How to Remove Virus from USB Drive?

For the most encountered problem in a computer was a virus. A virus can harm your file, steal your passwords and accounts, and it maybe destroy your computer. Sometimes it is annoying for the liability and performance of your computer because of this sucking viruses and spywares. They tweak your system files to become a slow processing and make your PC dead, virus is a killer parasites.

Firstly, in removing a virus from your USB drive in a manual method rather than using any antivirus unto your computer. But we are recommended you to use any updated Antivirus to be make sure that your USB drive will be totally cleaned. This is only a tips for a manually method. OK.

  1. Before inserting the USB drive into your computer, you must enable first the Show Hidden Files Option. How can you do this:

    Go to My Computer and select the Tools tab, then Folder Options. After the Folder Option box appeared, click the View tab. As you have see the Files and Folders groups, under your Hidden Files and Folders please enable now the “Show Hidden Files and Folders” option and also uncheck the “Hidden protected operating system files (Recommended)” option. And click Apply then OK button to apply the setting you changed.

  2. Disable your Autoplay drive setting

    Go to Start Menu then Run and type gpedit.msc, when the Group Policy appear go to Administrative Templates, then System, double click the Turn Off Autoplay and select the Enabled option and select All drives and click OK button to apply the setting you changed.

    (Note: Either you can not do this step and you can move to step #3, but sometimes some viruses once you inserted your USB drive, the virus will executed in process of drives autoplay setting.)

  3. Insert now your USB drive, press Ctrl + R to open the Run, then type where your USB drive is, it maybe like this drive D:, E:, F:, or G: after you USB is open, delete the all unknown hidden files in your USB drives if they exist. Like example: copy.exe, svchost.exe, scvhosts.exe, New Folder.exe, Data Administrator.exe, smss.exe, FunnyUST Scandal.avi.exe, Autorun.inf, amvo.exe, kavo1.exe, kavo.exe, Temp1.exe, FS19831.vbs, Azkaban.vbs, Azkaban.bat and many more......

  4. Unplug your USB drive in Safety Removable method. And insert again to check if the virus was remove by using this steps.

    OK you are done! Have a nice day! Hope this tips will help for everyone.

How to Remove SCVHOST.EXE, SVCHOST.EXE Virus Manually

This are the following tips on how to remove the SCVHOST.EXE virus/worm. Firstly we must know what is SCVHOST.EXE is.


In some antivirus they are detected as W32/YahLover.Worm.gen from McAfee Antivirus and Win32/Autorun.R.worm from NOD32.

This virus will installs itself into your PC by using its INF file autorun.inf. The Autorun.inf file has an scripts that will trigger to execute the SCVHOST.EXE. Mostly in a removable disk is this occurred as you noticed that there is an Autoplay instead of Open. Once you double click the drive or removable disk, the autorun.inf run its scripts that this will trigger to execute the SCVHOST.EXE and spreading itself unto your system. It also copies itself through all your shared folders directories and on your computers throughout the network and run itself in the registry entries remotely using a GUEST account (through System:Remote).


  • When pressing Ctrl+Alt+Del it blocks to launch the Task Manager
  • It blocks the Registry Editor.
  • When you try to go to the command prompt CMD, it will restarts the computer.
  • The shared folders will duplicates itself to different locations of. The duplicated virus uses a FOLDER icon with an .exe file extension. The configuration of your Yahoo Messenger has been changed.

How to Remove It

OK here we go, you must follow this step on how to remove this virus in manually method:

  • Restart your PC and press F8 and select the option Safe Mode Command Prompt Only
  • And after you log-in the command prompt you must log-in as Administrator.
  • Type cd C:\windows\system32
  • Type dir /ah, to display all hidden files on this directory folder. You will see the following files which is used by the virus to spread itself: AUTORUN.INI, BLASTCLNNN.EXE, and SCVHOST.EXE
  • Type CD\

You are almost done, reboot your PC you may seat back and relax.. :) while loading...

Go Start Menu and click the Run and type the REGEDIT command. Take note guys before make any changes into your Registry Editor you must make a full back-up to your registry to avoid system errors. :)

Look the location entry:

    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run, if you see an entry Yahoo! Messengger (it’s spelled like this) with a value c:\windows\system32\scvhost.exe, Delete this entry.

Look the location entry:

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon, in the entry named: SHELL, a value = Explorer.exe,SCVHOST.EXE. Edit this value, delete the SCVHOST.EXE only and the value must be Explorer.exe. Once you delete all this value, your computer will not login anymore.

OK we are now done.. Please Restart your PC now and Enjoy!!! Thank you and hope this tips will help for everyone..Just post your comments about this problem.

How to Remove the Amvo.exe Virus Manually

First of all you we must know what is the amvo.exe is? what the symptoms when we have amvo.exe in our PC and how to remove it manually without using any software. Ok here we go!

What is Amvo.exe?

  • Amvo.exe is Trojan/Backdoor


  • Folder Option is not working - you cannot enable the Folder Option or show the hidden files running into you computer.
  • Hidden file problem
  • Always open new windows in all drives
  • Error occur of the memory reference (Low Disk Space)

How to solve this?

This is the solution on how to remove the amvo.exe and to fix the folder option problem. Just follow this steps:

  1. Uncheck amvo.exe from msconfig>> startup (type msconfig in run and click on the startup tab) also and restart your system
  1. Click Start > Run and type REGEDIT
  2. Go to HKEY_CURRENT_USER > SOFTWARE > Microsoft > Windows > CurrentVersion > Explorer > Advanced
  3. On the right side, double click the hidden value and give it a value of 1.
  4. Same for HKEY_LOCAL_MACHINE > SOFTWARE > Microsoft > Windows > CurrentVersion > Explorer > Advanced > Folder > Hidden > SHOW ALL Change the value of Checked Value to 1.
  5. Check if your Folder Option if its working now. If it works! OK you are now ready to delete the Amvo.exe virus now.

Go to your Folder Option and enable the show all the hidden files and you remove the following files if they are exist in the exact location or directory:

c:\windows\system32\ amvo.exe
c:\windows\system32\ awda2.exe
c:\windows\system32\ mvo.dll
c:\windows\system32\ amvo1.dll

Lastly go to Run and type cmd then type regedit, press Ctrl + F to find the files amvo.exe and delete it. After that, reboot your PC. OK that's it. Guys please your comments if your PC is working now for using this procedure.. Thank you..