Thursday, July 21, 2011
How to remove drive open with virus
Posted by Godarm | Thursday, July 21, 2011 | Category:
PC Tricks
|
1.Double click on My computer on Desktop ,
- choose Tool and select “Folder options”
- click on “View” tap select “Show Hidden files and folders” and un hake “Hide Extention….”
- and “Hide protected operating system file” (this selections are important to find the files you need to delete)
- then click “OK”
2. Open Windows Task Manager (ctrl-alt-del) and select the “Processes” tap
- Click on “Image name” to sort File
- find “wscript.exe” and click on “End Process”
- close the “Task Manager”
3. Then click on Start and select “Search” and search for “autorun.inf” (Search the computer)
- then delete all the files that contains the text MS32DLL.dll.vbs (the virus) by pressing: SHIFT + DELETE. (There of course should not be Autorun.inf in the C rooth).
4. Also delete the virus from the system (C:\WINDOWS\ MS32DLL.dll.vbs) by pressing: S
HIFT + DELETE
5. Next step is to edit the Registery . take backup of your registry before editin it.
- first, click on “Start” and select “Run” and type in “Regedit” and press “Enter”.
- select HKEY_LOCAL_MACHINE –> Software –>Microsoft –>Windows –> Current Version –> Run.
– find there “MS32DLL” and delete that entry.
6. Then select HKEY_CURRENT_USER –> Software –> Microsoft –> Internet Explorer –> Main. There you find “Window Title “Hacked by Godzilla”” and you should delete that entry. You can close the registry now.
7. next click on Start –> Run and type in “gpedit.msc” and press “Enter”. then you will open “Group Policy”.
- there select User Configuration –> Administrative Templates –> System –> and there you will double click on “Turn Off Autoplay”
- in the window there you should select “Enabled” and select “All drives” . Now you can close the Group Policy.
8. Next click on Start –> Run and type “msconfig” and press “Enter”.
- you will open “System Configuration Utility”.
- click on “Startup” tap
- find the file MS32DLL, choose Enable All, then unhake “MS32DLL”
- click Apply then OK to close
- th
en exit the “System Configuration Utility” and select “Exit Without Restart” when prompt.
9. After this you double click on My Computer and select “Tools” and “Folder Options” and “View” tap to change back there.
- select “Hide Extention…” and “Hide protected operating system file” and “Don’t show hidden files and folders”.
- Then empty the “Recycle bin” and “Restart” your computer.
or visit http://www.techsupportforum.com/sectools/sUBs/Flash_Disinfector.exe
download and execute to get rid of the issue.
Subscribe to:
Post Comments (Atom)
Currently have 0 comments: