Skip to main content

You are not logged in. Your edit will be placed in a queue until it is peer reviewed.

We welcome edits that make the post easier to understand and more valuable for readers. Because community members review edits, please try to make the post substantially better than how you found it, for example, by fixing grammar or adding additional resources and hyperlinks.

4
  • 2
    Best to follow the Microsoft guidance on this, rather than try and come with an elaborate solution. Commented May 31, 2022 at 13:40
  • 1
    The article suggests that up to date Windows Defender (WIN 10 / 11) will mitigate the threat.
    – anon
    Commented May 31, 2022 at 14:18
  • You are aware you would only have to keep a single backup of the key, right, since the keys to handle the URL handle would be identical across all your machines. With the key deleted you go from a situation where the URL handle can be used or change to not existing. Of course the real solution is to use Microsoft Defender to detect and block the malicious behavior.
    – Ramhound
    Commented May 31, 2022 at 16:50
  • You don't need to backup the entire registry, you can store a reg file containing only the applicable keys if you so wish. Presumably this data would be identical across machines anyway. Commented Jun 2, 2022 at 5:36