Page 148 - Tự Khắc Phục Máy Tính Khi Bị Vi Rút Tấn Công
P. 148
4. Tim và xoá các giá trị:
HKEY_LOCAL_MACHINE^OFTWARE\Microsoft\Win
dows\CurrentVersion\policies\Explorer\Run\"waults" =
"%System%\waults.exe"
HKEY_CURRENT_USER\Software\Microsoft\Windows\
CurrentVersion\Run\"netview" =
"%System%\netview.exe"
HKEY_CURRENT_USER'^ftware\Classes\VirtualStore\
MACHINE>SOFrWARE\Microsoft\Windows\CurrentVer
sion\Policies\Explorer\Run\"waults” =
"%System%\waults.exe"
HKEY_CURRENT_USER\VirtualStore\MACHINE\SOF
TWAREXMicrosoft\Windows\CurrentVersion\Policies\Ex
plorer\Run\"waults" = "%System%\waults.exe"
HKEY_LOCAL_MACHINEVSOFTWARE\Microsoft\Acti
ve SetupMnstalled Components\| A5CDF7EC-751B-46aa-
AD69 4005EE080DE8 ỊVstubpath" =
"%System%\netview.exe s"
HKEY_CURRENT_USER\Identities\"Last User Identity"
= "0x00029B46"
HKEY_LOCAL_MACHINĐẨOFTWARE\SKav\nck
HKEY_CURRENT_USER\SOFTWARE\SKav
E[KEY_CURRENT_USER\Software\Classes\VirtualStore\
MACHINENSOFTWAREXMicrosoft\Active SetupMnstalled
Components\{ A5CDE7EC-751 B-46aa-AD69-
4005EE080DE8}
HKEY_CURRENT_USER\VirtualStore\MACHlNE^OF
TAVARE\Microsoft\Active SetupMnstalIed
ComponentsXỊ A5CDE7EC-751 B-46aa-AD69-
4005EE080DE8}
HKEY_CURRENT_USER\Software\Classes\VirtuaIStore\
MACHINESSOFTWAREVSKav
HKEY_CURRENT_USER\VirtualStore\MACHƯ4E\SOF
TWARESSkav
5. Thoát khỏi Registry.
148