Among the many viruses lurking in the vastness of the World Wide Web, there is one particularly dangerous and unpleasant type. This is the so-called "SMS virus" or a virus that blocks the Internet. At present, it is difficult to find a user who has never met him and was not tormented later with consequences. By the way, newcomers to the worldwide network are faced with such a threat much more often. First of all, because they don’t know how to properly protect your computer from malicious interference. They visit dangerous pages from a computer that does not have the proper firewall and antivirus. As a result, a malicious program enters the system. The virus blocks the Internet, and sometimes access to the computer itself.
Features and appearance of the pest
Typically, the result of a malicious program is a banner that covers most of the screen. Their content, although it differs in details, essentially boils down to a single purpose: to force the user to send a message to the number indicated below. Its presence is a hallmark of this type of malware. Moreover, other functions of the browser / computer become unavailable for the duration of the banner. The combination for calling the task manager, which often helped in the past, will not help here. The virus developers have provided a lot.
To complicate the task of treating a computer from such a misfortune as much as possible, the virus blocks access to the Internet. Antivirus programs do not start, often even loading the OS in safe mode does not help. The only salvation is scanning your computer with antivirus from an external medium. But this method also often fails. So what should users do if the virus blocks the Internet? Despite the complexity of the task, there are still several effective options for dealing with malicious banners.
A bit about prevention
Any computer user should know that it is much easier to prevent trouble than to guess how to get rid of it. Therefore, for precaution and common sense, it is not recommended to download obscure programs from unknown manufacturers. A virus can hide under anything. Serials, cracks for games, hacked software. Drivers, codecs - on sites where you can’t watch the video. Or the video itself with a strange extension, such as .avi.exe. Which in itself does not bode well, as it potentially looks like a virus. The irony is that users download the future banner voluntarily, taking it for a useful file. That is why such programs are called Trojans.
The virus blocks the Internet: treatment
It makes changes to the registry of the operating system. As a result, the operation and protective functions of Windows are disrupted. The malware is stored as a separate file, usually in user directories. You can try typing a combination of win + U buttons on your keyboard and select a magnifier. Then it will be possible to go to the official website, thus gaining access to the Internet. If it doesn’t help, then there is the well-known five-fold shift key to enable the sticky keys function. In the window that opens, there will be a link to the same special features, and then a magnifying glass.
If in this way the user was able to access the World Wide Web, it remains only to go to the site of one of the manufacturers of antivirus programs. On the page of any major developer, there is always information on malicious banners (take at least Kaspersky or Nod). It describes how to get rid of the problem - usually the unlock code, which should be entered in the window.
What should I do if the virus still blocks the Internet, but the above did not help? You must try to get to the registry. The fastest way to do this is to start the task manager. If it is locked, pressing the keyboard ctrl + alt + del will help. Holding them long enough, you will see the dispatcher flickering on the screen. To start working in it, you will need another person holding these buttons. Next, you need to go to the tab of running processes and try to find a virus there. Then complete everything. But the malicious program will still work the next time you turn on the computer.
To permanently remove the virus blocking the Internet, the user must restore the changes made to him in the registry. In the File section, create a new task and type the regedit command. HKEY_LOCAL_MACHINE / SOFTWARE / Microsoft / Windows NT / Current Version / Winlogon / - the branch to which you need to get. There will be several names in the window on the right. Among them is the Shell parameter. By running it, we check the content. Everything is extremely simple here, since the only entry should be “explorer.exe”. The rest must be removed. In addition to the above parameter, it is recommended to check Userinit. This parameter should not contain anything extra after "userinit.exe".