Remove Sokacaps. Description and removal instructions

 
Title: Sokacaps

Type: Backdoors
Severity scale:Sokacaps severity is 72  (72 / 100)
 
Sokacaps is a dangerous backdoor that gives the attacker unauthorized remote access to a compromised computer. The threat uses a chat client and is controlled through the IRC network. It allows the intruder to manage files, collect system information, run and terminate applications, download and execute arbitrary files. Sokacaps includes an integrated keylogger module that records all user keystrokes. The backdoor can also be used to perform a DoS attack against a defined remote host. Sokacaps automatically runs on every Windows startup.


Sokacaps properties:
• Allows remote user connection
• Logs keystrokes
• Connects itself to the internet
• Hides from the user
• Stays resident in background

Automatic Sokacaps removal:

remover for Sokacaps

Sokacaps manual removal:

Kill processes:
csrss.exe
Delete registry values:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\RegWrite=%Windir%\Media\csrss.exe
Delete files:
csrss.exe
Misc:
The csrss.exe file can be found in C:\Windows\Media or C:\Winnt\Media folder.

Other programs to remove Sokacaps:

• SUPERAntiSpyware - Review - Download
• CounterSpy - Review - Download
• Windows Defender - Review - Download

Information added: 19/03/04
Information updated: 30/09/05

Additional resources related to Sokacaps:

Attention: If you know or you have a website or page about Sokacaps removal, feel free to add a link to this list: add url




more resources

Post Comment:

Attention: Use this form only if you have additional information about Sokacaps parasite, its removal instructions, additional resources or behavior. By clicking "post comment" button you agree not to post any copyrighted, unlawful, harmful, threatening, abusive, harassing, defamatory, vulgar, obscene, profane, hateful, racially, ethnically or otherwise objectionable material of any kind.



Enter security code:

Latest spyware news:
Similar parasites: