system7.bat - Dangerous

system7.bat

Jeff's Story:

My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.

I sought a solution on the Internet and discovered your product and tried out the trial.

You quickly found the rootkit and SAVED my PC!

I haven't had any problems since, and I'm extremely grateful.

Manual removal instructions:

system7.bat
BAT.Sebak is a Trojan that drops VBS.Tante.A@mm, displays a message, and disables certain functions on the computer.

When it runs, it does the following:
Changes the filename extension to .bat for all files in the %Windir%and C:\Mydocu~1 folders that have the following extensions:
.txt; .log; .tmp; .net; .jpg; .bmp; .gif; .avi; .doc; .xls

Copies itself as %Windir%\system7.bat.
Drops a copy of VBS.Tante.A@mm in the %Windir% folder.
Displays a message box with the text:
"I'm Batch Epy and You are BiTchEpy...!!
BAT/Epy Created By sevenC [17-04-04]
Bekasi-Indonesia"

If the system clock is set to the 19th day of the month, the 19th hour of the day, the 19th minute of the hour, or the 19th second of the minute,
the Trojan will disable a variety of functions on the computer.
Some of these functions include disabling mouse and keyboard, swaping the mouse buttons, and disabling the operating system.

Manual removal:
Navigate to the key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
and delete the value: "Epy"="C:\Windows\system7.bat"

Automatic removal: Use RegRun Startup Optimizer to remove it from startup.

Remove system7.bat now!