Backdoor Koutodoor – dmsbya.sys – 043db84db0f86ef28a55bc6d21e7edde

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

Backdoor Koutodoor
Also known as: Trojan Eldorado, Trojan Generic
SHA256: c603db4996a8a3df27e754af81f65f672c08ab21adca9cb0894a7651d34e70fa
SHA1: cb10574e31ec5ba27aa6ecfd6110f45fdb267b6e
MD5: 043db84db0f86ef28a55bc6d21e7edde
File size: 131328 bytes

Created files:

%SysDir%\drivers\dmsbya.sys – Backdoor Koutodoor
%SysDir%\kqdvca.bat – Backdoor Koutodoor
%SysDir%\mfyk.dll – Backdoor Koutodoor

Backdoor Koutodoor created autostart registry keys:

HKLM\System\CurrentControlSet\Services\dmsbya\Type: 01000000
HKLM\System\CurrentControlSet\Services\dmsbya\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\dmsbya\DisplayName: dmsbya
HKLM\System\CurrentControlSet\Services\dmsbya\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C0064006D0073006200790061002E007300790073000000

Leave a Reply