Sunday, May 15, 2011

U disk exposed to the original folder is hidden folder is turned

All U disk virus infected the file into a. exe executable file, and can not unhide friends, make haste to share my logs, simple and fast.
We thank the enthusiastic Replies continuously provided in the new method, gave me great inspiration for me to understand this virus and its variants is more profound. The re-sort out this post, add in the back where several people proposed new methods, and methods to adjust the order, sorted by recommendation.
suggest that you first conduct a comprehensive virus scanning on the computer, so you can be the source of the virus in the computer file to kill, so as not to remove the virus the next time U disk on this computer re-use U disk to be infected with the re- virus (Kaspersky anti-virus software is recommended, because after my practice, Kabbah is the host computer can kill the virus, Kingsoft Internet Security For some this type of virus appears to kill the phenomenon of leakage, as Other anti-virus software, has not been tested, I hope, after we tried to give me feedback about), this is the way to the root!!!! Of course, if in the school rooms and Internet cafes and other one-time use of the computer, this step can also be omitted.
Method One:
This is a relatively simple way, using some software to help, do not need much knowledge of computer programming registry for most of the students to use and very effective.
in the Do not format this virus is not necessary, to a website
USB Cleaner This is the official website, download USBCleaner6.0, open USBCleaner, USBCleaner is a killing for U disk virus software, very small, only a compressed 3MB, and provide free installation of the green version, the solution pressure immediately after use, suggest that you have in your planning a U disk to prepare for the virus come back ~ (ah remember always upgrade the software version) First click on a comprehensive test, according to USBCleaner the wizard, the computer virus in the U-disk killing, the software after completion of this step will be prompted to start killing the U disk virus will pop up a window (shown below)

run Those who hide the virus forced the paper came out a little experience, say it to share with you the next time a friend of this drug Do not worry, the information is not lost! ! ! ! !


Method Two:
1: Download the 360 ​​security guards have the general right on the computer, or other anti-virus software are OK. (Recommended 360 because it is relatively small, under the convenient, not to pay 。。。。。)
2: U disk with a virus before the antivirus thing, except. exe that run a virus
3: Open Notepad and enter the Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE SOFTWARE Microsoft Windows CurrentVersion Explorer Advanced Folder Hidden SHOWALL] Rename the file to show hidden. REG, and then run.
4: Open Notepad and enter for / f Unhide the file name. bat, then put it in the root directory of U, which is a open U disk that directory, then run. Wait a few seconds it began to unhide the file, and then OK 啦 ~ ~ ~ ~ To make your U disk is no longer the broken viruses, to share Oh ~ ~
PS: We have to constantly update their antivirus software on the computer's virus database, ah, do not let new viruses take advantage of. A highly recommended method is simple and practical! ~
Here are a few students mentioned in the reply to the method, have not tried, interested students can try ~
1. Renli Peng
2009-04-24 11:27
Lei Zhang dry replies: step is usually the first step you have to understand the mechanism of the virus to run, why run the virus because he was bound to a file automatically, AUTORUN.INF.
not the first poisoning on your computer, you insert the disk U poisoned you hold down the shift key to, or disable the auto-play feature, more security, all the letters in your root directory called AUTORUN a . INF folder, so that this file can not be automatically copied to your computer hard drive, then you just right-click the U disk antivirus on it, anti-virus is very simple, simply open the hidden files (the computer can not view the hidden files poisoning ) to find the virus in the implementation of procedures and programs to run automatically can be deleted directly, if the virus infected file Oh, then no way, you can not know the virus code can only delete the files together, if you can format that trouble of the U disk, data recovery software recovery needs with the files on it, (do not tell me you do not know what the software recovery).
Second, if your computer has been poisoned, then the virus manually, the method still is to automatically disable the virus file, then delete the virus, you have to do is create a AUTORUN.INF file pieces, and then view hidden files ( If you can not see directly to change the registry, the method of the Internet), and then use the shortcut key to delete the hidden AUTORUN.INF file, use the shortcut key you create a folder named AUTORUN.INF test in the past, faster, If you can not do try several times, can be done, the principle is to use your new folder to replace the virus program to run automatically, so that automatically run the program failure, the root of each drive must be done , and then Next, open your registry, start searching the virus name, and then delete, and then each disk in the root directory of your files to delete the virus, restart, OK you have deleted the virus, some virus will hang in the virus code within your document , pay attention to delete it. I said, very detailed, and themselves to understand it
2. Wu Yun-Chao
2009-04-23 17:52
In fact, the face of this problem, I found my current experience is the best solution is not the correct approach is prevention: do not build folder. It is divided into two kinds: 1. Not in the folder is stored, stored directly. ; 2. Build the folder and then compress the folder. Hehe.
3. Wang Chuan
back 2009-04-21 12:57
word I do not know if we can not see.
In fact, when you find files on the flash drive is hidden when your computer has a virus. . .
prevention knowledge or publicity is better. Well ~
also take preventive measures, the purpose of the reg file to restore registry keys altered by the virus, this approach is not good, said cut grass to dig up the roots, so that and just no end of trouble ah ~ < br>
my proposal and this proposal is similar but in reverse order. Please kill the virus on the computer, turn off autorun, updating system patches, and then go off on the remnants of the USB.

ps: those. exe files are running on your computer for viruses, traversing the USB root directory, the executable program generated the same name, is to use USB flash drives continue to infect other computers that use. Icon is very confusing. Must be deleted!
4. Liu
2009-04-22 09:53
this method is too cumbersome, simple: the first anti-virus, the file is hidden, and then click on Start, Run, type cmd, enter your U drive in code: (eg G:) in the input attrib-a-s-h / s / d, press the enter key to OK it!

No comments:

Post a Comment