2ndglance

疾惡如仇,柔情似水。重情感,意境,和哲理
個人資料
正文

電腦滅毒備忘錄

(2009-03-05 10:18:55) 下一個

前幾天,我的一個notebook突然 染了病毒。剛開始時,是上網後就有網頁幾十頁自動跳出,後來竟然log in 後就自動有文件跳出,要我買它的去毒軟件。這次中毒比過去的都厲害。它把notebook system restore function inactivated

1) 下載去毒軟件,malwarebytes anti-malware at www.download.com

裝載並清理病毒。反複做了3次。 Restart the computer and press F8 to enter Safe modeClean up the computer system again

2) 下載去毒軟件,Combofix

裝載並清理病毒。 同時自動修複了system restore
3)
Set up system restore point
係統恢複了正常。

I should stop here. But I did not. Then my new nightmare came. Since malwarebytes software scan still detected 4-8 trojans or backdoor worms, I download Super Anti-spyware software from www.download.com. Install and run the software. It detected 37 more viruses or malwares. After deletion, the computer suddenly crashed. Now the computer acted very funny. It turned on and off by itself. But it was stable under Safe mode.

After several hours of trying with different anti-spyware softwares, the system was still unstable. So as a last resort, I used system restore, but it crashed during the system restore. Finally, I searched the net and found out that it was possible to use system restore under safe mode with command line setup. Using the one-line instruction from Microsoft support site, I was able to restore the system to the state before using the Super-anti-spyware software. Thank God, it was done.

My suspicion is that there might be some hidden incompatibilities between different anti-spyware softwares.  Deletion caused instability of the window system.

後記:
雖然沒有popup,但係統仍然很慢。 download microsoft malicious software removal kit。 Removed 8 infected files after full scan.  Then download window defender.  After full scan, it found another trojan vundo.  After removal, now the system seems quite fast as before.

後後記:
本以為everything is fine after all these troubles.  However, last Thursday, the notebook suddenly showed up a lot of winlogon.exe errors. After cleaning up with Window Defender, the computer could not log on or immediately shut down after logged on for a couple of seconds. 

1) Tried to start in safe mode and still got the same results. 
2) Tried repair windows by reinstalling the windows using the reinstall CD.  It did not work .
3) Tried to repair windows using window recovery console.  Could not get in because the password could not be set.
4) Tried to reinstall the windows using original folders.  Worked but still have virus infection. However, with this option, one still can copy original data files or folders.
5) Tried to reformat the C drive before reinstall the windows.  This time worked.
6) Purchased CA anti-virus plus anti-spyware software package.  Install them in this and two other computers.  For the two other computers, both spywares and viruses were found. Some of the viruses were actually attached to some of the free anti-virus softwares. I purchased CA anti-virus plus software package because I have used the corporate version of the software and liked it because it is fast and transparent.  Previously I have used Symantec software which slowed my computer quite bit. 

Now everything is back to normal.








[ 打印 ]
閱讀 ()評論 (7)
評論
2ndglance 回複 悄悄話 這樣,賣antivirus software 的公司生意就好了。。一個人的禍是另一個人的福。。:)
米蘭 回複 悄悄話 我公司的電腦接二連三中毒,這次更厲害,都沒法LOG IN,請IT來消毒,足足弄了二個多小時,唉...真的麻煩呀...
2ndglance 回複 悄悄話 嗬嗬,這次中毒太深,實在沒法清除掉。 前幾次,用system restore 就行了。。。有了這次經驗,下次就不怕了。。。反正數據,丟不了。。
水月千江 回複 悄悄話 可憐的二哥哥,原來你也有中毒的時候哈,啦啦啦,幸災樂禍中~~~~
登錄後才可評論.