Saturday, November 24, 2007
Step 1: Press CTRL+ALT+DEL (Task Manager Opens up) and go to the processes tabLook for svchost.exe under the image name. There will be many but look for the ones which have your username under the usernamePress DEL to kill these files. It will give you a warning, Press YesRepeat for more svchost.exe files with your username and repeat. Do not kill svchost.exe with system, local service or network service!
Step 2: Now open My ComputerIn the address bar, type C:\heap41a and press enter. It is a hidden folder, and is not visible by default.Delete all the files here
Step 3: Now go to Start –> Run and type RegeditGo to the menu Edit –> FindType “heap41a” here and press enter. You will get something like this “[winlogon] C:\heap41a\svchost.exe C:\heap(some number)\std.txt”Select that and Press DEL. It will ask “Are you sure you wanna delete this value”, click Yes. Now close the registry editor.
Now the virus is gone.
Step 4: Over to Pendrive:But be sure to delete the autorun.inf file and any folder whose name ends with .exe in the pen drive. That’s it folks!
This entry was posted on October 4, 2009 at 12:14 pm, and is filed under
Troubleshooting
. Follow any responses to this post through
RSS. You can
leave a response, or trackback from your own site.
Post a Comment