Question:

Ut.com attacked my PC.it disables show hiden files and folders.how can i remove it?antivirus cant remove it?

by  |  earlier

0 LIKES UnLike

I had this suspicious program that is detected by my antivirus avast. And i discover that when you enable show hidden files and folders in the folder options, it does not work, it still go back to hide hidden files and folders. and i found out that my local drive have an autorun.inf. help me remove it because it cannot be removed by other spyware, AV, rootkit removing programs.

 Tags:

   Report

6 ANSWERS


  1. Download the free version of Superantispyware.  Finds viruses and spyware with no conflct to your own antivirus.  http://www.superantispyware.com  Update and run and in depth scan. Free you must update daily on a manual basis or purchase and get auto. updates.

    Mind Doctor, France


  2. use the boot time scan that avast has..it will remove any viruses that are embedded in running processes.....the boot time scan will scan the computer files before windows starts making removal easy....cheers

  3. To know more about    

    removespyware

    Please   feel free to visit     http://learnmoreon.com/removespyware/


  4. http://search.yahoo.com/search?p=free+tr...

  5. I agree with gregger....use the Boot time scan option to scan your Boot Sector.

    Also use the following which will remove malware that AV programs do not:

    Malwarebytes Anti-Malware Removes Antivirus:

    http://www.download.com/Malwarebytes-Ant...

    Download, install, update and select Full Scan.

    Remove all infections that it finds after scan.

    Spybot S&D:

    http://www.safer-networking.org/en/downl...

    Download, install, update and Immunize, then click 'Check for problems' then when complete select all and then 'Fix Checked'

    Lavasoft Virtumonde Remover will find and clean the variants of the Virtumonde (a.k.a Vundo Trojan), that integrate tightly with the operating system, causing some scanners to bluescreen windows

    http://www.download.com/Virtumonde-Remov...

  6. You can boot up your PC in safe mode command prompt.

    unhide the autorun.inf

    c:\attrib -r -s -h autorun.inf

    rename it the autorun.inf to txt

    c:\ren autorun.inf to autorun.txt

    create a FOLDER call autorun.inf to prevent re-infection

    c:\mkdir autorun.inf

    find out the virus file name

    c:\type autorun.txt

    It may show something like this

    [AutoRun]

    open=virusname.exe

    shellexecute=virusname.exe

    shell\Auto\command=virusname.exe

    unhide the virus

    c:\attrib -r -s -h virusname.exe

    del the virus

    c:\del virusname.exe

    del the autorun.txt

    c:\del autorun.txt

    Keep the autorun.inf folder to prevent future infection

Question Stats

Latest activity: earlier.
This question has 6 answers.

BECOME A GUIDE

Share your knowledge and help people by answering questions.