Solved! Use XCUQXQS.SYS (Backdoor Koutodoor) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

XCUQXQS.SYS – Backdoor Koutodoor removal

FileMD5Virus Alias
XCUQXQS.SYS 316a2fd1f0828c91ca3c45e6bfdb48bf Backdoor Koutodoor
XCUQXQS.SYS 316a2fd1f0828c91ca3c45e6bfdb48bf Trojan Generic
XCUQXQS.SYS 316a2fd1f0828c91ca3c45e6bfdb48bf Trojan Eldorado
XCUQXQS.SYS 316a2fd1f0828c91ca3c45e6bfdb48bf Trojan Agent

XCUQXQS.SYS size: 41312 bytes
XCUQXQS.SYS hash: 316A2FD1F0828C91CA3C45E6BFDB48BF

Created files:

%SysDir%\ajuzt.dll
%SysDir%\drivers\xcuqxqs.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\xcuqxqs\Type: 01000000
HKLM\System\CurrentControlSet\Services\xcuqxqs\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\xcuqxqs\DisplayName: xcuqxqs
HKLM\System\CurrentControlSet\Services\xcuqxqs\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C0078006300750071007800710073002E007300790073000000

Detected by UnHackMe:

XCUQXQS.SYS
Default location: %SYSDIR%\DRIVERS\XCUQXQS.SYS

Dropper information:
MD5: 9241c0b07add79c13d343c346ff4d700
File size: 188672 bytes

Leave a Reply