请问我的这些进程那些可以删除啊?谢谢 我看一下哪些进程可以删除的? 该怎么样删,最好能具体点.谢谢...
\u7535\u8111\u91cc\u7684\u54ea\u4e9b\u8fdb\u7a0b\u662f\u53ef\u4ee5\u5220\u9664\u7684\uff1f\u901a\u8fc7\u7cfb\u7edf\u81ea\u5e26\u7684\u4efb\u52a1\u7ba1\u7406\u5668\u5bdf\u770b\u6b63\u5728\u8fd0\u884c\u7684\u8fdb\u7a0b\u3002\u9009\u62e9\u5173\u95ed\u4e0d\u9700\u8981\u7684\u5373\u53ef\u3002\u5982\u4f55\u5206\u8fa8\u662f\u5426\u9700\u8981\u5bdf\u770b\u4ee5\u4e0b\u8d44\u6599\uff1a
Windows\u7cfb\u7edf\u8fdb\u7a0b\u5217\u8868\u5b8c\u5168\u89e3\u6790
\u8fdb\u7a0b\u662f\u7a0b\u5e8f\u5728\u8ba1\u7b97\u673a\u4e0a\u7684\u4e00\u6b21\u6267\u884c\u6d3b\u52a8\u3002\u5f53\u4f60\u8fd0\u884c\u4e00\u4e2a\u7a0b\u5e8f\uff0c\u4f60\u5c31\u542f\u52a8\u4e86\u4e00\u4e2a\u8fdb\u7a0b\u3002\u663e\u7136\uff0c\u7a0b\u5e8f\u662f\u6b7b\u7684(\u9759\u6001\u7684)\uff0c\u8fdb\u7a0b\u662f\u6d3b\u7684(\u52a8\u6001\u7684)\u3002\u8fdb\u7a0b\u53ef\u4ee5\u5206\u4e3a\u7cfb\u7edf\u8fdb\u7a0b\u548c\u7528\u6237\u8fdb\u7a0b\u3002\u51e1\u662f\u7528\u4e8e\u5b8c\u6210\u64cd\u4f5c\u7cfb\u7edf\u7684\u5404\u79cd
\u529f\u80fd\u7684\u8fdb\u7a0b\u5c31\u662f\u7cfb\u7edf\u8fdb\u7a0b\uff0c\u5b83\u4eec\u5c31\u662f\u5904\u4e8e\u8fd0\u884c\u72b6\u6001\u4e0b\u7684\u64cd\u4f5c\u7cfb\u7edf\u672c\u8eab\uff1b\u7528\u6237\u8fdb\u7a0b\u5c31\u662f\u6240\u6709\u7531\u4f60\u542f\u52a8\u7684\u8fdb\u7a0b\u3002\u8fdb\u7a0b\u662f\u64cd\u4f5c\u7cfb\u7edf\u8fdb\u884c\u8d44\u6e90\u5206\u914d\u7684\u5355\u4f4d\u3002
\u5728Windows\u4e0b\uff0c\u8fdb\u7a0b\u53c8\u88ab\u7ec6\u5316\u4e3a\u7ebf\u7a0b\uff0c\u4e5f\u5c31\u662f\u4e00\u4e2a\u8fdb\u7a0b\u4e0b\u6709\u591a\u4e2a\u80fd\u72ec\u7acb\u8fd0\u884c\u7684\u66f4\u5c0f\u7684\u5355\u4f4d\u3002
Windows 2000 \u7cfb\u7edf\u4e0b\u7684\u7f3a\u7701\u8fdb\u7a0b
Csrss.exe
Explorer.exe
Internat.exe
Lsass.exe
Mstask.exe
Smss.exe
Spoolsv.exe
Svchost.exe
Services.exe
System
System Idle Process
Taskmgr.exe
Winlogon.exe
Winmgmt.exe
Windows XP \u5e38\u89c1\u7684\u8fdb\u7a0b\u5217\u8868
\u6700\u57fa\u672c\u7684\u7cfb\u7edf\u8fdb\u7a0b\uff08\u4e5f\u5c31\u662f\u8bf4\uff0c\u8fd9\u4e9b\u8fdb\u7a0b\u662f\u7cfb\u7edf\u8fd0\u884c\u7684\u57fa\u672c\u6761\u4ef6\uff0c\u6709\u4e86\u8fd9\u4e9b\u8fdb\u7a0b\uff0c\u7cfb\u7edf\u5c31\u80fd\u6b63\u5e38\u8fd0\u884c\uff09
smss.exe \u7cfb\u7edf\u8fdb\u7a0b\u7ba1\u7406
csrss.exe \u5b50\u7cfb\u7edf\u670d\u52a1\u5668\u8fdb\u7a0b
winlogon.exe \u7ba1\u7406\u7528\u6237\u767b\u5f55
services.exe \u5305\u542b\u5f88\u591a\u7cfb\u7edf\u670d\u52a1
lsass.exe \u7ba1\u7406 IP \u5b89\u5168\u7b56\u7565\u4ee5\u53ca\u542f\u52a8 ISAKMP/Oakley (IKE) \u548c IP \u5b89\u5168\u9a71\u52a8\u7a0b\u5e8f\u3002(\u7cfb\u7edf\u670d\u52a1) \u4ea7\u751f\u4f1a\u8bdd\u5bc6\u94a5\u4ee5\u53ca\u6388\u4e88\u7528\u4e8e\u4ea4\u4e92\u5f0f\u5ba2\u6237/\u670d\u52a1\u5668\u9a8c\u8bc1\u7684\u670d\u52a1\u51ed\u636e(ticket)\u3002(\u7cfb\u7edf\u670d\u52a1) ->netlogon
svchost.exe \u5305\u542b\u5f88\u591a\u7cfb\u7edf\u670d\u52a1->eventsystem,
(SPOOLSV.EXE \u5c06\u6587\u4ef6\u52a0\u8f7d\u5230\u5185\u5b58\u4e2d\u4ee5\u4fbf\u8fdf\u540e\u6253\u5370\u3002)
explorer.exe \u8d44\u6e90\u7ba1\u7406\u5668
(internat.exe \u6258\u76d8\u533a\u7684\u62fc\u97f3\u56fe\u6807)
\u9644\u52a0\u7684\u7cfb\u7edf\u8fdb\u7a0b\uff08\u8fd9\u4e9b\u8fdb\u7a0b\u4e0d\u662f\u5fc5\u8981\u7684\uff0c\u4f60\u53ef\u4ee5\u6839\u636e\u9700\u8981\u901a\u8fc7\u670d\u52a1\u7ba1\u7406\u5668\u6765\u589e\u52a0\u6216\u51cf\u5c11\uff09
mstask.exe \u5141\u8bb8\u7a0b\u5e8f\u5728\u6307\u5b9a\u65f6\u95f4\u8fd0\u884c\u3002(\u7cfb\u7edf\u670d\u52a1)->schedule
regsvc.exe \u5141\u8bb8\u8fdc\u7a0b\u6ce8\u518c\u8868\u64cd\u4f5c\u3002(\u7cfb\u7edf\u670d\u52a1)->remoteregister
winmgmt.exe \u63d0\u4f9b\u7cfb\u7edf\u7ba1\u7406\u4fe1\u606f(\u7cfb\u7edf\u670d\u52a1)\u3002
inetinfo.exe->msftpsvc,w3svc,iisadmn
tlntsvr.exe->tlnrsvr
tftpd.exe \u5b9e\u73b0 TFTP Internet \u6807\u51c6\u3002\u8be5\u6807\u51c6\u4e0d\u8981\u6c42\u7528\u6237\u540d\u548c\u5bc6\u7801\u3002\u8fdc\u7a0b\u5b89\u88c5\u670d\u52a1\u7684\u4e00\u90e8\u5206\u3002(\u7cfb\u7edf\u670d\u52a1)
termsrv.exe ->termservice
dns.exe \u5e94\u7b54\u5bf9\u57df\u540d\u7cfb\u7edf(DNS)\u540d\u79f0\u7684\u67e5\u8be2\u548c\u66f4\u65b0\u8bf7\u6c42\u3002(\u7cfb\u7edf\u670d\u52a1)
\u4ee5\u4e0b\u5168\u662f\u7cfb\u7edf\u670d\u52a1,\u5e76\u4e14\u5f88\u5c11\u4f1a\u7528\u5230\uff0c\u5982\u679c\u4f60\u6682\u65f6\u7528\u4e0d\u7740,\u5e94\u8be5\u5173\u6389(\u5bf9\u5b89\u5168\u6709\u5bb3)
tcpsvcs.exe \u63d0\u4f9b\u5728 PXE \u53ef\u8fdc\u7a0b\u542f\u52a8\u5ba2\u6237\u8ba1\u7b97\u673a\u4e0a\u8fdc\u7a0b\u5b89\u88c5 Windows 2000 Professional \u7684\u80fd\u529b\u3002(\u7cfb\u7edf\u670d\u52a1)->simptcp
\u652f\u6301\u4ee5\u4e0b TCP/IP \u670d\u52a1\uff1aCharacter Generator, Daytime, Discard, Echo, \u4ee5\u53ca Quote of the Day\u3002(\u7cfb\u7edf\u670d\u52a1)
ismserv.exe \u5141\u8bb8\u5728 Windows Advanced Server \u7ad9\u70b9\u95f4\u53d1\u9001\u548c\u63a5\u6536\u6d88\u606f\u3002(\u7cfb\u7edf\u670d\u52a1)
ups.exe \u7ba1\u7406\u8fde\u63a5\u5230\u8ba1\u7b97\u673a\u7684\u4e0d\u95f4\u65ad\u7535\u6e90(UPS)\u3002(\u7cfb\u7edf\u670d\u52a1)
wins.exe \u4e3a\u6ce8\u518c\u548c\u89e3\u6790 NetBIOS \u578b\u540d\u79f0\u7684 TCP/IP \u5ba2\u6237\u63d0\u4f9b NetBIOS \u540d\u79f0\u670d\u52a1\u3002(\u7cfb\u7edf\u670d\u52a1)
llssrv.exe License Logging Service(system service)
ntfrs.exe \u5728\u591a\u4e2a\u670d\u52a1\u5668\u95f4\u7ef4\u62a4\u6587\u4ef6\u76ee\u5f55\u5185\u5bb9\u7684\u6587\u4ef6\u540c\u6b65\u3002(\u7cfb\u7edf\u670d\u52a1)
RsSub.exe \u63a7\u5236\u7528\u6765\u8fdc\u7a0b\u50a8\u5b58\u6570\u636e\u7684\u5a92\u4f53\u3002(\u7cfb\u7edf\u670d\u52a1)
locator.exe \u7ba1\u7406 RPC \u540d\u79f0\u670d\u52a1\u6570\u636e\u5e93.->rpclocator(\u533a RpcSs)
lserver.exe \u6ce8\u518c\u5ba2\u6237\u7aef\u8bb8\u53ef\u8bc1\u3002(\u7cfb\u7edf\u670d\u52a1)
dfssvc.exe \u7ba1\u7406\u5206\u5e03\u4e8e\u5c40\u57df\u7f51\u6216\u5e7f\u57df\u7f51\u7684\u903b\u8f91\u5377\u3002(\u7cfb\u7edf\u670d\u52a1)
clipsrv.exe \u652f\u6301\u201c\u526a\u8d34\u7c3f\u67e5\u770b\u5668\u201d\uff0c\u4ee5\u4fbf\u53ef\u4ee5\u4ece\u8fdc\u7a0b\u526a\u8d34\u7c3f\u67e5\u9605\u526a\u8d34\u9875\u9762\u3002(\u7cfb\u7edf\u670d\u52a1)
msdtc.exe \u5e76\u5217\u4e8b\u52a1\uff0c\u662f\u5206\u5e03\u4e8e\u4e24\u4e2a\u4ee5\u4e0a\u7684\u6570\u636e\u5e93\uff0c\u6d88\u606f\u961f\u5217\uff0c\u6587\u4ef6\u7cfb\u7edf\uff0c\u6216\u5176\u5b83\u4e8b\u52a1\u4fdd\u62a4\u8d44\u6e90\u7ba1\u7406\u5668\u3002(\u7cfb\u7edf\u670d\u52a1)
faxsvc.exe \u5e2e\u52a9\u60a8\u53d1\u9001\u548c\u63a5\u6536\u4f20\u771f\u3002(\u7cfb\u7edf\u670d\u52a1)
cisvc.exe Indexing\u670d\u52a1 (\u7cfb\u7edf\u670d\u52a1)
dmadmin.exe \u78c1\u76d8\u7ba1\u7406\u8bf7\u6c42\u7684\u7cfb\u7edf\u7ba1\u7406\u670d\u52a1\u3002(\u7cfb\u7edf\u670d\u52a1)
mnmsrvc.exe \u5141\u8bb8\u6709\u6743\u9650\u7684\u7528\u6237\u4f7f\u7528 NetMeeting \u8fdc\u7a0b\u8bbf\u95ee Windows \u684c\u9762\u3002(\u7cfb\u7edf\u670d\u52a1)
netdde.exe \u63d0\u4f9b\u52a8\u6001\u6570\u636e\u4ea4\u6362 (DDE) \u7684\u7f51\u7edc\u4f20\u8f93\u548c\u5b89\u5168\u7279\u6027\u3002(\u7cfb\u7edf\u670d\u52a1)
smlogsvc.exe \u914d\u7f6e\u6027\u80fd\u65e5\u5fd7\u548c\u8b66\u62a5\u3002(\u7cfb\u7edf\u670d\u52a1)
rsvp.exe \u4e3a\u4f9d\u8d56\u8d28\u91cf\u670d\u52a1(QoS)\u7684\u7a0b\u5e8f\u548c\u63a7\u5236\u5e94\u7528\u7a0b\u5e8f\u63d0\u4f9b\u7f51\u7edc\u4fe1\u53f7\u548c\u672c\u5730\u901a\u4fe1\u63a7\u5236\u5b89\u88c5\u529f\u80fd\u3002(\u7cfb\u7edf\u670d\u52a1)
RsEng.exe \u534f\u8c03\u7528\u6765\u50a8\u5b58\u4e0d\u5e38\u7528\u6570\u636e\u7684\u670d\u52a1\u548c\u7ba1\u7406\u5de5\u5177\u3002(\u7cfb\u7edf\u670d\u52a1)
RsFsa.exe \u7ba1\u7406\u8fdc\u7a0b\u50a8\u5b58\u7684\u6587\u4ef6\u7684\u64cd\u4f5c\u3002(\u7cfb\u7edf\u670d\u52a1)
grovel.exe \u626b\u63cf\u96f6\u5907\u4efd\u5b58\u50a8(SIS)\u5377\u4e0a\u7684\u91cd\u590d\u6587\u4ef6\uff0c\u5e76\u4e14\u5c06\u91cd\u590d\u6587\u4ef6\u6307\u5411\u4e00\u4e2a\u6570\u636e\u5b58\u50a8\u70b9\uff0c\u4ee5\u8282\u7701\u78c1\u76d8\u7a7a\u95f4(\u7cfb\u7edf\u670d\u52a1)
SCardSvr.exe \u5bf9\u63d2\u5165\u5728\u8ba1\u7b97\u673a\u667a\u80fd\u5361\u9605\u8bfb\u5668\u4e2d\u7684\u667a\u80fd\u5361\u8fdb\u884c\u7ba1\u7406\u548c\u8bbf\u95ee\u63a7\u5236\u3002(\u7cfb\u7edf\u670d\u52a1)
snmp.exe \u5305\u542b\u4ee3\u7406\u7a0b\u5e8f\u53ef\u4ee5\u76d1\u89c6\u7f51\u7edc\u8bbe\u5907\u7684\u6d3b\u52a8\u5e76\u4e14\u5411\u7f51\u7edc\u63a7\u5236\u53f0\u5de5\u4f5c\u7ad9\u6c47\u62a5\u3002(\u7cfb\u7edf\u670d\u52a1)
snmptrap.exe \u63a5\u6536\u7531\u672c\u5730\u6216\u8fdc\u7a0b SNMP \u4ee3\u7406\u7a0b\u5e8f\u4ea7\u751f\u7684\u9677\u9631\u6d88\u606f\uff0c\u7136\u540e\u5c06\u6d88\u606f\u4f20\u9012\u5230\u8fd0\u884c\u5728\u8fd9\u53f0\u8ba1\u7b97\u673a\u4e0a SNMP \u7ba1\u7406\u7a0b\u5e8f\u3002(\u7cfb\u7edf\u670d\u52a1)
UtilMan.exe \u4ece\u4e00\u4e2a\u7a97\u53e3\u4e2d\u542f\u52a8\u548c\u914d\u7f6e\u8f85\u52a9\u5de5\u5177\u3002(\u7cfb\u7edf\u670d\u52a1)
msiexec.exe \u4f9d\u636e .MSI \u6587\u4ef6\u4e2d\u5305\u542b\u7684\u547d\u4ee4\u6765\u5b89\u88c5\u3001\u4fee\u590d\u4ee5\u53ca\u5220\u9664\u8f6f\u4ef6\u3002(\u7cfb\u7edf\u670d\u52a1)
Windows \u7cfb\u7edf\u5e38\u89c1\u8fdb\u7a0b
\u7cfb\u7edf\u8fdb\u7a0b
system process
\u8fdb\u7a0b\u6587\u4ef6: [system process] or [system process]
\u8fdb\u7a0b\u540d\u79f0: Windows\u5185\u5b58\u5904\u7406\u7cfb\u7edf\u8fdb\u7a0b
\u63cf\u8ff0: Windows\u9875\u9762\u5185\u5b58\u7ba1\u7406\u8fdb\u7a0b\uff0c\u62e5\u67090\u7ea7\u4f18\u5148\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
alg.exe
\u8fdb\u7a0b\u6587\u4ef6: alg or alg.exe
\u8fdb\u7a0b\u540d\u79f0: \u5e94\u7528\u5c42\u7f51\u5173\u670d\u52a1
\u63cf\u8ff0: \u8fd9\u662f\u4e00\u4e2a\u5e94\u7528\u5c42\u7f51\u5173\u670d\u52a1\u7528\u4e8e\u7f51\u7edc\u5171\u4eab\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
csrss.exe
\u8fdb\u7a0b\u6587\u4ef6: csrss or csrss.exe
\u8fdb\u7a0b\u540d\u79f0: Client/Server Runtime Server Subsystem
\u63cf\u8ff0: \u5ba2\u6237\u7aef\u670d\u52a1\u5b50\u7cfb\u7edf\uff0c\u7528\u4ee5\u63a7\u5236Windows\u56fe\u5f62\u76f8\u5173\u5b50\u7cfb\u7edf\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
ddhelp.exe
\u8fdb\u7a0b\u6587\u4ef6: ddhelp or ddhelp.exe
\u8fdb\u7a0b\u540d\u79f0: DirectDraw Helper
\u63cf\u8ff0: DirectDraw Helper\u662fDirectX\u8fd9\u4e2a\u7528\u4e8e\u56fe\u5f62\u670d\u52a1\u7684\u4e00\u4e2a\u7ec4\u6210\u90e8\u5206\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
dllhost.exe
\u8fdb\u7a0b\u6587\u4ef6: dllhost or dllhost.exe
\u8fdb\u7a0b\u540d\u79f0: DCOM DLL Host\u8fdb\u7a0b
\u63cf\u8ff0: DCOM DLL Host\u8fdb\u7a0b\u652f\u6301\u57fa\u4e8eCOM\u5bf9\u8c61\u652f\u6301DLL\u4ee5\u8fd0\u884cWindows\u7a0b\u5e8f\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
inetinfo.exe
\u8fdb\u7a0b\u6587\u4ef6: inetinfo or inetinfo.exe
\u8fdb\u7a0b\u540d\u79f0: IIS Admin Service Helper
\u63cf\u8ff0: InetInfo\u662fMicrosoft Internet Infomation Services (IIS)\u7684\u4e00\u90e8\u5206\uff0c\u7528\u4e8eDebug\u8c03\u8bd5\u9664\u9519\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
internat.exe
\u8fdb\u7a0b\u6587\u4ef6: internat or internat.exe
\u8fdb\u7a0b\u540d\u79f0: Input Locales
\u63cf\u8ff0: \u8fd9\u4e2a\u8f93\u5165\u63a7\u5236\u56fe\u6807\u7528\u4e8e\u66f4\u6539\u7c7b\u4f3c\u56fd\u5bb6\u8bbe\u7f6e\u3001\u952e\u76d8\u7c7b\u578b\u548c\u65e5\u671f\u683c\u5f0f\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
kernel32.dll
\u8fdb\u7a0b\u6587\u4ef6: kernel32 or kernel32.dll
\u8fdb\u7a0b\u540d\u79f0: Windows\u58f3\u8fdb\u7a0b
\u63cf\u8ff0: Windows\u58f3\u8fdb\u7a0b\u7528\u4e8e\u7ba1\u7406\u591a\u7ebf\u7a0b\u3001\u5185\u5b58\u548c\u8d44\u6e90\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
lsass.exe
\u8fdb\u7a0b\u6587\u4ef6: lsass or lsass.exe
\u8fdb\u7a0b\u540d\u79f0: \u672c\u5730\u5b89\u5168\u6743\u9650\u670d\u52a1
\u63cf\u8ff0: \u8fd9\u4e2a\u672c\u5730\u5b89\u5168\u6743\u9650\u670d\u52a1\u63a7\u5236Windows\u5b89\u5168\u673a\u5236\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
mdm.exe
\u8fdb\u7a0b\u6587\u4ef6: mdm or mdm.exe
\u8fdb\u7a0b\u540d\u79f0: Machine Debug Manager
\u63cf\u8ff0: Debug\u9664\u9519\u7ba1\u7406\u7528\u4e8e\u8c03\u8bd5\u5e94\u7528\u7a0b\u5e8f\u548cMicrosoft Office\u4e2d\u7684Microsoft Script Editor\u811a\u672c\u7f16\u8f91\u5668\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
mmtask.tsk
\u8fdb\u7a0b\u6587\u4ef6: mmtask or mmtask.tsk
\u8fdb\u7a0b\u540d\u79f0: \u591a\u5a92\u4f53\u652f\u6301\u8fdb\u7a0b
\u63cf\u8ff0: \u8fd9\u4e2aWindows\u591a\u5a92\u4f53\u540e\u53f0\u7a0b\u5e8f\u63a7\u5236\u591a\u5a92\u4f53\u670d\u52a1\uff0c\u4f8b\u5982MIDI\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
mprexe.exe
\u8fdb\u7a0b\u6587\u4ef6: mprexe or mprexe.exe
\u8fdb\u7a0b\u540d\u79f0: Windows\u8def\u7531\u8fdb\u7a0b
\u63cf\u8ff0: Windows\u8def\u7531\u8fdb\u7a0b\u5305\u62ec\u5411\u9002\u5f53\u7684\u7f51\u7edc\u90e8\u5206\u53d1\u51fa\u7f51\u7edc\u8bf7\u6c42\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
msgsrv32.exe
\u8fdb\u7a0b\u6587\u4ef6: msgsrv32 or msgsrv32.exe
\u8fdb\u7a0b\u540d\u79f0: Windows\u4fe1\u4f7f\u670d\u52a1
\u63cf\u8ff0: Windows\u4fe1\u4f7f\u670d\u52a1\u8c03\u7528Windows\u9a71\u52a8\u548c\u7a0b\u5e8f\u7ba1\u7406\u5728\u542f\u52a8\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
mstask.exe
\u8fdb\u7a0b\u6587\u4ef6: mstask or mstask.exe
\u8fdb\u7a0b\u540d\u79f0: Windows\u8ba1\u5212\u4efb\u52a1
\u63cf\u8ff0: Windows\u8ba1\u5212\u4efb\u52a1\u7528\u4e8e\u8bbe\u5b9a\u7ee7\u627f\u5728\u4ec0\u4e48\u65f6\u95f4\u6216\u8005\u4ec0\u4e48\u65e5\u671f\u5907\u4efd\u6216\u8005\u8fd0\u884c\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
regsvc.exe
\u8fdb\u7a0b\u6587\u4ef6: regsvc or regsvc.exe
\u8fdb\u7a0b\u540d\u79f0: \u8fdc\u7a0b\u6ce8\u518c\u8868\u670d\u52a1
\u63cf\u8ff0: \u8fdc\u7a0b\u6ce8\u518c\u8868\u670d\u52a1\u7528\u4e8e\u8bbf\u95ee\u5728\u8fdc\u7a0b\u8ba1\u7b97\u673a\u7684\u6ce8\u518c\u8868\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
rpcss.exe
\u8fdb\u7a0b\u6587\u4ef6: rpcss or rpcss.exe
\u8fdb\u7a0b\u540d\u79f0: RPC Portmapper
\u63cf\u8ff0: Windows \u7684RPC\u7aef\u53e3\u6620\u5c04\u8fdb\u7a0b\u5904\u7406RPC\u8c03\u7528(\u8fdc\u7a0b\u6a21\u5757\u8c03\u7528)\u7136\u540e\u628a\u5b83\u4eec\u6620\u5c04\u7ed9\u6307\u5b9a\u7684\u670d\u52a1\u63d0\u4f9b\u8005\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
services.exe
\u8fdb\u7a0b\u6587\u4ef6: services or services.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Service Controller
\u63cf\u8ff0: \u7ba1\u7406Windows\u670d\u52a1\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
smss.exe
\u8fdb\u7a0b\u6587\u4ef6: smss or smss.exe
\u8fdb\u7a0b\u540d\u79f0: Session Manager Subsystem
\u63cf\u8ff0: \u8be5\u8fdb\u7a0b\u4e3a\u4f1a\u8bdd\u7ba1\u7406\u5b50\u7cfb\u7edf\u7528\u4ee5\u521d\u59cb\u5316\u7cfb\u7edf\u53d8\u91cf\uff0cMS-DOS\u9a71\u52a8\u540d\u79f0\u7c7b\u4f3cLPT1\u4ee5\u53caCOM\uff0c\u8c03\u7528Win32\u58f3\u5b50\u7cfb\u7edf\u548c\u8fd0\u884c\u5728Windows\u767b\u9646\u8fc7\u7a0b\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
snmp.exe
\u8fdb\u7a0b\u6587\u4ef6: snmp or snmp.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft SNMP Agent
\u63cf\u8ff0: Windows\u7b80\u5355\u7684\u7f51\u7edc\u534f\u8bae\u4ee3\u7406\uff08SNMP\uff09\u7528\u4e8e\u76d1\u542c\u548c\u53d1\u9001\u8bf7\u6c42\u5230\u9002\u5f53\u7684\u7f51\u7edc\u90e8\u5206\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
spool32.exe
\u8fdb\u7a0b\u6587\u4ef6: spool32 or spool32.exe
\u8fdb\u7a0b\u540d\u79f0: Printer Spooler
\u63cf\u8ff0: Windows\u6253\u5370\u4efb\u52a1\u63a7\u5236\u7a0b\u5e8f\uff0c\u7528\u4ee5\u6253\u5370\u673a\u5c31\u7eea\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
spoolsv.exe
\u8fdb\u7a0b\u6587\u4ef6: spoolsv or spoolsv.exe
\u8fdb\u7a0b\u540d\u79f0: Printer Spooler Service
\u63cf\u8ff0: Windows\u6253\u5370\u4efb\u52a1\u63a7\u5236\u7a0b\u5e8f\uff0c\u7528\u4ee5\u6253\u5370\u673a\u5c31\u7eea\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
stisvc.exe
\u8fdb\u7a0b\u6587\u4ef6: stisvc or stisvc.exe
\u8fdb\u7a0b\u540d\u79f0: Still Image Service
\u63cf\u8ff0: Still Image Service\u7528\u4e8e\u63a7\u5236\u626b\u63cf\u4eea\u548c\u6570\u7801\u76f8\u673a\u8fde\u63a5\u5728Windows\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
svchost.exe
\u8fdb\u7a0b\u6587\u4ef6: svchost or svchost.exe
\u8fdb\u7a0b\u540d\u79f0: Service Host Process
\u63cf\u8ff0: Service Host Process\u662f\u4e00\u4e2a\u6807\u51c6\u7684\u52a8\u6001\u8fde\u63a5\u5e93\u4e3b\u673a\u5904\u7406\u670d\u52a1\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
system
\u8fdb\u7a0b\u6587\u4ef6: system or system
\u8fdb\u7a0b\u540d\u79f0: Windows System Process
\u63cf\u8ff0: Microsoft Windows\u7cfb\u7edf\u8fdb\u7a0b\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
taskmon.exe
\u8fdb\u7a0b\u6587\u4ef6: taskmon or taskmon.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Task Optimizer
\u63cf\u8ff0: windows\u4efb\u52a1\u4f18\u5316\u5668\u76d1\u89c6\u4f60\u4f7f\u7528\u67d0\u4e2a\u7a0b\u5e8f\u7684\u9891\u7387\uff0c\u5e76\u4e14\u901a\u8fc7\u52a0\u8f7d\u90a3\u4e9b\u7ecf\u5e38\u4f7f\u7528\u7684\u7a0b\u5e8f\u6765\u6574\u7406\u4f18\u5316\u786c\u76d8\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
tcpsvcs.exe
\u8fdb\u7a0b\u6587\u4ef6: tcpsvcs or tcpsvcs.exe
\u8fdb\u7a0b\u540d\u79f0: TCP/IP Services
\u63cf\u8ff0: TCP/IP Services Application\u652f\u6301\u900f\u8fc7TCP/IP\u8fde\u63a5\u5c40\u57df\u7f51\u548cInternet\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
winlogon.exe
\u8fdb\u7a0b\u6587\u4ef6: winlogon or winlogon.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Logon Process
\u63cf\u8ff0: Windows NT\u7528\u6237\u767b\u9646\u7a0b\u5e8f\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
winmgmt.exe
\u8fdb\u7a0b\u6587\u4ef6: winmgmt or winmgmt.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Management Service
\u63cf\u8ff0: Windows Management Service\u900f\u8fc7Windows Management Instrumentation data (WMI)\u6280\u672f\u5904\u7406\u6765\u81ea\u5e94\u7528\u5ba2\u6237\u7aef\u7684\u8bf7\u6c42\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u662f
\u7a0b\u5e8f\u8fdb\u7a0b
absr.exe
\u8fdb\u7a0b\u6587\u4ef6: absr or absr.exe
\u8fdb\u7a0b\u540d\u79f0: Backdoor.Autoupder Virus
\u63cf\u8ff0: \u8fd9\u4e2a\u8fdb\u7a0b\u662fBackdoor.Autoupder\u540e\u95e8\u75c5\u6bd2\u7a0b\u5e8f\u521b\u5efa\u7684\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
acrobat.exe
\u8fdb\u7a0b\u6587\u4ef6: acrobat or acrobat.exe
\u8fdb\u7a0b\u540d\u79f0: Adobe Acrobat
\u63cf\u8ff0: Acrobat Writer\u7528\u4e8e\u521b\u5efaPDF\u6587\u6863\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
acrord32.exe
\u8fdb\u7a0b\u6587\u4ef6: acrord32 or acrord32.exe
\u8fdb\u7a0b\u540d\u79f0: Acrobat Reader
\u63cf\u8ff0: Acrobat Reader\u662f\u4e00\u4e2a\u7528\u4e8e\u9605\u8bfbPDF\u6587\u6863\u7684\u8f6f\u4ef6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
agentsvr.exe
\u8fdb\u7a0b\u6587\u4ef6: agentsvr or agentsvr.exe
\u8fdb\u7a0b\u540d\u79f0: OLE automation server
\u63cf\u8ff0: OLE Automation Server\u662fMicrosoft Agent\u7684\u4e00\u90e8\u5206\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
aim.exe
\u8fdb\u7a0b\u6587\u4ef6: aim or aim.exe
\u8fdb\u7a0b\u540d\u79f0: AOL Instant Messenger
\u63cf\u8ff0: AOL Instant Messenger\u662f\u4e00\u4e2a\u5728\u7ebf\u804a\u5929\u548c\u5373\u65f6\u901a\u8bafIM\u8f6f\u4ef6\u5ba2\u6237\u7aef\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
airsvcu.exe
\u8fdb\u7a0b\u6587\u4ef6: airsvcu or airsvcu.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Media Manager
\u63cf\u8ff0: OLE \u8fd9\u662f\u4e00\u4e2a\u7528\u4e8e\u5728\u786c\u76d8\u4e0a\u5efa\u7acb\u7d22\u5f15\u6587\u4ef6\u548c\u6587\u4ef6\u5939\uff0c\u5728Microsoft Media Manager\u5a92\u4f53\u7ba1\u7406\u542f\u52a8\u65f6\u8fd0\u884c\u7684\u8fdb\u7a0b\u3002\u5b83\u53ef\u4ee5\u5728\u63a7\u5236\u9762\u677f\u88ab\u7981\u7528\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
alogserv.exe
\u8fdb\u7a0b\u6587\u4ef6: alogserv or alogserv.exe
\u8fdb\u7a0b\u540d\u79f0: McAfee VirusScan
\u63cf\u8ff0: McAfee VirusScan\u662f\u4e00\u4e2a\u53cd\u75c5\u6bd2\u8f6f\u4ef6\u7528\u4e8e\u626b\u63cf\u4f60\u7684\u6587\u6863\u548cE-mail\u4e2d\u7684\u75c5\u6bd2\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
avconsol.exe
\u8fdb\u7a0b\u6587\u4ef6: avconsol or avconsol.exe
\u8fdb\u7a0b\u540d\u79f0: McAfee VirusScan
\u63cf\u8ff0: McAfee VirusScan\u662f\u4e00\u4e2a\u53cd\u75c5\u6bd2\u8f6f\u4ef6\u7528\u4e8e\u626b\u63cf\u4f60\u7684\u6587\u6863\u548cE-mail\u4e2d\u7684\u75c5\u6bd2\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
avsynmgr.exe
\u8fdb\u7a0b\u6587\u4ef6: avsynmgr or avsynmgr.exe
\u8fdb\u7a0b\u540d\u79f0: McAfee VirusScan
\u63cf\u8ff0: McAfee VirusScan\u662f\u4e00\u4e2a\u53cd\u75c5\u6bd2\u8f6f\u4ef6\u7528\u4e8e\u626b\u63cf\u4f60\u7684\u6587\u6863\u548cE-mail\u4e2d\u7684\u75c5\u6bd2\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
backWeb.exe
\u8fdb\u7a0b\u6587\u4ef6: backWeb or backWeb.exe
\u8fdb\u7a0b\u540d\u79f0: Backweb Adware
\u63cf\u8ff0: Backweb\u662f\u4e00\u4e2aAdware\uff08\u5e7f\u544a\u63d2\u4ef6\uff0c\u4e00\u822c\u662f\u7531\u4e8e\u5b89\u88c5\u67d0\u4e9b\u514d\u8d39\u8f6f\u4ef6\u800c\u4f34\u968f\u5b89\u88c5\u4e0a\u7684\u7a0b\u5e8f\uff09\u6765\u81eaBackweb Technologies\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
bcb.exe
\u8fdb\u7a0b\u6587\u4ef6: bcb or bcb.exe
\u8fdb\u7a0b\u540d\u79f0: Borland C++ Builder
\u63cf\u8ff0: Borland C++ Builder
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
calc.exe
\u8fdb\u7a0b\u6587\u4ef6: calc or calc.exe
\u8fdb\u7a0b\u540d\u79f0: Calculator
\u63cf\u8ff0: Microsoft Windows\u8ba1\u7b97\u5668\u7a0b\u5e8f
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
ccapp.exe
\u8fdb\u7a0b\u6587\u4ef6: ccapp or ccapp.exe
\u8fdb\u7a0b\u540d\u79f0: Symantec Common Client
\u63cf\u8ff0: Symantec\u516c\u7528\u5e94\u7528\u5ba2\u6237\u7aef\u5305\u542b\u5728Norton AntiVirus 2003\u548cNorton Personal Firewall 2003\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
cdplayer.exe
\u8fdb\u7a0b\u6587\u4ef6: cdplayer or cdplayer.exe
\u8fdb\u7a0b\u540d\u79f0: CD Player
\u63cf\u8ff0: Microsoft Windows\u5305\u542b\u7684CD\u64ad\u653e\u5668
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
charmap.exe
\u8fdb\u7a0b\u6587\u4ef6: charmap or charmap.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Character Map
\u63cf\u8ff0: Windows\u5b57\u7b26\u6620\u5c04\u8868\u7528\u6765\u5e2e\u52a9\u4f60\u5bfb\u627e\u4e0d\u5e38\u89c1\u7684\u5b57\u7b26\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
idaemon.exe
\u8fdb\u7a0b\u6587\u4ef6: cidaemon or cidaemon.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Indexing Service
\u63cf\u8ff0: \u5728\u540e\u53f0\u8fd0\u884c\u7684Windows\u7d22\u5f15\u670d\u52a1\uff0c\u7528\u4e8e\u5e2e\u52a9\u4f60\u641c\u7d22\u6587\u4ef6\u5728\u4e0b\u6b21\u53d8\u5f97\u66f4\u5feb\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b:
cisvc.exe
\u8fdb\u7a0b\u6587\u4ef6: cisvc or cisvc.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Index Service Helper
\u63cf\u8ff0: Microsoft Index Service Helper\u76d1\u89c6Microsoft Indexing Service (cidaemon.exe) \u7684\u5185\u5b58\u5360\u7528\u60c5\u51b5\uff0c\u5982\u679ccidaemon.exe\u5185\u5b58\u4f7f\u7528\u8d85\u8fc7\u4e8640M\uff0c\u5219\u81ea\u52a8\u91cd\u65b0\u542f\u52a8\u8be5\u8fdb\u7a0b\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
cmd.exe
\u8fdb\u7a0b\u6587\u4ef6: cmd or cmd.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Command Prompt
\u63cf\u8ff0: Windows\u63a7\u5236\u53f0\u7a0b\u5e8f\u3002\u4e0d\u50cf\u65e7\u7684command.com\uff0ccmd.exe\u662f\u4e00\u4e2a32\u4f4d\u7684\u547d\u4ee4\u884c\u4f7f\u7528\u5728WinNT/2000/XP\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
cmesys.exe
\u8fdb\u7a0b\u6587\u4ef6: cmesys or cmesys.exe
\u8fdb\u7a0b\u540d\u79f0: Gator GAIN Adware
\u63cf\u8ff0: Gator GAIN\u662f\u4e00\u4e2aAdware\u63d2\u4ef6\uff08\u5e7f\u544a\u63d2\u4ef6\uff0c\u4e00\u822c\u662f\u7531\u4e8e\u5b89\u88c5\u67d0\u4e9b\u514d\u8d39\u8f6f\u4ef6\u800c\u4f34\u968f\u5b89\u88c5\u4e0a\u7684\u7a0b\u5e8f\uff09\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
ctfmon.exe
\u8fdb\u7a0b\u6587\u4ef6: ctfmon or ctfmon.exe
\u8fdb\u7a0b\u540d\u79f0: Alternative User Input Services
\u63cf\u8ff0: \u63a7\u5236Alternative User Input Text Processor (TIP)\u548cMicrosoft Office\u8bed\u8a00\u6761\u3002Ctfmon.exe\u63d0\u4f9b\u8bed\u97f3\u8bc6\u522b\u3001\u624b\u5199\u8bc6\u522b\u3001\u952e\u76d8\u3001\u7ffb\u8bd1\u548c\u5176\u5b83\u7528\u6237\u8f93\u5165\u6280\u672f\u7684\u652f\u6301\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
ctsvccda.exe
\u8fdb\u7a0b\u6587\u4ef6: ctsvccda or ctsvccda.exe
\u8fdb\u7a0b\u540d\u79f0: Create CD-ROM Services
\u63cf\u8ff0: \u5728Win9X\u521b\u5efaCD-ROM\u8bbf\u95ee\u670d\u52a1\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
cutftp.exe
\u8fdb\u7a0b\u6587\u4ef6: cutftp or cutftp.exe
\u8fdb\u7a0b\u540d\u79f0: CuteFTP
\u63cf\u8ff0: CuteFTP\u662f\u4e00\u4e2a\u6d41\u884c\u7684FTP\u5ba2\u6237\u7aef\u7528\u4e8e\u4eceFTP\u670d\u52a1\u5668\u4e0a\u4f20/\u4e0b\u8f7d\u6587\u4ef6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
defwatch.exe
\u8fdb\u7a0b\u6587\u4ef6: defwatch or defwatch.exe
\u8fdb\u7a0b\u540d\u79f0: Norton AntiVirus
\u63cf\u8ff0: Norton Anti-Virus\u626b\u63cf\u4f60\u7684\u6587\u4ef6\u548cemail\u4ee5\u68c0\u67e5\u75c5\u6bd2\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
devldr32.exe
\u8fdb\u7a0b\u6587\u4ef6: devldr32 or devldr32.exe
\u8fdb\u7a0b\u540d\u79f0: Create Device Loader
\u63cf\u8ff0: Creative Device Loader\u5c5e\u4e8eCreate Soundblaster\u9a71\u52a8\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
directcd.exe
\u8fdb\u7a0b\u6587\u4ef6: directcd or directcd.exe
\u8fdb\u7a0b\u540d\u79f0: Adaptec DirectCD
\u63cf\u8ff0: Adaptec DirectCD\u662f\u4e00\u4e2a\u7528\u6587\u4ef6\u7ba1\u7406\u5668\u5f0f\u7684\u754c\u9762\uff0c\u70e7\u5f55\u6587\u4ef6\u5230\u5149\u76d8\u7684\u8f6f\u4ef6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
dreamweaver.exe
\u8fdb\u7a0b\u6587\u4ef6: dreamweaver or dreamweaver.exe
\u8fdb\u7a0b\u540d\u79f0: Macromedia DreamWeaver
\u63cf\u8ff0: Macromedia DreamWeaver\u662f\u4e00\u4e2aHTML\u7f16\u8f91\u5668\u7528\u4e8e\u521b\u5efa\u7ad9\u70b9\u548c\u5176\u5b83\u7c7b\u522b\u7684HTML\u6587\u6863\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
em_exec.exe
\u8fdb\u7a0b\u6587\u4ef6: em_exec or em_exec.exe
\u8fdb\u7a0b\u540d\u79f0: Logitech Mouse Settings
\u63cf\u8ff0: \u8fd9\u662fLogitech MouseWare\u72b6\u6001\u680f\u56fe\u6807\u7684\u8fdb\u7a0b\uff0c\u7528\u4e8e\u7528\u6237\u8bbf\u95ee\u63a7\u5236\u9f20\u6807\u5c5e\u6027\u548c\u5bdf\u770bMouseWare\u5e2e\u52a9\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
excel.exe
\u8fdb\u7a0b\u6587\u4ef6: excel or excel.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Excel
\u63cf\u8ff0: Microsoft Excel\u662f\u4e00\u4e2a\u7535\u5b50\u8868\u683c\u7a0b\u5e8f\u5305\u62ec\u5728Microsoft Office\u4e2d\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
findfast.exe
\u8fdb\u7a0b\u6587\u4ef6: findfast or findfast.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Office Indexing
\u63cf\u8ff0: Microsoft Office\u7d22\u5f15\u7a0b\u5e8f\uff0c\u7528\u4e8e\u63d0\u9ad8Microsoft Office\u7d22\u5f15Office\u6587\u6863\u7684\u901f\u5ea6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
frontpage.exe
\u8fdb\u7a0b\u6587\u4ef6: frontpage or frontpage.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft FrontPage
\u63cf\u8ff0: Microsoft FrontPage\u662f\u4e00\u4e2aHTML\u7f16\u8f91\u5668\u7528\u4e8e\u521b\u5efa\u7ad9\u70b9\u548c\u5176\u5b83\u7c7b\u522b\u7684HTML\u6587\u6863\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
gmt.exe
\u8fdb\u7a0b\u6587\u4ef6: gmt or gmt.exe
\u8fdb\u7a0b\u540d\u79f0: Gator Spyware Component
\u63cf\u8ff0: Gator Spyware\u662f\u4e00\u4e2a\u5e7f\u544a\u63d2\u4ef6\uff0c\u968fGator\u5b89\u88c5\u548c\u542f\u52a8\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
hh.exe
\u8fdb\u7a0b\u6587\u4ef6: hh or hh.exe
\u8fdb\u7a0b\u540d\u79f0: Gator Windows Help
\u63cf\u8ff0: Windows Help\u7a0b\u5e8f\u7528\u4ee5\u6253\u5f00\u5e2e\u52a9\u6587\u4ef6\u548c\u6587\u6863\uff0c\u5305\u62ec\u5728\u5f88\u591aWindows\u7a0b\u5e8f\u4e2d\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
hidserv.exe
\u8fdb\u7a0b\u6587\u4ef6: hidserv or hidserv.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Human Interface Device Audio Service
\u63cf\u8ff0: \u540e\u53f0\u670d\u52a1\uff0c\u7528\u6765\u652f\u6301USB\u97f3\u6548\u90e8\u4ef6\u548cUSB\u591a\u5a92\u4f53\u952e\u76d8\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
QQ.exe
\u8fdb\u7a0b\u6587\u4ef6: QQ or QQ.exe
\u8fdb\u7a0b\u540d\u79f0: QQ
\u63cf\u8ff0: QQ\u662f\u4e00\u4e2a\u5728\u7ebf\u804a\u5929\u548c\u5373\u65f6\u901a\u8baf\u5ba2\u6237\u7aef\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
iexplore.exe
\u8fdb\u7a0b\u6587\u4ef6: iexplore or iexplore.exe
\u8fdb\u7a0b\u540d\u79f0: Internet Explorer
\u63cf\u8ff0: Microsoft Internet Explorer\u7f51\u7edc\u6d4f\u89c8\u5668\u900f\u8fc7HTTP\u8bbf\u95eeWWW\u4e07\u7ef4\u7f51\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
kodakimage.exe
\u8fdb\u7a0b\u6587\u4ef6: kodakimage or kodakimage.exe
\u8fdb\u7a0b\u540d\u79f0: Imaging
\u63cf\u8ff0: Kodak Imaging\u662f\u4e00\u4e2a\u56fe\u7247\u5bdf\u770b\u8f6f\u4ef6\u3002\u5305\u62ec\u5728Windows\uff0c\u7528\u4ee5\u6253\u5f00\u56fe\u50cf\u6587\u4ef6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
loadqm.exe
\u8fdb\u7a0b\u6587\u4ef6: loadqm or loadqm.exe
\u8fdb\u7a0b\u540d\u79f0: MSN Queue Manager Loader
\u63cf\u8ff0: MSN Queue Manager Loader\u88ab\u968f\u7740MSN Explorer\u548cMSN Messenger\u5b89\u88c5\u3002\u4ed6\u5728\u4e00\u4e9b\u65f6\u5019\u4f1a\u5360\u7528\u5f88\u591a\u7cfb\u7edf\u8d44\u6e90\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
loadwc.exe
\u8fdb\u7a0b\u6587\u4ef6: loadwc or loadwc.exe
\u8fdb\u7a0b\u540d\u79f0: Load WebCheck
\u63cf\u8ff0: Load WebCheck\u7528\u4ee5\u5b9a\u5236\u4e00\u4e9bInternet Explorer\u7684\u8bbe\u5b9a\uff0c\u6dfb\u52a0\u3001\u5220\u9664\u6216\u8005\u66f4\u65b0\u7528\u6237profiles\u8bbe\u5b9a\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mad.exe
\u8fdb\u7a0b\u6587\u4ef6: mad or mad.exe
\u8fdb\u7a0b\u540d\u79f0: System Attendant Service
\u63cf\u8ff0: System Attendant Service\u662fMicrosoft Exchange Server\u7684\u540e\u53f0\u7a0b\u5e8f\u3002\u5b83\u7528\u4ee5\u8bfb\u53d6Microsoft Exchange\u7684DLLs\u6587\u4ef6\uff0c\u5199log\u4fe1\u606f\u548c\u751f\u6210\u79bb\u7ebf\u5730\u5740\u8584\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mcshield.exe
\u8fdb\u7a0b\u6587\u4ef6: mcshield or mcshield.exe
\u8fdb\u7a0b\u540d\u79f0: McAfee VirusScan
\u63cf\u8ff0: McAfee VirusScan\u662f\u4e00\u4e2a\u53cd\u75c5\u6bd2\u8f6f\u4ef6\u7528\u4ee5\u626b\u63cf\u4f60\u7684\u6587\u4ef6\u548cemail\u4e2d\u7684\u75c5\u6bd2\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mgabg.exe
\u8fdb\u7a0b\u6587\u4ef6: mgabg or mgabg.exe
\u8fdb\u7a0b\u540d\u79f0: Matrox BIOS Guard
\u63cf\u8ff0: Matrox BIOS\u5b88\u62a4\u8fdb\u7a0b\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mmc.exe
\u8fdb\u7a0b\u6587\u4ef6: mmmc or mmc.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Management Console
\u63cf\u8ff0: Microsoft Management Console\u7ba1\u7406\u63a7\u5236\u7a0b\u5e8f\u96c6\u6210\u4e86\u5f88\u591a\u7684\u7cfb\u7edf\u63a7\u5236\u9009\u9879\u3002\u4f8b\u5982\u8bbe\u5907\u7ba1\u7406\uff08\u7cfb\u7edf\u3001\u786c\u4ef6
\uff09\u6216\u8005\u8ba1\u7b97\u673a\u6743\u9650\u63a7\u5236\uff08Administrative\u7ba1\u7406\u5de5\u5177\uff09\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mobsync.exe
\u8fdb\u7a0b\u6587\u4ef6: mobsync or mobsync.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Synchronization Manager
\u63cf\u8ff0: Internet Explorer\u7684\u4e00\u4e2a\u7ec4\u6210\u90e8\u5206\uff0c\u7528\u4ee5\u5728\u540e\u53f0\u540c\u6b65\u79bb\u7ebf\u5bdf\u770b\u9875\u9762\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mplayer.exe
\u8fdb\u7a0b\u6587\u4ef6: mplayer or mplayer.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Media Player
\u63cf\u8ff0: Windows Media Player\u662f\u4e00\u4e2a\u7528\u4ee5\u6253\u5f00\u97f3\u4e50\u3001\u58f0\u97f3\u548c\u89c6\u9891\u6587\u4ef6\u7684\u8f6f\u4ef6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mplayer2.exe
\u8fdb\u7a0b\u6587\u4ef6: mplayer2 or mplayer2.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Media Player
\u63cf\u8ff0: Windows Media Player\u662f\u4e00\u4e2a\u7528\u4ee5\u6253\u5f00\u97f3\u4e50\u3001\u58f0\u97f3\u548c\u89c6\u9891\u6587\u4ef6\u7684\u8f6f\u4ef6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
msaccess.exe
\u8fdb\u7a0b\u6587\u4ef6: msaccess or msaccess.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Access
\u63cf\u8ff0: Microsoft Access\u662f\u4e00\u4e2a\u6570\u636e\u5e93\u8f6f\u4ef6\u5305\u62ec\u5728Microsoft Office\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
msbb.exe
\u8fdb\u7a0b\u6587\u4ef6: msbb or msbb.exe
\u8fdb\u7a0b\u540d\u79f0: MSBB Web3000 Spyware Application
\u63cf\u8ff0: MSBB Web3000 Spyware\u662f\u5305\u62ec\u5728\u4e00\u4e9badware\u4ea7\u54c1\u4e2d\uff0c\u5229\u7528\u6ce8\u518c\u8868\u968fWindows\u542f\u52a8\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
msdtc.exe
\u8fdb\u7a0b\u6587\u4ef6: msdtc or msdtc.exe
\u8fdb\u7a0b\u540d\u79f0: Distributed Transaction Coordinator
\u63cf\u8ff0: Microsoft Distributed Transaction Coordinator\u63a7\u5236\u591a\u4e2a\u670d\u52a1\u5668\u7684\u4f20\u8f93\uff0c\u88ab\u5b89\u88c5\u5728Microsoft Personal Web Server\u548cMicrosoft SQL Server\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
msiexec.exe
\u8fdb\u7a0b\u6587\u4ef6: msiexec or msiexec.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Installer Component
\u63cf\u8ff0: Windows Installer\u7684\u4e00\u90e8\u5206\u3002\u7528\u6765\u5e2e\u52a9Windows Installer package files (MSI)\u683c\u5f0f\u7684\u5b89\u88c5\u6587\u4ef6\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
msimn.exe
\u8fdb\u7a0b\u6587\u4ef6: msimn or msimn.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Outlook Express
\u63cf\u8ff0: Microsoft Outlook Express\u662f\u4e00\u4e2aEmail\u548c\u65b0\u95fb\u7ec4\u5ba2\u6237\u7aef\u5305\u62ec\u5728Microsoft Windows\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
msmsgs.exe
\u8fdb\u7a0b\u6587\u4ef6: msmsgs or msmsgs.exe
\u8fdb\u7a0b\u540d\u79f0: MSN Messenger Traybar Process
\u63cf\u8ff0: MSN Messenger\u662f\u4e00\u4e2a\u5728\u7ebf\u804a\u5929\u548c\u5373\u65f6\u901a\u8baf\u5ba2\u6237\u7aef\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
msoobe.exe
\u8fdb\u7a0b\u6587\u4ef6: msoobe or msoobe.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Product Activation
\u63cf\u8ff0: Windows XP License\u7684Product Activation\u4ea7\u54c1\u6fc0\u6d3b\u7a0b\u5e8f\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mspaint.exe
\u8fdb\u7a0b\u6587\u4ef6: mspaint or mspaint.exe
\u8fdb\u7a0b\u540d\u79f0: Microsoft Paint
\u63cf\u8ff0: Microsoft Paint\u753b\u56fe\u662f\u4e00\u4e2a\u56fe\u50cf\u7f16\u8f91\u5668\u5305\u62ec\u5728Microsoft Windows\uff0c\u5b83\u80fd\u591f\u7f16\u8f91bmp\u56fe\u50cf\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mspmspsv.exe
\u8fdb\u7a0b\u6587\u4ef6: mspmspsv or mspmspsv.exe
\u8fdb\u7a0b\u540d\u79f0: WMDM PMSP Service
\u63cf\u8ff0: Windows Media Player 7\u9700\u8981\u5b89\u88c5\u7684Helper Service\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
mysqld-nt.exe
\u8fdb\u7a0b\u6587\u4ef6: mysqld-nt or mysqld-nt.exe
\u8fdb\u7a0b\u540d\u79f0: MySQL Daemon
\u63cf\u8ff0: MySQL Daemon\u63a7\u5236\u8bbf\u95eeMySQL\u6570\u636e\u5e93\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
navapsvc.exe
\u8fdb\u7a0b\u6587\u4ef6: navapsvc or navapsvc.exe
\u8fdb\u7a0b\u540d\u79f0: Norton AntiVirus Auto-Protect Service
\u63cf\u8ff0: Norton Anti-Virus\u626b\u63cf\u4f60\u7684\u6587\u4ef6\u548cemail\u4e2d\u7684\u75c5\u6bd2\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
navapw32.exe
\u8fdb\u7a0b\u6587\u4ef6: navapw32 or navapw32.exe
\u8fdb\u7a0b\u540d\u79f0: Norton AntiVirus Agent
\u63cf\u8ff0: Norton Anti-Virus\u626b\u63cf\u4f60\u7684\u6587\u4ef6\u548cemail\u4e2d\u7684\u75c5\u6bd2\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
ndetect.exe
\u8fdb\u7a0b\u6587\u4ef6: ndetect or ndetect.exe
\u8fdb\u7a0b\u540d\u79f0: ICQ Ndetect Agent
\u63cf\u8ff0: ICQ Ndetect Agent\u662fICQ\u7528\u6765\u4fa6\u6d4b\u7f51\u7edc\u8fde\u63a5\u7684\u7a0b\u5e8f\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
netscape.exe
\u8fdb\u7a0b\u6587\u4ef6: netscape or netscape.exe
\u8fdb\u7a0b\u540d\u79f0: Netscape
\u63cf\u8ff0: Netscape\u7f51\u7edc\u6d4f\u89c8\u5668\u901a\u8fc7HTTP\u6d4f\u89c8WWW\u4e07\u7ef4\u7f51\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
notepad.exe
\u8fdb\u7a0b\u6587\u4ef6: notepad or notepad.exe
\u8fdb\u7a0b\u540d\u79f0: Notepad
\u63cf\u8ff0: Notepad\u5b57\u7b26\u7f16\u8f91\u5668\u7528\u4e8e\u6253\u5f00\u6587\u6863\u3002\u5728Windows\u4e2d\u9644\u5e26\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
ntbackup.exe
\u8fdb\u7a0b\u6587\u4ef6: ntbackup or ntbackup.exe
\u8fdb\u7a0b\u540d\u79f0: Windows Backup
\u63cf\u8ff0: Windows\u5907\u4efd\u5de5\u5177\u7528\u4e8e\u5907\u4efd\u6587\u4ef6\u548c\u6587\u4ef6\u5939\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
ntvdm.exe
\u8fdb\u7a0b\u6587\u4ef6: ntvdm or ntvdm.exe
\u8fdb\u7a0b\u540d\u79f0: Windows 16-bit Virtual Machine
\u63cf\u8ff0: Windows Virtual Machine\u662f\u4e3a\u4e86\u517c\u5bb9\u65e7\u768416\u4f4dWindows\u548cDOS\u7a0b\u5e8f\u800c\u8bbe\u7f6e\u7684\u865a\u62df\u673a\u3002
\u662f\u5426\u4e3a\u7cfb\u7edf\u8fdb\u7a0b: \u5426
taskmgr.exe
\u662f\u4efb\u52a1\u7ba1\u7406\u5668\uff0c\u5173\u4e86\u4efb\u52a1\u7ba1\u7406\u5668\u5c31\u6ca1\u4e86
timplatform.exe
\u662f\u817e\u8baf\u5373\u65f6\u901a\u8baf\u5ba2\u6237\u7aef\u76f8\u5173\u7a0b\u5e8f\u3002\u5173\u4e86qq\u53ef\u80fd\u4e0d\u80fd\u6b63\u5e38\u8fd0\u4f5c
iexplore.exe
\u662fMicrosoft Internet Explorer\u7684\u4e3b\u7a0b\u5e8f\u3002\u8fd9\u4e2a\u5fae\u8f6fWindows\u5e94\u7528\u7a0b\u5e8f\u8ba9\u4f60\u5728\u7f51\u4e0a\u51b2\u6d6a\uff0c\u548c\u8bbf\u95ee\u672c\u5730Interanet\u7f51\u7edc\u3002\u8fd9\u4e0d\u662f\u7eaf\u7cb9\u7684\u7cfb\u7edf\u7a0b\u5e8f\uff0c\u4f46\u662f\u5982\u679c\u7ec8\u6b62\u5b83\uff0c\u53ef\u80fd\u4f1a\u5bfc\u81f4\u4e0d\u53ef\u77e5\u7684\u95ee\u9898\u3002iexplore.exe\u540c\u65f6\u4e5f\u662fAvant\u7f51\u7edc\u6d4f\u89c8\u5668\u7684\u4e00\u90e8\u5206\uff0c\u8fd9\u662f\u4e00\u4e2a\u514d\u8d39\u7684\u57fa\u4e8eInternet Explorer\u7684\u6d4f\u89c8\u5668\u3002\u6ce8\u610fiexplore.exe\u4e5f\u6709\u53ef\u80fd\u662fTrojan.KillAV.B\u75c5\u6bd2\uff0c\u8be5\u75c5\u6bd2\u4f1a\u7ec8\u6b62\u4f60\u7684\u53cd\u75c5\u6bd2\u8f6f\u4ef6\uff0c\u548c\u4e00\u4e9b Windows\u7cfb\u7edf\u5de5\u5177\uff0c\u8be5\u8fdb\u7a0b\u7684\u5b89\u5168\u7b49\u7ea7\u662f\u5efa\u8bae\u5220\u9664
\u8fd9\u4e2a\u4e1c\u897f\u53ef\u4ee5\u8bf4\u662f\u75c5\u6bd2\uff0c\u4e5f\u53ef\u4ee5\u8bf4\u4e0d\u662f\u75c5\u6bd2\u3002
\u56e0\u4e3a\u5fae\u8f6f\u7684\u6d4f\u89c8\u5668\u5c31\u662fIEXPLORE.EXE\uff0c\u4f46\u662f\u5b83\u4e00\u822c\u60c5\u51b5\u968f\u7cfb\u7edf\u88ab\u5b89\u88c5\u5728C:\Program Files\Internet Explorer\u4e0b\u9762\u3002\u90a3\u4e48\uff0c\u5982\u679c\u53d1\u73b0\u8fd9\u4e2a\u6587\u4ef6\u662f\u5728\u8fd9\u4e2a\u76ee\u5f55\u4e0b\u9762\u7684\uff0c\u4e00\u822c\u60c5\u51b5\u4e0d\u662f\u75c5\u6bd2\uff0c\u5f53\u7136\uff0c\u4e0d\u5305\u62ec\u5df2\u7ecf\u88ab\u611f\u67d3\u4e86\u7684\u60c5\u51b5\uff1b\u8fd8\u6709\u4e00\u79cd\u60c5\u51b5\uff0c\u5c31\u662f IEXPLORE.EXE\u5728C:\WINDOWS\system32\\u4e0b\u9762\uff0c\u90a3\u4e48\u8fd9\u4e2a\u5341\u6709\u516b\u4e5d\u90fd\u662f\u75c5\u6bd2\u3002
\u5982\u679c\u4f60\u6ca1\u5f00IE,\u4e00\u822c\u4e0d\u4f1a\u51fa\u73b0iexplore.exe \u7684,\u5982\u679c\u670990%\u4e2d\u62db\u4e86\uff5e\uff5e\uff5e
ctfmon.exe
\u67aa\u6bd9\u5b83\uff0c\u6062\u590d\u4f60\u7684\u9ed8\u8ba4\u8f93\u5165\u6cd5\uff01
\u5982\u679c\u4f60\u7684win2000\u7cfb\u7edf\u88c5\u4e86officeXP\u6216\u4ee5\u4e0a\u7248\u672c\uff0c\u5b83\u4f1a\u5728\u4f60\u548c\u7cfb\u7edf\u91cc\u7559\u4e0b\u4e00\u4e2a\u53ef\u8bef\u7684ctfmon.exe\uff0c\u8fd9\u771f\u7684\u662f\u4e00\u4e2a\u6076\u9b54\uff0c\u66fe\u7ecf\u56f0\u6270\u4e86\u65e0\u6570\u7684\u7f51\u53cb\u3002\u4eca\u5929\u6211\u51b3\u610f\u6267\u8d77\u6b63\u4e49\u4e4b\u5251\uff0c\u65a9\u5996\u9664\u9b54\uff0c\u8fd8\u7f51\u53cb\u4e00\u4e2a\u7eaf\u6d01\u7684\u4e2d\u82f1\u6587\u8f93\u5165\u7a7a\u95f4\uff01
\u5728\u5bf9\u5b83\u884c\u5211\u4e4b\u524d\uff0c\u6211\u5148\u6765\u5ba3\u8bfb\u4e00\u4e0b\u4ed6\u7684\u7f6a\u72b6\uff1a
1. \u65e0\u8bba\u4f60\u6253\u5f00\u4ec0\u4e48\u7a97\u53e3\uff0c\u603b\u4f1a\u5f39\u51fa\u4e00\u4e2a\u8f93\u5165\u6cd5\u5de5\u5177\u4f53\uff0c\u5e76\u4e14\u9ed8\u8ba4\u662f\u4e2d\u6587\u8f93\u5165\uff0c\u975e\u5e38\u8ba8\u538c\u3002
2. \u5b83\u66ff\u6362\u4e86\u539f\u6765\u7684\u533a\u57df\u548c\u8f93\u5165\u6cd5\u8bbe\u7f6e\uff0c\u5e76\u4ee5\u4e00\u4e2a\u6587\u5b57\u670d\u52a1\u7684\u8bbe\u7f6e\u53d6\u800c\u4ee3\u4e4b\uff0c\u800c\u4e14\u4e0d\u80fd\u8bbe\u7f6e\u9ed8\u8ba4\u7684\u8f93\u5165\u6cd5\u3002
3. \u7ed3\u675f\u6389\u539f\u6765\u7684\u8f93\u5165\u6cd5\u5de5\u5177\u8fdb\u7a0binternat.exe\uff0c\u5e76\u4ee4\u4ed6\u4e0d\u80fd\u5728\u5f00\u673a\u65f6\u8d77\u52a8\u3002
4. \u5c06\u81ea\u5df1\u653e\u5728\u5f00\u673a\u65f6\u542f\u52a8\u7684\u7a0b\u5e8f\u5217\u8868\u4e2d\uff0c\u9664\u975e\u4fee\u6539\u6ce8\u518c\u8868\uff0c\u5426\u5219\u65e0\u6cd5\u53bb\u9664\u3002
5. \u50cf\u75c5\u6bd2\u4e00\u6837\u6709\u91cd\u751f\u80fd\u529b\uff0c\u5f53\u4f60\u628actfmon.exe\u5220\u4e86\u4ee5\u540e\uff0c\u4ed6\u53c8\u4f1a\u968f\u7740Office\u7684\u542f\u52a8\u800c\u91cd\u65b0\u751f\u6210\u3002
6. \u5f53\u4f60\u7ed3\u675f\u4e86ctfmon.exe\u540e\uff0c\u7ecf\u5e38\u4f1a\u51fa\u73b0\u8f93\u5165\u6cd5\u5207\u6362\u5feb\u6377\u952e\u4e71\u6389\u7684\u60c5\u51b5\u3002
\u73b0\u5bf9ctfmon.exe\u6267\u884c\u6b7b\u884c\uff0c\u7acb\u5373\u6267\u884c\uff01
\u7b2c\u4e00\u6b65\uff1a\u53f3\u51fb\u4efb\u52a1\u680f\u7a7a\u767d\u5904\uff0c\u70b9\u201c\u4efb\u52a1\u7ba1\u7406\u5668\u201d\u3002
\u7b2c\u4e8c\u6b65\uff1a\u627e\u5230ctfmon.exe\uff0c\u5e76\u7ec8\u6b62\u5b83\u3002
\u7b2c\u4e09\u6b65\uff1a\u5728\u7cfb\u7edf\u76ee\u5f55\u4e0b\u7684system32\u76ee\u5f55\u4e0b\u627e\u5230ctfmon.exe\uff0c\u5220\u9664\u6389\u3002
\u7b2c\u56db\u6b65\uff1a\u5199\u4e00\u4e2a\u6700\u7b80\u5355\u7684api\u7a0b\u5e8f\uff08\u4ee3\u7801\u89c1\u9644\u5f55\uff09\uff0c\u7f16\u8bd1\u540e\u653e\u5230ctfmon.exe\u6240\u5728\u76ee\u5f55\uff0c\u5e76\u66f4\u540d\u4e3actfmon.exe\u3002
\u7b2c\u4e94\u6b65\uff1a\u70b9\u51fb\u201c\u5f00\u59cb\u201d\u83dc\u5355\uff0c\u70b9\u51fb\u201c\u8fd0\u884c\u201d\uff0c\u8f93\u5165internat.exe\u540e\u70b9\u51fb\u786e\u5b9a\u3002
\u7b2c\u516d\u6b65\uff1a\u91cd\u8d77\u8ba1\u7b97\u673a\u3002
\u6267\u884c\u5b8c\u6bd5\uff01
\u9644\uff1a
1. \u7a0b\u5e8f\u4ee3\u7801\u5982\u4e0b\uff1a
#include
int APIENTRY WinMain( HINSTANCE, HINSTANCE, LPTSTR, int )
{
HANDLE m_hMutex = CreateMutex( NULL, TRUE, "ctfmon.exe" );
if( GetLastError() != ERROR_ALREADY_EXISTS )
while ( 1 ) Sleep( INFINITE );
return 0;
}
2. \u5982\u679c\u6267\u884c\u540e\u53d1\u73b0word\u7684\u8f93\u5165\u6cd5\u65e0\u6cd5\u6b63\u786e\u4f7f\u7528\uff0c\u89e3\u51b3\u529e\u6cd5\u5982\u4e0b\uff1a
\u7b2c\u4e00\u6b65\uff1a\u6253\u5f00word\uff08\u5e9f\u8bdd\uff09
\u7b2c\u4e8c\u6b65\uff1a\u70b9\u51fb\u201c\u5de5\u5177\u201d\u83dc\u5355\u4e2d\u7684\u201c\u9009\u9879\u201d\u5b50\u83dc\u5355\u3002\u70b9\u51fb\u201c\u7f16\u8f91\u201d\u9009\u9879\u5361\u3002
\u7b2c\u4e09\u6b65\uff1a\u6e05\u9664\u201c\u8f93\u5165\u6cd5\u63a7\u5236\u5904\u4e8e\u6d3b\u52a8\u72b6\u6001\u201d\u7684\u590d\u9009\u3002\u70b9\u51fb\u201c\u786e\u5b9a\u201d
\u7b2c\u56db\u6b65\uff1a\u70b9\u51fb\u201c\u5de5\u5177\u201d\u83dc\u5355\u4e2d\u201c\u8bed\u8a00\u201d\u5b50\u83dc\u5355\u4e2d\u7684\u201c\u8bbe\u7f6e\u8bed\u8a00\u201d\u9879\u3002
\u7b2c\u4e94\u6b65\uff1a\u5728\u5217\u8868\u4e2d\u9009\u62e9\u201c\u82f1\u8bed \u7f8e\u56fd\u201d\uff0c\u70b9\u51fb\u786e\u5b9a\u3002
\u7b2c\u516d\u6b65\uff1a\u5173\u95edWord\uff0c\u91cd\u8d77\u8ba1\u7b97\u673a\u3002
LPFW32.exe
\u672a\u77e5\u7a0b\u5e8f\uff0c\u5982\u679c\u4e0d\u662f\u7cfb\u7edf\u8fdb\u7a0b\uff0c\u5efa\u8bae\u5220\u9664
realsched.exe
realplayer\u7684\u76f8\u5173\u8fdb\u7a0b\uff0c\u5220\u9664
LHotkey.exe
\u8054\u60f3\u952e\u76d8\u9a71\u52a8\u70ed\u952e\u7a0b\u5e8f\uff0c\u4e5f\u6709\u53ef\u80fd\u662f\u75c5\u6bd2
soundman.exe
\u662fRealtek\u58f0\u5361\u76f8\u5173\u7a0b\u5e8f\u3002\u8be5\u8fdb\u7a0b\u5728\u7cfb\u7edf\u6258\u76d8\u9a7b\u7559\uff0c\u7528\u4e8e\u8fdb\u884c\u5feb\u901f\u8bbf\u95ee\u548c\u8bca\u65ad\u3002
VTTimer.exe
\u662fVIA\u82af\u7247\u663e\u5361\u76f8\u5173\u7a0b\u5e8f\uff0c\u7528\u4e8e\u663e\u5361\u8bca\u65ad\u548c\u529f\u80fd\u8bbe\u7f6e\u3002
\u8981\u7528..
spoolsv.exe
\u7528\u4e8e\u5c06Windows\u6253\u5370\u673a\u4efb\u52a1\u53d1\u9001\u7ed9\u672c\u5730\u6253\u5370\u673a\u3002\u5982\u679c\u4f60\u6ca1\u6709\u6253\u5370\u673a\uff0c\u5220\u9664\uff01
\u4f46\u662f\u91cd\u542f\u540e\u8fd8\u4f1a\u6709\uff0c\u4f60\u53ef\u4ee5\u5728\u6211\u7684\u7535\u8111\u53f3\u51fb-\u7ba1\u7406-\u670d\u52a1\u4e2d\u624b\u52a8\u5173\u95ed\u5b83
explorer.exe
\u662fWindows\u7a0b\u5e8f\u7ba1\u7406\u5668\u6216\u8005Windows\u8d44\u6e90\u7ba1\u7406\u5668\uff0c\u5b83\u7528\u4e8e\u7ba1\u7406Windows\u56fe\u5f62\u58f3\uff0c\u5305\u62ec\u5f00\u59cb\u83dc\u5355\u3001\u4efb\u52a1\u680f\u3001\u684c\u9762\u548c\u6587\u4ef6\u7ba1\u7406\u3002\u5220\u9664\u8be5\u7a0b\u5e8f\u4f1a\u5bfc\u81f4Windows\u56fe\u5f62\u754c\u9762\u65e0\u6cd5\u9002\u7528\u3002
Svchost.exe
\u662fWindows XP\u7cfb\u7edf\u7684\u4e00\u4e2a\u6838\u5fc3\u8fdb\u7a0b\u3002Svchost.exe\u4e0d\u5355\u5355\u53ea\u51fa\u73b0\u5728Windows XP\u4e2d\uff0c\u5728\u4f7f\u7528NT\u5185\u6838\u7684Windows\u7cfb\u7edf\u4e2d\u90fd\u4f1a\u6709Svchost.exe\u7684\u5b58\u5728\u3002\u4e00\u822c\u5728Windows 2000\u4e2dSvchost.exe\u8fdb\u7a0b\u7684\u6570\u76ee\u4e3a2\u4e2a\uff0c\u800c\u5728Windows XP\u4e2dSvchost.exe\u8fdb\u7a0b\u7684\u6570\u76ee\u5c31\u4e0a\u5347\u5230\u4e864\u4e2a\u53ca4\u4e2a\u4ee5\u4e0a\u3002
alg.exe
\u662f\u5fae\u8f6fWindows\u64cd\u4f5c\u7cfb\u7edf\u81ea\u5e26\u7684\u7a0b\u5e8f\u3002\u5b83\u7528\u4e8e\u5904\u7406\u5fae\u8f6fWindows\u7f51\u7edc\u8fde\u63a5\u5171\u4eab\u548c\u7f51\u7edc\u8fde\u63a5\u9632\u706b\u5899\u3002\u8fd9\u4e2a\u7a0b\u5e8f\u5bf9\u4f60\u7cfb\u7edf\u7684\u6b63\u5e38\u8fd0\u884c\u662f\u975e\u5e38\u91cd\u8981\u7684\u3002
winlogon.exe
\u6b63\u5e38\u8def\u5f84\u662f\uff1aC:\WINDOWS\system32\winlogon.exe
\u800c\u8fd9\u4e2a\u6587\u4ef6\u7684\u8def\u5f84\u662f\uff1a C:\WINDOWS\system\winlogon.exe
\u6b63\u5e38\u60c5\u51b5\u4e0b\uff0c\u6587\u4ef6\u5939system\u4e2d\u662f\u6ca1\u6709winlogon.exe\u6587\u4ef6\u7684\u3002
\u6240\u4ee5\u53ef\u4ee5\u80af\u5b9a\uff0csystem\u6587\u4ef6\u5939\u4e0b\u7684winlogon.exe\u662f\u75c5\u6bd2\u3002
\u4f60\u4e5f\u53ef\u4ee5\u5148\u4e0d\u5220\u9664\uff0c\u628a\u8fd9\u4e2a\u6587\u4ef6\u526a\u5207\u51fa\u6765\uff0c\u5982\u679c\u7cfb\u7edf\u6ca1\u95ee\u9898\u540e\u518d\u5220\u9664
csrssm.exe
\u672a\u77e5\u7a0b\u5e8f\uff0c\u5982\u679c\u4e0d\u662f\u7cfb\u7edf\u8fdb\u7a0b\uff0c\u5efa\u8bae\u5220\u9664
smss.exe
Session Manager Subsystem\uff0c\u8be5\u8fdb\u7a0b\u4e3a\u4f1a\u8bdd\u7ba1\u7406\u5b50\u7cfb\u7edf\u7528\u4ee5\u521d\u59cb\u5316\u7cfb\u7edf\u53d8\u91cf\uff0cMS-DOS\u9a71\u52a8\u540d\u79f0\u7c7b\u4f3cLPT1\u4ee5\u53caCOM\uff0c\u8c03\u7528Win32\u58f3\u5b50\u7cfb\u7edf\u548c\u8fd0\u884c\u5728Windows\u767b\u9646\u8fc7\u7a0b\u3002\u5b83\u662f\u4e00\u4e2a\u4f1a\u8bdd\u7ba1\u7406\u5b50\u7cfb\u7edf\uff0c\u8d1f\u8d23\u542f\u52a8\u7528\u6237\u4f1a\u8bdd\u3002\u8fd9\u4e2a\u8fdb\u7a0b\u662f\u901a\u8fc7\u7cfb\u7edf\u8fdb\u7a0b\u521d\u59cb\u5316\u7684\u5e76\u4e14\u5bf9\u8bb8\u591a\u6d3b\u52a8\u7684\uff0c\u5305\u62ec\u5df2\u7ecf\u6b63\u5728\u8fd0\u884c\u7684Winlogon\uff0cWin32(Csrss.exe)\u7ebf\u7a0b\u548c\u8bbe\u5b9a\u7684\u7cfb\u7edf\u53d8\u91cf\u4f5c\u51fa\u53cd\u6620\u3002\u5728\u5b83\u542f\u52a8\u8fd9\u4e9b\u8fdb\u7a0b\u540e\uff0c\u5b83\u7b49\u5f85Winlogon\u6216\u8005Csrss\u7ed3\u675f\u3002\u5982\u679c\u8fd9\u4e9b\u8fc7\u7a0b\u65f6\u6b63\u5e38\u7684\uff0c\u7cfb\u7edf\u5c31\u5173\u6389\u4e86\u3002\u5982\u679c\u53d1\u751f\u4e86\u4ec0\u4e48\u4e0d\u53ef\u9884\u6599\u7684\u4e8b\u60c5\uff0csmss.exe\u5c31\u4f1a\u8ba9\u7cfb\u7edf\u505c\u6b62\u54cd\u5e94(\u6302\u8d77)\u3002\u8981\u6ce8\u610f\uff1a\u5982\u679c\u7cfb\u7edf\u4e2d\u51fa\u73b0\u4e86\u4e0d\u53ea\u4e00\u4e2asmss.exe\u8fdb\u7a0b\uff0c\u800c\u4e14\u6709\u7684smss.exe\u8def\u5f84\u662f"%WINDIR%\SMSS.EXE"\uff0c\u90a3\u5c31\u662f\u4e2d\u4e86TrojanClicker.Nogard.a\u75c5\u6bd2\uff0c\u8fd9\u662f\u4e00\u79cdWindows\u4e0b\u7684PE\u75c5\u6bd2\uff0c\u5b83\u91c7\u7528VB6\u7f16\u5199 \uff0c\u662f\u4e00\u4e2a\u81ea\u52a8\u8bbf\u95ee\u67d0\u7ad9\u70b9\u7684\u6728\u9a6c\u75c5\u6bd2\u3002\u8be5\u75c5\u6bd2\u4f1a\u5728\u6ce8\u518c\u8868\u4e2d\u591a\u5904\u6dfb\u52a0\u81ea\u5df1\u7684\u542f\u52a8\u9879\uff0c\u8fd8\u4f1a\u4fee\u6539\u7cfb\u7edf\u6587\u4ef6WIN.INI\uff0c\u5e76\u5728[WINDOWS]\u9879\u4e2d\u52a0\u5165"RUN" = "%WINDIR%\SMSS.EXE"\u3002\u624b\u5de5\u6e05\u9664\u65f6\u8bf7\u5148\u7ed3\u675f\u75c5\u6bd2\u8fdb\u7a0bsmss.exe\uff0c\u518d\u5220\u9664%WINDIR%\u4e0b\u7684smss.exe\u6587\u4ef6\uff0c\u7136\u540e\u6e05\u9664\u5b83\u5728\u6ce8\u518c\u8868\u548cWIN.INI\u6587\u4ef6\u4e2d\u7684\u76f8\u5173\u9879\u5373\u53ef\u3002
mdm.exe
\u662f\u5fae\u8f6fWindows\u8fdb\u7a0b\u9664\u9519\u7a0b\u5e8f\u3002\u7528\u4e8e\u4f7f\u7528\u53ef\u89c6\u5316\u811a\u672c\u5de5\u5177\u5bf9Internet Explorer\u9664\u9519\u3002\u6ce8\u610f\uff1a\u8be5\u8fdb\u7a0b\u540c\u65f6\u53ef\u80fd\u662fWin32.Lydra.a\u6728\u9a6c\uff0c\u8be5\u6728\u9a6c\u5141\u8bb8\u653b\u51fb\u8005\u8bbf\u95ee\u4f60\u7684\u8ba1\u7b97\u673a\uff0c\u7a83\u53d6\u5bc6\u7801\u548c\u4e2a\u4eba\u6570\u636e\u3002
Mdm.exe\u7684\u4e3b\u8981\u5de5\u4f5c\u662f\u9488\u5bf9\u5e94\u7528\u8f6f\u4ef6\u8fdb\u884c\u6392\u9519\uff0cmdm.exe\u5728\u6392\u9519\u8fc7\u7a0b\u4e2d\u4f1a\u4ea7\u751f\u4e00\u4e9b\u6682\u5b58\u6587\u4ef6\uff08\u4ee5fff\u4e3a\u5f00\u5934\u76840\u5b57\u8282\u6587\u4ef6\uff09\uff0c\u53ea\u8981\u6709Mdm.exe\u5b58\u5728\uff0c\u5c31\u6709\u53ef\u80fd\u4ea7\u751f\u4ee5fff\u5f00\u5934\u7684\u602a\u6587\u4ef6\uff08\u6ca1\u7528\u7684\uff09\u3002
\u6709\u4e00\u79cd\u65b9\u6cd5\u80fd\u505c\u6b62\u8fd0\u884cMdm.exe\u6765\u5f7b\u5e95\u5220\u9664\u4ee5fff\u5f00\u5934\u7684\u602a\u6587\u4ef6\uff1a\u5728\u201c\u5173\u95ed\u7a0b\u5e8f\u201d\u7a97\u53e3\u4e2d\u9009\u4e2dMdm\uff0c\u6309\u7ed3\u675f\u4efb\u52a1\u505c\u6b62Mdm.exe\u5728\u7684\u8fd0\u884c\u3002\u5728C:WindowsSystem\u76ee\u5f55\u4e0b\u5c06Mdm.exe\u6539\u540d\u4e3aMdm.bak\u3002\u8fd0\u884cmsconfig\u7a0b\u5e8f\uff0c\u5728\u542f\u52a8\u9875\u4e2d\u53d6\u6d88\u5bf9\u201cMachine Debug Manager\u201d\u7684\u9009\u62e9\u3002\u8fd9\u6837\u53ef\u4ee5\u4e0d\u8ba9Mdm.exe\u81ea\u542f\u52a8\uff0c\u7136\u540e\u70b9\u51fb\u201c\u786e\u5b9a\u201d\u6309\u94ae\uff0c\u7ed3\u675fmsconfig\u7a0b\u5e8f\uff0c\u91cd\u542f\u7535\u8111\u3002\u4f46\u662f\uff0c\u5982\u679c\u697c\u4e3b\u4f7f\u7528IE 5.X\u4ee5\u4e0a\u7684\u7248\u672c\u6d4f\u89c8\u5668\uff0c\u5efa\u8bae\u70b9\u51fb\u201c\u5de5\u5177\u2192Internet\u9009\u9879\u2192\u9ad8\u7ea7\u2192\u7981\u7528\u811a\u672c\u8c03\u7528\u201d\uff0c\u8fd9\u6837\u5c31\u53ef\u4ee5\u907f\u514d\u4ee5fff\u5f00\u5934\u7684\u602a\u6587\u4ef6\u518d\u6b21\u4ea7\u751f\u3002
\u867d\u7136\u5361\u5df4\u662f\u5f88\u597d\u7684\u6740\u8f6f\u4e0d\u8fc7\u9274\u4e8e\u8bef\u62a5\u7387\u6bd4\u8f83\u9ad8\u6b64\u53c8\u4e3a\u5fae\u8f6f\u7684\u7cfb\u7edf\u8fdb\u7a0b\uff0c\u5982\u679clz\u4e0d\u80af\u5b9a\u4e0d\u662f\u75c5\u6bd2\u7684\u8bdd \u8fd8\u662f\u5c06\u7cfb\u7edf\u76ee\u5f55\u4e0b\u7684Mdm.exe\u6539\u540d\uff0c\u7136\u540e\u53bb\u6389\u81ea\u542f\u52a8\u9879\u7684\u597d\u3002\u4e3a\u4e86\u9632\u6b62\u6728\u9a6c\u8bf7\u7ed3\u675f\u6389\u8fdb\u7a0b\uff01\u540c\u65f6\u5728\u670d\u52a1\u4e2d\u505c\u6b62Machine Debug Manager\u8fd9\u9879\u670d\u52a1
cdantsrv.exe
cdantsrv.exe\u662fMacroVison C-Dilla\u8bb8\u53ef\u7ba1\u7406\u8f6f\u4ef6\u7684\u4e00\u90e8\u5206
system idle process
\u8fd9\u662f\u7cfb\u7edf\u7684\u7a7a\u95f2cpu\u4f7f\u7528\u7387,\u4e5f\u5c31\u662f\u8bf4,\u8fd9\u4e2a\u5360\u7528\u8d8a\u5927,\u4f60\u7684cpu\u4f7f\u7528\u5c31\u8d8a\u5c11
\u5176\u4ed6\u7684\u90fd\u662f\u4f60\u7684\u5361\u5df4\u65af\u57fa\u7684\u76f8\u5173\u8fdb\u7a0b\uff0c\u4e0d\u53ef\u4ee5\u5173\uff0c\u4e5f\u5173\u4e0d\u6389\u3002
\u5efa\u8bae\u4f60\u4e0b\u8f7d\u745e\u661f\u5361\u5361\u52a9\u624b\uff0c\u5b83\u53ef\u4ee5\u626b\u63cf\u8fdb\u7a0b\uff0c\u5224\u65ad\u662f\u4e0d\u662f\u75c5\u6bd2\u3002
http://www.knowsky.com/process/
180ax.exe a.exe actalert.exe Alchem.exe adaware.exe
alevir.exe aqadcup.exe arr.exe archive.exe asm.exe
ARUpdate.exe avserve.exe av.exe backWeb.exe avserve2.exe
basfipm.exe bargains.exe Biprep.exe belt.exe blss.exe
bokja.exe bpc.exe bootconf.exe BRIDGE.DLL brasil.exe
BUGSFIX.EXE Buddy.exe bvt.exe bundle.exe cdaEngine
cmesys.exe cashback.exe conscorr.exe cmd32.exe crss.exe
conime.exe datemanager.exe cxtpls.exe Desktop.exe dcomx.exe
divx.exe directs.exe dllreg.exe dmserver.exe dpi.exe
dssagent.exe dvdkeyauth.exe emsw.exe exdl.exe exec.exe
EXP.EXE explore.exe Fash.exe explored.exe ffisearch.exe
fntldr.exe fsg_4104.exe FVProtect.exe game.exe gmt.exe
goidr.exe hbinst.exe hbsrv.exe gator.exe omniscient.exe
onsrvr.exe optimize.exe pcsvc.exe pgmonitr.exe P2PNetworking.exe
PIB.exe prizesurfer.exe powerscan.exe prmvr.exe prmt.exe
rb32.exe ray.exe rk.exe rcsync.exe rundll16.exe
run32dll.exe saap.exe ruxdll32.exe saie.exe sahagent.exe
salm.exe sais.exe satmat.exe save.exe savenow.exe
sc.exe scam32.exe scrsvr.exe scvhost.exe SearchUpdate33.exe
SearchUpgrader.exe soap.exe spoler.exe Ssk.exe stcloader.exe
start.exe svc.exe Susp.exe svchosts.exe svshost.exe
SyncroAd.exe sysfit.exe system32.exe tb_setup.exe teekids.exe
tibs3.exe trickler.exe ts.exe tsa.exe ts2.exe
tsadbot.exe tsm2.exe tsl.exe tvmd.exe Tvm.exe
update.exe tvtmd.exe updater.exe updmgr.exe VVSN.exe
wast.exe web.exe webdav.exe webrebates.exe webrebates0.exe
win-bugsfix.exe win_upd2.exe win32.exe win32us.exe winactive.exe
winad.exe winadalt.exe WinAdTools.exe winadctl.exe WINdirect.exe
windows.exe wingo.exe wininetd.exe wininit.exe winlock.exe
winmain.exe winlogin.exe winnet.exe winppr32.exe winrarshell32.exe
WinRatchet.exe WinSched.exe winservn.exe winshost.exe winssk32.exe
winstart.exe WinStatKeep.exe winstart001.exe Wintime.exe wintaskad.exe
wintsk32.exe winupdate.exe winupdt.exe winupdtl.exe winxp.exe
wmon32.exe wnad.exe wo.exe wovax.exe wsup.exe
wsxsvc.exe WToolsA.exe WToolsA.exe wuamgrd.exe wtoolss.exe
wupdater.exe wupdate.exe wupdt.exe wupdmgr.exe y.exe
Xhrmy.exe msxmidi.exe sendmess.exe muamgrd.exe d11host.exe
videosd32.exe msnservices.exe sws32.exe dllhlp.exe svch0st_.exe
svxhost.exe qqinfo.exe sonudmon.exe foxdhsend.exe rdsndin.exe
vxh8jkdq2.exe ATIPta.exe Aurora.exe bronstab.exe block-checker.exe
CM.exe chkdskw.exe csmsv.exe csrse.exe eetu.exe
d.exe exploreff.exe exe82.exe Fservice.exe FCEngine.exe
windir32.exe winsvc.exe winfixer.exe windll2.exe wID32.exe
vbstub.exe UPDATEXP.exe systemup.exe systb.exe svcdata.exe
sp2update.exe sp2ctr.exe showwnd.exe soproc.exe sfc32.exe
SensLogn.exe seeve.exe servic.exe scrigz.exe sempalong.exe
SchedulingAgent.exe sachostx.exe sachostw.exe prositefinder.exe prositefinderh.exe
resetservice.exe realtray.exe rlvknlg.exe SAcc.exe sachostb.exe
sachostc.exe sachostm.exe sachostp.exe sachosts.exe sp2update00.exe
msupd5.exe socks.exe gzdb.exe ixvhjq.exe hnd.exe
HAX7.exe HAX6.exe proc88.exe mpcsr.exe IYDNAF.exe
HNVMLE.exe ieod.exe window.exe sysiu.exe HDAEMON.exe
appip32.exe IMWEBSTA.exe voqtayu.exe atlne32.exe adtech2005.exe
svchsot.exe ClickMe.exe ServiceX.exe G_Server.exe g_server2.0.exe
wstime.exe mssearchnet.exe adtech2006.exe timessquare.exe winjava.exe
Anskya0.exe big5_gb2312.exe niw.exe impai.exe lasm.exe
SYSCNTRL.exe wtool32.exe batserv2.exe oudxs.exe debugreal.exe
Pingidle.exe MuSky.exe vxh8jkdq1.exe kernels64.exe svct.exe
svclost.exe emhr.exe yatpu.exe win32root.exe sywsvcs.exe
apadk.exe msnmgr75.exe netsystem.exe expiorer.exe daeetldu.exe
Run6015.exe zirgxen.exe crifx.exe czkrmv.exe frubsrvv.exe
apipm32.exe mfclb32.exe winstall.exe winsysup.exe wvwljjvr.exe
ycqcssor.exe iilahsab.exe 62t.exe biaslog.exe bitssize.exe
trilliancc.exe tskmgr.exe loveqq.exe tbeyr.exe sysme.exe
sbrohpentf.exe gwujj.exe SYSSMSS.exe fbu.exe kkserver.exe
atigraphics.exe zuciumq.exe wvbie.exe itunesff.exe activereg.exe
ztnywyiv.exe msn8m.exe pokapoka63.exe winbery.exe ede1216e.exe
vxh8jkdq5.exe igjrqqkzwa.exe dlos.exe symsvcsa.exe mswmf32.exe
nvidguiv.exe sysldr32.exe hostin.exe msdoc32.exe 00xstmp.exe
dflnl.exe qpad.exe zjn.exe msnmsgrs32.exe zdz.exe
bcvsrv32.exe himemsys.exe msmsgr.exe xemtxlmluwzr.exe lcsrrdpkgq.exe
datafor.exe owaymama.exe html.exe metainside.exe mm4.exe
sysc.exe kerne1412.exe vxgame4.exe muwh.exe lxcw.exe
symlarxxjuf.exe vylylyza.exe msappview32.exe intell32.exe svwhost.exe
sfx.exe msa32w.exe windowspp.exe svlmngr.exe ndftqbv.exe
yaemu.exe wupdmgr32.exe ppl32.exe lss.exe cc32.exe
win32ssr.exe lsasrv.exe ms32.exe exploreo.exe mediaserver.exe
svhost32.exe winzip81.exe FOXRXJH.exe HACKER.COM.CN.exe update_.exe
xhmzqwq.exe help_server.exe sevver.exe sp0olsv.exe idptvmq.exe
installcomplete!.exe bmp22.exe svchqst.exe winsystems.exe cd64.exe
ds64.exe mpjpai32.exe mswindtc.exe xd9.exe vrdezioj.exe
wsftpsrv32.exe 3asss.exe chkdisk32.exe wlcn.exe mouseie.exe
pulpit.exe kkmc.exe xitdhp.exe mssecure.exe wsntfy.exe
wxpdll32.exe mswimsdl.exe not-a-virus.exe maxd64.exe winsysban4.exe
oeut.exe cfgwiz32.exe bool.exe sysword.exe lattt.exe
mssvcc.exe antiway2.exe buildcdrom.exe idfolb.exe nusjzfsvll.exe
sddghdnpajll.exe svchs0t.exe msn_server.exe xtzj.exe wcvsrv32.exe
iol2.exe lcivmcdzr.exe plscd.exe crsvr.exe msquard32.exe
win32sprot.exe leaejm.exe sdxgx.exe zrundlll.exe dmycv.exe
acsb.exe ipohx.exe kkptc.exe xim.exe anti_troj.exe
wintems.exe saged.exe myem.exe mavixeo.exe warqwy.exe
uzuza.exe uzuzm.exe winsysban6.exe winsysban8.exe wmimgr.exe
sc32inch.exe updatem.exe xlxm.exe ddvsts.exe msgconfigrs.exe
osdo.exe svchpst.exe amrgfr.exe fvwm.exe ymt.exe
lcps.exe kvfef.exe iqfql.exe tencent.exe jiaozhu.exe
mnswpr.exe mirw.exe udtp.exe lup.exe hapbh.exe
wacrrk.exe zozzo.exe zozzo.exe bum380.exe anpw.exe
mstsk.exe bmvkqlejda.exe arcpack.scr.exe fontsserivce.exe sys33.exe
kndve.exe nsmscrs.exe gudiu.exe ipnetwork.exe ppsi32.exe
job32.exe fug.exe XIARAN.SYS G_SERVER1.2.exe sbsun.exe
irpll7l.exe iau.exe mservice.exe msqdevl.exe stisvsq.exe
wmimgrnt.exe ntdhcp.exe esre.exe ope7.exe msnmisgi.exe
winsqa.exe srver.exe portableserial.exe winsysban10.exe geg2.exe
drsmartload1.exe retnecegassemenolaer.exe txhbx.exe yrzjfb.exe taskmg32.exe
msnserve.exe msmsgrs.exe ope52.exe kernel2005.exe ppayyi.exe
kciwpi.exe MS_INFO.OBJ hcuzgsygzuqyq.exe bylpdezria.exe uemoisaonlrrw.exe
qxwoxqeh.exe mm5.exe acdu.exe iesets.exe rcdc.exe
wkyaiw.exe tenp.exe mosnserve.exe wuamkop.exe ccrpiw.exe
32htmbike.exe dgnnbq.exe b4db0yz.exe mpcsvc.exe msgupdates.exe
firefoxi.exe apao.exe bnlwfp.exe winipi386.exe browse.exe
lnetinfo.exe achujfyrzz.exe sysvcs.exe hose.exe runbll.exe
update32.exe winupdt33e.exe lsass2.exe cllhost.exe comsyslog.exe
wingserver.exe myjbky.exe e-nrgyplus.exe InfoMz.Ime x_core.exe
goost.exe winsrs.exe windows-mod.exe aimclient.exe sysihost.exe
bapa.exe hws.exe fxex.exe LSESS.exe InfoMs.Ime
还有很多其他的 包括系统的进程 应用程序进程等等很多值得收藏
存在安全风险进程列表 | 系统进程列表 | 应用程序进程列表 | 其它进程列表 | 系统DLL文件 | 应用程序DLL文件
只要停止第一个stormliv就好了,那个东西最占内存。不过很恶心的是,这个程序会在每次的开机时自动启动,所以你需要在系统服务中可以将其关闭,具体方法是:打开控制面板的管理工具,再打开服务,找到Contrl Center of Storm Media,双击: 在服务状态下点 停止在启动类型中选 已禁用 以后再启动系统就不会加载了。
绛旓細鍙互鎸変笅闈㈢殑鏂规硶璁╃郴缁熷仠姝㈣繍琛孧dm.exe鏉ュ交搴鍒犻櫎浠ff寮澶寸殑鎬枃浠:棣栧厛鎸夆淐trl+Alt+Del鈥濈粍鍚堥敭,鍦ㄥ脊鍑虹殑鈥滃叧闂▼搴忊濈獥鍙d腑閫変腑鈥淢dm鈥,鎸夆滅粨鏉熶换鍔♀濇寜閽潵鍋滄Mdm.exe鍦ㄥ悗鍙扮殑杩愯,鎺ョ潃鎶奙dm.exe(鍦–:\Windows\System鐩綍涓)鏀瑰悕涓篗dm.bak銆傝繍琛宮sconfig绋嬪簭,鍦ㄥ惎鍔ㄩ〉涓彇娑堝鈥淢achine Debug Manager鈥...
绛旓細1銆佹渶鍩烘湰鐨勭郴缁熻繘绋 杩欎簺杩涚▼鏄郴缁熻繍琛岀殑鍩烘湰鏉′欢锛屾湁浜嗚繖浜涜繘绋嬶紝绯荤粺鎵嶈兘姝e父杩愯銆俿mss.exe Session Manager csrss.exe 瀛愮郴缁熸湇鍔″櫒杩涚▼ winlogon.exe 绠$悊鐢ㄦ埛鐧诲綍 services.exe 鍖呭惈寰堝绯荤粺鏈嶅姟 lsass.exe 绠$悊IP瀹夊叏绛栫暐浠ュ強鍚姩ISAKMP/Oakley(IKE)鍜孖P瀹夊叏椹卞姩绋嬪簭銆(绯荤粺鏈嶅姟)浜х敓浼氳瘽瀵嗛挜浠ュ強鎺堜簣...
绛旓細杩欎釜杩涚▼鏄笉鍙互浠庝换鍔$鐞嗗櫒涓叧鎺夌殑銆 杩欐槸涓涓湰鍦扮殑瀹夊叏鎺堟潈鏈嶅姟,骞朵笖瀹冧細涓轰娇鐢╳inlogon鏈嶅姟鐨勬巿鏉冪敤鎴风敓鎴愪竴涓繘绋嬨傝繖涓繘绋嬫槸 閫氳繃浣跨敤鎺堟潈鐨勫寘,渚嬪榛樿鐨刴sgina.dll鏉ユ墽琛岀殑銆傚鏋滄巿鏉冩槸鎴愬姛鐨,lsass灏变細浜х敓鐢ㄦ埛鐨勮繘鍏 浠ょ墝,浠ょ墝鍒娇鐢ㄥ惎鍔ㄥ垵濮嬬殑shell銆傚叾浠栫殑鐢辩敤鎴峰垵濮嬪寲鐨勮繘绋嬩細缁ф壙杩欎釜浠ょ墝鐨勩 mstask...
绛旓細, 鐢佃剳閲岄偅浜涜繘绋嬫槸娌$敤鐨勫彲浠ュ垹闄ょ殑 棣栧厛锛岃繘绋嬪彧鑳界粓姝紝涓嶈兘鍒犻櫎銆 鍏舵锛岀敱浜庢瘡涓鍙扮數鑴戠殑杞‖浠剁幆澧冮兘涓嶅畬鍏ㄤ竴鑷达紝骞朵笉瀛樺湪涓绉嶉氱敤鐨勫垽鏂爣鍑嗗彲浠ョ‘瀹氬摢涓繘绋嬫湁闂銆傝屼笖涓鏃﹀嚭鐜伴棶棰樿繘绋嬶紝浠呬粎鏄粓姝㈡帀骞朵笉鑳藉交搴曡В鍐抽棶棰橈紝杩橀渶瑕佸垹闄ゅ搴旂殑绋嬪簭鏂囦欢鍜屾敞鍐岃〃椤圭洰锛岃鍒掍换鍔¢」鐩垨鑰呯郴缁熸湇鍔¢」鐩
绛旓細璇烽棶:浠ヤ笅杩涚▼鏂囦欢鍙互鍒犻櫎:鏄犲儚鍚嶇О鐢ㄦ埛鍚嶅唴瀛樹娇鐢360tray.exeAdministrator17KPphidpad.exeAdministrator4,524Ktaskmgr.exeAdministrator6,236KTXPIatform.exeAdministrator2,236... 璇烽棶:浠ヤ笅杩涚▼鏂囦欢鍙互鍒犻櫎:鏄犲儚鍚嶇О 鐢ㄦ埛鍚 鍐呭瓨浣跨敤360tray.exe Administrator 17KPphidpad.exe Administrator 4,524Ktaskmgr.exe ...
绛旓細ctfmon.exe 杈撳叆娉曠浉鍏杩涚▼锛屼笉鑳藉叧闂俽fwproxy.exe 鐟炴槦瀹堕暱淇濇姢鍔熻兘杩涚▼锛屽鏋滀綘瑙夊緱娌$敤锛屽敖鍙粨鏉熷畠鎴栫姝㈠叾杩愯銆俽fwsrv.exe 鐟炴槦涓汉闃茬伀澧欑浉鍏崇▼搴忥紝涓嶈兘鍏抽棴銆俁avMonD.exe 鐟炴槦鏉姣掕蒋浠剁浉鍏崇洃鎺х▼搴忥紝涓嶈兘鍏抽棴銆俿vchost.exe Windows鎿嶄綔绯荤粺鐨勭郴缁熺▼搴忥紝浣嶇疆鍦–:/windows/system32/...
绛旓細ctfmon.exe杩欎釜鏄緭鍏ユ硶杩涚▼锛屼笉鑳藉叧 spoolsv.exe,绯荤粺杩涚▼ taskmgr.exe绯荤粺杩涚▼ Ravstub.exe鐟炴槦鐨勮繘绋 explorer.exe姝や负璧勬簮绠$悊鍣ㄧ殑杩涚▼銆備笉鑳藉叧銆俽fwstub.exe鐟炴槦闃茬伀澧欒繘绋 GoogleToolbar.exe璋锋瓕鐨処E宸ュ叿鏍忥紝鍙互鍒犳帀銆傛伓鎰忔彃浠躲倅live.exe,闆呰檸鐨勫伐鍏锋爮杩涚▼锛屽彲浠ュ垹鎺夈傛伓鎰忔彃浠躲俽fwProxy.exe鐟炴槦...
绛旓細1.鍩烘湰绯荤粺杩涚▼ Csrss.exe锛氳繖鏄瓙绯荤粺鏈嶅姟鍣ㄨ繘绋嬶紝璐熻矗鎺у埗Windows鍒涘缓鎴鍒犻櫎绾跨▼浠ュ強16浣嶇殑铏氭嫙DOS鐜銆係ystem Idle Process锛氳繖涓繘绋嬫槸浣滀负鍗曠嚎绋嬭繍琛屽湪姣忎釜澶勭悊鍣ㄤ笂锛屽苟鍦ㄧ郴缁熶笉澶勭悊鍏跺畠绾跨▼鐨勬椂鍊欏垎娲惧鐞嗗櫒鐨勬椂闂淬係mss.exe锛氳繖鏄竴涓細璇濈鐞嗗瓙绯荤粺锛岃礋璐e惎鍔ㄧ敤鎴蜂細璇濄係ervices.exe锛氱郴缁熸湇鍔$殑绠$悊...
绛旓細闄勫姞鐨勭郴缁熻繘绋(杩欎簺杩涚▼涓嶆槸蹇呰鐨,浣鍙互鏍规嵁闇瑕侀氳繃鏈嶅姟绠$悊鍣ㄦ潵澧炲姞鎴栧噺灏) mstask.exe 鍏佽绋嬪簭鍦ㄦ寚瀹氭椂闂磋繍琛屻(绯荤粺鏈嶅姟)->schedule regsvc.exe 鍏佽杩滅▼娉ㄥ唽琛ㄦ搷浣溿(绯荤粺鏈嶅姟)->remoteregister winmgmt.exe 鎻愪緵绯荤粺绠$悊淇℃伅(绯荤粺鏈嶅姟)銆 inetinfo.exe->msftpsvc,w3svc,iisadmn tlntsvr.exe->tlnrsvr tftpd...
绛旓細鍦ㄥ畠鍚姩杩欎簺杩涚▼鍚庯紝瀹冪瓑寰匴inlogon鎴栬匔srss缁撴潫銆傚鏋滆繖浜涜繃绋嬫椂姝e父鐨勶紝绯荤粺灏卞叧鎺変簡銆傚鏋滃彂鐢熶簡浠涔堜笉鍙鏂欑殑浜嬫儏锛宻mss.exe灏变細璁╃郴缁熷仠姝㈠搷搴旓紙鎸傝捣锛夈俛lg.exe 搴旂敤灞傜綉鍏虫湇鍔★紝鐢ㄤ簬缃戠粶鍏变韩 rundll32.exe Windows RUNDLL32 Helper锛學indows Rundll32涓轰簡闇瑕佽皟鐢―LLs鐨勭▼搴忋俢tfmon.exe Alternative ...