New Virus Attacks
This week, our computers suffered disturbance from a virus similar to that of what I called, the Hedda Marie Tolentino Virus. This virus infects utilize the role of the folder.htt and desktop.ini on the Windows(r) OS. But this time it has an additional accompanying file, ms-dos for games.pif (in long filename format) or ms-dos~1.pif (short filename format).
As to the date of writing this post, Norton anti-virus program couldn't identify it. So if you want to check your computer, try these steps:
1. Boot your computer directly to your Windows(r) OS. Then press START then RUN. Type on the blank field of the Run Dialogue, command, then press OK.
2. So you are already on the DOS environment. Go to root directory of your drive c: by typing cd \ then press ENTER.
3. Find the file desktop.ini by typing on the c prompt, dir desktop.ini /a /s /p then press ENTER. Originally desktop.ini will be found in the directories: c:\windows, c:\windows\system, c:\progra~1 and some web directories on your c: drive.
4. If your desktop.ini file was already scattered on your disk, there is a possibility that your system is already infected with this virus.
5. Check for ms-dos~1.pif file by typing dir c:\ms-dos~1.pif /a /s /p then press enter.
6. Check for the long filename format ms-dos for games.pif that will be shown after the date of the creation of the file. If you'll find even only one file, then for sure, your system is already infected.
Q. How can we removed this virus?
A. We can remove it manually until such time na madetect na ito ng Norton Anti-virus or other anti-virus programs. So sa ngayon mano-mano muna. Find the files: folder.htt, desktop.ini and ms-dos~1.pif using the search capability of the DOS system. Change the attribute of the files from +R +S +H and +A to -R, -S, -H and -A and then delete them.
Simple? Malaking trabaho to, since kailangan mong isa-isahin ito.
Q. Can we delete them using the SEARCH feature of the WINDOWS system and then deleting those files na nakita sa search?
A. No, because this virus configured your system para hindi sya makikita ng SEARCH feature of WINDOWS system.
As to the date of writing this post, Norton anti-virus program couldn't identify it. So if you want to check your computer, try these steps:
1. Boot your computer directly to your Windows(r) OS. Then press START then RUN. Type on the blank field of the Run Dialogue, command, then press OK.
2. So you are already on the DOS environment. Go to root directory of your drive c: by typing cd \ then press ENTER.
3. Find the file desktop.ini by typing on the c prompt, dir desktop.ini /a /s /p then press ENTER. Originally desktop.ini will be found in the directories: c:\windows, c:\windows\system, c:\progra~1 and some web directories on your c: drive.
4. If your desktop.ini file was already scattered on your disk, there is a possibility that your system is already infected with this virus.
5. Check for ms-dos~1.pif file by typing dir c:\ms-dos~1.pif /a /s /p then press enter.
6. Check for the long filename format ms-dos for games.pif that will be shown after the date of the creation of the file. If you'll find even only one file, then for sure, your system is already infected.
Q. How can we removed this virus?
A. We can remove it manually until such time na madetect na ito ng Norton Anti-virus or other anti-virus programs. So sa ngayon mano-mano muna. Find the files: folder.htt, desktop.ini and ms-dos~1.pif using the search capability of the DOS system. Change the attribute of the files from +R +S +H and +A to -R, -S, -H and -A and then delete them.
Simple? Malaking trabaho to, since kailangan mong isa-isahin ito.
Q. Can we delete them using the SEARCH feature of the WINDOWS system and then deleting those files na nakita sa search?
A. No, because this virus configured your system para hindi sya makikita ng SEARCH feature of WINDOWS system.
-
Sign up for PayPal and start accepting credit card payments instantly.
As the world's number one online payment service, PayPal is the fastest way to open your doors to over 150 million member accounts worldwide.