alt+tab键发现未知无名程序

ttfish 2006-08-13 09:41:45
alt+tab键发现未知无名程序,找了半天,也不知道是什么,(win2000)

在任务管理器中看不到这个无名程序,

顺便问一下,任务管理器中的进程列表怎么导出呢
...全文
301 6 打赏 收藏 转发到动态 举报
写回复
用AI写文章
6 条回复
切换为时间正序
请发表友善的回复…
发表回复
scz123 2006-08-13
  • 打赏
  • 举报
回复
pcast,确实是个垃圾,可以如下去掉:

cd /d F:\PROGRA~2\pcast
regsvr32 tbcast.dll -u -s
ren tbcast.dll tbcast.dl~
ttfish 2006-08-13
  • 打赏
  • 举报
回复
scz123:
好眼力,ieinfo.exe杀死后alt+tab中的无名进程消逝;

rundll32.exe="F:\WINNT\system32\Rundll32.exe" "F:\PROGRA~2\pcast\tbcast.dll",WaitWindows

8成是个垃圾

scz123 2006-08-13
  • 打赏
  • 举报
回复
楼主未把command line字段显示出来
初步查看,比较可疑的有
ieinfo.exe
rundll32.exe(但需要看具体执行命令,双击,查看command line)
ttfish 2006-08-13
  • 打赏
  • 举报
回复
Process PID CPU Description Company Name
System Idle Process 0 95.38
Interrupts n/a Hardware Interrupts
DPCs n/a Deferred Procedure Calls
System 8
smss.exe 144 Windows NT Session Manager Microsoft Corporation
csrss.exe 168 Client Server Runtime Process Microsoft Corporation
winlogon.exe 188 Windows NT Logon Application Microsoft Corporation
services.exe 216 Services and Controller app Microsoft Corporation
KWatch.EXE 408 Kingsoft Antivirus KWatch Service Kingsoft Corporation
svchost.exe 436 Generic Host Process for Win32 Services Microsoft Corporation
spoolsv.exe 464 Spooler SubSystem App Microsoft Corporation
svchost.exe 516 Generic Host Process for Win32 Services Microsoft Corporation
KPfwSvc.EXE 572 Kingsoft Firewall Service Kingsoft Corporation
nvsvc32.exe 596 NVIDIA Driver Helper Service, Version 27.42 NVIDIA Corporation
pppoeservice.ex 624
regsvc.exe 652 Remote Registry Service Microsoft Corporation
MSTask.exe 664 Task Scheduler Engine Microsoft Corporation
stisvc.exe 704 Still Image Devices Monitor Microsoft Corporation
WinMgmt.exe 768 Windows Management Instrumentation Microsoft Corporation
mspmspsv.exe 792 WMDM PMSP Service Microsoft Corporation
svchost.exe 804 Generic Host Process for Win32 Services Microsoft Corporation
wuauclt.exe 1020 Automatic Updates Microsoft Corporation
inetinfo.exe 824 Internet 信息服务 Microsoft Corporation
lsass.exe 228 LSA Executable and Server DLL (Export Version) Microsoft Corporation
Explorer.EXE 1304 Windows Explorer Microsoft Corporation
procexp.exe 1640 1.54 Sysinternals Process Explorer Sysinternals
ieinfo.exe 1172 ieinfo MFC Application
SOUNDMAN.EXE 1216 Avance Sound Manager Avance Logic, Inc.
KAVStart.exe 1260 Kingsoft Security Center Kingsoft Corporation
KMailMon.EXE 1384 Kingsoft Antivirus Mail Monitor Kingsoft Corporation
Rundll32.exe 1268 Run a DLL as an App Microsoft Corporation
internat.exe 1280 Keyboard Language Indicator Applet Microsoft Corporation
KPFW32.EXE 1244 Kingsoft Personal Firewall Main Program Kingsoft Corporation
AcroTray.exe 1332 AcroTray Adobe Systems Inc.
SSLCnt.exe 1336 SSL通讯安全代理 杭州核新软件技术有限公司
Maxthon.exe 1416 3.08 Maxthon Web Browser Maxthon International Ltd.
conime.exe 1196 Console IME Microsoft Corporation


帮我看看,这里有可疑分子么?
ttfish 2006-08-13
  • 打赏
  • 举报
回复
按CTRL+A可以导出进程列表,??
是PROCESS EXPLORER,吗?是windows自带的还是到网上下?
scz123 2006-08-13
  • 打赏
  • 举报
回复
推荐使用PROCESS EXPLORER,
按CTRL+A可以导出进程列表,
建议在导出前,设置视图,把command line选上:
view /select colums/process image:command line,同时取消Image Path

9,506

社区成员

发帖
与我相关
我的任务
社区描述
Windows专区 安全技术/病毒
社区管理员
  • 安全技术/病毒社区
加入社区
  • 近7日
  • 近30日
  • 至今
社区公告
暂无公告

试试用AI创作助手写篇文章吧