Sdra64.exe discussion and how to remove!

cityStatic

Seasoned Veteran
Joined
Aug 4, 2009
Messages
3,817
Reaction score
0
FP$
45
Well, sdra64.exe is the "trojan menace"

Here's how to remove it:

XP and Vista: Go to Start>Run. Type in regedit. Your Registry Editor should come up. Navigate to HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon. You should see "Userinit." It should only say "C:\Windows\System32\Userinit.exe," but it says, "C:\Windows\System32\Userinit.exe,C:\Windows\System32\sdra64.exe" instead. Right click on the name "Userinit" and click modify. Remove "C:\Windows\System32\stra64.exe", but DO NOT CLICK OK YET!!! The next part is very important. Go to Task Manager and click on the Processes tab. Start ending the svchost.exe processesses in the order of largest file size until you get an error message. It will start counting down from 60, which is a countdown to reboot. When the countdown reaches 1, click OK on the Registry Editor. Reboot your computer, and delete the file from the folder. If this did not work for you, try again, but click OK later.

If you don't feel like this, you can do it using this method.

Aliases:

alg.exe, racmond.dll, lxmjsa.dll, pwhpho.dll, rundll.dll, svchost.exe, Mal/Behav-010, arjrller.dll, 12345.dll, svp.dll, mh104.dll, services.exe, Mal/Zbot-I, spj.dll, jlgejgei32fg.dll, Trojan-Spy.Win32.Zbot.ouu, zbotkiller.exe, twext.exe, sp.dll, compbatc.dll, twex.exe, byshell32.dll, Trojan.Obfuscater.SDRA
 
May want to make sure to add which operating systems this works on, and provide links to alternate sources with instructions for the other operating systems (speaking of XP vs Vista, not Windows vs Linux).
 
Leo Ghost said:
May want to make sure to add which operating systems this works on, and provide links to alternate sources with instructions for the other operating systems (speaking of XP vs Vista, not Windows vs Linux).
I believe that it works on both XP and Vista (used it on Vista, but I think it works on XP). AFAIK, earlier versions of Windows aren't affected and Linux/Unix doesn't get it. Mac has its own version, I'll check on how to remove that.
 
darkly said:
I used Avast! 5 to removed it. o.o
Last time I tried using Avast! to remove sdra, it just tried to remove the file but didn't.
 
Guys, can we not turn this into a Mac vs. PC debate, like all topics about viruses seem to? Thanks.
 
thedudeman said:
Guys, can we not turn this into a Mac vs. PC debate, like all topics about viruses seem to? Thanks.
sorry, but when kids are like "LAWL MAH MACS INVINCIBLE", they kinda start it. :lol:
 
Ok, watch it please 🙂

Never heard of this. I don't think I have it though.
 
Looks like I need to run a scan on my computer again ._. Since it only remove the file and I need to check it's there or not.
 
Back
Top Bottom