Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Win32.udiskvir.spath.b virus treatment

2025-04-06 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Servers >

Share

Shulou(Shulou.com)06/03 Report--

Antivirus software found svchost.exe virus, virus directory is c:\windows\temp, this file is imitation system process, can be passed tasklist.exe /svc| findstr "svchost.exe" Find the description listed as "missing", remember pid.

Abort via Task Manager does not work, deleting a virus file will generate a new one immediately.

You can use taskkill /pid 12592 /pid 12452 /f to forcibly terminate it.

This virus uses port 445 to spread. It is recommended to block port 445 in the local area network at the same time. Layer 2 prohibits 445 through the system firewall.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Servers

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report