I’ve problem when i connect my pendrive the avast scanner couldn’t detect this virus (Flash.10.exe) which disable my folder option and regedit. Anyone please help me!!! I need my laptop fully functional to finish up my assignment!!!
The following should help you.
http://forums.spywareinfo.com/index.php?showtopic=102694
Good luck. Please let us know once your problems are solved.
You can copy below code into notepad and then save it some thing like . double click this Remove flash10.bat file your problem will be solve in minute.
======== Start copy code below (don’t copy this line) ========
Echo This will remove and recover back your windows from flash 10 virus.
taskkill /f /im flash.10.exe /t
@reg delete hkcu\software\microsoft\windows\currentversion\policies\system /v disableregistrytools /f
@reg delete HKLM\Software\Classes.empty /f
@reg delete HKLM\Software\Classes.fold /f
@reg delete HKLM\Software\Classes.ie /f
@reg delete HKLM\Software\Classes.lagu /f
@reg delete HKLM\Software\Classes.msn /f
@reg delete HKLM\Software\Classes.pikz /f
@reg delete HKLM\Software\Classes.texz /f
@reg delete HKLM\Software\Classes.vidz /f
@reg add HKLM\Software\Classes\comfile\DefaultIcon /ve /t REG_SZ /d %systemroot%\System32\shell32.dll,2 /f
@reg add HKLM\Software\Classes.vbs /ve /t REG_SZ /d vbsfile /f
@reg delete HKLM\Software\Microsoft\JambanMuV2 /f
@reg delete HKLM\Software\Microsoft\Windows\CurrentVersion\policies\Explorer /v NoFolderOptions /f
@reg add “HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon” /v Shell /t REG_SZ /d Explorer.exe /f
@reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced /v Hidden /t REG_DWORD /d 00000001 /f
@reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced /v ShowSuperHidden /t REG_DWORD /d 00000001 /f
@reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoFind /f
@reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer /v NoFolderOptions /f
@reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v “Windows MSN” /f
@reg add “HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows” /v load /t REG_SZ /d “” /f
@reg delete HKCU\Software\Policies\Microsoft\Windows\System /v DisableCMD /f
@attrib -s -h -r C:\DOCUME~1\ALLUSE~1\STARTM~1\Programs\Startup(Empty).empty
@del C:\DOCUME~1\ALLUSE~1\STARTM~1\Programs\Startup(Empty).empty
@attrib -s -h -r c:\windows\system32\cmd.com
@attrib -s -h -r c:\windows\system32\dxdiag.com
@attrib -s -h -r c:\windows\system32\Flash.10.exe
@attrib -s -h -r c:\windows\system32\JambanMu.com
@attrib -s -h -r c:\windows\system32\msconfig.com
@attrib -s -h -r c:\windows\system32\ping.com
@attrib -s -h -r c:\windows\system32\regedit.com
@del c:\windows\system32\cmd.com
@del c:\windows\system32\dxdiag.com
@del c:\windows\system32\Flash.10.exe
@del c:\windows\system32\JambanMu.com
@del c:\windows\system32\msconfig.com
@del c:\windows\system32\ping.com
@del c:\windows\system32\regedit.com
@attrib -s -h -r c:\progra~1\common~1\micros~1\macromedia.10.exe
@del c:\progra~1\common~1\micros~1\macromedia.10.exe
@attrib -s -h -r c:\progra~1\common~1\micros~1\dao\MSN.msn
@del c:\progra~1\common~1\micros~1\dao\MSN.msn
@attrib -s -h -r “c:\docume~1\User\mydocu~1\My Secret.fold”
@attrib -s -h -r “c:\docume~1\User\mydocu~1\mymusi~1\New Song.lagu”
@attrib -s -h -r “c:\docume~1\User\mydocu~1\mymusi~1\New Video.vidz”
@attrib -s -h -r c:\docume~1\User\mydocu~1\mypict~1\aweks.pikz
@attrib -s -h -r c:\docume~1\User\mydocu~1\mypict~1\seram.pikz
@del “c:\docume~1\User\mydocu~1\My Secret.fold”
@del “c:\docume~1\User\mydocu~1\mymusi~1\New Song.lagu”
@del “c:\docume~1\User\mydocu~1\mymusi~1\New Video.vidz”
@del c:\docume~1\User\mydocu~1\mypict~1\aweks.pikz
@del c:\docume~1\User\mydocu~1\mypict~1\seram.pikz
======== End of copy code (don’t copy this line)========