Malware Sehme.exe

Discussion in 'Malware Help (A Specialist Will Reply)' started by debeye, Jan 26, 2005.

  1. debeye

    debeye Private E-2

    hi, i'm new to the forum scene so pls bear with me. I have adaware and adwatch installed on my computer and adwatch identifed a harmful process in my system memory called Sehme.exe, how do I remove this from my compuer? What does thsi malware do to a computer? I read the article from Major Attitude about removing spyware, trojans, and viruses but I am concerned about the first step, disabling system restore. The message I got when I proceeded to do this step was a warning saying all restore points will be lost, forever. I've counted on system restore many times in the past.
    Please help me understand what I need to do.
    Many thhanks!
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I believe Sehme.exe is a PeperTrojan (see this http://www.kephyr.com/spywarescanner/library/pepertrojan/index.phtml)

    Your system restore points are not useful to you if you have been infected since they could be infected too. You could try going back to one right now if you want and see if you can figure out how far back you have to go to have no infection. Obviously you lose any other changes/additions, that you may want, that occurred at a later point in time then the system restore point.

    So you can try that, or you can fix the problem with out deleting your restore points and then just have it come back again out of an infected restore point.

    After you clean your problems up, you would re-enable system restore and create a new known clean restore point.

    So tell me how you want to proceed.

    Run the below while online:
    http://www.memorywatcher.com/uninst.exe
    http://tools.zerosrealm.com/PeperFix.exe
     
    Last edited: Jan 27, 2005
  3. debeye

    debeye Private E-2

    chaslang: thanks for your reply. I would rather not have this malicious thing in my hard drive anywhere. So I want to proceed with disabling the restore point.
    I probably won't be able to get to fixing this until this weekend, maybe this evening.
    debeye :)
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    OK! Did you try giving those links I gave you a run anyway? You need to do them while on line.
     
  5. debeye

    debeye Private E-2

    What is the memorywatcher file and the other file. why do you want me to run while online?
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    They are tools used to delete PeperTrojans and require that you be online for them to work.

    Why did you wait 20 days to reply? The status of you system could be much worse in this time frame.

    Are you still having problems?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds