{"id":128,"date":"2013-11-08T08:44:40","date_gmt":"2013-11-08T03:14:40","guid":{"rendered":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/2013\/11\/08\/how-to-locate-viruses-using-the-attrib-command\/"},"modified":"2021-12-05T11:58:40","modified_gmt":"2021-12-05T11:58:40","slug":"how-to-locate-viruses-using-the-attrib-command","status":"publish","type":"post","link":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/2013\/11\/08\/how-to-locate-viruses-using-the-attrib-command\/","title":{"rendered":"How to Locate Viruses Using the Attrib Command"},"content":{"rendered":"<p style=\"text-align: justify;\">Nowadays, Antiviruses can be very expensive. If you don&#8217;t have any money to spare, and can&#8217;t spend your money on a antivirus to delete a virus. You can locate a virus manually using the\u00a0<b>Windows command prompt<\/b><\/p>\n<h2><u>Steps:<\/u><\/h2>\n<p>1. <strong>Go hit start<\/strong><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"wp-image-129 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-1-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-1\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>2.\u00a0<b class=\"whb\">Then click on Run<\/b><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-130 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-2-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-2\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>3.\u00a0<b class=\"whb\">In the searchbox type in\u00a0<b>cmd.<\/b>exe<\/b><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-131 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-3-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-3\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>4.\u00a0<b class=\"whb\">When you click on OK a windows should come up Simalar to this:<\/b><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-132 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-4-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-4\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>5.\u00a0<b class=\"whb\">First, type in the\u00a0<b>Infected Drive<\/b>\u00a0such as for example:<\/b>\u00a0<i>dir\/p C:<\/i><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-133 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-5-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-5\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>6.\u00a0<b class=\"whb\">DON&#8217;T HIT ENTER YET!<\/b>\u00a0Type in the end switch such as s &#8211; h *. * \/s \/d and press ENTER<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-134 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-6-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-6\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>7.\u00a0<b class=\"whb\">The command prompt will load all the files in your drive.<\/b>\u00a0If you see anything suspicous for example: Autorun.inf or a .exe file. These files you need to watch out for.<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-135 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-7-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-7\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>8.\u00a0<b class=\"whb\">If you see the .<\/b>exe and the autorun.inf than you have just found a tainted file.<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-136 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-8-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-8\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>9.\u00a0<b class=\"whb\">Write the program name and where the program is located.<\/b><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-137 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-9-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-9\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>10.\u00a0<b class=\"whb\">Rename the\u00a0<i>Autorun.<\/i><\/b>inf so you can open it without activating the virus. Rename it as a rar. extension.<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-138 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-10-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-10\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>11.\u00a0<b class=\"whb\">Go to start, and double click the\u00a0<b>My computer<\/b>\u00a0icon.<\/b><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-139 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-11-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-11\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>12.\u00a0<b class=\"whb\">Select the tainted drive, that has the infected file.<\/b>\u00a0Find the program directory that contains autorun.inf.<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-140 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-12-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-12\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>13.\u00a0<b class=\"whb\">Right-click on the file you renamed &#8220;virusfile&#8221; and choose &#8220;Delete.<\/b>&#8221;<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-141 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-13-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-13\" width=\"640\" height=\"480\" \/><\/p>\n<p>&nbsp;<\/p>\n<p>14.\u00a0<b class=\"whb\">Right-click on the &#8220;.<\/b>exe&#8221; file and choose &#8220;Delete.&#8221; You have now removed the virus from your computer&#8217;s hard drive.<br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-142 aligncenter\" src=\"https:\/\/rajeshbaranwal.com\/blog\/wp-content\/uploads\/2013\/11\/670px-Locate-Viruses-Using-the-Attrib-Command-Step-14-thebaranwal.jpg\" alt=\"Locate-Viruses-Using-the-Attrib-Command-Step-14\" width=\"640\" height=\"480\" \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Nowadays, Antiviruses can be very expensive. If you don\u2019t have any money to spare, and can\u2019t spend your money on a antivirus to delete a virus. You can locate a virus<\/p>\n","protected":false},"author":1,"featured_media":1354,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[22],"tags":[41,28,30,24,32,25,37],"class_list":["post-128","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-gain-knowledge","tag-attrib","tag-command","tag-learning","tag-rajesh-baranwal","tag-technology","tag-the-baranwal","tag-virus"],"_links":{"self":[{"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/posts\/128","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/comments?post=128"}],"version-history":[{"count":3,"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/posts\/128\/revisions"}],"predecessor-version":[{"id":1371,"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/posts\/128\/revisions\/1371"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/media\/1354"}],"wp:attachment":[{"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/media?parent=128"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/categories?post=128"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rajeshbaranwal.com\/blog\/index.php\/wp-json\/wp\/v2\/tags?post=128"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}