-
I've been poisoned and scored two big steps:
1. Enter the safe mode, if there are other non-system processes in the process, end them all, and confirm that the process table is only running except for the system process;
1. Regedit, clrl+f, logo1exe,,etc.;
2. Find the [hkey local machine software soft downloadwww] auto = 1 in the registry and delete the downloadwww primary key;
3. Delete the files in the C:Windows or C:Winnt directory;
4. Create a few new text files in the C:Windows or C:Winnt directory, and change all of them to the name of the virus file you just deleted, that is, pay attention to change the extension together, and add the read-only attribute, so as to ensure that the two virus subjects will not be generated in the future, and then modify the startup items of the registry, so that these two virus programs (now they are no longer viruses, but programs you built yourself) do not start with Windows, otherwise because such programs cannot runYou can try to open the file yourself, and it will only say "Not a valid executable", which means that you have succeeded.
6. Open Group Policy -- Run User Configuration -- Management Module -- System -- Specify not to run the program for Windows Click Enable and then click Display Add logo1 exe that can prevent the running and outbreak of logo1 virus.
Second, hand kill 1, first end the process, logo1exe 。Then find these 3 files in the Winnt (Win2K system) windows directory under the C drive.
logo1_.exe , delete. Note that it is better to be in safe mode. If there is a file created on the same date, delete it as well.。。 For example: This garbage.
2. Ctrl+F in the registry to find logo1The key value of the exe. Delete..
3. Delete this file in each folder. With a batch, the content is.
del c:\_/f/s/q/a
4. Update to the latest scan with Symantec's Norton. The main thing is that the exe file is infected.。。 Inserted ** into it.。。
Antivirus complete! Don't kill this virus. Slowly there will be other problems. For example, nothing can be used. Friends who go online pay more attention!
It doesn't matter if you don't enter safe mode, if you get it, it is recommended to enter safe mode, and your changes will be saved!
-
Use manual and software to kill the virus together, this virus I have encountered before, it took me a week to get it done, I think the cure is to forcibly get rid of the inhibition "logo1".exe" and "rundl132", as for the other accompanying viruses, those that use Kaspersky to upgrade the latest to safe mode can be killed, and after a few days, they will not be clean. Let's see if my method works, follow the steps below:
1:hkey_local_machine\software\microsoft\windows\currentversion\run"
In the key-value window on the right, find the corresponding item of the virus or delete all the items that are randomly started, and delete it.
2: Open Task Manager, note that the virus file is the system file; The virus is born in the windows directory, logo1exe, these three files.
Select Tools - Folder Options - View (shortcut press Alt+T and then press O)."Hide protected operating system files (recommended)."The hook is canceled and put"Displays all files and folders"Selected!
Okay, reboot, to safe mode. Use powerrmv to delete the virus files you said and in them"Suppresses object regeneration"before ticking so that it doesn't appear again. Use this software to remove logo1
exe,。As for being embedded in the explorer, open the task management to end the process, and then the desktop disappears, don't be afraid! Select File (f) in Task Manager – New Task (Run.
n) "Then run the desktop and it comes out again!" Then delete the C: disk.
Enter regedit to find the registry key in Runtime: [hkey local machine software soft downloadwww] to delete it, and then press Ctrl+F to find the registry key and all the keys in this item to delete it.
4: Get a Kaspersky upgrade to the latest, then uncheck the msconfig startup item, and go to safe mode to scan and kill the remaining viruses.
5: The root of the cure lies in "logo1".exe" and "rundl132".
The exe files that do not work should be corrupted, try to fix those exe files or reinstall the important software to execute.
Final suggestion: If the above method does not work, it is recommended that you reinstall the system, because at this time your system is very badly damaged, and there is no point in wasting any more time.
-
Zhongwei Jin should be. The exe file icon has changed.,You can still use it as usual.,It should be another virus or variant.。 If the real Willy, the reinstallation system will not work, you have to put all of them first.
The exe file is all deleted and reinstalled to work,Because。 The exe file is already infected.
Wiggin kills to be honest, it's not easy to use.,There will be a lot of useless files under the system folder after use.,It's better to reinstall it simply.,And the kill is not guaranteed to kill clean.,I was in 1 month ago.,It's useless to kill it at all.,Finally, the entire hard disk was gridded.。
-
Immediately next Wiggin kill, and then kill in safe mode.
Address reference. Redo the system, you can't touch the exe file, otherwise it will be infected again.
-
Because this thing is a very old virus. You can basically kill them.
It's better to use Jiang Min's special killing tool, and the effect will be a little better.
-
In the DOS system, use a special antivirus software suitable for the DOS system.
Or just format all the disks and reinstall the system.
-
Like you last time, I used the killing tool to kill all the infected people. The exe program file has become no icon.,Can't find the win32 executable file.,You install a Rising and upgrade to the latest version that can automatically kill the infected virus.。 exe and automatically fix win32 problems At this point, your program will return to normal, and the icon will return to your original icon instead of the board.
It's my personal experience, and it definitely works.
-
Remember,When you enter the safe mode, you have to enter as an administrator.,That won't restrict your permissions.2.,If you can't kill the enhanced version of ewido.,First kill the next green version of Kaba.。
-
Worm Viking
It is mainly spread through network shares and infects all files in a computer system with the suffix name. executable file, which causes the executable file to not start and run normally, including the antivirus software in the computer system, the worm variant will terminate the antivirus software, which will cause it to not work properly. It propagates very quickly, and once it enters the local area network, it will quickly bring down the entire local area network.
It also modifies the auto-start entries of the system registry after it has been run in the infected computer system so that the worm runs automatically when the computer system boots.
Here's the way:
-
There is no way to fix it.
If you find it troublesome, you can't help it, you usually have to take care of your computer and don't let it poison.
You are good to him, and he is good to you.
-
I've also been hit by formatting the C drive, I can't do it, I have to format the whole disk.
-
Agree with the upstairs, that can't be fixed, unless you do a generational restore, that virus is really disgusting
-
The grid bar is relatively much more convenient.
-
From the installation system, you can't finish killing
-
There is a backup, and it is useless, my friend has been in it, even if it is a backup, it will still prompt you when it is restored
The best way to do this is to remember from the system that you do well is to do 2 systems.
-
For the next Wiggin virus killing tool, remember to go to the safe mode to kill the effect better, boot the computer and press F8 to enter the safe mode, and then start the special killing tool to kill the virus.
-
Immediately next Wiggin kill, and then kill in safe mode.
-
Wiggin is a virus that is difficult to completely detect.
It is recommended that you format the entire disk and reinstall the system
-
The next special kill, kill in safe mode.
-
Sympathy, brother, I've just encountered this situation, I reinstalled the system in a fit of rage, ok, hehe.
Don't forget to keep a backup of your useful stuff
-
Kill VikingKiller with Wiggin
It works great. Give me your email address
I'll send you one.
-
Rising "Weijin Virus Killing Tool Get rid of worms Chinese Simplified Green Special Edition.
-
You'd better use a 360 antivirus software for a full scan, or if not, use a 360 first aid kit!
If it still doesn't work, it's best to restart and keep pressing F8 to enter safe mode for antivirus!
-
Finally, please pay attention to the fact that there is a Weijin patch on the Internet, don't go down, it's a backdoor software, my machine was tricked, and the cost of 13 system reinstalls is all because of this patch, and finally a 120g hard disk is broken (too many erases) Later, a knowledgeable friend helped me find out that every time I install this patch, it will attack within 8 hours, Weijin is very hidden, harmful, a lot of important work data is lost, and the loss is immeasurable (I hope to pursue criminal responsibility).
-
What is the meaning of the Waijin virus, symptoms, and solutions.
-
Upper 360 or NOD 360 software management has below.
What should I do if there is a virus in my computer? There are many reasons for viruses in computers, let's take a look at what to do if there is a virus in your computer, I hope it can help you solve the problem. >>>More
It's so pathetic... I can't even type.
Your computer is equipped with three anti-virus parts.,It's a bull in itself.。。 >>>More
If you're saying that all your hidden files won't show up no matter how you set them, use the following method: >>>More
Place them all on your desktop.
Don't go into my computer or any partition during the whole process. >>>More
It's hard to say.
Your computer is infected. >>>More