Category:Backdoor,RAT
[Kaspersky]Backdoor.RA.358,Backdoor.RA.41112,Backdoor.RA.304,RemoteAdmin.Win32.RA;
[McAfee]RemoteAnything,RemAdm-RemoteAdmin;
[F-Prot]security risk or a "backdoor" program;
[Panda]Backdoor Program,Backdoor Program.LC,Univ.AP.K,Application/RemoteAnything;
[Computer Associates]Backdoor/RA.358,Backdoor/RA.304
Remote.Anything Detection :
Files:
[%WINDOWS%]\slave.exe
[%WINDOWS%]\slave.exe
Registry Keys:
HKEY_LOCAL_MACHINE\software\twd\remote-anything
HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\legacy_slave
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\slave
Registry Values:
HKEY_LOCAL_MACHINE\software\microsoft\windows
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\eventlog\application\slave
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\eventlog\application\slave
Removing Remote.Anything:
you can run trial version of ExterminateIt, or remove Remote.Anything manually..ExterminateIt effectively and automatically removes Trojan Horses, Rootkits, Backdoors, spyware, botnets, keystroke loggers, dialers and other malicious software(malware) from you computer.
Download ExterminateIt! to instantly get rid of Remote.Anything!
Also Be Aware of the Following Threats:
VBS.Voodoo Trojan Removal instruction
Burgspill Trojan Cleaner