F8F128729E8822C88B5862

Created files:

%SysDir%\drivers\sdqn.sys
%SysDir%\qjyskry.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\sdqn\Type: 01000000
HKLM\System\CurrentControlSet\Services\sdqn\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\sdqn\DisplayName: sdqn
HKLM\System\CurrentControlSet\Services\sdqn\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C007300640071006E002E007300790073000000

Detected by UnHackMe:

QJYSKRY.DLL
Default location: %SYSDIR%\QJYSKRY.DLL

Dropper information:
MD5: 83ba799a90a86c92269e1cd6c1ddd364
File size: 122944 bytes

Leave a Reply