Fortune Telling Collection - Comprehensive fortune-telling - What is the process in winmer.exe? How to delete it? (The deletion steps are clear, thank you! )

What is the process in winmer.exe? How to delete it? (The deletion steps are clear, thank you! )

Process document: Winmer or winmer.exe.

Process location: \WINDOWS\System32\

Program name: Troj_backdoor.wmer

Program use: backdoor Trojan virus

Program author:

System flow: none.

Background program: Yes

Use the network: Yes

Hardware-related: None.

Security level: low

Process analysis: the virus modifies the registry to create a system service item Run/KernelCheck to realize self-startup, and allows malicious attackers to remotely control the computer after the virus runs. But also takes up a lot of system resources, which leads to the slow operation of the machine.

Winmer.exe, there is no good way to do it on the Internet now! ~ ~ But you can try at first! ~ search! ~ All files and folders! ~ Enter winmer.exe~~ Then click "More Advanced Options" to hide the search on the hook! ~ ~ Find out where he is! ~ ~ Then end the process and delete the folder! ~ ~ Then type regedit to open the registry editor at the start of running! ~ Click the search function in the edit! ~ Delete all projects including winmer.exe! ~ restart the computer, and then.

Search the project in REGEDIT, and find this thing behind a RUN, and delete it directly.