无法修改hosts文件The hosts file cannot be modifiedCannot modify the Hosts file 2008-03-17 22:442008/01/14 08:44
P.M. to solve the more such viruses (9505, ads3721, 520tt,33movie) , directly hijacked the HOSTS table, and cannot modify delete and save, display process has beenused, whichmany users are incapable of action, especially the use of 360 security guards friend, a run will automatically shut down then, start to find 360 security guards, we can manually delete the virus killing and.
We must first enter safe mode, why not say.
Download a 360 safe, do not install! After entering safe mode,the closing process EXPLORER.EXE, and then add the process of EXPLORER.EXE (specific operation: file, the new task "run" to browse to C:\WINDOWS\explorer.exe) . Then install 360 security guards, 360 security guards to repair operation.
By running the regedit and delete the red project, find HKEY_LOCAL_MACHINE\SOFTWARE\Microsof t\Windows\CurrentVers io n\Ru n
There are several possibilities behind, I find that there are 2 kinds of the name for the R or A!
1, R = C:\Windows\System32\rundll32. exe ctfmon.dll s
2, A C:\WINDOWS\system32\rundll32. exe msad.dll s
If you find the 2 one, delete the project.
Then find C:\Windows\System32\ctfmon.dll or
C:\Windows\System32\msad.dll
Delete the file.
Repair HOSTS files (in safe mode to install and run 360 security guards had been repaired, the repair manual method here)Please operate according to the following methods:
1, the search system in the hosts file, can also according to the following path:
Windows 98 system file path: \Windows directory;
Windows XP system, file path: \Windows\System32\Drivers\etc directory;
Windows 2000 system file path: \WINNT\System32\Drivers\etc directory;
2, the file backup;
3, right click on the hosts file, select "open" select notepad;4, delete the contents of Notepad, or simply delete the hosts file! (does not affect the normal use of the system) .PS: if the virus will leave what point on the QQ, because of a running QQ, HOSTS immediately turned on me, was hijacked, so in a safe mode. All the steps ahead, it is best to uninstall
the QQ from! You may come to naught! ! !
Many people live in!
Do prevention! Manual removal is better than always reloading!Quote:
The last two days the system suddenly become less friendly, from time to time some spam pages play out, access to web pages is not normal. . .
All of these symptoms will tell me, system poisoning!Antivirus poisoning slightly.
However, everything is not so smooth, it is their encounter this problem done:
1. security guards, gosh, malicious software 6 models,including 263 repair, IE page, Hosts DNS, malicious software continuously in normal and safe mode killed N times, killing end and Hosts, there is no way to fix
2. enable Norton Antivirus, fast antivirus, no fruit. A comprehensive anti-virus 110 virus infection
See the Hosts file 3. , N found many garbage points to a IP address, can not be changed, can not delete the file, this is the most terrible, I need to use the Hosts file
4. and Baidu on the "Hosts file cannot be modified"
5. online and in many ways, what Mount Huangshan IE repair experts, Frostsaber IceSword, QQ tail zhuanshagongju. . .
6. , you have to try it, to no avail. The Speechless is Mount Huangshan IE repair this, no matter after the operation there is no progress without conditions for rebooting your computer! !Rely on.
There are 7. pages with 360 security guards said that in fact you can fix the problem!
I Speechless? How do I do before no effect?
8. can not give up, this is a method of thinking to upgrade security guards, that really is not the latest version. I upgrade.
9. successful repair again haha! ! !
Depressed yo, engage in a day for a long time, so &_&I like the above. But the hosts file is locked and antivirus software update URL is blocked, and start something deleted again
Behind the way theywant, there should be written in the driver,the file is *. sys, look at the really
As I approach, let everyone to be a reference
1/ download a tool called ">IceSword.exe" the ice sword ", if the normal can not enter the system, download to safe mode with network links
2/ enter the normal safe mode, without anything
3/viewsystem services, whether out of order digital services,stop it, I was "40******"
4/ check the registry
HKEY_LOCAL_MACHINE\SOFTWARE\Microsof t\Windows\CurrentVers io n\Ru n
HKEY_LOCAL_MACHINE\SOFTWARE\Microsof t\Windows\CurrentVers io n\RunOn ce
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Wi ndows\CurrentVersi on \Run
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Wi ndows\CurrentVersi on \RunOnc e
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Wi ndows\CurrentVersi on \RunOnc eEx
Remove excess virus promoter
According to the 5/registrykey to findthe virus file, usually in c:\windows and c:\windows\system32.
Of course, these operations shouldbeused toBingjian this tool,otherwise you are not delete files
I have 2 system32 pvcvwi.dll/aoeahz.dll and system32\drivers pvcvwi. sys/aoeahz. sys are deleted
Then the system32\drivers\etc\hosts file is deleted, which has been written out of order URL
A new hosts file, the contents of a "127.0.0. 1 localhost", and then set to read-only
6/ restart is normal, to update the virus database, and then use the Kaba 360 scanning system again
天上云怎么样?天上云隶属于成都天上云网络科技有限公司,是一家提供云服务器及物理服务器的国人商家,目前商家针对香港物理机在做优惠促销,香港沙田机房采用三网直连,其中电信走CN2,带宽为50Mbps,不限制流量,商家提供IPMI,可以自行管理,随意安装系统,目前E3-1225/16G的套餐低至572元每月,有做大规模业务的朋友可以看看。点击进入:天上云官方网站天上云香港物理机服务器套餐:香港沙田数据中...
昔日数据怎么样?昔日数据新上了湖北十堰云服务器,湖北十堰市IDC数据中心 母鸡采用e5 2651v2 SSD MLC企业硬盘 rdid5阵列为数据护航 100G高防 超出防御峰值空路由2小时 不限制流量。目前,国内湖北十堰云服务器,首月6折火热销售限量30台价格低至22元/月。(注意:之前有个xrhost.cn也叫昔日数据,已经打不开了,一看网站LOGO和名称为同一家,有一定风险,所以尽量不要选择...
Dynadot 是一家非常靠谱的域名注册商家,老唐也从来不会掩饰对其的喜爱,目前我个人大部分域名都在 Dynadot,还有一小部分在 NameCheap 和腾讯云。本文分享一下 Dynadot 最新域名优惠码,包括 .COM,.NET 等主流后缀的优惠码,以及一些新顶级后缀的优惠。对于域名优惠,NameCheap 的新后缀促销比较多,而 Dynadot 则是对于主流后缀的促销比较多,所以可以各取所...