FMXSO.DLL – Backdoor Koutodoor

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

FMXSO.DLL – Backdoor Koutodoor removal

File MD5 Virus Alias
FMXSO.DLL db7bc789465420ea5b82ce87b077f11f Backdoor Koutodoor
FMXSO.DLL db7bc789465420ea5b82ce87b077f11f Trojan Eldorado
FMXSO.DLL db7bc789465420ea5b82ce87b077f11f Trojan Adload

FMXSO.DLL size: 61440 bytes

Created files:

%SysDir%\drivers\feil.sys
%SysDir%\fmxso.dll
%TEMP%\bfpqcp.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\feil\Type: 01000000
HKLM\System\CurrentControlSet\Services\feil\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\feil\DisplayName: feil
HKLM\System\CurrentControlSet\Services\feil\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C006600650069006C002E007300790073000000

Detected by UnHackMe:

FMXSO.DLL
Default location: %SYSDIR%\FMXSO.DLL

Dropper information:
MD5: 07ce1f0a0b8143a6e0b57800db08678b
File size: 188480 bytes

Leave a Reply