At noon, I was only a company to work overtime, I found someone to save, or two colleagues, one is IE there is a problem, one is a computer black screen, although it is too much, it is still a little about one or two. Don't misunderstand, you are not repairing the computer, 俺 is the team of mixing development software!
The first colleague:
When a colleague opened the browser, the colleague's machine was IE6, and it was turned on behind it. It is parallel to the task bar. What music / Money / Travl, etc. Drop. After turning off, after opening the IE, it appears. What is this reason? Because every time I open IE, there will be this gadget bar, is there any plug-in?
Take a look at the configuration of IE, nothing. So I removed IE6 and try it. failure! Everything is old. It is still!
It is certain that there must be a thread in the system. So I ctrl alt del opened the task manager, take a closer look, didn't find any special processes; open "service", still no. Where is this thread?
Re-open the task manager, then take a closer look at any special process? Seeing there are two Iexplore processes in it, in fact, if in the usual circumstances, open a few IE windows, there are several processes that are normal. But today I opened an IE, but there were two processes in it, huh, it's a bit interesting, I have been interested.
I will end the next process, strange, after this process, two or three seconds started again, so I ended again, it started again, after repeated, I found that after the end of the process, sometimes A Heart IDle.exe startup item, wait until it is complete, this startup item becomes the name of Iexplore.exe, huh, huh! You must be it! This beeworm! I finally discovered this, I want to cheer! Yay!
But how to end it? I can't get its service name in "Service", so I search on, I have learned online, I have to find out if there is anything like someone, how is it dealive, people are very disappointed, my colleague It is a head color. She is estimated to be the first one, there is no information on the Internet! Then I can only start my mind, then search the search in the calculation, ---- still no! I can't touch my mind.
It is impossible, if it can be found in the computer. But where is it? I opened the registry, go to see, the computer's startup item, huh, this is discovered, found a suspicious visitor in the startup item, it is "c: / documents and settings / all users / Application Data / DoesburnInfoView / Heart idle.exe, the original, here!
So I rushed to all the addresses, one word, "delete"! Oh, sorry, this is two words. This is coming, the task manager can't end, and I can't delete it. How to do it?
In-safe mode.
This beeworm is very powerful, safe mode is still deleted, the process of the task manager is ended, it starts again, I end, it will start, like playing hide and seek, it is a little wildfire Blowing, the spring breeze is born. This is a headache. I found this virus, there are two files in the DoesburnInfoView folder, Heart idle.exe, meidagplsurf.dll, I look at them, and I will be helpless, I can see them, but there is no way, I can't delete it. But I am not discouraged. I don't believe it! Take him, I found this EXE file with a notepad, huh, Of course, it is garbled! However, there is no tight code, I will delete you, you can't start it normally! Ok, Ctrl A, Del, save! Haha! I found yourself is quite smart! This EXE is able to change, but that DLL file can't be deleted, tell me "Using". The machine's machine is 2000 Server, and there is no DOS when the system is installed. However, if you come back, it is now estimated that DOS is not a few. So, I will open the task manager to try the end process, haha, haha, this turned out to end.
Then the following is the sweeping work, and completely delete this folder!
Start, go to normal mode, open the visitors, huh, success! This virus is like this by me!
But remove this virus, I regret it again, I really shouldn't delete it. I should leave it, be a sample, pass it to Rising, Jinshan's company, and I have to reward!
Hey! unwise! Lost a chance to make a lot of money or make money! unfortunately!
Second colleague:
His machine does not know why, only in safe mode, enter the normal mode to log in black screen. Others, 俺 俺 hardware is not too understanding. But since you are like this, you can only die as a live horse. After I asked some cases, I suspect that, is there a problem with the graphics driver?
He suddenly realized that he said that he installed a system Update, which didn't know how it didn't know how to do it. So in safe mode, reload the graphics card, everything is OK!
Oh, this is just a hacker!