Friday, June 26, 2009

remove autorun.inf virusus using command prompt

use "attrib" to check for Viruses or Malware

"attrib" is a very useful tool to check if your hard drives even your usb disks have been infected by a virus.

You will know if a Malware is inside your hard drive just by looking at the attributes of each files and the file that has the attributes of +s +h +r

The function of attrib is to set and remove file attributes (read-only, archive, system and hidden).


start attrib

To start attrib

  1. Go to Start Menu > Run

  2. Type cmd (cmd stands for command prompt)

  3. Press Enter key

The Command Prompt will appear showing us where is our location in the directory.


using attrib

To use attrib

Go to command prompt

1 then Go to the root of the directory first by typing cd\ then press enter.(because this is always the target of Malware / Virus)

2. Type attrib and press Enter key

+s - meaning it is a system file (which also means that you cannot delete it just by using the delete command)

+h - means it is hidden (so you cannot delete it)

+r - means it is a read only file ( which also means that you cannot delete it just by using the delete command)

Now we need to set the attributes of autorun.inf to -s -h -r (so that we can manually delete it)

  1. Type attrib -s -h -r autorun.inf in command prompt and press enter.( be sure to include -s -h -r because you cannot change the attributes using only -s or -h or -r alone)

  2. Type attrib again to check if your changes have been commited

  3. If the autorun.inf file has no more attributes, you can now delete it by typing del autorun.inf

Repeat these steps for removing virusus from the other partitions,external hard disks or usb drives.

NOTE : when autorun.inf keeps coming back even if you already deleted it, be sure to check your Task Manager by pressing CTRL + ALT + DELETE ( a virus is still running as a process. that’s why you cannot delete it. KILL the process first by selecting it and clicking End Process.use process killing softwares like runscanner or autoruns to view suspected process.you can find these softwares in here

hardware requirements

you must determine whether your hardware meets or exceeds the minimum requirement for installing and operating windows xp professional.

windows xp professional hardware requirement.
  • processor - pentium 233 mhz or equivalent
  • memory - 64 MB minimum, 128 MB recommend, 4 GB maximum
  • hard disk space - At least 1.5 gigabytes (GB) of available space on the hard disk
  • display - Video adapter and monitor with Super VGA (800 x 600)or higher resolution
  • other drives - CD-ROM or DVD-ROM drive (not required for installing windows xp professional over a network)
  • accessories - keyboard and mouse or other pointing device.

preinstallation tasks

before you start the installation of windows xp professional, complete the following tasks.
  • ensure that your hardware meets the requirenments for installing windows xp professional.
  • determine whether your hardware is on the hardware compatibility list (HCL)
  • decide how you will partition the hard disk on which you will install windows xp professional.
  • choose a file system for the installation partition.
  • determine whether your computer will join a domain or a workgroup.
  • complete a preinstallation checklist.

windows xp professional authentication process

to gain access to a computer running windows xp professional or to any resource on that computer, whether the computer is configured to use the welcome screen or the log on to windows dialog box, you must provide user name and possibly a password.

how windows xp professional authenticates a user depends on whether the user is logging on to domain or logging on locally to a computer.

access token
  • provides user identity and security settings
  • enable a user to gain access to resources and perform system tasks

logging on locally to the computer

windows xp professional offers two options for login on locally.the welcome screen and the log on to windows dialog box.

the welcome screen

by default windows xp professional uses welcome screen to allow users to log on locally.to log on click the icon for the user account you want to use.if the account requires a password you are prompted to enter it.if the account is not password protected you are logged on to the computer.you can also use ctrl+alt+delete (press twice) at the welcome screen to get the log on to the windows dialog box.this enable you to log on to the administrator account which is not displayed on the welcome screen when other user accounts have been created.

a user can logon locally to either of the following
  • a computer that is a member of a workgroup
  • a computer that is a member of domain but is not a domain controler