Autorun-virus is a kind of viruses that writes itself on a flash drive (or other external device) and infect user’s computer when the user opens a flash drive in Explorer.
This is a new type of viruses appeared in the time of widespreadng of flash drives, memory cards and other external devices.
They have exactly the same tortious effect as all conventional viruses, beginning with spying on your computer and finishing with destructing your data If there is autorun.inf virus in USB drive, each time you insert the removable media and double-click your drives to open it, virus files begin executing and infect your computer: which spreads itself onto the computer by making the multiple copies of the autorun.inf and .exe files on every drive of your computer.When your computer is infected, viruses might clandestinely connect to the malicious web site and install the key logger on your PC. the key logger steal all your private information like usernames, account numbers, social security, passwords, credit card information, as well as other sensitive information. It is thus very important for you to remove the Autorun virus from computer.
Method 1
- Open command prompt. Go to Windows, then Run, and type "cmd" . Press enter.
- Type "cd\" and press enter to get to the root directory of c:\ .
- Type "attrib -h -r -s autorun.inf" and press enter.
- Type "del autorun.inf" and press enter.
- Repeat the same process with other drives, type "d:" and do the same thing. then next "e:".and restart your computer.
- Restart your computer and it's done. Enjoy the freedom to open hard drives on a double click.
Method 2
- Go to any folder.In that on the top menu go to Tools--> Folder Options, which will be beside File, Edit, View, Favourites.
- A window pops up after you click on folder options.In that window go to View tab and select the option Show hidden files and folders.Now uncheck the option Hide protected Operating system files.Click Ok
- Now Open your drives (By right click and select Explore. Don't double click!) Delete autorun.inf and MS32DLL.dll.vbs or MS32DLL.dll (use Shift+Delete as it deletes files forever.) in all drives include Handy Drive and Floppy disk.
- Open folder C:\WINDOWS to delete MS32DLL.dll.vbs or MS32DLL.dll (Use Shift+Delete )
- Go to start --> Run --> Regedit and the Registry editor will open
- Now navigate in the left pane as follows: HKEY_LOCAL_MACHINE --> Software --> Microsoft --> Windows --> Current Version --> Run .Now delete the entry MS32DLL (Use Delete key on keyboard)
- Go to HKEY_CURRENT_USER --> Software --> Microsoft --> Internet Explorer --> Main and delete the entry Window Title “Hacked by Godzilla”
- Now open the group policy editor by typing gpedit.msc in Start --> run and pressing enter.
- Go to User Configuration --> Administrative Templates --> System . Double Click on entry Turn Off Autoplay then Turn Off Autoplay Properties will display.Do as follows:
- Select Enabled
- Select All drives
- Click OK
- Now go to start --> Run and type msconfig there and press Enter.A system configuration utility dialogue will open.
- Go to startup tab in it and uncheck MS32DLL .Now click Ok and when the system configuration utility asks for restart ,click on exit without restart.
- Now go to Tools --> Folder Options on the top menu of some folder again and select the Do not show Hidden files and check Hide operating system files.
- Go to your recyclable bin and empty it to prevent any possiblity of MS322DLL.dll.vbs lying there.
- Now restart your PC once and you can now open your hard disk drives by double clicking on them
Or You it's not work you can try this one:
Delete autorun.inf on hard drive of computer
- Boot your system in the safe mode and then open a command prompt.
- Delete the following files:
%System%\config\csrss.exe
%WinDir%\media\arona.exe
%System%\logon.bat
%System%\config\autorun.inf
C:\autorun.inf
D:\autorun.inf
E:\ autorun.inf
F:\autorun.inf
autorun.inf files in all drives. - Open the registry editor and delete following parameters:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System]
DisableTaskMgr = 1
[HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
NoFolderOptions = 1
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Worms" = "%System%\logon.bat" - Reboot your computer
See more information about Win32.AutoRun.
In this case, you need to use the effective autorun removal tool.
And you can find help from Microsoft too "How to disable/Remove Autorun" http://support.microsoft.com/kb/967715
No comments:
Post a Comment