Solved! Use DAQDRV.SYS (Trojan Agent) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

DAQDRV.SYS – Trojan Agent removal

FileMD5Virus Alias
DAQDRV.SYS 45800dfbaea8637e41090b92e7ce5421 Trojan Agent
DAQDRV.SYS 45800dfbaea8637e41090b92e7ce5421 Trojan SuspiciousFile
DAQDRV.SYS 45800dfbaea8637e41090b92e7ce5421 Trojan Artemis
DAQDRV.SYS 45800dfbaea8637e41090b92e7ce5421 Trojan Generic
DAQDRV.SYS 45800dfbaea8637e41090b92e7ce5421 Trojan Downloader
DAQDRV.SYS 45800dfbaea8637e41090b92e7ce5421 Trojan Small

DAQDRV.SYS size: 2304 bytes
DAQDRV.SYS hash: 45800DFBAEA8637E41090B92E7CE5421

Created files:

%SysDir%\6to4v32.dll
%SysDir%\daqdrv.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\6to4\Type: 20010000
HKLM\System\CurrentControlSet\Services\6to4\Start: 02000000
HKLM\System\CurrentControlSet\Services\6to4\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\6to4\DisplayName: 4E006500740077006F0072006B002000530065006300750072006900740079000000
HKLM\System\CurrentControlSet\Services\6to4\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\6to4\Description: 570069006E0064006F007700730020004E006500740077006F0072006B0020005300650063007500720069007400790020004D0061006E006100670065006D0065006E007400200053006500720076006900630065000000
HKLM\System\CurrentControlSet\Services\6to4\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00360074006F0034007600330032002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\daqdrv\Type: 01000000
HKLM\System\CurrentControlSet\Services\daqdrv\Start: 03000000
HKLM\System\CurrentControlSet\Services\daqdrv\DisplayName: daqdrv
HKLM\System\CurrentControlSet\Services\daqdrv\ImagePath: %WinDir%\System32\daqdrv.sys
HKLM\System\CurrentControlSet\Services\daqdrv\Description: daqdrv

Detected by UnHackMe:

DAQDRV.SYS
Default location: %SYSDIR%\DAQDRV.SYS

Dropper information:
MD5: 1d156d8878b79f542c219d64d991d1c1
File size: 88064 bytes

Leave a Reply