Remove Chast. Description and removal instructions

 
Title: Chast

Type: Backdoors
Severity scale:Chast severity is 77  (77 / 100)
 
Chast is a backdoor that provides the attacker with unauthorized remote access to a compromised computer. The intruder can control the infected system and steal user sensitive data. Chast also records user keystrokes, captures online chat conversations and collects system information. It may install a trojan able to hide Chast running processes. The backdoor automatically runs on every Windows startup.


Chast properties:
• Allows remote user connection
• Logs keystrokes
• Connects itself to the internet
• Hides from the user
• Stays resident in background

Automatic Chast removal:

remover for Chast

Chast manual removal:

Kill processes:
win16svc.exe
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\system32check
Delete files:
win16svc.exe, isnsys.dll, isnsys32zx.dll
Delete directories:
C:\Windows\System\isndata
C:\Windows\System32\isndata
C:\Winnt\System32\isndata
Misc:
The backdoor creates files with random names.

Most Chast files reside in C:\Windows or C:\Winnt directory.

Other programs to remove Chast:

• SUPERAntiSpyware - Review - Download
• CounterSpy - Review - Download
• Windows Defender - Review - Download

Information added: 23/11/05
Information updated: 23/11/05

Additional resources related to Chast:

Attention: If you know or you have a website or page about Chast removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about Chast parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:

Latest spyware news:
Similar parasites:
Related discussions: