Cov lus qhia ntxaws ntxaws rau kev zais koj lub computer yog tias koj dhau los ua ib tus neeg raug tsim txom uas yog li tus chij hais qhia koj tias koj lub koos pis tawj tau kaw. Ob peb hom kev txiav txim siab raug txiav txim siab (tej zaum qhov zoo tshaj plaws nyob rau hauv Feem ntau yog kho qhov rais npe).
Yog tias tus chij tshwm tam sim tom qab ntawm BIOS qhov screen, ua ntej lub Windows pib, tom qab ntawd cov kev daws teeb meem hauv cov ntawv tshiab Yuav ua li cas kom tshem tau cov chij
Duab chij (nyem rau ntug)
Xws li khaum li SMS ransomware banners yog ib qho teeb meem feem ntau rau cov neeg siv niaj hnub no - Kuv hais qhov no ua ib tus neeg kho cov khoos phis tawm ntawm tsev. Ua ntej tham txog cov hau kev ntawm kev tshem tawm SMS chij, Kuv nco ntsoov qee cov ntsiab lus dav dav uas yuav muaj txiaj ntsig zoo rau cov neeg uas ntsib qhov no rau thawj zaug.
Yog li, ua ntej txhua yam, nco ntsoov:- koj tsis tas yuav xa nyiaj rau ib qho twg - hauv 95% ntawm qhov xwm txheej no yuav tsis pab, koj kuj yuav tsum tsis txhob xa SMS rau cov lej luv (txawm hais tias muaj tsawg dua thiab tsawg daim chij nrog qhov uas yuav tsum tau muaj no).
- raws li txoj cai, hauv cov ntawv ntawm lub qhov rais uas tshwm sim hauv lub desktop, muaj cov ntawv xa mus rau dab tsi txaus ntshai yuav tos koj yog tias koj tsis mloog lus thiab ua raws li koj tus kheej txoj kev: tshem tag nrho cov ntaub ntawv ntawm lub khoos phis tawm, kev raug txim, thiab lwm yam. - koj tsis tas yuav ntseeg txhua yam kev sau ntawv, txhua qhov no tsuas yog npaj rau cov neeg siv tsis tau npaj ua ntej, tsis nkag siab, sai mus rau qhov chaw them nyiaj yuav tso 500, 1000 lossis ntau dua rubles.
- Cov kev siv uas tso cai rau koj kom tau txais tus lej them nyiaj feem ntau tsis paub txog tus lej no - yooj yim vim tias nws tsis tau muab rau hauv lub chij - muaj lub qhov rais rau kev nkag mus ntawm tus lej code, tab sis tsis muaj tus lej: kev dag ntxias tsis tas yuav cuam tshuam lawv lub neej thiab muab kev tshem tawm ntawm lawv tus nqe txhiv SMS, lawv xav tau tau txais koj cov nyiaj.
- yog tias koj txiav txim siab hu rau cov kws tshaj lij, koj yuav ntsib cov hauv qab no: qee cov tuam txhab uas muab kev pabcuam hauv koos pis tawj, nrog rau cov tib neeg ua haujlwm, yuav hais kom yuav tshem daim paib, koj yuav tsum rov nruab Windows. Qhov no tsis yog li ntawd, rov kho qhov kev ua haujlwm hauv rooj plaub no tsis tas yuav tsum tau, thiab cov neeg uas thov rov qab los yog tsis muaj kev txawj txaus thiab siv rov txhim kho yog qhov yooj yim tshaj plaws los daws qhov teeb meem, uas tsis xav tau lawv; los yog lawv teeb tsa cov haujlwm ua kom tau nyiaj ntau, vim tias tus nqi pabcuam xws li kev teeb tsa OS yog siab dua kev tshem daim chij lossis kho tus kabmob (ntxiv rau, qee qhov yuav tau them tus nqi rau kev txuag cov ntaub ntawv thaum lub sijhawm teeb).
Yuav ua li cas tshem tawm cov chij - kev qhia video
Daim vis dis aus no tau qhia txog txoj hauv kev zoo tshaj plaws los tshem tawm tus chij ntawm ransomware siv lub qhov rais cwm npe editor hauv kev nyab xeeb. Yog tias qee yam tsis meej ntawm daim vis dis aus, tom qab ntawd tib txoj hauv kev tau piav qhia kom meej hauv hom ntawv nyeem nrog duab.
Tshem tawm cov chij siv daim ntawv sau npe
(nws tsis haum nyob rau qee qhov teeb meem thaum cov ntawv xov xwm ransomware tshwm ua ntej chaw thau khoom Windows, i.e. tam sim ntawd tom qab pib hauv BIOS, yam tsis muaj lub ntsej muag ntawm lub logo Windows thaum pib, cov ntawv qhia chij yuav tawm tuaj)
Ntxiv nrog rau rooj plaub uas tau piav qhia saum toj no, tus qauv no ua haujlwm yuav luag txhua zaus. Txawm hais tias koj tshiab los ua haujlwm nrog lub khoos phis tawm, koj yuav tsum tsis txhob ntshai - tsuas yog ua raws li cov lus qhia thiab txhua yam yuav ua tiav.
Ua ntej koj yuav tsum nkag mus rau lub Windows register editor. Txoj kev yooj yim thiab txhim khu kev qha ua li no yog khau raj lub computer nyob rau hauv kev nyab xeeb nrog cov kab hais kom ua. Txhawm rau ua li no: qhib lub computer thiab nias F8 kom txog thaum muaj cov npe hom khau raj tshwm. Hauv qee qhov BIOSes, tus yuam sij F8 tuaj yeem nqa cov ntawv qhia zaub mov nrog txoj kev xaiv ntawm tsav los ntawm mus rau khau raj - hauv qhov no, xaiv koj lub hard drive, nias Enter thiab tam sim ntawd tom qab ntawd dua F8. Peb xaiv cov twb tau hais lawm - hom muaj kev nyab xeeb nrog cov kab hais kom ua.
Xaiv hom muaj kev nyab xeeb nrog kev hais kom ua kab
Tom qab ntawv, peb tos kom cov console thauj khoom nrog cov lus pom zoo kom nkag mus hauv cov lus txib. Sau: regedit.exe, nyem Enter. Raws li qhov tshwm sim, koj yuav tsum pom cov regedit Windows Registry editor ua ntej ntawm koj. Lub qhov rais rau npe muaj cov ntaub ntawv qhia txog cov system, suav nrog cov ntaub ntawv ntawm qhov kev siv tsis siv neeg thaum lub operating system pib. Qhov chaw nyob ntawd, peb daim chij thiab nws tus kheej tau sau tseg thiab tam sim no peb yuav pom thiab rho tawm nws nyob ntawd.
Peb siv cov ntawv sau npe tus neeg sau ntawv tshem tawm cov chij
Ntawm sab laug hauv kev sau npe editor peb pom cov folders hu ua seem. Peb yuav tsum txheeb xyuas tias nyob rau hauv cov chaw no tus kab mob hu ua tuaj yeem sau npe nws tus kheej, tsis muaj ntaub ntawv sau cia, thiab yog tias muaj, rho tawm. Muaj ob peb qhov chaw zoo li no thiab txhua yam yuav tsum tau kuaj xyuas. Peb pib.
Peb mus rau hauvHKEY_CURRENT_USER -> Software -> Microsoft -> Windows -> CurrentVersion -> Khiav
- ntawm sab xis peb yuav pom cov npe kev pab cuam uas pib ua haujlwm thaum lub operating system khau raj, thiab raws li txoj hauv kev rau cov haujlwm no. Peb yuav tsum tau muab tshem tawm cov uas zoo li tsis txaus ntseeg.
Pib xaiv qhov twg tus chij yuav nkaum
Raws li txoj cai, lawv muaj cov npe sib koom ua ke ntawm cov lej ntawm cov lej thiab cov ntawv: asd87982367.exe, lwm qhov txawv txawv yog qhov chaw nyob hauv C: / Ntaub Ntawv thiab Chaw / nplaub tshev (subfolders yuav txawv), nws kuj tseem yuav ms.exe lossis lwm yam ntaub ntawv nyob hauv C: / Windows lossis C: / Windows / System folders. Koj yuav tsum tau tshem tawm cov kev xav tsis xws npe nkag mus. Txhawm rau ua qhov no, nyem rau ntawm Lub Npe cov npe los ntawm parameter npe thiab xaiv "rho tawm". Tsis txhob ntshai kom lawb tawm ib qho tsis raug - nws tsis hem dab tsi: nws zoo dua rau kev tshem tawm cov kev pab cuam uas tsis paub ntau dua ntawm qhov ntawd, nws tsis yog tsuas yog ua kom muaj qhov ntxiv uas yuav muaj chij ntawm lawv, tab sis, qee zaum, ua kom lub computer ua haujlwm ntxiv mus yav tom ntej (rau qee qhov, kev pib tau pib tus nqi ntau ntawm txhua qhov tsis tsim nyog thiab tsis tsim nyog, vim tias lub computer qeeb qeeb). Tsis tas li, thaum rho cov tsis, koj yuav tsum nco ntsoov txoj hauv kev ntawm cov ntawv, kom tom qab tshem nws ntawm nws qhov chaw.
Peb rov ua tag nrho cov saum toj no rauHKEY_LOCAL_MACHINE -> Software -> Microsoft -> Windows -> CurrentVersion -> Khiav
Cov ntu hauv qab no yog qhov txawv me ntsis:HKEY_CURRENT_USER -> Software -> Microsoft -> Windows NT -> CurrentVersion -> Winlogon
Cov. Ntawm no koj yuav tsum ua kom paub tseeb tias tsis xws li Plhaub thiab Tus Neeg Siv Khoom ploj. Txwv tsis pub, rho tawm, ntawm no lawv tsis muaj.HKEY_LOCAL_MACHINE -> Software -> Microsoft -> Windows NT -> CurrentVersion -> Winlogon
Cov. Hauv seem no, koj yuav tsum paub tseeb tias tus nqi ntawm USerinit parameter tau teeb tsa: C: Windows system32 userinit.exe, thiab Plhaub parameter tau teeb tsa rau explorer.exe.Winlogon rau Tus Neeg Siv Tam Sim No yuav tsum tsis muaj Plhaub parameter
Yog tag nrho. Tam sim no koj tuaj yeem kaw cov ntawv sau npe tus neeg sau ntawv, nkag mus tshawb hauv explorer.exe hauv qhov tseem tsis qhib kab hais kom ua (lub Windows desktop yuav pib), rho tawm cov ntaub ntawv uas lawv qhov chaw peb pom thaum ua haujlwm nrog lub npe, rov pib kho lub computer hauv hom qub (vim nws tam sim no nyob rau hauv kev nyab xeeb) ) Nrog qhov muaj peev xwm siab, txhua yam yuav ua haujlwm.
Yog tias nws tsis tuaj yeem khau raj hauv hom kev nyab xeeb, tom qab ntawd koj tuaj yeem siv qee yam Live CD, uas suav nrog tus kws kho mob sau npe, piv txwv li, Registry Editor PE, thiab ua tag nrho cov haujlwm saum toj no hauv nws.
Peb tshem lub chij siv cov khoom siv tshwj xeeb
Ib qho ntawm cov khoom siv hluav taws xob zoo tshaj plaws rau qhov no yog Kaspersky WindowsUnlocker. Qhov tseeb, nws ua qhov qub uas koj tuaj yeem ua tau manually siv cov qauv tau piav qhia saum toj no, tab sis cia li. Txhawm rau siv nws, koj yuav tsum rub tawm Kaspersky Rescue Disk los ntawm cov vev xaib raug cai, hlawv daim duab disk mus rau daim CD dawb (ntawm lub computer tsis muaj kev tiv thaiv), thiab tom qab ntawd khau raj los ntawm cov disk tsim thiab ua tag nrho cov haujlwm tsim nyog. Kev siv ntawm cov nqi hluav taws xob no, nrog rau tsim nyog ua kom tau cov duab disk, muaj nyob ntawm //support.kaspersky.com/viruses/solutions?qid=208642240. Lwm qhov zoo thiab yooj yim program uas yuav pab koj yooj yim tshem cov chij tau piav qhia ntawm no.
Tuam txhab uas muag cov khoom zoo- Dr.Web LiveCD //www.freedrweb.com/livecd/how_it_works/
- AVG Cawm CD //www.avg.com/us-en/avg-rescue-cd-download
- Thauj Duab Vba32 Kev Tso Siab //anti-virus.by/products/utilities/80.html
Peb kawm qhov chaws hauv chav thiaj li yuav xauv Windows
Nws yog qhov xwm txheej tsis tshua muaj tshwm sim thaum tus nqe txhiv thauj khoom tam sim ntawd tom qab tig lub computer, uas txhais tau tias qhov kev pab cuam dag tau rub tawm rau lub plhaw ntaub ntawv loj ntawm MBR hard disk. Hauv qhov no, koj yuav tsis muaj peev xwm nkag mus rau hauv tus neeg sau npe kho mob, ntxiv mus, cov chij tsis tau thauj khoom los ntawm qhov ntawd. Muaj qee kis, CD Live yuav pab peb, uas koj tuaj yeem rub tawm los ntawm cov kab txuas saum toj no.
Yog tias koj tau nruab Windows XP, tom qab ntawd koj tuaj yeem kho qhov muab faib khau raj ntawm lub hard disk uas siv cov disk installation ntawm lub operating system. Ua li no, koj yuav tsum tau khau raj ntawm daim disk no, thiab thaum koj kom koj nkag mus hauv Windows rov qab hom los ntawm nias lub pob R, ua nws. Yog li ntawd, txoj kab lus txib yuav tsum tshwm sim. Hauv nws peb xav kom ua lub txim: FIXBOOT (paub meej los ntawm nias Y ntawm cov keyboard). Ntxiv thiab, yog tias koj lub disk tsis tau muab faib ua ob peb feem, koj tuaj yeem tso rau FIXMBR cov lus txib.
Yog tias tsis muaj lub installation disk lossis yog tias koj muaj lwm lub koos pis tawj ntawm lub Windows, koj tuaj yeem kho MBR siv lub BOOTICE company (lossis lwm yam kev siv rau ua haujlwm nrog khau pob ntawm lub hard disk). Ua li no, rub tawm hauv Is Taws Nem, txuag nws rau hauv USB drive thiab pib lub computer los ntawm CD cov Live, mam li khiav qhov program los ntawm USB flash drive.
Koj yuav pom cov ntawv qhia zaub mov hauv qab no uas koj xav tau los xaiv koj lub hard drive thiab nyem lub pob "Process MBR". Ntawm lub qhov rais tom ntej, xaiv cov ntaub ntawv khau raj uas koj xav tau (feem ntau nws yog xaiv tau), nyem nruab / Kho, thiab tom qab ntawd nyem OK. Tom qab qhov kev zov me nyuam tau ua tiav txhua qhov tsim nyog, rov qab kho lub computer tsis muaj LIve CD - txhua yam yuav tsum ua haujlwm zoo li ua ntej.