Title: Insane TCP Backdoor

Remove Insane TCP Backdoor. Removal instructions


 
Severity scale:Insane TCP Backdoor severity is 57  (57 / 100)
 
This RAT program uses the same basic principles that all RATs do: the victim's computer is infected with a server program, and the attacker can access it from a distant machine, using a client on his own machine. This pest allows the intruder to control the infected PC completely unnoticed, because it uses such stealth techniques as "backdoor" and "trojan". The infection is more likely to be performed via the e-mail. The author of this virus is a hacker called Insane. The pest originated in June 2000.

From the publisher:

"Features: - My first Win32 virus - Polymorphic. - Antiheuristics and EPO. Also works as good antidebugging feature against beginners (means lammers - Double encrypted. First decryptor resides in first section of victim. Second one,before virus code. - Selfpacking. Depends on victim, but sometimes compression could give 3.5 to 1 result (LZSS scheme - Per-process residency - Dosn't infect antiviruses (russian AVP' 'DrWeb only - filemask - Contains TCP backdoor Backdoor features 1. System info. Return system version,username,number of disks, . Upload' 'Execute Upload and execute file. After execution file is deleted. 3. Mass Download For example c windows pwl . Dir Directory listing 5. Backdoor shutdown (till next infected file run 6. Ability to upload plugins. - Infection not depends from attributes. - Windows directory infection. - Tested on Win95 OSR2,WinNT 4. ,Win2000,Win98 - completely workable. - Two infection methods 1. Standard add section . 2. Reloc residency (because it not used in PE Exe' . Possible it is not correct, but 100% works) - Some ready plugins applied. - MessageBox - remote message box. - Shutdowm- remote shutdown - Gateway - redirection of TCP connections."

Insane TCP Backdoor properties:
• Allows remote user connection
• Hides from the user
• Stays resident in background

Automatic Insane TCP Backdoor removal:

SpyHunter is recommended remover to uninstall Insane TCP Backdoor. You should confirm using free trial that it detects current version of parasite.

Note: Manual assistance required means that one or all of removers were unable to remove parasite without some manual intervention, please read manul removal instructions below.

If you failed to remove Insane TCP Backdoor using SpyHunter please report this to us.

We might be affiliated with any product we recommend on the site. Full disclosure in our Agreement of Use.
STOPzilla
We are testing STOPzilla's efficiency at removing Insane TCP Backdoor (2005-03-31 11:05:15)
Malwarebytes Anti Malware
We are testing Malwarebytes Anti Malware's efficiency at removing Insane TCP Backdoor (2005-03-31 11:05:15)
Spyware Doctor
We are testing Spyware Doctor's efficiency at removing Insane TCP Backdoor (2005-03-31 11:05:15)
XoftSpySE Anti Spyware

Insane TCP Backdoor manual removal:

Kill processes:
fce07b0f.exe, gateway.exe, gl.exe, test.exe
Unregister DLLs:
39df5f5f.dll, shutdown.dll

Delete files:
39df5f5f.dll, fce07b0f.exe, gateway.c--, gateway.exe, gateway.rc, gl.c--, gl.exe, gl.rc, infect.inc, info.txt, msgb.asm, plugins.h--, plugins.inc, readme.txt, ripper.c--, shutdown.asm, shutdown.dll, tcp.inc, test.asm, test.exe, test.obj, uc.inc, win32.inc, wsmm.inc
Information added: 2005-03-31 08:28:00
Information updated: 2005-03-31 08:28:00

Additional resources related to Insane TCP Backdoor:

Attention: If you know or you have a website or page about Insane TCP Backdoor removal, feel free to add a link to this list: add url

more resources

Post Comment:

Attention: Use this form only if you have additional information about Insane TCP Backdoor parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.
Home page Name



«


* All field required
Latest spyware news:
Subscribe to news

Similar parasites:
Compare spyware removers
Compare free products

HijackThis Log Analyzer Beta 2 HijackThis Log Analyzer Beta 2

I failed to remove Insane TCP Backdoor using SpyHunter.

Email


Close

Spreading the knowledge:

It is very hard to fight Computer parasites alone in internet space. If you have a website we would be more than happy if you would help us to spread the knowledge about latest threats. You can help your visitors to manage their Computer system manually without aditional expences. Knowledge is the power, we just need to spread it.
add text box
rss feed
help other