Guys who faced blocking pages due to spam on social networks? On a computer, the virus, does not let through any of the browsers, manually deleted from C:\WINDOWS\system32\drivers\etc did not help, the antivirus program is useless ...
Closed due to the fact that it is necessary to reformulate the question so that it was possible to give an objectively correct answer by the participants of Kromster , rjhdby , Vadizar , Denis Bubnov , Naumov 14 Mar '17 at 14:49 .
The question gives rise to endless debates and discussions based not on knowledge, but on opinions. To get an answer, rephrase your question so that it can be given an unambiguously correct answer, or delete the question altogether. If the question can be reformulated according to the rules set out in the certificate , edit it .
- What kind of vir? What kind of antivirus? What was deleted? More detailed .... PS Strange ... I didn’t notice anything like this on Ubunt ... (joke) - Zerglyn 1
- I cleaned the hosts file ... Usually, when such a problem arose, this was enough ... But due to the mass spam sending, the site was blocked and, of course, they require a phone number. Everyone who enters the login and password from this computer breaks the pages to Hurray ... does not allow the network, but spam is sent with terrible power. AVG anti-virus. - Nikusya
- Well, as one of the options, the LiveCD from Casper or Dr.Web. (On their website is free, you can’t find it, I'll drop the links). With the same LiveCD, you can set up an Internet and enter the social network, see how it will behave. - andrey_sn
- Tried horse and livecd ... no results ... - Nikusya
- What does msconfig about autoload say? Extra services do not hang?> I tried konesh and livecd ... no results ... What exactly did you try? Just trying to enter the social network will not help, you have to treat the system from under the LCD ... And already AFTER the system is cured, you have to unlock the site administration ... And, by the way, what do the amines say? Did they write a letter to them? - Zerglyn 1
|
2 answers
- Before physically removing a virus, you must at least remove it from memory. Nowadays, the viruses have gone arrogantly - they just do not allow themselves to be removed (and some of them hide very strongly).
- It is necessary to understand exactly where the virus starts and exclude the possibilities for its launch.
- The viruses themselves do not sit in the hosts file - they can only register there any addresses for the creation of nastiness. Although they can also spoil them - make the file read-only.
- Perhaps this virus is easily detected and removed when loaded in Safe Mode. But not a fact.
- In extreme cases, remove the screw and walk on it with antivirus software on a clean, uninfected machine.
- NEVER WORK IN ADMINISTRATIVE MODE in order to walk around the network.
- AVZ to help - what is sitting in the memory, what starts where, etc.
But in general with viruses - as in a detective story. You search, you track, you destroy. There is no universal method :)
|
try to update the cache, open the command line and list,
ipconfig /flushdns and reboot.
|