Symptoms
How to get rid of it?
Step 1
The usual way is to Format the system, but it is not a permanent solution. To get rid run regedit, find all keys related to amvo.exe or the name of the virus.
Run msconfig, in Start up Tab you can find the amvo.exe or its variants.
Remove all occurrence of the name from regedit.
Reboot the System.
Step 2
Reboot and do the following changes to the Registry using regedit
HKEY_CURRENT_USERSoftwareMicrosoft WindowsCurrentVersionExplorer searchidden en 1 HKEY_CURRENT_USERSoftwareMicrosoft WindowsCurrentVersionExplorer searchsystemdirs en 1 HKEY_CURRENT_USERSoftwareMicrosoft WindowsCurrentVersionExplorerAdvanced hidden en 1 HKEY_CURRENT_USERSoftwareMicrosoft WindowsCurrentVersionExplorerAdvanced showsuperhiden en 1 HKEY_CURRENT_USERSoftwareMicrosoft WindowsCurrentVersionExplorerAdvanced superhiden en 1 HKEY_LOCAL_MACHINESOFTWAREMicrosoft WindowsCurrentVersionExplorerAdvancedFolderHiddenNOHIDDEN CheckedValue 1 HKEY_LOCAL_MACHINESOFTWAREMicrosoft WindowsCurrentVersionExplorerAdvancedFolderHiddenNOHIDDEN DefaultValue 1 HKEY_LOCAL_MACHINESOFTWAREMicrosoft WindowsCurrentVersionExplorerAdvancedFolderHiddenSHOWALL CheckedValue 1 HKEY_LOCAL_MACHINESOFTWAREMicrosoft WindowsCurrentVersionExplorerAdvancedFolderHiddenSHOWALL DefaultValue 1 HKEY_CURRENT_USERSoftwareMicrosoft WindowsCurrentVersionPoliciesExplorer NoDriveTypeAutoRun 0×00000091 (145)
Step 4 Reboot the system. Do necessary changes as in Step 2, if you have not done those. Install a good antivirus and update it. Prevent Autorun from USB Devices. To disable Autoplay of all drives Start > Run > gpedit.msc (for Windows XP pro…up) Enable : Computer Configuration > Administrative Templates > System > Turn Off Autoplay
More here: http://digitalpbk.blogspot.com
All comments are moderated. Your comments will not appear here unless approved by the blog owner. Thank you.