Use windows2k registry to defend BO 2k Trojan

  
        Back Orifice2000 is the latest in a series of remote access Trojan horse viruses. This program allows hackers to access and control Windows 2000 systems via TCP/IP network and access any resources of the system at will, which is extremely destructive. Users can use Kill, Norton AntiVirus and other tools to kill, here is a way to use the win2k registry to clear it. Generally, if you use Back Orifice2000, the registry will add some file names such as ".exe" under the HKEY_LOCAL_MACHINE\\software\\Microsoft\\Windows\\CurrentVersion\\RunServices subkey (depending on the definition of the attacker), you also You can find the file named ".exe" in the C:\\Windows\\System subdirectory, which is the BO Server we are looking for. Delete it at this time. (Renaming or removing it in the c:\\windows\\system directory can also achieve the purpose of cleanup)
Copyright © Windows knowledge All Rights Reserved