N0P 64 Hello everyone today i am making this tutorial for the people who arent very cautious and wary about rats. This tutorial will teach you how to keep your system clean as possible and to stay safe. What is a rat? A rat or Remote Access Trojan is a backdoor application that completely gives the attacker administrative controls to your system. Rats can be both easy and hard to get rid of as they are all most in most cases hidden. What do i do when im infected? DO NOT PANIC!!!! First thing you will have to do is make sure your antivirus is on and you know what application is infected. First thing is download the tools below you can do this on another PC with usb or just do it on your current system. Download These Tools When Infected -An AntiVirus(Best AntiViruses Listed Below) : https://www.malwarebytes.com/premium/ -Kaspersky Virus Removal Tool : https://www.kaspersky.com.au/downloads/thank-you/free-virus-removal-tool -HitmanPro(Second Opinion Scanner) : https://cracked.to/Thread-Cracked-HITMANPRO-CRACKED-UNLIMITED-LICENSE-FREE Best AntiViruses -BitDefender -Kaspersky -MalwareBytes -Norton Security -Avast Steps: 1. Download the tools above(Download These Tools When Infected) 2. TURN OFF INTERNET!! Boot into Safe Mode(Search for "msconfig.exe" go to boot and check the box Safe Boot as well as minimal. If msconfig is disabled from the rat then restart the computer before the Windows boot logo pops up keep clicking "F8" until a new screen comes up now go to Safe Mode. 3. After in safe mode run Kaspersky Virus Removal Tool wait for it to load up.(it might say initialising for a long time but just keep waiting.) after loaded up click "Start Scan" and wait for it to complete. 4. There should be detected items in the quarentine now a pop up will come it will say "Kaspersky needs the pc to reboot to clean PC" click reboot or restart the system yourself. 5. Run your AV and click full scan(it might not say full scan for some av's) and wait for completion. 6. After completed either quarantine the threats or clean the system(both the same thing) if quarantined then go to the quarantine section and click delete all and reboot the system. 7. After rebooted system get out of safe mode go to "msconfig.exe" uncheck the safe mode option or restart the pc and start windows normally. 8. TURN ON INTERNET this is so HitmanPro can detect everything as it is a cloud scanner wait for it to complete and click next and delete all threats. Now reboot the system again.(When rebooting this should pop up "HitmanPro Surfright" just wait till it disappears and continue) 9. It should be completely gone just in case scan with your av again 10. If you think its gone now download the tools below(Download These Tools After Clean) Download These Tools After Clean -SandBoxie : https://www.sandboxie.com/ -KeyScrambler : https://www.qfxsoftware.com/ -AdwCleaner : https://www.malwarebytes.com/adwcleaner/ 11. Download and install SandBoxie as well as Keyscrambler. 12. Dont reboot system yet if it says to do it click manually later 13. Run AdwCleaner and scan this is just for adware the rat could of installed. and click scan 14. After scan complete reboot the system. 15. The rat should be completely gone. :hype: :kek: :kappa: IF RAT STILL NOT GONE OR YOU HAVE ANOTHER VIRUS LIKE A RANSOMWARE MESSAGE ME ON DISCORD I WILL HELP ASAP : Ribthegreat99#7880 NOTE: Before running any programs or if your unsure of one run in Sandboxie and see if another process is started or inform me and i will help check. :fiesta: THANKS Quote Share this post Link to post Share on other sites
CadyYaBoiP 46 Just don't get a RAT 4head Good threasd!@ Quote Share this post Link to post Share on other sites
CadyYaBoiP 46 Just don't get a RAT 4head Good threasd!@ Quote Share this post Link to post Share on other sites
Cthulhu 305 You can decrypt ransomware? gl getting disinfectors :kappa: Quote Share this post Link to post Share on other sites
N0P 64 You can decrypt ransomware? gl getting disinfectors :kappa: It takes me a while to create a program that decrypts the encrypted files but yea i can Quote Share this post Link to post Share on other sites