Are you worried about olhrwef.exe? Olhrwef.exe is Trojan/Backdoor. This virus spreads through pendrives. Here is the procedure to remove it.
Step 1: Start->Run->msconfig.
Go to startup and unmark the olhrwef.exe from the Startup Items. After that Click Apply and Ok. But don’t restart your computer.
Step 2: Start->Run->regedit
Click on Computer(in Registry Editor),after that click ctrl+f and type “cdoosoft”.
A folder of this name will be visible. Delete that folder.
Step 3:Go into System32 folder(C:\Windows\System32). Check for two files named olhrwef.exe and nmdfgds0.dll. Delete these two files by changing the attribute.
Like C:\>attrib –r –s –h nmdfgds0.dll
C:\>del nmdfgds0.dll
You have to delete all file like this.
Step 4: Delete autorun.inf from each parent directory (like C,D,E,F...)
Step 5: Delete ur0.com file from each parent directory (like C,D,E,F...)
Step 6: Go to search(Start->search) and type ur0.com and search.Wait. In advance search tick mark for hidden files/folder search also.
You will get 3-4 files named as ur0%.pf. Delete all those files also.
If you have completed all these steps, then you are safe now. But it’s not as easy as I described in 6 steps.Because when you will attempt to delete these file, you will get some message like 'file is being used by some process and can not be deleted'.I did all these things from some other operating system. I am having windows as well as Ubuntu. So I performed first two steps through Windows and rest through Ubuntu.
Now it’s your turn to experience.
0 comments:
Post a Comment