
Remove REA2. Description and removal instructions
This program was designed for illegal controlling of other people's computers. The hacker infects the victim's machine via the e-mail or File and Print Sharing with a "server" program. He can later access the infected machine via a "client". The functions of a RAT may vary, depending on the needs of the hacker. Some may just do nasty things, while the user is working. Other can steal vital information and delete files. This RAT uses "backdoor" abilities to infiltrate the system and allow the intruder to stay unnoticed for a long period of time. This Remote Administration Tool was created by a hacker called Shital Shah. He wrote it using Delphi 3.0 programming language. The source code is included, so anyone can modify this pest to suit his personal needs. The RAT was created in July 1998.
From the publisher:
"Concept of trojan horses is not new. Programs like Back Orifice 2000 silently stays in background in your PC, acts as TCP/IP server and allows somebody to connect it through Internet and execute commands sent by them. The REA2 (Remote Execution Agent) is my own trojan horse specifically designed for silent, full proof, reliable and powerfull illegal intrusion on other people's PCs through Internet. Comparing with BO2K, it lacks few features like real time screen display and mouse control and plug-ins but it's designed to be much more 'reliable and silent intrusion' and currently has few of more capabilities then BO2K. It's written in Delphi 3.0 to eliminate any runtime requirements. The EXE available here is a server. You can use any client that can connect to it on port 23145 and send the command strings. My favorite client is my own PortTalk. I didn't got much time to document these stuff (as usual it was fun program solely meant for my own use) but you can get the list of commands in TMainForm.ProcessReq function in main.pas file. This application is right now not in state of easy clicks. You might have to modify the source code for your needs."
REA2 properties: • Allows remote user connection • Hides from the user • Stays resident in background
Automatic REA2 removal:
remover for REA2
REA2 manual removal: Kill processes: icqpro.exe, rea2.exe
Delete files:icqpro.exe, main.pas, msbill32.res, operations.pas, pwdlg.dfm, rea2.exe, readme.txt, sample.txt, sendkey.pas
Other programs to remove REA2:• SUPERAntiSpyware - Review - Download • CounterSpy - Review - Download • Windows Defender - Review - Download
Information added: 25/04/05
Information updated: 25/04/05
Additional resources related to REA2:
Attention: If you
know or you have a website or page about REA2 removal, feel free
to add a link to this list: add
url
more resources
Post Comment:
Attention: Use this form only if you have additional information about REA2 parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.
|
Latest spyware news:
Similar parasites:
|