Backdoor Koutodoor – isy.sys – 0ba68bd4ebc09afefef74088812cf441

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

Backdoor Koutodoor
Also known as: Trojan Agent, Trojan StartPage
SHA256: b5890a0871ab4e4e459b32c3deaba8dad9ed0967762b95d5ad0f2e1ec326455e
SHA1: b4236127e714d8c7a87d3b88fe5ad5a021dca49e
MD5: 0ba68bd4ebc09afefef74088812cf441
File size: 151808 bytes

Created files:

%SysDir%\drivers\isy.sys – Backdoor Koutodoor
%SysDir%\ftqq.dll – Backdoor Koutodoor
%SysDir%\gjkbcc.bat – Backdoor Koutodoor

Backdoor Koutodoor created autostart registry keys:

HKLM\System\CurrentControlSet\Services\isy\Type: 01000000
HKLM\System\CurrentControlSet\Services\isy\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\isy\DisplayName: isy
HKLM\System\CurrentControlSet\Services\isy\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C006900730079002E007300790073000000

Leave a Reply