I would like to search my all the computers no my LAN's registry and be able to delete a key. The w32.spybot.worm has added the key svchosting.exe in some of the computers registry and I need to delete the file and also the registry key. Is there a script to do this? If so can it be run before anything loads so that the file will not be in use?
This conversation is currently closed to new comments.
Not sure about running scripts, but you will also need to terminate the running malware process from memory before you can delete the registry key, otherwise it will just come back when you next restart the PCs. I know its not the answer you're looking for, but I hope it helps!
First thing to do, is to run a network wide virus scan to clean all the current virus' on your network off.
Next up, you can (although I recommend testing this thoroughly prior to attempting it) create a batch file with the correct registry settings and the commands to go out and delete the svchosting.exe file.
If you're asking for technical help, please be sure to include all your system info, including operating system, model number, and any other specifics related to the problem. Also please exercise your best judgment when posting in the forums--revealing personal information such as your e-mail address, telephone number, and address is not recommended.
netowkr wide registry search