dm_mgr.exe - Dangerous

dm_mgr.exe

Jeff's Story:

My PC had gotten a bad rootkit that my ISP antivirus software (powered by McAfee) could not detect, nor could fix.

I sought a solution on the Internet and discovered your product and tried out the trial.

You quickly found the rootkit and SAVED my PC!

I haven't had any problems since, and I'm extremely grateful.

Manual removal instructions:

dm_mgr.exe
Added as a result of the JITTAR VIRUS.

Backdoor.Jittar is a Backdoor Trojan Horse that gives its creator remote access to and complete control over a compromised system.
By default it uses ports 1309 and 2699 to listen for commands from the Trojan's creator.
When Backdoor.Jittar does the following:
Copies itself as the following files, and then executes them:
%System%\Dm_mgr.exe
%System%\Linxup.exe

On Windows NT/2000/XP computers, it installs %System%\Dm_mgr.exe as a service with the following details:
Name: WMDM
Display name: WMDM Manager
Execute path: %System%\dm_mgr.exe

On Windows 95/98/Me computers, it adds the value:
"DM mgr"="%System%\dm_mgr.exe"
to the registry key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
so that the Trojan runs when you start Windows.

Manual removal:
In the registry key:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
delete the value:
"DM mgr"="%System%\dm_mgr.exe"

You may use RegRun Startup Optimizer to automatic remove it from startup.

Remove dm_mgr.exe now!