Solved! Use SDQN.SYS (Backdoor Koutodoor) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SDQN.SYS – Backdoor Koutodoor removal

FileMD5Virus Alias
SDQN.SYS 880da722a4c28abbe2bdf9ec9b937cf8 Backdoor Koutodoor
SDQN.SYS 880da722a4c28abbe2bdf9ec9b937cf8 Trojan Generic
SDQN.SYS 880da722a4c28abbe2bdf9ec9b937cf8 Trojan MLW
SDQN.SYS 880da722a4c28abbe2bdf9ec9b937cf8 Trojan Eldorado
SDQN.SYS 880da722a4c28abbe2bdf9ec9b937cf8 Trojan Siggen
SDQN.SYS 880da722a4c28abbe2bdf9ec9b937cf8 Trojan Agent

SDQN.SYS size: 38432 bytes
SDQN.SYS hash: 880DA722A4C28ABBE2BDF9EC9B937CF8

Created files:

%SysDir%\drivers\sdqn.sys
%SysDir%\qjyskry.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\sdqn\Type: 01000000
HKLM\System\CurrentControlSet\Services\sdqn\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\sdqn\DisplayName: sdqn
HKLM\System\CurrentControlSet\Services\sdqn\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C007300640071006E002E007300790073000000

Detected by UnHackMe:

SDQN.SYS
Default location: %SYSDIR%\DRIVERS\SDQN.SYS

Dropper information:
MD5: 83ba799a90a86c92269e1cd6c1ddd364
File size: 122944 bytes

Leave a Reply