spyware removal instructions

Executor removal

Spyware Executor Information
Name: Executor
Category: RAT
Date: 2004-07-06
Author: Death Zone
Dangerous: Yes
Executor is RAT which is malware.
Installing it is highly not recommended.
Executor description by Death Zone:
Functions: Destroy Mouse Double Click Change All System Colors To Yellow Hang Up All Connections Disable CTRL+ALT+DEL Keys Set Cursor Position To 0,0 Hide Windows TaskBar Reboot Computer Enable Jumping Mouse Enable Mouse Double Click Enable CTRL+ALT+DEL Keys Show Windows TaskBar Disable Jumping Mouse Copy EXECUTER To C:\Windows\ Directory Add EXECUTER To Windows StartUp Show Message-´Hello´ Show Message-´Hello bitch!!!!!!!!!!!!!!´ Show Message-´Do u ready to f**k your system??????!!!´ Show Message-´ShutUp bitch!!!!!!!!!!´ Show Message-´Get ready to start!!!!!!´ Show Message-´Thats All bitch!!!!!!!!!´ Delete C:\Logo.sys Delete C:\Windows\Win.com Delete C:\IO.sys Delete C:\Windows\System.ini Delete C:\Windows\Win.ini Delete C:\Config.sys Delete C:\Autoexec.bat Enable Pain´ting On The Screen(´DIE!!! DIE!!! DIE!!!´) Disable Pain´ting On The Screen(´DIE!!! DIE!!! DIE!!!´) Enable Creating Of Many Forms With Caption(´DIE!!! DIE!!! DIE!!!´) Disable Creating Of Many Forms With Caption(´DIE!!! DIE!!! DIE!!!´)
This RAT is also known as:
Backdoor.Excecutor.a.
Backdoor.Excecutor.b.
Backdoor.Executor.a - named by Kaspersky.
Backdoor/Executor!Server - named by Computer Associates.
Backdoor/Executor.A!Server - named by Computer Associates.
BackDoor-LM - named by McAfee.
Executer - named by c.
Exeutor Controller.
security risk or a "backdoor" program - named by F-Prot.
Seek - named by -.
Trj/Executor.Cl - named by Panda.
Trj/Executor.Sr - named by Panda.
Win32.Executor.A - named by Computer Associates.
Win32/Executor.A trojan - named by Eset.

>> Delete Executor automatically - Download Spyware Doctor

Executor Removal Instructions
Kill the following processes
backdoor.executor.a.exe, controller.exe, decryptor.exe, exec.exe
Remove the following files
backdoor.executor.a.exe, commands.txt, controller.exe, decryptor.exe, exec.exe.

Bookmark Executor page

 Previous Spyware: Remove Executer 1 Next Spyware: Remove ExeHeader.40