VIRUS SENDI.EXE

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

Hi folks, I am looking for some help. My kids downloaded something last
night containing the Sendi.exe prog, and my PC is now infected and I cant get
rid of it. I have run several progs that have found the infected files, but
it seems it has disabled my regedit ability. On top of that if i even try to
open up a site that contains antivirus scan or progs - it closes the browser.
It also tries to launch outlook and send itself as an email to all your
cantacts.

Is there anyone out there that can help with a manual solution or is there a
prog somewhere that will destroy this pest?

PLEASE HELP I'M SCARED
 
Your system appears to be hopelessly corrupt. Only a "clean install:
of Windows XP will solve the problem.

The Windows XP CD is bootable and contains all the tools necessary
to partition and format your drive. Follow this procedure and allow
Windows XP to partition and format your drive:

NOTE: It would be best to physically disconnect all your peripheral hardware
devices, except the monitor, mouse and keyboard, before installing XP.

NOTE: If you have an internal Zip Drive installed, physically disconnect the
EIDE and power cable to it before proceeding, otherwise your main
hard drive may not be assigned the customary C: drive letter.
After installing Windows XP, you may then reconnect it.

1. Open your BIOS and set your "CD Drive as the first bootable device".

===> Accessing Motherboard BIOS
===> http://www.michaelstevenstech.com/bios_manufacturer.htm

2. Insert your Windows XP CD in the CD Drive and reboot your computer.
3. You'll see a message to boot to the CD....follow the instructions.
4. The setup menu will appear and you should elect to delete all the existing
Windows partitions, then create a new partition, then format the primary
partition (preferably NTFS) and proceed to install Windows XP.

5. Clean Install Windows XP
http://michaelstevenstech.com/cleanxpinstall.html

[Courtesy of Michael Stevens, MS-MVP]

6. ==> Immediately after installing Windows XP, turn on XP's Firewall.
==> http://www.microsoft.com/athome/security/protect/default.mspx

7. After Windows XP is installed, visit the Windows Update website
and download the available "Critical Updates".

8. After installing the critical updates, be sure and visit the support website
of the manufacturer of the computer to download and install any
available Windows XP compatible drivers, such as video adapter
and audio drivers.

9. If you happen to run into any installation difficulties, use the following resources:

How to Troubleshoot Windows XP Problems During Installation
http://support.microsoft.com/default.aspx?scid=kb;EN-US;3100­64

Troubleshooting Windows XP Setup
http://www.kellys-korner-xp.com/xp_setup.htm

[Courtesy of MS-MVP Kelly Theriot]

--
Carey Frisch
Microsoft MVP
Windows XP - Shell/User
Microsoft Newsgroups

Get Windows XP Service Pack 2 with Advanced Security Technologies:
http://www.microsoft.com/athome/security/protect/windowsxp/choose.mspx

-------------------------------------------------------------------------------------------

:

| Hi folks, I am looking for some help. My kids downloaded something last
| night containing the Sendi.exe prog, and my PC is now infected and I cant get
| rid of it. I have run several progs that have found the infected files, but
| it seems it has disabled my regedit ability. On top of that if i even try to
| open up a site that contains antivirus scan or progs - it closes the browser.
| It also tries to launch outlook and send itself as an email to all your
| cantacts.
|
| Is there anyone out there that can help with a manual solution or is there a
| prog somewhere that will destroy this pest?
|
| PLEASE HELP I'M SCARED
 
Carey said:
Your system appears to be hopelessly corrupt. Only a "clean install:
of Windows XP will solve the problem.
(snip clean install instructions)

While it might be quicker to do a clean install, it isn't the only way.
However, cleaning this system will require a lot of skill and probably
third-party tools. If you don't want to format and clean install (which
will wipe your hard drive completely and you'll lose all your data and
third-party programs), then take the machine to a good local
professional - not a BestBuy or CompUSA type of store.

Malke
 
From: "Laneclot" <[email protected]>

| Hi folks, I am looking for some help. My kids downloaded something last
| night containing the Sendi.exe prog, and my PC is now infected and I cant get
| rid of it. I have run several progs that have found the infected files, but
| it seems it has disabled my regedit ability. On top of that if i even try to
| open up a site that contains antivirus scan or progs - it closes the browser.
| It also tries to launch outlook and send itself as an email to all your
| cantacts.
|
| Is there anyone out there that can help with a manual solution or is there a
| prog somewhere that will destroy this pest?
|
| PLEASE HELP I'M SCARED

There are anti virus News Groups specifically for this type of discussion.

microsoft.public.scripting.virus.discussion
microsoft.public.security.virus
alt.comp.virus
alt.comp.anti-virus

Please submit the file "SENDI.EXE" to Virus Total --
http://www.virustotal.com/flash/index_en.html
The submission will then be tested against several different AV vendor's scanners.

Another way to submit is to send the suspect file to the following email address
scan<at>virustotal.com
{ replace <at> with @ } with only the word SCAN as the subject.

Please post back the EXACT results.

This will give us a clue as to what you have. In the mean time, perform the following...

Dump the contents of the IE Temporary Internet Folder cache (TIF)

start --> settings --> control panel --> internet options --> delete files

1) Download the following three items...

Trend Sysclean Package
http://www.trendmicro.com/download/dcs.asp

Latest Trend Pattern File.
http://www.trendmicro.com/download/pattern.asp

Ad-aware SE (free personal version v1.05)
http://www.lavasoftusa.com/

Create a directory.
On drive "C:\"
(e.g., "c:\New Folder")
or the desktop
(e.g., "C:\Documents and Settings\lipman\Desktop\New Folder")

Download Sysclean.com and place it in that directory.
Download the Trend Pattern File by obtaining the ZIP file.
For example; lpt510.zip

Extract the contents of the ZIP file and place the contents in the same directory as
sysclean.com.

2) Update Ad-aware with the latest definitions.
3) Disable System Restore
http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.htm
4) Reboot your PC into Safe Mode and shutdown as many applications as possible
5) Using both the Trend Sysclean utility and Ad-aware, perform a Full Scan of your
platform and clean/delete any infectors/parasites found.
(a few cycles may be needed)
6) Restart your PC and perform a "final" Full Scan of your platform using both the
Trend Sysclean utility and Adaware
7) Re-enable System Restore and re-apply any System Restore preferences,
(e.g. HD space to use suggested 400 ~ 600MB),
8) Reboot your PC.
9) Create a new Restore point

* Please report your results ! *
 
Back
Top