Met-worm.win32.kido.ih
Closed
confused
-
Aug 30, 2010 at 07:35 AM
Ambucias Posts 47310 Registration date Monday February 1, 2010 Status Moderator Last seen February 15, 2023 - Aug 31, 2010 at 04:35 PM
Ambucias Posts 47310 Registration date Monday February 1, 2010 Status Moderator Last seen February 15, 2023 - Aug 31, 2010 at 04:35 PM
Related:
- Savefrommey
- Microsoft office 2010 gratis downloaden met product key - Download - Office suites
- E met accent - Guide
- Excel add row if condition met - Excel Forum
3 responses
pctech
Posts
7
Registration date
Monday August 30, 2010
Status
Member
Last seen
August 30, 2010
4
Aug 30, 2010 at 07:49 AM
Aug 30, 2010 at 07:49 AM
Did you run any antimalware and antispyware software's? I have tried almost all premium antiviruses I will face same Issue after every 3 months , Now I use antimalware and antispyware softwares once a month. Which takes care of my computer.
Ambucias
Posts
47310
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
February 15, 2023
11,163
Aug 31, 2010 at 07:15 AM
Aug 31, 2010 at 07:15 AM
Dear Confused,
First ensure your have administration right, which you probably already have:
==> Unhide the system files from folder options:
You can see the two hidden files, "autorun.inf" and "Recyle"
Manualy select those files and go to the properties and click on the 'security' tab, you need to assign the full control to the user you are currently logged in and if you are not able to assign the permission than you need to click on the 'Advanced' tab under the security column and replace the owner and apply the settings.
Once done then again select the files and press "shift+delete" key and the virus will be deleted from your system. after that scan your system your issue will be fixed.
Let me know
First ensure your have administration right, which you probably already have:
==> Unhide the system files from folder options:
You can see the two hidden files, "autorun.inf" and "Recyle"
Manualy select those files and go to the properties and click on the 'security' tab, you need to assign the full control to the user you are currently logged in and if you are not able to assign the permission than you need to click on the 'Advanced' tab under the security column and replace the owner and apply the settings.
Once done then again select the files and press "shift+delete" key and the virus will be deleted from your system. after that scan your system your issue will be fixed.
Let me know
Ambucias
Posts
47310
Registration date
Monday February 1, 2010
Status
Moderator
Last seen
February 15, 2023
11,163
Aug 31, 2010 at 04:35 PM
Aug 31, 2010 at 04:35 PM
Dear Confused,
Since you cannot find it please look and delete the following:
Delete the following system registry key:
[HKLM\SYSTEM\CurrentControlSet\Services\netsvcs]
Delete "%System%\.dll" from the system registry key value shown below:
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost]
"netsvcs"
Reboot the computer.
Delete the original worm file (the location will depend on how the program originally penetrated your machine).
Delete copies of the worm:
%System%\dir.dll
%Program Files%\Internet Explorer\.dll
%Program Files%\Movie Maker\.dll
%All Users Application Data%\.dll
%Temp%\.dll
%System%\tmp
%Temp%\.tmp
is a random string of symbols.
Delete the files shown below from all removable storage media:
:\autorun.inf
:\RECYCLER\S---%d%>-%d%>-%d%>-%d%>-%d%>\.vmx,
Sometimes using the search tool may be useful.
Since you cannot find it please look and delete the following:
Delete the following system registry key:
[HKLM\SYSTEM\CurrentControlSet\Services\netsvcs]
Delete "%System%\.dll" from the system registry key value shown below:
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost]
"netsvcs"
Reboot the computer.
Delete the original worm file (the location will depend on how the program originally penetrated your machine).
Delete copies of the worm:
%System%\dir.dll
%Program Files%\Internet Explorer\.dll
%Program Files%\Movie Maker\.dll
%All Users Application Data%\.dll
%Temp%\.dll
%System%\tmp
%Temp%\.tmp
is a random string of symbols.
Delete the files shown below from all removable storage media:
:\autorun.inf
:\RECYCLER\S---%d%>-%d%>-%d%>-%d%>-%d%>\.vmx,
Sometimes using the search tool may be useful.