NOD32发现病毒后的问题
ID: 59
1. NOD32 发现病毒,怎麽办? (NOD32 detected a virus, what should I do?)
一个红色视窗会出现,通知你找到一只病毒,请按在那视窗按 "清除"。 如问题持续,请联络技术支援。
A red window would appear, notifying you that the a virus is found, please click "Clean" in that window. If problem persists, please contact support.
ID: 60
2. AMON 发现病毒,怎麽办? (Amon detected a virus, what should I do?)
请试按 "清除" 。如 Amon 不能将之清除,你可按 "重新命名" 或 "删除"。如不能完成,你可使用手动扫描器:
到开始> 程式集> Eset > NOD32
在 "扫描对象" 页 选择要扫描的对象(双按合适的图示)
按 "清除" 按钮
如病毒不能被清除,你可使用 "重新命名" 或 "删除" 按钮。
Try to click on the button "Clean". If Amon can not clean it, you can try to click on the buttons "Rename" or "Delete". If this also can not be completed, you can clean, rename or delete the virus with NOD32 On demand scanner:
Go to Start > Programs > Eset > NOD32
In the "Scanning Targets" tab select the resources you want to scan by double click on the appropriate icon
Click on the "Clean" button
If the virus can be cleaned - the problem is solved - if not, you can use the "Rename" or "Delete" buttons.
ID: 61
3. 怎样重新启动至安全模式? (How to restart the computer in safe mode?)
重新启动电脑
Reboot the Computer.
当电脑重新启动时, 请按数次键盘上的F8直至启动清单出现
Press "F8" many times during machine reboot until the bootup selection menu is shown.
选择"安全模式"
Choose "Safe Mode".
进入安全模式後, 请执行NOD32病毒移除工具以扫描及清除病毒
After entering Safe Mode, run the NOD32 virus cleaner to start scan your computer and remove the virus.
进行扫描并等待直至整个过程完成
Scanning runs until completion.
重新启动电脑至"正常模式"
Restart the computer to "Normal Mode".
ID: 62
4. 怎样传送病毒样本到 Eset? (How could I send a sample to Eset?)
请以 zip 形式压缩该档案,以密码 "infected" 保护,然後以附件形式电邮至 samples@nod32.com。
Please zip the file, with password "infected", and then send it as an attachment to samples@nod32.com
ID: 63
5. NOD32 会否侦测这病毒? Does NOD32 detect this virus?
如你曾听过这病毒,而这是一只真病毒而非谣传 - NOD32 很大机会侦测得到。很少时候 NOD32 不能侦测一只新的病毒 - 通过一个国际防毒机构,通常在数分钟内我们就会得悉一只新病毒的潜在威胁。它会被处理及在有须要时我们会提供一个早期的更新。在更新後将不会再有危险。当普罗大众得悉此病毒时,NOD32 的顾客已无後顾之忧。
If you have heard of it and it is a real virus not a hoax - then NOD32 probably detects it. Occasionally a new virus will come out that NOD32 will not detect - just occasionally - within minutes - through an international organization of AV organizations we will be made aware of the potential threat - it will be accessed and if necessary a preliminary update to NOD32 will be released. After updating to the latest virus database there should be no danger. By the time the general public is aware of the threat - there will be no threat to NOD32 customers.
ID: 64
6. NOD32 侦测多少只病毒? (How many viruses does NOD32 detect?)
因为我们的智能侦测模式并不规限於指定数目的已知病毒,所以 NOD32 能侦测到无限的病毒。是的,有时候有些新的病毒 NOD32 侦测不到 - 但这情况极少发生。
Since our heuristics are not fixed to some specific set of known viruses the number of viruses that NOD32 detects is infinite. Yes there are some that are developed from time to time that NOD32 will not detect - but there are very few of those.
ID: 65
7. 被感染档案在自我回复,怎麽办? (The infected files are still restoring themselves. What to do?)
很可能你使用的系统是 Windows ME 或 Windows XP。这个系统预设会回复系统档案,这些档案会被系统自动地备份到系统磁碟机的资料夹 "_restore" (通常是资料夹"C:\_restore")。在这情况下被感染的档案有可能在备份的档案中,并且"不能被删除"。
解决办法
Windows ME
右击桌面上的 "我的电脑" 图示,选择 "内容"
按 "效能">"档案系统"
按 "疑难排解"
勾选 "关闭系统还原"
按确定,关闭及重新启动系统
注意:建议在移除受感染档案後回再次启动系统还原:不要勾选 "关闭系统还原" 的方格
Windows XP
右击桌面上的 "我的电脑" 图示,选择 "内容"
按 "系统还原"
勾选"关闭所有磁碟上的系统还原"
按确定,关闭及重新启动系统
注意:建议在移除受感染档案後回再次启动系统还原:不要勾选 "关闭系统还原"
You are most probably using one of the latter operating system - Windows ME or Windows XP on your machine. These systems are by default using the option for restoring the system files, which system automatically backups to the directory "_restore" on the system disk(normally to the directory "C:\_restore"). This way it is possible that the infected files join the backed-up files and become "undeletable".
Solution
Windows ME
Right click on the "My Computer" icon on the Windows desktop and click "Properties"
Click on "Performance">"File system"
Click "Troubleshooting"
Check "Disable system restore"
Click on OK, Close and restart the system
Note: It is recommended to return to the standard behaviour of the system after the removal of the infected files - by unchecking the "Disable system restore"
Windows XP
Right click on the "My Computer" icon on the Windows desktop and click "Properties"
Click on the "System Restore"
Check "Turn off System Restore on all Drives"
Click OK, Close and restart the system
Note: It is recommended to return to the standard behaviour of the system after removal of the infected files - by unchecking the "Disable system restore"
ID: 81
8. 如何在安全模式清除病毒? How can I clean viruses in safe mode?
如有需要, 请把本页列印出来, 然後跟着一步一步来做。
If necessary, please print out this page and follow the steps one by one.
1
重新启动电脑
Restart your computer
2
在 Windows 启动前连续地按「F8」(大概是一秒按一次), 直至看见以下画面, 然後选择安全模式
Before Windows starts, repeatedly press F8 (about once every second) until you see the following screen and select "Safe Mode"
3
选择正确的 Windows
Choose the appropriate Windows
4
确定使用安全模式, 按「是」
Confirm to enter safe mode, press YES
5
在安全模式中, 按「开始」->「所有程式」->「Eset」->「NOD32」
In Safe Mode, Press "Start -> All programs -> Eset -> NOD32"
6
在工具列中按下滑鼠右键, 选择「工作管理员」
Right click on the task bar, select "Task Manager"
7
在工作管理员中, 按「处理程序」页面, 再按「explorer.exe」, 再按「结束处理程序」
In the Task Manager, press "process" and select "explorer.exe" and then press "End Process"
8
按「是」确定结束处理程序, 然後桌面的「工具列」会清失, 这是正常的
Press YES to confirm ending the process, you will notice the task bar will have disappeared. Don't worry, this is normal.
9
在 NOD32 手动扫描器中, 按「动作」页面, 再按图中所示作出设定, 最後按「检查及清除」
In the NOD32 manual scanner, press "Action" tab and make changes referring to the following picture. After that, press "Scan and Clean"
10
等候扫描, 所见蓝色及绿色的是没有问题的资迅, 如果看见红色, 即是发现病毒, 根据我们之前的设定, 所有病毒会被自动删除, 你不需要按任何键指示电脑删除病毒
Wait for scanning. All the blue and green text are normal information. Lines in red indicate viruses have been discovered. According to our previous settings, all viruses will be cleaned and deleted automatically.
11
扫描完成後, 按「离开」, 并按「是」储存刚才「动作」中的设定
After scanning is complete, press "Quit" and press "Yes" to confirm saving the settings.
12
在「工作管理员」中, 按「关机」及选择「重新启动」即可。
In the "Task Manager", press "Shut down" and select "Restart".
13
如果你不小心关闭了「工作管理员」, 请先按 Ctrl 和 Alt, 再按 Delete 来开启
If you have closed the Task Manager, please hold the Ctrl and Alt keys, and then press Delete to bring up the Task Manager.
ID: 84
9. 如何清除 NewHeur_PE 病毒 ? (How to clean NewHeur_PE virus? )
NewHeur_PE 是 NOD32 智能侦测模式侦测出来的威胁,建议你在安全模式下扫瞄你的电脑。(NewHeur_PE is threats detected by Advance Heuristics, please scan your computer in safe mode.)
如有需要, 请把本页列印出来, 然後跟着一步一步来做。
If necessary, please print out this page and follow the steps one by one.
重新启动电脑
Restart your computer
在 Windows 启动前连续地按「F8」, 直至看见以下画面, 然後选择安全模式
Before Windows starts, repeatedly press F8 until you see the following screen and select "Safe Mode"
选择正确的 Windows
Choose the appropriate Windows
确定使用安全模式, 按「是」
Confirm to enter safe mode, press YES
在安全模式中, 按「开始」->「所有程式」->「Eset」->「NOD32」
In Safe Mode, Press "Start -> All programs -> Eset -> NOD32"
在工具列中按下滑鼠右键, 选择「工作管理员」
Right click on the task bar, select "Task Manager"
在工作管理员中, 按「处理程序」页面, 再按「explorer.exe」, 再按「结束处理程序」
In the Task Manager, press "process" and select "explorer.exe" and then press "End Process"
按「是」确定结束处理程序, 然後桌面的「工具列」会清失, 这是正常的
Press YES to confirm ending the process, you will notice the task bar will have disappeared. Don't worry, this is normal.
在 NOD32 手动扫描器中, 按「动作」页面, 再按图中所示作出设定, 最後按「检查及清除」
In the NOD32 manual scanner, press "Action" tab and make changes referring to the following picture. After that, press "Scan and Clean"
等候扫描, 所见蓝色及绿色的是没有问题的资迅, 如果看见红色, 即是发现病毒, 根据我们之前的设定, 所有病毒会被自动删除, 你不需要按任何键指示电脑删除病毒
Wait for scanning. All the blue and green text are normal information. Lines in red indicate viruses have been discovered. According to our previous settings, all viruses will be cleaned and deleted automatically.
扫描完成後, 按「离开」, 并按「是」储存刚才「动作」中的设定
After scanning is complete, press "Quit" and press "Yes" to confirm saving the settings.
在「工作管理员」中, 按「关机」及选择「重新启动」即可。
In the "Task Manager", press "Shut down" and select "Restart".
如果你不小心关闭了「工作管理员」, 请先按 Ctrl 和 Alt, 再按 Delete 来开启
If you have closed the Task Manager, please hold the Ctrl and Alt keys, and then press Delete to bring up the Task Manager.
ID: 91
10. 发现不能清除 / 删除的病毒 (A virus cannot be cleaned/deleted)
有时候, 你会发现一些病毒不能被清除或删除, 原因是这些病毒正在运作中。就好像你开启了一个 Microsoft Word 的档案时, 你不能把它删除或重新命名一样。这个时候, 你可以进入安全模式, 在病毒不运作的时候, 来把它删除。你可以参考 http://www.nod32.com.hk/support/faq.php?id=81 得到详细示范。但如果你发现有些档案在安全模式都不能删除, 很有可能这些是压缩档案。在预设的情况下, NOD32 不会删除有病毒的压缩档。你可以透过以下设定, 让 NOD32 删除有病毒的压缩档。
注: 在设定中我们会勾选「复制到隔离区」, 万一你有用的档案被删除了, 也可以在 NOD32 隔离区中复原过来。
Sometimes you are unable to clean or delete a virus. It is because the virus is running. It is like when you open a Microsoft Word file, you cannot delete or rename it. Then, you can enter the safe mode, where the virus is not running, to delete the virus. You may refer to http://www.nod32.com.hk/support/faq.php?id=81 for details. However, if you find that some infected files cannot be deleted even in the safe mode, they are probably zipped files. By default, NOD32 does not delete infected zipped files. You can make the following settings and let NOD32 delete infected zipped files automatically.
Note: In the settings we always check the box "Copy to Quarantine". In case a deleted file is found useful, you can restore it from the NOD32 Quarantine.
首先, 开启 NOD32 控制中心, 选择 「NOD32」, 再按「深入分析」
First, open the NOD32 Control Center, click "NOD32" and then "In-depth analysis"
深入分析会自动开始扫描, 请按「停止」, 以作其後的设定
Scanning will start automatically, please click "Stop" so that we can change some settings.
选择「动作」页面, 并按下图作设定
Click the "Action" tab, then make settings referring to the following figure.
在下拉选单选择「开机磁区」, 并按下图作设定
Choose "Boot sectors" from the pull down menu, then make settings referring to the following figure.
在下拉选单选择「压缩档」, 并按下图作设定
Choose "Archives" from the pull down menu, then make settings referring to the following figure.
在下拉选单选择「自我解压档」, 并按下图作设定
Choose "Self-extracting archives" from the pull down menu, then make settings referring to the following figure.
在下拉选单选择「运行时间压缩器」, 并按下图作设定
Choose "Run-time packers" from the pull down menu, then make settings referring to the following figure.
在下拉选单选择「电邮」, 并按下图作设定
Choose "Email" from the pull down menu, then make settings referring to the following figure.
在下拉选单选择「操作记忆体」, 并按下图作设定。最後按「检查及清除」
Choose "Operating memory" from the pull down menu, then make settings referring to the following figure.
图中所见所有蓝色的都是正常的资迅。
而红色的是发现病毒, 根据我们以上作的设定, 所有感染档案 (包括压缩档), 也会被自动清除/删除 (图中箭咀所指位置)
ALL the lines in blue are normal information.
The red lines indicate viruses are found. According to our previous settings, all infected files (including archives) will be cleaned/deleted automatically (see the arrows)
扫描完成後请按「离开」, 并按「是」储存我们刚才作的设定
After the scan is complete, click "Quit" and then "Yes" to save the settings.
ID: 109
11. 当对某个文件使用右键---nod32扫描的时,扫描结束後,当扫描结果显示有病毒存在时,nod32幷没有提示我进行任何杀毒操作
你可以设定右键扫描自动清除及删除病毒, (NOD32 控制中心 >>NOD32 >> 执行 NOD32 >> 设定档 >> 右键选单设定档 >> 动作 >> 设定你所希望的动作, 例如先清除後删除) |