Post: How-To - Remove a RAT
03-24-2013, 10:55 AM #1
(adsbygoogle = window.adsbygoogle || []).push({}); Before you start I recommend just Downloading dark comet remover in case the scrub rating you is using DC.

If you pirate your software then I recommend just backing up your files on a flash drive or external HDD and formatting.

Okay so if you don't want to do that here is how I would recommend getting rid of a rat.

Okay First off you want to start by Cleaning your temp files.
You can do it manually or use this: You must login or register to view this content.

Open up your task manager and see if there is a random program running in the backround. Now if you try to end it, it will just keep coming back so right click on it and set the permissions. Deny it of everything then end the process. You are now going to need to locate where it is.
The most common places for a rat are:

  1. Favs#\
  2. MyDocs#\
  3. MyProg#\
  4. Start#\
  5. Cookie#\
  6. Desktop#\
  7. Temp#\
  8. HDD#\
  9. WinDin#\
  10. Sys32#\
  11. App#\


When you're in there look for files with icons similar to these:
You must login or register to view this content. You must login or register to view this content. You must login or register to view this content. You must login or register to view this content. Those are all common rat icons. Delete Files AFTER you determine they are what you suspect.

The last few steps are going to be cleaning up the trail so your computers speed isn't effected by the rat still.

Download CCleaner: You must login or register to view this content.

Okay With CCleaner we are going to clean all TEMP files with the "Cleaner" You must login or register to view this content.

Now in CCleaner you want to navigate to the registry tab and clean that
NOTE: I always recommend making a backup .reg. You must login or register to view this content. *Click Fix All Selected Issues*

Now go to your start menu and type
    msconfig.exe
and open it.

Navigate the the Startup and Services tabs and make sure the malicious software isn't selected to start with startup. You must login or register to view this content.
You can also disable any thing you don't want to start up when you're there to make your pc boot faster.

last but not least if you didn't solve your problem download malware bytes and give it a shot or find some bot kills online.

I hope this tutorial helps some of you!
Thanks/+Rep is HIGHLY APPRECIATED for this detailed tutorial.
(adsbygoogle = window.adsbygoogle || []).push({});

The following 4 users say thank you to Oklahomo for this useful post:

iJosh, SeanVII, THE TOOL MAN, User2340034u
03-24-2013, 10:56 AM #2
Has my seal of approval. good work thankd
03-24-2013, 12:12 PM #3
iJosh
Quit, Bigger & Better Things
Originally posted by Alz00by View Post
Has my seal of approval. good work thankd


I need help

---------- Post added at 12:12 PM ---------- Previous post was at 11:42 AM ----------

Originally posted by Alz00by View Post
Has my seal of approval. good work thankd


Thank you fellas. You were great help. I managed to remove it by restoring my system to 4 days ago, It deleted everything which was put on my computer after the 20 of march, I did a test with DrakComet remover which had a infected reading before, and now it's gone, so, I assume its gone. Thanks guys!
03-24-2013, 01:19 PM #4
Great post
06-24-2013, 08:28 PM #5
boyman3793
JT-Productionz-
Originally posted by Nasa. View Post
Before you start I recommend just Downloading dark comet remover in case the scrub rating you is using DC.

If you pirate your software then I recommend just backing up your files on a flash drive or external HDD and formatting.

Okay so if you don't want to do that here is how I would recommend getting rid of a rat.

Okay First off you want to start by Cleaning your temp files.
You can do it manually or use this: You must login or register to view this content.

Open up your task manager and see if there is a random program running in the backround. Now if you try to end it, it will just keep coming back so right click on it and set the permissions. Deny it of everything then end the process. You are now going to need to locate where it is.
The most common places for a rat are:

  1. Favs#\
  2. MyDocs#\
  3. MyProg#\
  4. Start#\
  5. Cookie#\
  6. Desktop#\
  7. Temp#\
  8. HDD#\
  9. WinDin#\
  10. Sys32#\
  11. App#\


When you're in there look for files with icons similar to these:
You must login or register to view this content. You must login or register to view this content. You must login or register to view this content. You must login or register to view this content. Those are all common rat icons. Delete Files AFTER you determine they are what you suspect.

The last few steps are going to be cleaning up the trail so your computers speed isn't effected by the rat still.

Download CCleaner: You must login or register to view this content.

Okay With CCleaner we are going to clean all TEMP files with the "Cleaner" You must login or register to view this content.

Now in CCleaner you want to navigate to the registry tab and clean that
NOTE: I always recommend making a backup .reg. You must login or register to view this content. *Click Fix All Selected Issues*

Now go to your start menu and type
    msconfig.exe
and open it.

Navigate the the Startup and Services tabs and make sure the malicious software isn't selected to start with startup. You must login or register to view this content.
You can also disable any thing you don't want to start up when you're there to make your pc boot faster.

last but not least if you didn't solve your problem download malware bytes and give it a shot or find some bot kills online.

I hope this tutorial helps some of you!
Thanks/+Rep is HIGHLY APPRECIATED for this detailed tutorial.


Read more at You must login or register to view this content.

---------- Post added at 01:28 PM ---------- Previous post was at 12:11 PM ----------

Originally posted by Nasa. View Post
Before you start I recommend just Downloading dark comet remover in case the scrub rating you is using DC.

If you pirate your software then I recommend just backing up your files on a flash drive or external HDD and formatting.

Okay so if you don't want to do that here is how I would recommend getting rid of a rat.

Okay First off you want to start by Cleaning your temp files.
You can do it manually or use this: You must login or register to view this content.

Open up your task manager and see if there is a random program running in the backround. Now if you try to end it, it will just keep coming back so right click on it and set the permissions. Deny it of everything then end the process. You are now going to need to locate where it is.
The most common places for a rat are:

  1. Favs#\
  2. MyDocs#\
  3. MyProg#\
  4. Start#\
  5. Cookie#\
  6. Desktop#\
  7. Temp#\
  8. HDD#\
  9. WinDin#\
  10. Sys32#\
  11. App#\


When you're in there look for files with icons similar to these:
You must login or register to view this content. You must login or register to view this content. You must login or register to view this content. You must login or register to view this content. Those are all common rat icons. Delete Files AFTER you determine they are what you suspect.

The last few steps are going to be cleaning up the trail so your computers speed isn't effected by the rat still.

Download CCleaner: You must login or register to view this content.

Okay With CCleaner we are going to clean all TEMP files with the "Cleaner" You must login or register to view this content.

Now in CCleaner you want to navigate to the registry tab and clean that
NOTE: I always recommend making a backup .reg. You must login or register to view this content. *Click Fix All Selected Issues*

Now go to your start menu and type
    msconfig.exe
and open it.

Navigate the the Startup and Services tabs and make sure the malicious software isn't selected to start with startup. You must login or register to view this content.
You can also disable any thing you don't want to start up when you're there to make your pc boot faster.

last but not least if you didn't solve your problem download malware bytes and give it a shot or find some bot kills online.

I hope this tutorial helps some of you!
Thanks/+Rep is HIGHLY APPRECIATED for this detailed tutorial.


Could I get infected by just downloading something? Or opening a compressed .gz file with winrar?

Copyright © 2026, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo