文章
由 life power » 週一 3月 04, 2002 2:48 pm
先用掃毒程式處理一下
再用以下方法處理已感染的病毒
BackDoor_SUBSEVEN
具破壞性: 會
別名:
Backdoor.Subseven, Backdoor.Subseven.21.D, SUBSEVEN.F
說明:
A backdoor malware has a server program and a client program. It uses the server program on target systems and uses the client program to control systems with the server program.
This backdoor malware is the server side. It installs itself on a target system and then opens the infected system to a remote user running the client program. It compromises the security of its infected system.
解決方案:
Delete the following files from the %Windows% folder. %Windows% is the directory where the Windows folder is located. It is usually located in the C: (C:Windows)
EOS386.DL
WINDOS.EXE
APPL_.EXE
Click Start>Run, type Regedit then hit the Enter key.
Double click the following:
HKEY_LOCAL_MACHINE>Software>CLASSES
Under the CLASSES folder, look for and then delete the following registry key:
.dl
Double click the following:
HKEY_LOCAL_MACHINE>Enum>PCI
Under the PCI key, look for and then delete the following registry key:
RZNSSS
Double click the following:
HKEY_LOCAL_MACHINE>Software>CLASSES>exefile>shell >open>command
In the right panel, look for and then right click the following data:
"windos.exe "%1" %*"
Choose Modify and change it with the following:
?%1" %*"
Close the Registry.
Scan your system with Trend Micro antivirus and delete all files detected as BKDR_SUBSEVEN.F. To do this Trend Micro