
What is AntiLamer Backdoor and removal instructions
This RAT program is one of the most famous Remote Administration Tools. This virus originated in April 2002. It is very simple to use and has a lot of different functions from the simple shutdown of the victim's PC, to logging keystrokes and visited web-sites. This all makes it a very dangerous hacker tool, which can be used for all sorts of illegal operations. The interface is written in Russian. The author is OverG. The programming language is Delphi, compressed with UPX. It uses a "backdoor" ability to stay resident in the system.
AntiLamer Backdoor manual removal:
Kill processes:
9031a947a7baf96049166384d63698b9.exe, 9bc1f483c002e547c76d291ce387bb2c.exe, alb.exe, backdoor.antilam.14.c.exe, backdoor.antilam.20.a.exe, eba4184bf94005bdda70809600a2a61f.exe, editserver.exe, edtsrv.exe, joiner.exe, new_alb.exe, server.exe
Delete registry values:
HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run\ms windows 32 HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\ms windows 32
Unregister DLLs:
edit.dll
Delete files:
9031a947a7baf96049166384d63698b9.exe, 9bc1f483c002e547c76d291ce387bb2c.exe, alb.exe, backdoor.antilam.14.c.exe, backdoor.antilam.20.a.exe, eba4184bf94005bdda70809600a2a61f.exe, edit.dat, edit.dll, editserver.exe, edtsrv.exe, help.html, joiner.exe, new_alb.exe, readme.html, readme.txt, server.exe