PQHK.SYS – Backdoor Koutodoor

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

PQHK.SYS – Backdoor Koutodoor removal

File MD5 Virus Alias
PQHK.SYS 5cfd73a4765b9021e20adad6d3469fd4 Backdoor Koutodoor
PQHK.SYS 5cfd73a4765b9021e20adad6d3469fd4 Trojan SuspiciousFile
PQHK.SYS 5cfd73a4765b9021e20adad6d3469fd4 Trojan Generic
PQHK.SYS 5cfd73a4765b9021e20adad6d3469fd4 Trojan Eldorado
PQHK.SYS 5cfd73a4765b9021e20adad6d3469fd4 Trojan Agent
PQHK.SYS 5cfd73a4765b9021e20adad6d3469fd4 Trojan Crypt

PQHK.SYS size: 42016 bytes
PQHK.SYS hash: 5CFD73A4765B9021E20ADAD6D3469FD4

Created files:

%SysDir%\drivers\pqhk.sys
%SysDir%\kjh.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\pqhk\Type: 01000000
HKLM\System\CurrentControlSet\Services\pqhk\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\pqhk\DisplayName: pqhk
HKLM\System\CurrentControlSet\Services\pqhk\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C007000710068006B002E007300790073000000

Detected by UnHackMe:

PQHK.SYS
Default location: %SYSDIR%\DRIVERS\PQHK.SYS

Dropper information:
MD5: 4dbdde95a4dbc66074331ab1475aeb22
File size: 147712 bytes

Leave a Reply