From the doc: 'Once run, sysmon will copy itself
to the windows directory and load at startup. I
suggest using someting like silkrope (for BO2k
which i have included) to bind it with something
innocent. When connected to the internet it will
send a message to the irc server.'
Also known as: BackDoor-JQ, Backdoor.Sysmon, security risk or a
"backdoor" program
SysMon Automatic Removal:
Using Spyware Doctor
to detect and remove SysMon AUTOMATICALLY!
Sponsored Links:
SysMon Manual Removal:
Follow these steps to remove Sysmon from your
machine. Begin by backing up your registry and
your system, and/or setting a Restore Point, to
prevent trouble if you make a mistake.
Kill these running processes with Task
Manager:
noinfect.exe
sysmon.exe
Remove these files (if present) with Windows
Explorer:
noinfect.exe
readme.rtf
sysmon.exe
More
Removal Instructions for Adware/Spyware Programs -
'S'
(If you can not see the issued comment, please enable your browser to support javascript and refresh this page.)