How to remove .vbs Autorun Worms
example of it is the pooh.vbs.
It exploits the autorun feature in memorycards and copies itself to computers and connected memory cards thereafter
Because it does not spread itself to the internet, it hasn’t gained enough notoreity to be included in virus defenses of various programs
Be sure to also clean your infected memory cards…
Here’s how you clean it:
Download startup control Panel at mlin.net (You’re going to use this later)
Go to your Task Manager (Ctrl+Alt+Del)
Terminate the Wscipt.exe process
Terminate the Explorer.exe process
Click New Task and Type “cmd” (without the quotes)
type the following in your command prompt
del c:\pooh.vbs /f/s/q/a
del d:\pooh.vbs /f/s/q/a
(include your other drives and USB drives that have been infected)
del c:\autorun.inf
del d:\autorun.inf
(include your other drives and USB drives that have been infected)
del c:\windows\system32\kernell.dll.vbs
del c:\aikelyu.html /f/s/q/a
Use the start-up program from mlin.net to remove aikelyu.html on windows startup
Go to New Task and type “regedit” (without the quotes)
Go to
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
and modify it to make the value in Shell to only contain “explorer.exe”
That’s about it… Good luck everybody…
further readings:
halu.. this is mango juice from ftalk…
its just that my task manager wont even appear… but if i hold ctrl+alt+delete task manager would like consecutively appear but will disappear before i can even click it… waaaaaaaaahhhhhhhhh.. huhuhuhu
try to google for hijackthis, download it and scan your pc with it. make sure u create a logfile. copy your logfile and post it here so that i can check for malicious warez.
ok.. thankz… my pc is ok now.. my computer has been reformatted… i think that worm is already gone… lol… but ill still be downloading that hijackthis… can i ask for your help if i can get trouble with it?.. thank you very much..