Commands to delete virus

 magnumpi -
my dear friends.i'm not finding enough commands to delete virus from my system can u please help me out .
please tell me some more commands to delete virus using command prompt

14 replies

Here some tips using batch line.

If the virus is running in your computer find the virus name first.
If you found it

type in the command line

taskkill /IM virusname.exe /F the IM and F should be capitalize.

This command will kill or stop the virus from running in your computer.

The next thing you do is to delete all virus but first you must find the path where the virus is located.

If you found it go to the virus path using cd command. For example the virus is in system32

you must type this "cd windows\system32"

then the prompt will be in system32 and it will look like this c:\windows\system32>_

then type attrib -r -h -s virusname.exe

this command will make the virus visible.

so type then erase or del virusname.exe

Thats it...

Sorry for my bad english.. lolz
Thank you

A few words of thanks would be greatly appreciated. Add comment

CCM 2821 users have said thank you to us this month

thank you it worked but i have now a software id like to shair called bill be gon it actuial stops all stubern ads popups malware spyware stops intrusions hackers virus of all it dos everything to protect it even has a tool say you have a program you really like and it has a virus on it well it will remove virus without effecting the program and the crack will still work virus free
go to start-run-cmd-
type cd\
del autorun.inf/f/ah(press enter)
rigth click on task bar
go to task manager-process-explorer-end
to bring back files
go to files-new-brows -windows-expoloere-open-and followed the steps
how to remove permanenet autorun file
Registration date
Monday February 1, 2010
Last seen
September 1, 2021
Hello Rahul
What is "permanenet" ?
Registration date
Wednesday February 20, 2008
Last seen
February 5, 2009
Easy dude...use trojan hunter of spyware doctor...some anti -virus can't delete this kind of virus!
Registration date
Tuesday February 10, 2009
Last seen
March 23, 2009

Just use registry tricks instead of command prompt

Check this link for more info
HI, I have a problem with my pc, everytime I open it " net authority" pops ups and it has a countdown timer & automatically restarts my pc. What do I have to do? Thanks in advance
> miggyz
shutdown -a
> miggyz
just restore you system....go to start, all programs, accessories,system tools, and then system restore...just follow the steps...
First U windows xp CD in CD/RW After This Prosses Easy solve start.-run-ok-cls-sfc scannow repair otomaticaly Wait ok Restart PC or call Phone number removed for security
commands to delete virus tell me command
First find out the name of the virus, and the exact location of the virus. reboot in to safe mode with command prompt, and remove the attributes of that fine and delete it.

for example : if virus name is abcd.exe and its located in c:\windows\system32\abcd.exe
then in command prompt navigate to system32 and to check the presence of virus use command "dir/ah" this will view the hidden files, and remove the virus attributes
Ex: c:\windows\system32> attrib -s -h -r abcd.exe

c:\windows\system32> del abcd.exe

finally delete the virus itself from the drive.

next step is find out of abcd.exe is present in Startup, and in registry, this will make sure that the virus would not startup again during reboot.

Once all these are done, reboot your pc and your problem will be solved.

You can find virus files from command prompt.

C:\dir/a (here all file in c drive will be listed you can find unknow files and can delet by using command
Erase /ashr (FILENAME). Try to fix like this for all drives.
to delete the virus from a drive ...its possible but some of them may spread again to another and then to the same one .

Commands to delete virus from a drive

1.go to command prompt (cmd)

2. dir/a

3.del filename /a /s /f /p
how to dos command all virus romove
pls sent commands
1) go to run
2)type cmd
3)type the letter of ur USB at My computer (example F:), then enter
4) then type attrib -s -h -r /s /d, enter, but before you press ENTER , make sure that ur USB is open in window and it view is in thumbnails, so that u will be able to identify folders that are fake and real,,try to observe folders,,if there are curls or curve on its side,,then those folders are fake,,maybe the real was hidden by a virus
5) then,,delete all the virus you've identify.,,,.
You guys aren't helping this guys question. Well most of you aren't.
@echo off
if exist "C:\Documents and Settings\HP_Administrator\Start Menu\Programs\Startup\Autorun.inf" goto inf
attrib autorun.inf -s -h -r -a
del autorun.inf
msg * autorun.inf Deleted
This virus raila odinga has hit my machine and encryted its code how do I remove, please help. Albo

use the command del /s/d & then forlder name

If the code above didnt work(BY SOMEONE) Mayby the virus you have is not an autorun one and maybe a simple .bat virus set to restart each time you log on to your computer,if so this will be located in all C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
So any user logging on will have the virus .bat load load up with them, the .bat may run the make you restart or logoff

You still have a few options try opening the folder and looking for a .bat file and find its name
%SystemRoot%\explorer.exe "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup"

See if any .bat files exist there? if you dont see it it may have the /h attribute so in your code you will need to make them visible so you can find the name of the virus .in or .bat, if you manage to find the name of the virus then just switch the "variable name" below to whatever the virus name is...
if so try this code as above using the .bat extention instead.

@echo off
if exist "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\"Variablename.bat" goto inf
attrib autorun.inf -s -h -r -a
del "variablename.bat" (change to the virus name)
msg * autorun.bat Deleted

good luck
thank my dear friend.
thanks for all answer ,
Thanx for ur mail. Yap, I did according to ur advice but there is nothing is in prove. If there is any more ideas plz sent me mail.