How to deal with a virus that can't be killed

Source: Internet
Author: User
Tags file system version

Often hear people say, virus software report killed So-and-so virus, but after reboot the virus still exists, cannot kill. The main reasons why the virus cannot be killed are:

1. The virus is running. Because Windows protects running programs, antivirus software is unable to kill a running virus. Even if the virus is actually killed, the virus that is active in memory when the computer shuts down normally will duplicate a virus to the hard disk.

2. Viruses are hidden in the system-restored folder "_restore".

So how do we deal with this kind of problem? Here are a few suggestions that I have listed:

1. The virus process must be halted before anti-virus is done in Windows. For windowsxp/2000, you can use Task Manager (Ctrl+alt+del three-click) to view all current processes, and for windows98/me, you can use the Hack starter Toolbox or ATM to view processes. Determine which is unknown to stop or see which is not pleasing to stop which, the process is commonly known as "kill process."

Do not be afraid of error, because it will not cause any damage to the computer, the most is the panic. Note that the operation of the kill process sometimes takes two times to succeed. Some viruses have two processes, protect each other, and kill one will be found and recovered by another. At this point should be the virus in the registry to remove the startup items, and then suddenly power off the way to restart the computer, and then antivirus.

2. Use the Kill tool in Windows Antivirus. Have to use the latest antivirus version.

3. Disable System Restore. Disable the method in Windowsme is: Right click on "My Computer"-Properties-performance-File system-troubleshoot-prohibit System Restore. Disabling methods in Windows XP are: Control Panel-System-System Properties-System Restore-turns off System Restore on all drives. Then use a floppy disk or USB disk to start the computer, in DOS to delete the _restore folder.

4. In DOS Anti-Virus does not exist to kill the problem. General anti-virus software can be made floppy version (including at least 3 floppy disks), with the first disk to start (CMOS must be set in front of the floppy disk to start in) after the prompts into the other disk can be directly anti-virus. Rising floppy version of the need to use the mouse to determine the antivirus drive, and Jinshan poison PA floppy version of the default whole machine killing.

In fact, the use of Gold Mountain poison in DOS antivirus can be simpler, use the normal floppy disk boot disk or U disk Startup disk to start the computer, the first switch to C disk, and then enter the directory of Jinshan Poison (command: CD kav or CD kav5, and version-related), and then enter the KAVDX, return to start antivirus.

5. Supplementary operation. The registry should also be repaired after the virus has been killed.



Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.