U disk virus is rampant recently, through the analysis of the virus spread primarily through with the Autorun.inf file, the virus copies itself to the U disk first and then create an Autorun.inf file. When you double-click the U in your disc will be set in accordance with Autorun.inf to run a virus U disk, then copy it to your hard disk can not be deleted under each letter. Reload or a key to restore the XP system, double-click the other partition, such as D drive, are not open, only right-open. This is a Autorun.INF like virus in the performance. Today we took to kill the virus Autorun.inf class methods and means of prevention to share with you.
Hand easily take out Autorun.inf
In the type of virus, the root of each partition will generate a hidden attribute Autorun.inf file, double click to open "My Computer", click "Tools", then click the "View", remove the "Hide protected operating system files "and select" Show hidden files and folders "and then point" OK "to open all the hidden attribute (see Figure 1). Right turn on any one area, such as the D drive, you can see the Autorun.inf this file, then right-open the Autorun.inf will see open = xxx.exe (xxx is the name of the virus), if not the process of virus-way protection, delete out each partition can xxx.exe Autorun.inf and delete the virus, remove virus, but also the virus associated with recovering disk.
Run regedit.exe to [HKEY_CLASSES_ROOTDriveshell] under the "default" changed to none (see Figure 2), to "HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionExplorer deleted ountPoints2 this next one (if there is an if), this can Double-click to open any letter of the.
To facilitate you remove Autorun.inf-like virus, we all do with a RAR remove Autorun.inf from pressure solution and repair disk and EXE files associated with small tools, this gadget from the delinfvir.cmd, del.cmd, del. reg, drivefix.reg, undel.reg, attrib.exe, taskkill.exe form and other documents, immediately after decompression run drivefix.cmd this batch, and then will reboot the system, boot to the "Welcome" in the load explore.exe Autorun.inf removal before the operation and other related viruses, be patient and wait a moment. Download: http://www.newhua.com/cfan/2006023/delinfvir.rar.
Tip: Because the tool itself in the registry "runonce" add the one from Kai, and in the restart run del.cmd rid of the virus, remove exhausted itself to remove the item from Kai, please rest assured. If equipped with antivirus software, such as KV, run this tool will prompt tool in "runonce" add the startup items, please click "Allow" otherwise unable to restart after the removal of Autorun.inf like viruses.
Entanglement out of Autorun.inf
If your computer has been poisoned, and a key to reinstall or restore the XP system, double-click the other partition, such as D drive, are not open, then do not worry, we'll tell you how to clear: first Trojan to download Fair Strong Clear assistant (http://dl.filseclab.com/down/powerrmv.zip), which can suppress the virus alive. As follows:
Step one: Open Fell Trojan removal assistant strength.
Step two: Enter the file name "D: Autorun.inf" (not including the ""), generated in the suppression file again chosen (see Figure 3), you can click Clear. Other letter Similarly, C plate except.
The third step: re-do under the system will return to normal, if a friend GHOST direct resume OK.
Step four: After redo the system may be under each letter there will be residual, as long as your computer is set to show all files you can see. Its manual can be deleted.
Take precautions to avoid Autorun
How to avoid it in the Autorun.inf the trick? Here to teach you a good idea, 100% easy to use. As long as you can to prevent the creation of Autorun.inf files, then the virus can not spread in the U disk. As long as the root of the U disk heads to establish a folder name called Autorun.inf, because in the same directory, same name files and folders are not co-exist. This virus will not be able to create the Autorun.inf file. HDD is also true, as long as each partition to create a Autorun.inf folder on OK. This method is very effective.