"Eternal Blue" disposal process

First, the manual anti-virus methods: 
1, see C: \ Windows path, check for mssecsvc.exe, tasksche.exe, qeriuwjhrf three documents,
if there is one, then has been infected, the need for disconnection processing immediately; note : delete the file is invalid, it will automatically re-created, complete the following two steps before deleting.

2, view the computer services, check for Microsoft Security Center 2.0 service, which is to create a virus,
it needs to be changed to disable and stop services; 
3, \ the SYSTEM \ CurrentControlSet view the registry under HKEY_LOCAL_MACHINE \ services, the existence of
mssecsvc items If so, delete the entire entry; 

4, delete the C: \ 3 files in the Windows path

Second, the rehabilitation program: 
1, install patches MS17-010, MS17-010 security bulletin system corresponding to each patch KB number 

2, Enterprise Edition install anti-virus software TIANQING, update the virus database.

Guess you like

Origin www.cnblogs.com/gdg87813/p/11388398.html