How to remove the virus?
Users questions:I am in the "opening night" virus, WINLOGON.EXE process simply can not be deleted, with the Zhuanshagongju also useless ~ ~ ~ with the super magic rabbit from a deletion on the re-~ ~ can be restarted after the process is still in the `~ ~ everyone to help me `~` C: * WINDOWS * system32 * winlogon.exe not a virus `~ ~ right ~ ~? C: * WINDOWS * winlogon.exe, then this should be called "opening night" of the virus, right? How do I delete?
Experts answer: Jiangmin "opening night" virus Zhuanshagongju Download: http: ** www.jiangmin.com * download * TrojanKiller.exe to a "snowfall" of the Trojan virus. "Opening night" Trojan can steal, including World of Warcraft, Legend of the world, journey, Fantasy Westward Journey, winger variety of games including online games account andPassword, games for the network equipment constitutes a grave threat. "Opening night" Trojan, also known as "Game Thief" (Trojan * PSW.GamePass), written by the VB program, through nSPack3.1 packers processing (known as the "Big Dipper shell" NorthStar), the Trojan file icon is usually a red logo, disguised as online games landers. Virus running, the C disk and the windows directory programfile generate winlogon.exe, regedit.com virus, 14File, the virus files much more rare, in fact 14 different file name with a file virus file system, "opening night" might result from the name. Simulate the virus file name is the name of the normal system tools, but the file extension into. Com. Jiangmin anti-virus engineers of this isUse of the Windows operating system, the implementation of the virus. com file EXE file than the high priority features, so that when users call the system configuration file Msconfig.exe, the general habit, enter Msconfig, but this is not the implementation of Microsoft's Msconfig.exe program, but the virus file Msconfig.com, the virus author of "care and thought," So. There are other cunning between the virus, the virus has also created a for the winlogon.exe process and the path that the winlogon.exeTo the c: * windows * winlogon.exe, whereas the normal system process path is C: * WINDOWS * system32 * winlogon.exe, in order to achieve the purpose of confusing the user. Jiangmin anti-virus engineer, in addition to the next generation in the C driveMany virus file, the virus also modified the registry file association, when a user clicks on html file, will run the virus. In addition, the virus is still under the D drive automatically generate a batch file, so even if the disk directory C virus file is cleared, when the user opens the D drive, the virus is still activeRun. This is also reflected in many users do not absolutely kill the virus causes repeated. For "opening night" virus, Jiangmin KV Antivirus software upgrade products in a timely manner, the user simply upgrade to the latest state of the virus database, open the anti-virus real-time monitoring can be effective to kill the virus, can also use Jiangmin deal with the unknown virus detection diseaseDrug. Do not install antivirus software, users can also download Jiangmin "opening night" for anti-virus Trojan Zhuanshagongju to from "opening night" viruses.