Sybex 0 Posted May 19, 2004 I got this sh** from a keygen and i removed it afterwards I have the following "protection": Adaware SPybot Seek&Destroy Norton Antivirus 2003 Spyware Blaster The Cleaner Spy Chaser They are all up to date and i made a scan but nothing is found My problem is that i see the RA server in the administrative tools-services although it's disabled and i have the following registry reference: My Computer\HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\Legacy Slave\0000 and there is a value with Name :DeviceDesc and Data name :RA Server I can't delete this value...any help? (OS WinXP) Share this post Link to post
zen69x 0 Posted May 19, 2004 Sure, to remove that key, you will first have to give yourself full control of that key. By default only system has full control over that key, admins have read only access. Share this post Link to post
Sybex 0 Posted May 25, 2004 I couldn't agree more and i found it the moment i read the first answer but i had some small health probs and i never respond to thank him. As for the thingies made for pull M$ from the ear..i say you can't move a giant from it's place just wake him up and he scratches his balls... But then again why not...it's fun...even though M$ wants to add and antivirus program inside the next Windows Version and symantec,mcafee and other companies are angry... Anyhow fuck them all...i am about to move to Linux Share this post Link to post
obi 0 Posted October 20, 2004 Hi, can anyone give me a dummy guide on how to remove this. I have it and its not nice. sybex: I have 2 programs blocking its access to online stuff, Spy sweeper, and Zone alarm. Do you think i am safe? Share this post Link to post
adamvjackson 0 Posted October 20, 2004 http://www.avp.ch/avpve/trojan/backdoor/ra.stm If you have this installed on your system, and you did not knowingly install it, then no, your system is neither safe nor secure. You may want to re-think your browser/firewall/anti-virus/patching strategies. Share this post Link to post