What if the winxp system starts automatically creating a specific user?

  

The computer problem is strange, what kind of problems will happen. A few days ago, there was a strange thing happening in the computer of a friend. He is a WinXP system. It was very good before, and there is no need to log in when booting. Suddenly, the computer has to log in. In order to enter, and there is an account that does not know when to create (Lee), as shown below, after entering the administrator account, after deleting this strange account, the second time, when logging in, there will still be this account, no matter How to delete, this account will be created automatically the second time.

This happens to the computer, mostly in the Trojan virus. You must first kill the virus, then clean up the virus residue, and then delete the virus account, but there are two cases, one can use the administrator account to enter The system, the second is that you can not enter the computer system, the following describes the treatment of these two situations.

Software Name:
Chinese cabbage U disk boot production tool V4.6 (2013 New Year Special Edition)
Software size:
< dd> 342MB
updated:
2013-01-24


software name:
PE absolute Toolbox V1.6 official installation version (PE emergency tool collection system maintenance tool)
software size:
94.7MB
updated:
2014-05-15



First, the processing method that can enter the system normally

If this happens, you can use the Administrator account to enter the computer system. This is the most ideal solution. First boot into the login interface, select the Administrator account to log in. If the Administrator account does not appear, you can first press and hold the Ctrl+Alt key, then click the Del key twice. Exit the Administrator account.

After entering the system, first enable anti-virus tools, such as Kingsoft Internet Security, to fully disinfect the disk.

2, then delete the virus account (Lee), how to delete it, the following describes the detailed deletion steps, first open the “ start & rdquo; menu, and then open from the menu & ldquo; control panel & rdquo ; program, in the control panel window, select “Administrative Tools", click to enter.

3. After entering the management window of the system, there are seven tools, including local security policy, service, computer management, event viewer, data source, performance, and component services. All are important management tools for the Windows system. To delete a user account, you need to go to “Computer Management”

4, enter the computer management window, first in the left directory, find the "system tools", this, open, and then from its sub-items, find "local users" And group & rdquo;, from its sub-items, find and select “ user & rdquo; this item, the user is specifically used to manage user accounts.

5. In the right window of the user, find the virus account, ie Lee account, right click on this account, from the pop-up menu, select “ delete ”Select. A warning window will pop up asking if you want to delete this account. If you want to delete it, press “Yes 


6. If you don't want to delete it immediately, you can also disable this account by right-clicking on the Lee account and selecting the “Properties” option to enter the Properties window. Under the General tab, check " Account is disabled", then press “Apply” The disabled account has a small red cross on the icon.


7, killing the virus, also deleted the virus account, and then, to clean up the virus residue, such a virus or Trojan, most of them will be on each disk, leaving a residue The virus files are admin.bat and autorun.inf. Look for the two files in the root directory of each disk. If you find these two files, delete them all to the recycle bin and clean them from the recycle bin. .

After cleaning up, log in later, there will be no Lee account, and it will not be created automatically.

Second, can not enter the system processing method

After this self-built account problem, there is a situation, that is, can not enter the system, when logging in, can only use this Lee account login, and this account has a password, can't enter, what should I do?

1, in this case, you can only use the U disk PE method, first use the U disk on other computers, make a bootable U disk, such as using the Chinese cabbage U disk boot software to make , you can make a boot U disk with one click.

2, after the completion of the production, download an anti-virus tool on the network, this anti-virus tool must be able to run under PE, I use Kingsoft Internet Security 10, you can search on the Internet <; Kingsoft Internet Security 10 single file green version & rdquo;, there are three files, after decompression, put in the U disk, as shown below. It is also possible to use the 360 ​​first-aid kit U disk version. If there are other PE anti-virus tools, you can also use it as long as you can kill the virus in the U disk.

3. After the Chinese cabbage is booted, make it into your own computer, boot it, and start it with a USB flash drive. If it is a new computer, you can usually press F12 to enter the quick start option. Select your own U disk name to start, if it is an old-fashioned computer, you need to enter the BIOS settings U disk boot, the specific setting method, according to the instructions of your own motherboard.

After entering the U disk, select PE to install, if the picture is "Run the Chinese cabbage Win8pe anti-blue screen version".

4. After entering the PE desktop, open the Jinshan anti-virus program before putting it into the U disk. The anti-virus file of Jinshan is kingsoft.exe, open the main domain of the program, click “ Cloud killing & rdquo;. It is best to check and kill under the PE network. If it is not connected to the Internet, because there are fewer examples of the virus database that it carries, it may not be completely detected.

5, after killing the virus Trojan, then enter "My computer", enter each disk, in the root directory, find out if there is admin.bat and autorun.inf These two files, if found, will be deleted all. Then exit the PE, restart the computer, enter the Windows system from the hard disk, enter, and then delete the virus account Lee, delete method according to the above method (can enter the system processing method).

Note:

1. If you remember the installation path and name of the anti-virus program, you can press F8 to enter advanced mode at boot and select “Safe Mode with Command Prompt”. ” Enter, in the cmd window. Enter the anti-virus file path to kill the virus.

2, if the above method is not enough, the most effective way is to reinstall the operating system.

3. If you still need to log in to enter the system after processing, you can change the way the user logs in or logs out after entering the system from the Start->Control Panel->User Account-> Select “Use the welcome screen”-> application option.

Copyright © Windows knowledge All Rights Reserved