Solved! Use QQ.SYS (Trojan Small) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

QQ.SYS – Trojan Small removal

File MD5 Virus Alias
QQ.SYS 6a8ba5c5380fe8b7f51547709807fc32 Trojan Small
QQ.SYS 6a8ba5c5380fe8b7f51547709807fc32 Trojan Artemis
QQ.SYS 6a8ba5c5380fe8b7f51547709807fc32 Trojan Generic
QQ.SYS 6a8ba5c5380fe8b7f51547709807fc32 Trojan Downloader
QQ.SYS 6a8ba5c5380fe8b7f51547709807fc32 Trojan Agent

QQ.SYS size: 3872 bytes
QQ.SYS hash: 6A8BA5C5380FE8B7F51547709807FC32

Created files:

C:\QQ.sys
%SysDir%\drivers\TXPlatform.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\RESSDT\Type: 01000000
HKLM\System\CurrentControlSet\Services\RESSDT\Start: 03000000
HKLM\System\CurrentControlSet\Services\RESSDT\DisplayName: RESSDT
HKLM\System\CurrentControlSet\Services\RESSDT\ImagePath: c:\QQ.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Explorer: %WinDir%\System32\drivers\TXPlatform.exe

Detected by UnHackMe:

QQ.SYS
Default location: C:\QQ.SYS

Dropper information:
MD5: 048016fd72217ac2e670355f364375c0
File size: 76295 bytes

Leave a Reply