spyware removal instructions

InCommand removal

Spyware InCommand Information
Name: InCommand
Category: RAT
Author: Stoner
Coded in: Delphi
Dangerous: Yes
InCommand is RAT which is malware.
Installing it is highly not recommended.
InCommand description by Stoner:
Vendor: ´1st of all, click on ´About´ on the client for help. The ICQ notify will _NOT_ page you _unless_ you enter YOUR ICQ UIN in the icq notify box & click notify. Then it´ll start paging you. Every time the victim gets on. The screen capture is slooow! It should be fixed in next versions to come! So you´ll have to live with it. If you need help or have a bug to report, please visit the forum that´s shown in the ´ABOUT´ on the client. But it pretty much runs awesome.´Vendor: ´ the server is NOW COMPRESSED!!!!! WOOHOO!!! this editserver is 100% better than old versions. You can add size to the server. You can now bind the server with a file ;-) You can define an Editserver Password now. Meaning, the settings can not be read/wrote without the correct pass. Now you can define the server´s port with the editserver. You can pick from about a million icons stored inside EditServer.´ 1.6b: Vendor: ´ the server is NOW COMPRESSED!!!!! WOOHOO!!! this editserver is 100% better than old versions. You can add size to the server. You can now bind the server with a file ;-) You can define an Editserver Password now. Meaning, the settings can not be read/wrote without the correct pass. Now you can define the server´s port with the editserver. You can pick from about a million icons stored inside EditServer.´
This RAT is also known as:
Backdoor.Incommand.17.
Backdoor.InCommander.10.
Backdoor.InCommander.11.
Backdoor.InCommander.12.
Backdoor.InCommander.13.
Backdoor.InCommander.14.
Backdoor.InCommander.15.
Backdoor.InCommander.153.
Backdoor.InCommander.16.b.
Backdoor.InCommander.16.c.
Backdoor.InCommander.16.e.
Backdoor.InCommander.16.f.
Backdoor.InCOmmander.17.c.
Backdoor.InCommander.plugin.RegEdit.
Backdoor.InCommander.plugin.RegEdit.b.

>> Delete InCommand automatically - Download Spyware Doctor

InCommand Removal Instructions
Kill the following processes
-1229473892.exe, 7b206d3f.exe, backdoor.incommander.plugin.regedit.a.exe, betaclientc.exe, client_1_4.exe, client_1_5.exe, client_1_53.exe, clientcmpt.exe, editinc.exe, editserver.exe, lookup.exe, regclient.exe, regserv.exe, scanner.exe, server.exe, server1.5.exe, server153.exe, server17-b2.exe, incsrv.exe, info32.exe, msie50h.exe, olemon32.exe, rsapi.exe
Unregister the following DLLs and reboot
icon.dll, inf32.dll.
Remove the following files
-1229473892.exe, 7b206d3f.exe, backdoor.incommander.plugin.regedit.a.exe, betaclientc.exe, clientcmpt.exe, client_1_4.exe, client_1_5.exe, client_1_53.exe, editinc.exe, editserver.exe, fixes.txt, icon.dll, incommand1-0.vex, inf32.dll, lookup.exe, msgform.dfm, na, plugins.txt, readme first.txt, readme.txt, regclient.exe, regserv.exe, scanner.exe, server.exe, server.txt, server1.5.exe, server153.exe, server17-b2.exe, unit1.dfm, vote.txt, w32incommand10-client.vex, w32incommand11-client.vex, w32incommand12-client.vex, w32incommand13-client.vex, w32incommand14.vex, w32incommand16b.vex.
incsrv.exe, info32.exe, msie50h.exe, olemon32.exe, rsapi.exe in Windows\

Bookmark InCommand page

 Previous Spyware: Remove Incom.648 Next Spyware: Remove InCommand 1.