Hello, To whom who might help me (Mr. Ali ?)
It seems that I have succeeded to get rid of virus "autorun.inf" by downloading, updating, and running AVG 8.0.
But I can still not open hidden files or folders, and I can still not open my C or D drive directly from "My Computer"
Is the virus still there ?
How can I know for sure and how to get rid of it for ever ?
Kindly Mr. Bridge (in some troubled water right now)
first run your system in safe mode, then go to your my computer properties and enable the system restore function.
then restart your computer and run in command prompt mode. in the command mode type the following.
ATTRIB Autorun.inf -H -S -R.
if the file is found in the Drive then give.
<similarly you can do it for all drives. but you have to restart your system for each drive.>
You cannot remove the autorun.inf and scrap files from you usb drive because you system has been infected by a worm. This worm installs kbdrv16 at startup and runs fake services.exe and lsass.exe it also runs keyboard.exe.
That is, it creates multiples processes in your computer that is not easily removed.
Whenever you plug a USB drive in your computer, a window will appear (if your autorun is enabled).
Don’t click on Ok , just choose ‘Cancel’.
Open your command prompt. Type ‘cmd’ in the run box or on the search panel if you are using vista
In the command prompt type the drive letter of your usb device and press enter. ex. C:\F: <— then press enter
Type dir /w/a and press enter. ex F:\ dir /w/a <— then press enter
This will display a list of the files in in your flash drive. Check if the following files present on your USB device.
* New Folder.exe
* or any other exe file that you find suspicious.
If you spotted any of the above files, then most probably your drive is infected.
To remove the virus, type in to your command prompt “attrib -r -a -s -h *.* and press enter. This will remove the Read Only, Archive, System and hidden file attribute from all the files.
To delete the virus just type del and the filename ex. F:\del virus.exe and hit enter.Delete all the files that you suspected is a virus. After deleting the virus, run a virus scan on your USB device just to make sure that your device is clean.
Remove the USB drive and plug it again. In most cases, the real culprit is “Autorun.inf” file which gets executed when someone clicks Ok in the dialog window which appears above. Thus the infections can spread.
Solution from Search-and-destroy.
If you own a computer, you must have antispyware to keep it running at its best. The problem is choosing a scan that works. I have tried many different types of scans in the past and then I ran across Search-and-destroy Antispyware. I have to say that the antispyware solution from Search-and-destroy is the best that I have used to date. It gets the job done and keeps my computer working like new. If you are interested in seeing for yourself just how good this antispyware works you can click on http://www.Search-and-destroy.com/antispyware.html to learn more. I'm sure it would be worth your time to check it out.
hi , if you want to delete the virus from ur system , then do onething instead of runing the anitvirus do the following
1 - boot ur machine in safe mode
2 - run antivirus scan
as I m sure that I will work , then I will tell ur further typical steps
1) Go to Command prompt then go to C drive then type the command "dir/ah" then enter u see their Autorun.inf file.
after that start the system in Safe mode.
In safe mode go to Command prompt type the Command " attrib -h -r -s autorun.inf " then type the Command "del autorun.inf" so successfully this virus is remove.
2) Disable autorun from registry
go to run type the command "regedit" then enter , after that r registry edit window open , then going to HKEY_ CURRENT_USER\User\software\Microsoft\windows\current version\policies\explore. In right side area " NoDriveAutorun" value are their just double click on this value and insert value data FF and select hexadecimal.
then close the window and restart the computer .
hii ,to delete autorun.inf,enable show hidden files,unchechk the hide extension for knwon types and hide uncheck operting system files also than close that ,open explorer their you can find the autorun.inf in each drive ,restrat the computer
Avgantivirus detects some viruses and not all. But u say it is detecting. Then try to heal the virus or delete the virus files with the options in Avg. Better Option is try some other antivirus like Avira or Mcafee antivirus
to delete autorun virus:
1) check in root directory of all drives i.e(c: , d: etc.)with the help of winrar, if there exist autorun.inf file in every partion of ur hard disk then there is autorun virus..
2)download a program called usb firewall by typing in google or http://download.cnet.com/USB-FireWall/3000-2239_4-10817831.html 3) install it and then start the sytem in safe mode.
4) run this program in safe mode...it will remove the virus from all partions..