{"id":287,"date":"2009-05-22T10:48:35","date_gmt":"2009-05-22T15:48:35","guid":{"rendered":"http:\/\/it.thelibrarie.com\/weblog\/?p=287"},"modified":"2009-05-22T10:49:07","modified_gmt":"2009-05-22T15:49:07","slug":"sdra64exe","status":"publish","type":"post","link":"https:\/\/it.thelibrarie.com\/weblog\/2009\/05\/sdra64exe\/","title":{"rendered":"sdra64.exe"},"content":{"rendered":"<p>I was recently given a laptop that refused to cooperate with the end user.  Safemode only worked half the time, and regular boots would just hang after attempting to login.<\/p>\n<p>The computer ended up having a windows init known as sdra64.exe.  I don&#8217;t even care what these programs do anymore &#8211; I just get rid of them.<\/p>\n<p>Quick google search provided me with this guy&#8217;s blog:<br \/>\nhttp:\/\/mrmusicmaker.blogspot.com\/2009\/04\/how-to-remove-sdra64exe-yourself-for.html<br \/>\nAlthough I&#8217;m going to provide a different way to fix this issue, a lot of the knowledge was gained from the above blog about this problem and how to fix it.<\/p>\n<p>First, grab your handy IT-Fix-It Disc (Hirens).<br \/>\nBoot off the hirens disc &#8211; I&#8217;m using version 9.8, current at the time of this writing<br \/>\nBoot into Tiny\/Mini XP<br \/>\nAfter XP loads, open My Computer and navigate to C:\\windows\\system32\\<br \/>\nFind the file sdra64.exe and either delete or rename this file.  I renamed just in case I really wanted to go back to the way it was.<br \/>\nThen reboot back into safe mode (F8 before Windows starts loading).<\/p>\n<p>When in safe mode, open the registry Start<br \/>\nRun<br \/>\n<code>Regedit<\/code><br \/>\nNavigate to<br \/>\n<code>HKLM\\software\\microsoft\\windows nt\\currentversion\\winlogon<\/code><br \/>\nFind the &#8220;userinit&#8221; key<br \/>\nDouble click on this key<br \/>\nYou should only have the following:<br \/>\n<code>C:\\Windows\\System32\\Userinit.exe,<\/code><br \/>\nSo delete anything after that comma.<\/p>\n<p>Reboot once again, but this time don&#8217;t go into safe mode.  You probably will have other infections that you should remove using Malwarebytes or Eset&#8217;s Nod32.  Combination attacks work the best.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>I was recently given a laptop that refused to cooperate with the end user. Safemode only worked half the time, and regular boots would just hang after attempting to login. The computer ended up having a windows init known as sdra64.exe. I don&#8217;t even care what these programs do anymore &#8211; I just get rid &hellip; <a href=\"https:\/\/it.thelibrarie.com\/weblog\/2009\/05\/sdra64exe\/\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">sdra64.exe<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8],"tags":[],"class_list":["post-287","post","type-post","status-publish","format-standard","hentry","category-microsoft"],"_links":{"self":[{"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/posts\/287","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/comments?post=287"}],"version-history":[{"count":2,"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/posts\/287\/revisions"}],"predecessor-version":[{"id":289,"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/posts\/287\/revisions\/289"}],"wp:attachment":[{"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/media?parent=287"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/categories?post=287"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/it.thelibrarie.com\/weblog\/wp-json\/wp\/v2\/tags?post=287"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}