Showing posts with label W32.USBWorm. Show all posts
Showing posts with label W32.USBWorm. Show all posts

Sunday, November 25, 2007

How To Show Hidden Files Using Command Line

You may need this skill to detect hidden viruses in your pen.
For Example lets see how to delete worm/small.2.f (MicrosoftPowerPoint.exe)
1) click Start menu -> run -> type cmd
2) A command Line will be opened.
3) goto your USB drive, type I: (ex: H: or I:)
4) prompt will be changed to you USB driver letter I:\>
5) type dir /a:h and press enter
6) if you see MicrosoftPowerPoint.exe the virus is in your pen drive.
7) delete it by typing del MicrosoftPowerPoint.exe /a:r and press enter.

 Subscribe to my blog

AddThis Social Bookmark Button

I DNT HATE MOZILLA BUT USE IE OR ELSE (NOT DETECTED) Virus

Maybe you get a dialog box "I DNT HATE MOZILLA BUT USE IE OR ELSE" when you try to open Mozilla Firefox. This is done by a virus called W32.USBWorm which is transmitted through USB drives.
This virus also responsible to deny access to YouTube - "youtube IS BANNED" and orkut - orkut IS BANNED.
W32.USBWorm does not harm your system files, it just restrict access to firefox and you cannot also Uninstall it.
I ran AVG free and AVG Spyware to detect it but could not detect it.

Here are the manual steps:
1.Go to Task Manager by pressing Ctrl+Alt+Del
2.On Process Tab delete Delete only the svchost.exe of your user name
3.Type c:\heap41a in you address bar of your explorer.
4.Right click on svchost icon and goto properties.
4.Remove the tick on "read-only" from the general tab and press OK.
5.Now Delete all files in that heap41a.

Best way to stay safe is to remove autoplay from the USB drive, you can find lot of articles how to remove autoplay from you computer in the net.


 Subscribe to my blog

AddThis Social Bookmark Button