Monday, February 21, 2011

Autorun ATTACK!!!

Autorun is a traditional feature in windows operating systems that enable media like the CD ROMs, USB Devices, Memory Sticks, DVDs, etc. to automatically launch the programs stored in them. This happens through an autorun.inf file present in the root directory of the USB Device or CD ROM and it contains a list of commands that get executed, as soon as the media is inserted into the appropriates drives of the PC. You will typically find autorun.inf on installation CDs. Autorun is often confused with AutoPlay, a feature introduced in Windows XP. Though Microsoft intended it to be a useful feature, there are several viruses and malware that abuse the autorun.inf to spread itself.
Autorun Viruses spread themselves through removable media like USB frive, etc. They contain three executable files namely autorun.infkavo.exe and ntdelect.com. These are hidden files and they usually disable the Show hidden files and folders option, so that you can never see them.The only way to find these files is through the DOS command prompt.



How to delete Autorun Virus?

  • -First disable System Restore on all drives. To do this go to Control Panel -> System and  choose the System Restore tab. Check the option “Turn Off system Restore on all Drives
  • -Clear all temporary internet files in your browser
  • -Do a Disk Cleanup of all the drives on your PC. To do this, navigate to Start ->All Program ->Accessories ->System Tool ->Disk cleanup, choose the drive that you want to clean up and click OK.Once the drive is cleaned, proceed to cleanup the remaining drives

No comments:

Post a Comment