how to remove the virus-eaters of video files
video file-eating virus “W32/Agent.QEYJ certainly a threat to intimidate those who use the computer as a warehouse for storing video / film. Therefore, this virus could eat everything. below are the steps for virus eaters “video files, according to analysts Vaksincom virus Adang Jauhar Taufik:
- Turn off “System Restore during the cleaning process.
- Turn off the active virus in memory. You can use the tools “Security Task Manager by downloading the address http://www.neuber.com/taskmanager/download.html.
Turn off the virus that has the name “svchost.exe” and “Multimedia Video File ‘or file that points to the directory” .. \ Program Files \ Windows Media Player \ “. - Fix Windows Registry that has been modified by a virus. To expedite the repair process copy the script below into notepad, then save with the name “repainr.inf. Run the file by the way, repair.inf right-click “and click” Install “.
Version] [ Chicago Signature = "$" Oyee Vaksincom Provider = ] DefaultInstall [ AddReg = UnhookRegKey DelReg = del
[] UnhookRegKey
HKLM, SOFTWARE \ Classes \ batfile \ shell \ open \ command ,,,”"”% 1 “% *”
HKLM, SOFTWARE \ Classes \ comfile \ shell \ open \ command ,,,”"”% 1 “% *”
HKLM, SOFTWARE \ Classes \ exefile \ shell \ open \ command ,,,”"”% 1 “% * ‘
HKLM, SOFTWARE \ Classes \ piffile \ shell \ open \ command ,,,”"”% 1 “% *”
HKLM, SOFTWARE \ Classes \ shell \ regfile \ \ command open,,, “regedit.exe”% 1 ”
HKLM, SOFTWARE \ Classes \ scrfile \ shell \ open \ command ,,,”"”% 1 “% *”
HKLM, SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Winlogon, Shell, 0, “Explorer.exe”
HKLM, SYSTEM \ ControlSet001 \ Control WaitToKillServiceTimeout, 0, “2000″
HKLM, SYSTEM \ CurrentControlSet \ Control WaitToKillServiceTimeout, 0, “2000″
HKCU, SOFTWARE \ Microsoft \ Internet Explorer Extensions \ CmdMapping \ NextID, 0, “8194″
HKCU, Software \ Microsoft \ Internet Explorer Extensions \ CmdMapping \ (92780B25-18CC-41C8-B9BE-3C9C571A8263), 0, “8194″
HKLM, SOFTWARE \ Classes \ lnkfile,,, “Shortcut”
HKLM, SOFTWARE \ Microsoft \ Security Center AntiVirusDisableNotify, 0×00010001, 0
HKLM, SOFTWARE \ Microsoft \ Security Center FirewallDisableNotify, 0×00010001, 0
HKLM, SOFTWARE \ Microsoft \ Security Center UpdatesDisableNotify, 0×00010001, 0
HKLM, SOFTWARE \ Microsoft \ Security Center AntiVirusOverride, 0×00010001, 0
HKLM, SOFTWARE \ Microsoft \ Security Center FirewallOverride, 0×00010001, 0
HKLM, SOFTWARE \ Microsoft \ Security Center UacDisableNotify, 0×00010001, 0
[Del]
HKCU, Software \ Microsoft \ Windows \ CurrentVersion \ Run Windows Media Player
HKLM, System Software \ Microsoft \ Windows \ CurrentVersion \ Policies \, EnableLUA
HKCU, Software \ Microsoft \ Windows \ CurrentVersion \ Policies \ System defaultValue
HKLM, SOFTWARE \ Microsoft \ Security Center \ SVC
HKCU, Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ PropSummary
HKCU, Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ Comdlg32
- Remove files created by the virus from mother to the first exhibition of hidden files first, and how:
Open Windows Explorer, Click on “Tools” menu, Click on “View” menu, Click on the folder ‘Options’, Click the View tab, Check the option “Show hidden files and folders”, Uncheck the option “Hide extensions for known file types”, Uncheck “Hide protected files of the operating system (recommended)”, Click “OK” Then, delete the following files:
§ C: \ Program Files \ Windows Media Player
· Svchost.exe
· Wmplayerc.exe
§ C: \ Documents and Settings \ Guest \ My Documents \ Recycler
§ Recycling (remove the faithful readers, including Flash Disk)
- Remove the shortcut files created by the virus in each drive, including flash disk with the following characteristics:
a. Size 2 KB file (shortcut)
b. Icon ‘File’ shortcut file () - Delete duplicate files is also created by the virus with the following characteristics:
-. Size 66 KB and 575 KB
-. Icon ‘Windows Media Player Classic ”
-. The file type “Application”
The location of this file at random depending on where you store files film / video, because this duplicate file will be created in the same directory as the movie file storage / video. To accelerate the research process and the elimination recommend that you use the ‘Windows Search.
- View folders / subfolders are hidden by the way:
Click ‘Start’
Click “Run”
Type CMD and then ‘OK’
Move the cursor to the location of the drive will be checked, then type the command attrib-SHR / S / D - For optimal cleaning and prevent infection and re-install the virus scan with an update. You can also mendwnload Norman Malware Cleaner to the following address: http://www.norman.com/support/support_tools/58732/en
Incoming search terms for the article:
- agent QEYJ and the method to erase it
- virus hides video files
- symantec w32 agent qeyj
- software\microsoft\windows\currentversion\explorer\PropSummary
- shortcut virus eater
- Shell
- How to remove virus W32/Agent QEYJ | Moganz
- how to remove shortcut viruses
- how to delete a 2kb file?
- file eating viruses removal
Related posts:
- Conversion Easy Tips Audio-Video To Mobile (3GP, 3g2) For those of you who like the audio video there...
- Disable Right Click Mouse On Windows Who said if the mouse clicks on the windows at...
- Keeping the computer system under control with System Explorer System Explorer does not only have features such as Task...
- Encrypt USB Flash Drive with BitLocker Since Windows Vista was released, BitLocker has been submitted...
Related posts brought to you by Yet Another Related Posts Plugin.
