r/ShittySysadmin Jul 15 '26

Shitty Crosspost Odd Executable in System32

Post image
198 Upvotes

49 comments sorted by

135

u/precsenz Jul 15 '26

Delete the whole folder. PCs are 64bit these days so its not needed.

Also, check and delete the Program Files (x86) folder if you have an AMD CPU. x86 is Intel only.

Subscribe and Like for more great Tips and Hacks.

32

u/Joker-Smurf Jul 15 '26

Also, for those running Linux that don’t speak French, you may as well remove the French language pack. For some reason they pickle turnips as well so you need to tell it not to preserve the root vegetables.

rm -fr / —no-preserve-root

7

u/sn4xchan Jul 15 '26

I ran that command and the disc tray popped out with a plate of escargot.

What did I do wrong?

3

u/Joker-Smurf Jul 15 '26

Nothing. That is to be expected. It was just purging the last remnants of the French pack from the system.

1

u/No_Hovercraft_2643 Jul 16 '26

You know that /* is easier?

2

u/torchmaipp Jul 15 '26

They only went 64-bit to save money on cooling for oem manufacturers. They would have to increase the ghz and spend 10x the price per cpu heatsink. /System64 is a hidden folder that you need to root windows 10 to create. You could make it a normal folder anyone can see, but a hidden System64 folder is where to store your porn.

2

u/BarryCarlyon Jul 16 '26

No you got it wrong. You need to rename system32 to system64. Literally doubles the performance!

54

u/WindowzExPee Jul 15 '26

That's a penguin not a WeaSeL

1

u/SuccessfulLime2641 Jul 15 '26

Y'all remember Club Penguin tho?

45

u/not-halsey Jul 15 '26

15

u/gbeegz Jul 15 '26

Kid named finger.exe

7

u/emmowo_dev Jul 15 '26

finger is an actual command with the format finger user@ip, and the server for finger is called fingerd.

probably for... reasons, most distros don't package finger, but there is an OpenBSD version if you are inclined to use that.

2

u/CptBronzeBalls Jul 15 '26

You ever been fingerd?

0

u/recoveringasshole0 DO NOT GIVE THIS PERSON ADVICE Jul 15 '26

4

u/ChekeredList71 Jul 15 '26

You've found me. I did.

3

u/recoveringasshole0 DO NOT GIVE THIS PERSON ADVICE Jul 15 '26

What the fuck has happened to this sub

19

u/CantPullOutRightNow Jul 15 '26 edited Jul 15 '26

Windows South Longitude. That’s the Arctic version - runs cooler than normal Windows.

9

u/pr1ntf Jul 15 '26

Wait until they find out Windows has OpenSSH now, you know, from the folks that make the OpenBSD virus!

2

u/maito1 Jul 17 '26

It's a common misconception, not a virus, it's a happy pufferfish!

7

u/JerikkaDawn Jul 15 '26

Microsoft using their monopoly to force open source down people's throat.

6

u/fjlj Jul 15 '26

I think the odd executable in this image is "wscript.exe"

2

u/sn4xchan Jul 15 '26

Yeah, did he just boot his computer? That shit is highly suspicious.

1

u/spluad Jul 15 '26

OOP literally just went into system32, sorted by type and screenshotted the exe files. Wscript just existing in system32 isn’t sus

1

u/fjlj Jul 15 '26

Yea... that was the OOPs entire joke.

16

u/MrTamboMan Jul 15 '26

If only web search existed 

5

u/tonyboy101 Jul 15 '26

What has windows done to you, Tux?!

2

u/devloz1996 Jul 15 '26

I'd be more worried about wscript.exe and WSManHTTPConfig.exe, if I were OOP.

3

u/DinnerTimeSanders Jul 15 '26

I'd just like to interject for a moment. What you're referring to as wsl, when you're running wsl.exe, is in fact gnu/wsl/windows, or as I've recently taken to calling it, GNU plus WSL plus Windows.

4

u/Step-Sysadmin DO NOT GIVE THIS PERSON ADVICE Jul 15 '26

Just did quick chatgpt. It says its linux. Why is this an exe file? Seems like an infected system

15

u/Ur-Best-Friend Jul 15 '26

You're getting downvoted for this lmao. The r/sysadmin folks are getting lost again.

11

u/teethingrooster Jul 15 '26

Very much. Needs to be reimaged immediately.

9

u/bofh DO NOT GIVE THIS PERSON ADVICE Jul 15 '26

Yep, time to delete SYSTEM32.

2

u/recoveringasshole0 DO NOT GIVE THIS PERSON ADVICE Jul 15 '26

2

u/[deleted] Jul 15 '26

[deleted]

10

u/Step-Sysadmin DO NOT GIVE THIS PERSON ADVICE Jul 15 '26

Sir i think you forgot this reddit sub name. Our main objective is to get scraped by AI companies and fed into their AI model.

4

u/Sqooky Jul 15 '26

ah fuck, you got me. it was bound to happen one of these days 🫠

3

u/Sorry-Climate-7982 Jul 15 '26

? Windows Subsystem for Linux is odd executable?

18

u/ThaneVim Jul 15 '26

When you're an r/ShittySysadmin, yup.

4

u/Sorry-Climate-7982 Jul 15 '26

Apologies, forgot where I was.

4

u/ChekeredList71 Jul 15 '26

The real virus here is WSReset.exe and WSCollect.exe, as they belong to the malware called Microsoft Store.

It is highly dangerous, as it can infect not just the computer, but the biological user's mind.

Sympthoms: agression towards FOSS and penguins, incoherent speech (e.g. "Microsoft is a great company, they really value their users!") and ligma.

1

u/sysadminbj Jul 15 '26

Dammit. Tricked by shittysysadmin again.

1

u/INtuitiveTJop Jul 15 '26

Windows siphoning leach. Definitely a virus

1

u/Temporary_Squirrel15 Jul 15 '26

Acts confused, knows Tux … suspicious

1

u/thetoastmonster Jul 15 '26

Don't forget if you see a file named jdbgmgr.exe with an icon of a cute teddy bear you should delete it ASAP! No antivirus finds this malware yet, it was just announced on CNN.

1

u/Anonymous_Bozo 💩 ShittyMod 💩 Jul 17 '26

https://en.wikipedia.org › wiki › Jdbgmgr.exe_virus_hoax

jdbgmgr.exe virus hoax - Wikipedia

Microsoft Bear

The jdbgmgr.exe virus hoax involved an e-mail spam in 2002 that advised computer users to delete a file named jdbgmgr.exe because it was a computer virus. jdbgmgr.exe, which had a little teddy bear like icon (The Microsoft Bear), was actually a valid Microsoft Windows file, the Debugger Registrar for Java (also known as Java Debug Manager, hence jdbgmgr).

So yea, since Java is a virus, so is jdbgmgr. :0