Today's anti-virus tools have many categories and varied categories, but many cannot completely solve all kinds of stubborn viruses. It's really amazing. Sometimes a lot of anti-virus tools are used to eradicate the virus, especially the various IE viruses and malicious code, which makes it difficult for many netizens to defend against the virus. When I open IE, I will pop up an advertisement website window? Is IE Tampered? Is it tampered with after restart? Is system resources seriously lost? These are common manifestations of IE viruses. Nowadays, many viruses are produced by online criminals and advertising companies. The anti-virus tool is too late to be updated. When the anti-virus tool is updated, your computer will be paralyzed.
In this case, you sometimes have to reinstall the system. I was too anxious to write my paper once. I used N anti-virus tools, but I still couldn't clean them, So I simply reinstalled the system. The cost is also painful. Should the system be reinstalled if something goes wrong? No! Now I teach you how to manually remove stubborn IE viruses when no antivirus tool can be used. Everything is desperate to deal with all kinds of sudden viruses and new viruses! You don't need to be a antivirus expert. These are actually very simple. Please refer to the following three tips for manual antivirus.
I. Preliminary defense of the first move: Preparations
At this stage, I suggest you first try a variety of anti-virus tools to kill all the viruses that can be killed first to reduce your workload. For example, the IE virus exclusive tool, such as the 3721 Yahoo Assistant (which can kill most IE viruses and restore browsers), the Anti-Spyware expert, Kingsoft drug overlord, rising star, Jiangmin and other common anti-virus tools. What you need to do in the preparation stage is to use some of the virus killing tools to kill most of the common viruses. In addition, if you cannot delete the virus, you can try to press F8 to enter the safe mode when the system starts. In this case, you can start the antivirus tool and IE Repair Tool to scan and kill the virus. Of course, some artificial new viruses can still escape this level. Use the next trick.
2. counterattack against the virus: scan the process to scan and kill the virus
My computer once turned the CPU into a hot box and found that the RUNDLL32.EXE file runs 99% of the CPU resources, which is in the SYSTEM32 folder in WINDOWS and should not be a virus. The biggest possibility is that it is used to run DLL files with certain viruses. And cause serious damage. And resolutely cancel the launch. You can find the location of the file and delete it. If it is not in the system folder, you can delete it with confidence. In addition, we recommend that you use hijackthis, a free process scanning tool. You can find its Chinese version to scan the process. You can exclude it one by one based on the scan process files, normally, there are comments next to normal files.
Of course, when you see some abnormal files, especially those hidden in the System32 folder, some abnormal .exe files, and their parent folders. Do not be afraid. Go to c:/windows/system32 and find the file and its parent folder. Sometimes, you may be surprised to find that this executable file virus is discovered by you. Some virus execute programs. When you view the properties, it turns out to be a XX advertising company, I remember clearly what a spam advertising company is. It is really a spam company that has made some spam advertising viruses to harm people! These viruses are usually a single executable file stored in SYSTEM32 or a folder. Leave it alone. Fortunately, the virus is also written about who made the virus and what else to wait. It will be deleted immediately! Some cannot be deleted. They are running. You need to delete them with some file shredders. It seems that SP2 WINXP has its own file crushing function. In this case, you may be suspicious. The special extension is the file named .exe. Find its hidden folder and check its attributes and modification date. Some are the days when a virus often occurs, and it is easy to detect it as a virus and block it directly! Some are even more "Ox", and there are some advertisement websites in the parent folder. ini text files and other folders. This is okay. You can open it and see what is in those folders. Sometimes you can find these. the ini file contains the addresses that harass your malicious website or other advertising websites. After discovering the folder, let's look at the modification time of the folder. If it is a virus, what are you waiting? The entire abnormal folder is deleted at once! In this way, you can find hidden system files through process scanning, root-seeking methods, and directly delete them manually by checking folders and abnormal file attributes!
3. Take the initiative to eradicate residual viruses
Sometimes, some viruses are not running, but run at some time after you open IE or some events are triggered. Some are still some. DLL files that are hidden in the system folder, which are hard to find and often mistakenly believe that they are system files and do not dare to scan and kill them. These are the most stubborn viruses. These can also be eliminated through the third move. The most common method is to modify the creation time based on folders and files. First, you can adjust the folder attribute to view all files, including hidden files and system files. Right-click "jian" and select "View Details" by viewing the file. The detailed information list is displayed. You can sort the information by selecting the latest time, see some newly created folders and some files. If you remember the first day of the virus attack, you can directly find that the creation time of the abnormal folders is roughly the same as that of the virus attack, and you can directly view them, sometimes it is often found that these folders contain information about the advertising website or other abnormal content. Delete these folders! If you have installed software recently, you will also know that, if not, it is the folder created by the virus. Deleting these newly created instances does not cause any loss to your system operation.
You don't have to worry about big data. Delete all! The hosts file, whether found in previous processes or not, can be deleted with confidence. If not found in the process, you can also delete it without hesitation, because these newly created files will not affect the system operation. In addition, this is to take the initiative to look into a folder, of course, you can use a more intelligent method, WINDOWS search to find the latest modified files, so that one by one to delete the analysis. These methods are the highest level of manual antivirus. You have created a new file by yourself. You do not need to worry about it, either by yourself or by a software installed recently. These are probably viruses. In particular, the first day of a virus attack is probably a virus. For security, delete it directly!
Through the above three methods, I recently manually killed many stubborn new IE viruses. This avoids system reinstallation. In fact, it is a pleasure to manually eliminate viruses. In fact, anti-virus is also so simple. In addition, we recommend that you do not install or randomly download or click the control on the Internet. Check the materials and try to go to a large website instead of a small website. In addition, you can set up a WINDOWS Firewall, install a virus firewall, and use the antivirus tool to scan and kill viruses for a period of time. If something goes wrong, use my three tricks!