Remove 'Shortcut Virus' and 'Automatically creating undeleteable Folder Virus' Without any anti-virus
Being a hosteler I can understand how capable is a computer virus in spreading like a plague in a society. Many people who do not have a deep knowledge about working of a computer feel helpless in front of such viruses even after having some paid anti-virus softwares.
Its time that we take matter into our own hands..
Its time that we take matter into our own hands..
- Open task manager as administrator. To do this you can open command prompt as admin by typing 'cmd' at the start menu and then right click and choose 'Run as Admin' and type taskmgr and press enter.
- Go to processes tab and find a process 'wscript.exe'. It is a process which execute the scipts on your windows computer. Its presence shows that a script is running on your computer.
- To delete a shortcut virus you need to end this wscript.exe process.
- Now go to My computer or windows explorer and click organize on top left corner, Go to folder options and then View tab, and click on 'Show hidden files' and UNCHECK 'hide protected OS files', click yes and Ok. This is because mostly all the virus files are hidden using system attribute.
After deleting the virus file to be able to see the infected files you need to set the attribute of 'infected' files back to normal, for this:
- Go to the drive which has stored your Windows files (generally C:/). Search for any file with .vbs extension, you can do this by searching '*.vbs'. The virus file would GENERALLY be named according to the name of folder being created or some useless name like asdfgdnjd or csdafdsacd etc. inside C:/Users/Username/AppData folder. Beware of interfering with any wrong file, if you are suspicious about one, google its name.
- Once you find a suspicious file, right click on it and select 'open file location', You will be redirected to the folder which contain that file with another file with .exe extension. Permanently delete both .vbs and .exe file by pressing shift+del keys.
- Open command prompt as admin.
- Go to the path where the files were infected by typing 'cd pathname.
For eg: cd f:/folder
Any other query or suggestions are welcomed as comments.
- Now type 'attrib *.* -s -h' and press enter. This will convert all your hidden system files back to normal. If a folder or file is left you can use attrib folder/filename -s -h -r
- Now delete all the shortcuts from the location by using command del *.lnk
Comments
Post a Comment