Most of the files that you may see again and again in
your computer is file Desktop.ini The latter, which appears in the case that
you show hidden files on your computer, This file is responsible for the file
icons show the files in your computer, When you create a new file in your
computer, the file Desktop.ini Give the file a default icon known for Windows
files and this is not only: When you open the Desktop.ini file you will find
several of the most important lines:
[.ShellClassInfo]
ConfirmFileOp=0
IconFile=Folder.ico
IconIndex=0
InfoTip=Type Your InfoTip Here.
ConfirmFileOp=0 : If this line in front of him the number 0 This tells Windows that the file you created Is not used by the Windows system In the case of Windows to delete the message does not appear 'You Are Deleting a System Folder' That tells you that it is dangerous to delete this file! As in the case if the line in front of him the number 1 this means that the Desktop.ini file prevents you from deleting the file.
IconFile=Folder.ico: And is responsible for showing the default icon for Windows and you can change the name of any other icon If you are an advanced user by changing the Desktop.ini file
IconIndex=0: In case the file icon was made up of one icon Leave it in the 0 But if a group of icons other Replace it to 1
InfoTip=: This line is responsible for
the show file information When you rounding the right mouse button of the file
, And you can change from the front line "Type Your Info Tip Here".
Anything you want
Is Desktop.ini file is a virus?
As we know in this blog role Desktop.ini file It is
evident that this file is not a virus It has an important role in Windows in
order to show the files correctly, But this does not mean that some viruses may
exploit this file When infection computer in order to disguise The show itself
as intact files and system files it.
How do I know if Desktop.ini virus in my computer?
Suffice it to go to run By pressing buttons on the
keyboard windows + R Then type the command regedit In case if any line of the
lines in these routes This means that your computer by this type of viruses:
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\DISPLAYNAME
= Human Interface Device Access
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\ERRORCONTROL = 1
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\FAILUREACTIONS = [binary data]
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\IMAGEPATH = %SystemRoot%\SYSTEM32\svchost.exe -k netsvcs
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\OBJECTNAME = LocalSystem
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\START = 4
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\TYPE = 32
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\PARAMETERS\SERVICEDLL = %SystemRoot%\SYSTEM32\hidserv.dll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\SERVICES\BITS\START = 2
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\ERRORCONTROL = 1
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\FAILUREACTIONS = [binary data]
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\IMAGEPATH = %SystemRoot%\SYSTEM32\svchost.exe -k netsvcs
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\OBJECTNAME = LocalSystem
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\START = 4
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\TYPE = 32
HKEY_LOCAL_MACHINE\SOFTWARE\FSQJGWRSYX\PARAMETERS\SERVICEDLL = %SystemRoot%\SYSTEM32\hidserv.dll
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\SERVICES\BITS\START = 2
Delete it manually or change the program that
you use protection.
0 comments: