Monday, December 20, 2010
College】 【weak procedures often did not respond to reason (3).
<br> Third, the virus articles <BR> <BR> If your computer is infected with a virus, then the system will be substantially slower speed. .Virus, the first occupation of the memory of this base as the base and then they began to diffuse in memory endlessly replicate themselves, as it is too large, the system will soon take up a lot of memory, leading to normal operation .due to lack of main memory and slow down, can not even start; the same time turn-virus program will force the CPU implementation of useless junk programs, making the system is always busy, thus affecting the normal operation, cause the computer to slow down. .Here we introduce some can make the system slow down the virus. .<BR> <BR> 1, the system slows down the bride virus <BR> <BR> virus type: hack <BR> onset time: a randomized <BR> mode of transmission: network <BR> infected objects: Network <BR> .degree of vigilance: ★ ★ ★ ★ <BR> <BR> virus introduction: <BR> <BR> this virus can Windows2000, WindowsXP, etc. running under operating system environment. .Runtime will automatically connect www.hotmail.com website, if you can not connect to this site, the virus will sleep a few minutes, then add yourself to the registry to modify the registry entries from the start, the virus will release the virus body and a four .vulnerability of the virus messages and e-mail through the mail system out recklessly, the virus will be released FUNLOVE LAN computer virus infection, the virus will kill the last of dozens of known anti-virus software, failure of these anti-virus software. .<BR> <BR> Virus signatures <BR> <BR> If you find that the computer has these characteristics, it is likely in this virus. .<BR> <BR> · The virus will run automatically connect www.hotmail.com website. .<BR> · Virus release Bride.exe, Msconfig.exe, Regedit.exe three files to the system directory; release: Help.eml, Explorer.exe file to the desktop. .<BR> · Virus entry in the registry HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun Regedit.exe to add the path of the virus. .<BR> · Virus running will release a FUNLOVE virus and the implementation, and FUNLOVE virus will multiply in the computer, causing system slow down network traffic. .<BR> · The virus looks for e-mail address of the computer, and then follow the address to send out a large number of titles are: <hostname of the computer is infected "(Example: If the user's computer name: Dong Zhang, the virus e-mail .title: Dong Zhang) of the virus mail. .<BR> · Virus also killed dozens of famous anti-virus software. .<BR> <BR> The user if their computer is found in all or part of the above phenomena, it is likely in the Bride (Worm.bride) virus, the user immediately with anti-virus software to clean hands. .<BR> <BR> 2, the system slows down the A Fulun virus <BR> <BR> Virus Type: Worm <BR> onset time: a randomized <BR> mode of transmission: network / file <BR> infected object: .Network <BR> degree of vigilance: ★ ★ ★ ★ <BR> <BR> virus introduction: <BR> <BR> this virus can Windows9X, WindowsNT, Windows2000, WindowsXP, etc. running under operating system environment. .Re-run the virus itself to the TEMP, SYSTEM, RECYCLED directory, and randomly generated file name. .The virus is running, will consume a large amount of system resources, the system was slow, and kill some of the anti-virus software running, the establishment of four threads in the wild in the local area network communication. .<BR> <BR> Virus signatures <BR> <BR> If you find that the computer has these characteristics, it is likely in this virus: <BR> <BR> · the virus will run its own complex to the TEMP, .SYSTEM, RECYCLED directory, file names were <BR> · the virus make the systemrun time was slower <BR> · virus will kill some of the anti-virus software running <BR> · virus modifies the registry entries from the start .the self-starting <BR> · virus creates four threads in the local area network communication <BR> <BR> user if found on your computer over all or part of the phenomenon, it is likely in the "A Fulun (Worm. .Avron) "virus, the virus is not fixed because the virus file name, so best to use anti-virus software removal. .<BR> 3, <BR> <BR> vicious worm Sasser Virus Name: Worm.Sasser <BR> Chinese name: Sasser virus <BR> alias: W32/Sasser.worm [Mcafee] <BR> Virus Type: Worm .<BR> affected system: WinNT/Win2000/WinXP/Win2003 <BR> <BR> virus infection symptoms: <BR> <BR> · inexplicably crash or restart the computer; <BR> · system was very slow, cpu occupation .100%; <BR> · network slow; <BR> · most importantly, the Task Manager There is one called "avserve.exe" the processes running! .<BR> <BR> Failure mode: <BR> <BR> · Lsass using WINDOWS platform widespread vulnerability, opening hundreds of other online threads non-stop attack other systems, clogging the network. .Virus attacks can allow the system to stop the countdown to restart. .<BR> · And most of the recent worm viruses, the virus does not spread through the mail, but the machine through the command <BR> vulnerable to download a specific file and run, to achieve infection. .<BR> · File name: avserve.exe <BR> <BR> solution: <BR> <BR> · Please upgrade your operating system from attacks <BR> · Shield Personal Firewall ports open: 445, .5554 and 9996, the procedures to prevent access to the network named avserve.exe <BR> · manual solution: <BR> <BR> First, if the system is WinMe / WinXP, then turn off System Restore; <BR> <BR .> Step one, use the process to end the virus processes Program Manager <BR> <BR> right-click the taskbar, pop-up menu, select "Task Manager" to bring up "Windows Task Manager" window. .In Task Manager, click the "Processes" tab, find the virus in the cases of the table column process "avserve.exe", click "End Process button", click "Yes" to end the virus processes, and then close the "Windows Task Manager .control "; <BR> <BR> Step two, find and remove virus program <BR> <BR> through the" My Computer "or" Explorer "into the system installation directory (Winnt or windows), find the file" avserve. .exe ", delete it; and then enter the system directory (Winntsystem32 or windowssystem32), find the file" * _up.exe ", to remove them; <BR> <BR> step three remove the virus in the registry to add the item <BR .> <BR> open the Registry Editor: Click Start - "Run, type REGEDIT, press Enter; <BR> <BR> in the left panel, double-click (press the arrow in order to find, locate and double-click): <BR .> <BR> HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRun <BR> <BR> in the right panel, locate and delete the following items: "avserve.exe" =% SystemRoot% avserve.exe <BR> <BR> close the Registry Editor. .<BR> <BR> <BR> <BR> <BR>.
Labels:
[:]
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment