An unknown virus is creating a text file at my desktop, which is also running process like : cmd.exe, xcopy.exe, reg.exe. the consequences are : it has removed folder option, taskmanager, regedit etc. the most irritating part is that it shuts down the windows after some time (not restart). if i manage to kill the process like cmd.exe (by enabling it from gpedit.msc) then virus doesnt shuts down the pc or doesnt spread if pen drive is inserted. But when i restart the pc it starts once again.
i have checked drives by doing showing hidden system files and folder where it creats a vbb.exe folder and a autorun.inf file.
i have checked the process through process viewer from microsoft which show s that cmd.exe process is running under the medeaplayer.exe folder on that process window. which resides in the system32\usmt\ , i have checked maually and i havent got any file like that on that usmt folder.
Help me out...............plz