Ithambile

I-Virus kaGoogle yokuRedirect – iNyathelo-nge-nyathelo leSikhokelo sokuSuswa kweManuwali

Zama Isixhobo Sethu Sokuphelisa Iingxaki





Iposwe kwiIgqityelwe ukuvuselelwa: ngoAprili 30, 2021

Ngaba ujongene neengxaki kunye nesikhangeli sakho sewebhu sithunyelwa ngokuzenzekelayo kwiiwebhusayithi ezingaqhelekanga nezikrokrelayo? Ngaba olu lwathiso lukhomba ikakhulu kwindawo yorhwebo, iindawo zokungcakaza? Ngaba unezinto ezininzi ezizivelelayo ezibonisa umxholo wentengiso? Amathuba ukuba unokuba neNtsholongwane kaGoogle eRedirect.



Intsholongwane kaGoogle yokuqondisa ngokutsha yenye yezona zinto zikruqulayo, eziyingozi, kunye nolona sulelo lunzima olwakha lwakhutshwa kwi-intanethi. I-malware isenokungajongwa njengebulalayo, njengoko ubukho bolusulelo abuyi kubetha ikhompyuter yakho kwaye buyenze ingasebenzi. Kodwa ithathwa njengento ecaphukisayo kunokubulala ngenxa yokuhanjiswa okungafunwayo kunye nee-pop-ups ezinokukhathaza nabani na ngokungapheliyo.

Intsholongwane kaGoogle yokuqondisa kwakhona ayilathisi iziphumo zikaGoogle kuphela kodwa iyakwazi ukwalathisa kwakhona iYahoo kunye neBing iziphumo zokukhangela ngokunjalo. Ngoko musa ukumangaliswa ukuva Yahoo Redirect Virus okanye I-Bing iRedirect Virus . I-malware yosulela nawuphi na umkhangeli zincwadi obandakanya iChrome, i-Internet Explorer, iFirefox, njalo njalo. Kuba iGoogle Chrome isesona sikhangeli sisetyenziswayo, abanye bayibiza ngokuba Intsholongwane kaGoogle yeChrome yokuphinda iqondise ngokusekwe kwisikhangeli iphinda iqondise. Kutsha nje, i-malware iikhowudi ziguqule iikhowudi zazo ukwenza umahluko ukubaleka ukubhaqwa lula kwisoftware yokhuseleko. Ezinye iinguqulelo zamva nje I-Nginx Redirect Virus, Happili Redirect Virus, njl



Ngokutsho kwengxelo ye-2016, i-virus ye-Google eqondisa ngokutsha sele ichaphazele ngaphezu kwe-60 yezigidi zeekhomputha ububanzi, apho i-1 / 3rd ivela e-US. Ukusukela ngoMeyi ka-2016, usulelo lubonakala ngathi lubuyile ngenani elandayo lamatyala axeliweyo.

Susa uGoogle Redirect Virus ngesandla



Imixholo[ fihla ]

Kutheni le nto uGoogle Redirect Virus kunzima ukuyisusa?

I-Google Redirect Virus yi-rootkit hayi intsholongwane. Irootkit izifumana idityaniswe nezinye iinkonzo ezibalulekileyo ze windows ezenza zisebenze njengefayile yenkqubo yokusebenza. Oku kwenza kube nzima ukuchonga ifayile okanye ikhowudi eyosulelekileyo. Nokuba uchonga ifayile, kunzima ukuyicima ifayile kuba ifayile isebenza njengenxalenye yefayile yenkqubo yokusebenza. I-malware ifakwe ikhowudi ngendlela yokuba idale iindidi ezahlukeneyo ukusuka kwikhowudi enye ngamaxesha. Oku kwenza kube nzima kwisoftware yokhuseleko ukubamba ikhowudi kwaye ikhuphe isiziba sokhuseleko. Nokuba bayaphumelela ekudaleni isiqwenga, ayisebenzi ukuba uhlaselo lwe-malware kwakhona oluqulathe ukwahluka okwahlukileyo.



Intsholongwane kaGoogle yokuphinda iqondise Kunzima ukuyisusa ngenxa yokukwazi ukufihla nzulu ngaphakathi kwinkqubo yokusebenza kunye nokukwazi kwayo ukususa umkhondo kunye neenyawo kwindlela engene ngayo ngaphakathi kwikhompyuter. Nje ukuba ingene ngaphakathi, izincamathele kunye neefayile zeNkqubo yokuSebenza engundoqo eyenza ibukeke njengefayile esemthethweni esebenza ngasemva. Nokuba ifayile esulelekileyo ibhaqwe, ngamanye amaxesha kunzima ukuyisusa i-cos yonxulumano nefayile yenkqubo yokusebenza. Ukuza kuthi ga ngoku, akukho software enye yokhuseleko kwimarike inokuqinisekisa ngokhuseleko lwe-100% kolu sulelo. Oku kuchaza, kutheni ikhomputha yakho yosulelwa kwindawo yokuqala nokuba ifakwe isoftware yokhuseleko.

Inqaku elilapha lichaza indlela yokukhetha ngesandla kunye nokususa ngesandla intsholongwane kaGoogle yokuqondisa kwakhona. Ukusuka kwi-engile yegcisa, le yeyona ndlela isebenzayo ngokuchasene nolusulelo. Amagcisa asebenzela ezinye zeempawu ezinkulu zesoftware yokhuseleko ngoku alandela indlela efanayo. Zonke iinzame zenziwe ukwenza isifundo sibe lula kwaye kube lula ukusilandela.

Uyisusa njani iNtsholongwane kaGoogle yokuRedirect

1. Zama izixhobo ezikhoyo kwi-intanethi okanye uye kwisixhobo sobuchwephesha
Zininzi izixhobo zokhuseleko ezikhoyo kwimarike. Kodwa akukho nanye kwezi zixhobo eziphuhliswe ngokukodwa ukususa intsholongwane kaGoogle eqondisa kwakhona. Ngelixa abanye abasebenzisi babe nempumelelo ekususeni usulelo besebenzisa isoftware enye, okufanayo kunokungasebenzi kwenye ikhompyuter. Abambalwa baphetha bezama zonke izixhobo ezahlukeneyo ezenza iingxaki ezininzi ngokonakalisa i-OS kunye neefayile zomqhubi wesixhobo. Uninzi lwezixhobo zasimahla zinzima ukuthembela njengoko zinegama lokonakalisa iifayile zenkqubo yokusebenza kunye nokuziwisa. Ke thatha i-backup yedatha ebalulekileyo ngaphambi kokuba uzame naziphi na izixhobo zasimahla ukuba ube kwicala elikhuselekileyo. Unokufumana uncedo kwiingcali ezikhethekileyo ekususeni olu sulelo. Andithethi ngokusa ikhompyuter yakho kwivenkile yetekhnoloji okanye ukufowunela iqela le-geek elikubiza imali eninzi. Ndikhe ndakhankanya inkonzo onokuthi ngaphambili zama njengecebo lokugqibela.

Mbini. Zama ukususa intsholongwane kaGoogle yokuqondisa kwakhona ngesandla

Akukho ndlela ilula yokususa usulelo ngaphandle kokuqhuba iskena usebenzisa isoftware kunye nokuyilungisa. Kodwa ukuba isoftware iyasilela ukulungisa ingxaki, icebo lokugqibela kukuzama ukususa usulelo ngesandla. Iindlela zokususa ngesandla zidla ixesha kwaye abanye benu banokukufumanisa kunzima ukulandela imiyalelo cos yobume bayo bobugcisa. Le ndlela iyasebenza kakhulu, kodwa ukusilela ukulandela imiyalelo ngokufanelekileyo okanye ukubakho kwempazamo yomntu ekuchongeni ifayile eyosulelekileyo kunokunika imizamo yakho ingasebenzi. Ukwenza kube lula ukuba wonke umntu alandele, ndenze inyathelo ngenyathelo ividiyo echaza iinkcukacha. Ibonisa amanyathelo achanekileyo afanayo asetyenziswa ziingcali zokususwa kwentsholongwane ukususa usulelo lwentsholongwane ngesandla. Ungayifumana ividiyo ekupheleni kwesi sithuba.

Amanyathelo okusombulula ingxaki yokususa i-Google Redirect Virus ngesandla

Ngokungafaniyo nosulelo oluninzi, kwimeko ye-Google Redirect Virus, uya kufumana ifayile enye okanye ezimbini kuphela ezinxulumene nosulelo. Kodwa ukuba usulelo aluhoywanga ekuqaleni, inani leefayile ezosulelekileyo libonakala landa ngexesha elithile. Ngoko ke ngcono ulahle usulelo ngokukhawuleza ukuba ufumane iingxaki zokuthumela kwakhona. Landela ezi ndlela zokusombulula ingxaki zikhankanywe ngezantsi ukulahla intsholongwane kaGoogle yokuqondisa kwakhona. Kukho nevidiyo engezantsi.

1. Yenza iifayile ezifihliweyo uvule iiNdlela zoKhetho zeefolda

Iifayile zenkqubo yokusebenza zifihlwa ngokungagqibekanga ukuthintela ucimo ngengozi. Iifayile ezosulelekileyo zizama ukufihla phakathi kweefayile ze-OS. Ke kuyacetyiswa ukuba ungafihli zonke iifayile ezifihliweyo phambi kokuba uqalise ukulungisa ingxaki:

  • Cinezela iSitshixo seWindows + R ukuze uvule Baleka Ifestile
  • Uhlobo Lawula iifolda
  • Cofa Jonga ithebhu
  • Vulela bonisa iifayile ezifihliweyo, iziqulathi zeefayili kunye needrive
  • Susa uqwalaselo fihla izandiso kwiintlobo zefayile ezaziwayo
  • Susa uqwalaselo fihla iifayile zenkqubo yokusebenza ekhuselweyo

2. Vula uMsconfig

Sebenzisa isixhobo seMSConfig ukuvula ifayile ye-bootlog.

  1. Vula Baleka ifestile
  2. Uhlobo msconfig
  3. Cofa Qala isithuba ukuba usebenzisa Windows 10, 8 okanye 7. Kulo usebenzisa Win XP, khetha boot.ini ithebhu
  4. khangela i-bootlog ukuyivumela
  5. Cofa Faka isicelo kwaye ucofe Kulungile

Ifayile ye-bootlog ifuneka kuphela kwinqanaba lokugqibela.

3. Qala kwakhona iKhompyutha

Qala kwakhona ikhompyutha ukuze uqinisekise ukuba utshintsho olwenzileyo luphunyeziwe. (Ekuqaliseni kwakhona ikhompyutha ifayile ntbttxt.log iyadalwa ekuxoxwa ngayo kamva kumanyathelo okusombulula ingxaki).

4. Yenza i-IE epheleleyo

Ukulungiswa komhloli we-Intanethi kwenziwa ukuze kuqinisekiswe ukuba ukuhanjiswa kwakhona akubangelwa yingxaki kwisikhangeli sewebhu okanye iisetingi ze-intanethi ezonakeleyo eziqhagamshela isikhangeli kwi-intanethi. Ukuba ulungiselelo lwenziwe ngokufanelekileyo, isikhangeli kunye noseto lwe-intanethi lusetwa ngokutsha lubuyele kolumiselweyo.

Phawula: Ezinye iisetingi ze-intanethi ezifunyenwe ngelixa usenza usetyenziso lwe-IE ziqhelekile kuzo zonke iibhrawuza. Ke, akukhathaliseki nokuba usebenzisa iChrome, Firefox, Opera, njl., kuyacetyiswa ukuba wenze i-IE optimization.

5. Khangela uMphathi weSixhobo

Umphathi weSixhobo sisixhobo seWindows esidwelisa zonke izixhobo ezingaphakathi kwikhompyuter yakho. Olunye usulelo luyakwazi ukufihla izixhobo ezifihlakeleyo ezinokuthi zisetyenziswe kuhlaselo lwe-malware. Jonga umphathi wesixhobo ukufumana nawaphi na amangeno awosulelekileyo.

  1. Vula Baleka ifestile (Isitshixo sikaWindows + R)
  2. Uhlobo devmgmt.msc
  3. Cofa Jonga ithebhu phezulu
  4. Khetha umboniso izixhobo ezifihliweyo
  5. Njonga i non-plug kunye nabaqhubi ukudlala . Yandise ukuze ubone uluhlu luphela phantsi kokhetho.
  6. Jonga kulo naliphi na ingeniso TDSSserv.sys. Ukuba awunalo ungeno, khangela nawaphi na amanye amangeno akhangeleka ekrokrisa. Ukuba awukwazi ukwenza ingqondo yakho malunga nokungena kulungile okanye kubi, yenza uphando lwe-google kunye negama ukuze ufumane ukuba liyinyani.

Ukuba ungeno lufunyaniswa ukuba losuleleko, cofa ekunene kulo kwaye emva koko cofa ukukhupha . Nje ukuba ukhuphelo lugqityiwe, musa ukuphinda uqalise ikhompyuter. Qhubeka nokulungisa ingxaki ngaphandle kokuphinda uqalise.

6. Khangela iRejistri

Khangela ifayile eyosulelekileyo ngaphakathi kwirejista:

  1. Vula Baleka ifestile
  2. Uhlobo regedit ukuvula umhleli wobhaliso
  3. Cofa Hlela > Fumana
  4. Ngenisa igama losulelo. Ukuba inde, faka oonobumba abambalwa bokuqala bokungena kwabosulelekileyo
  5. Cofa ku-edit -> fumana. Faka oonobumba abambalwa bokuqala begama losulelo. Kule meko, ndasebenzisa iTDSS ndaza ndakhangela nawaphi na amangeno aqala ngoonobumba. Ngalo lonke ixesha kukho ungeniso oluqala nge-TDSS, lubonisa ukungena ngasekhohlo kunye nexabiso kwicala lasekunene.
  6. Ukuba kukho ukungena nje, kodwa akukho ndawo yefayile ekhankanyiweyo, uze uyicime ngokuthe ngqo. Qhubeka ukhangela ungeno olulandelayo ngeTDSS
  7. Uphendlo olulandelayo lwandisa kungeniso olufumene iinkcukacha zendawo yefayile ekunene ethi C:WindowsSystem32TDSSmain.dll.Kufuneka usebenzise olu lwazi. Vula ifolda C:WindowsSystem32, fumana kwaye ucime iTDSSmain.dll ekhankanywe apha.
  8. Thatha ukuba awukwazanga ukufumana ifayile TDSSmain.dll ngaphakathi C:WindowsSystem32. Oku kubonisa ukungena kufihlwe kakhulu. Kufuneka ususe ifayile usebenzisa i-prompt yomyalelo. Sebenzisa nje umyalelo ukuyisusa. del C:WindowsSystem32TDSSmain.dll
  9. Phinda okufanayo de onke amangeno kubhaliso aqala ngeTDSS asuswe. Qinisekisa ukuba loo mangeniso alathe kuyo nayiphi na ifayile engaphakathi kwifolda isuse ngokuthe ngqo okanye ngokusebenzisa umyalelo okhawulezayo.

Thatha ukuba awukwazanga ukufumana iTDSSserv.sys ngaphakathi kwezixhobo ezifihliweyo phantsi komphathi wesixhobo, emva koko uye kwiNyathelo lesi-7.

7. Jonga i-ntbtlog.txt log yefayile eyonakeleyo

Ngokwenza inyathelo lesi-2, ifayile yelog ebizwa ngokuthi ntbtlog.txt yenziwe ngaphakathi kweC:Windows. Yifayile yokubhaliweyo encinci equlathe amangeno amaninzi anokuthi aqhube ngaphezulu kwamaphepha ali-100 ukuba uthatha ushicilelo. Kufuneka uskrole ezantsi ngokucothayo kwaye ujonge ukuba unayo nayiphi na into yokungeno TDSSserv.sys ebonisa ukuba kukho usulelo. Landela la manyathelo akhankanywe kwiNyathelo lesi-6.

Kwimeko ekhankanywe ngasentla, ndikhankanye kuphela ngeTDSSserv.sys, kodwa kukho ezinye iindidi ze-rootkits ezenza umonakalo ofanayo. Masithathele ingqalelo amangeno ama-2 H8SRTnfvywoxwtx.sys kunye _VOIDaabmetnqbf.sys adweliswe phantsi komphathi wesixhobo kwiPC yomhlobo wam. Ingqiqo emva kokuqonda ukuba ifayile enobungozi okanye hayi ubukhulu becala ngegama labo. Eli gama alinangqiqo kwaye andicingi ukuba nayiphi na inkampani ezihloniphayo iya kunika igama elinje kwiifayile zabo. Apha, ndisebenzise oonobumba abambalwa bokuqala H8SRT kunye _VOID kwaye ndenza amanyathelo akhankanywe kwiNyathelo lesi-6 ukususa ifayile eyosulelekileyo. ( Nceda Qaphela: H8SRTnfvywoxwtx.sys kunye _VOIDaabmetnqbf.sys ngumzekelo nje. Iifayile ezonakeleyo zinokuza kulo naliphi na igama, kodwa kuya kuba lula ukubonwa ngenxa yegama elide lefayile kunye nobukho bamanani angaqhelekanga kunye nealfabhethi egameni. .)

Nceda uzame la manyathelo ngomngcipheko wakho. amanyathelo akhankanywe ngasentla awayi konakala kwikhompyuter yakho. Kodwa ukuba kwicala elikhuselekileyo, kungcono ukuthatha i-backup yeefayile ezibalulekileyo kwaye uqinisekise ukuba unokhetho lokulungisa okanye ukufaka kwakhona inkqubo yokusebenza usebenzisa i-OS disk.

Abanye abasebenzisi banokufumana ulungiso lweengxaki olukhankanywe apha lunzima. Masijongane nayo, usulelo ngokwalo luntsonkothile kwaye neengcali ziyasokola ukukhupha olu sulelo.

eCetyisiweyo: Uyisusa njani iNtsholongwane kwifowuni ye-Android

Ngoku unemiyalelo ecacileyo ebandakanya inyathelo ngenyathelo isikhokelo malunga nendlela yokuphelisa intsholongwane kaGoogle yokuqondisa kwakhona. Kwakhona, uyazi ukuba wenze ntoni ukuba oku kungasebenzi. Thatha inyathelo ngokukhawuleza phambi kokuba usulelo lunwenwele kwiifayile ezininzi kwaye unikeze iPC ukuba ingasebenziseki. Yabelana ngesi sifundo njengoko sisenza umahluko omkhulu kumntu ojongene nengxaki efanayo.

Elon Decker

U-Elon ungumbhali wezobugcisa kwi-Cyber ​​S. Ubhale indlela-izikhokelo malunga neminyaka eyi-6 ngoku kwaye uye wagubungela izihloko ezininzi. Uyakuthanda ukugubungela izihloko ezinxulumene neWindows, Android, kunye namaqhinga amva nje kunye neengcebiso.