°Ù¶È֪ʶ´óÈ«-µÚ386ÕÂ
°´¼üÅÌÉÏ·½Ïò¼ü ¡û »ò ¡ú ¿É¿ìËÙÉÏÏ·ҳ£¬°´¼üÅÌÉ쵀 Enter ¼ü¿É»Øµ½±¾ÊéĿ¼ҳ£¬°´¼üÅÌÉÏ·½Ïò¼ü ¡ü ¿É»Øµ½±¾Ò³¶¥²¿£¡
¡ª¡ª¡ª¡ªÎ´ÔĶÁÍꣿ¼ÓÈëÊéÇ©ÒѱãÏ´μÌÐøÔĶÁ£¡
CPUÕ¼ÓÃ100£¥½â¾ö°ì·¨
Ò»°ãÇé¿öÏÂCPUÕ¼ÁË100£¥µÄ»°ÎÒÃǵĵçÄÔ×Ü»áÂýÏÂÀ´£¬¶øºÜ¶àʱºòÎÒÃÇÊÇ¿ÉÒÔͨ¹ý×öÒ»µãµãµÄ¸Ä¶¯¾Í¿ÉÒÔ½â¾ö£¬¶ø²»±ØÎÊÄÇЩ´óϺÁË¡£
µ±»úÆ÷ÂýÏÂÀ´µÄʱºò£¬Ê×ÏÈÎÒÃÇÏëµ½µÄµ±È»ÊÇÈÎÎñ¹ÜÀíÆ÷ÁË£¬¿´¿´µ½µ×ÊÇÄĸö³ÌÐòÕ¼Á˽ϸãµÄ±ÈÀý£¬Èç¹ûÊÇij¸ö´ó³ÌÐòÄÇ»¹¿ÉÒÔÔÁ£¬ÔڹرոóÌÐòºóÖ»ÒªCPUÕý³£ÁËÄǾÍûÎÊÌ⣻Èç¹û²»ÊÇ£¬ÄÇÄã¾ÍÒª¿´¿´ÊÇʲçÛ³ÌÐòÁË£¬µ±Äã²é²»³öÕâ¸ö½ø³ÌÊÇʲçÛµÄʱºò¾ÍÈ¥google»òÕßbaiduËÑ¡£ÓÐʱֻ½áÊøÊÇûÓõģ¬ÔÚxpÏÂÎÒÃÇ¿ÉÒÔ½áºÏmsconfigÀïµÄÆô¶¯Ï°ÑһЩ²»ÓõÄÏî¸ø¹Øµô¡£ÔÚ2000Ï¿ÉÒÔȥϸöwinpatrolÀ´Óá£
һЩ³£ÓõÄÈí¼þ£¬±ÈÈçä¯ÀÀÆ÷Õ¼ÓÃÁ˺ܸãµÄCPU£¬ÄÇçÛ¾ÍÒªÉý¼¶¸ÃÈí¼þ»òÕ߸ɴàÓñðµÄͬÀàÈí¼þ´úÌ棬ÓÐʱÈí¼þºÍϵͳ»áÓе㲻¼æÈÝ£¬µ±È»ÎÒÃÇ¿ÉÒÔÊÔÏÂxpϵͳϸøÎÒÃǵÄÄǸö¼æÈÝÏÓÒ¼üµã¸Ã¡£exeÎļþÑ¡¼æÈÝÐÔ¡£
svchost¡£exeÓÐʱÊDZȽÏÍ·Í´µÄ£¬µ±Äã¿´µ½ÄãµÄij¸ösvchost¡£exeÕ¼ÓúܴóCPUʱÄã¿ÉÒÔȥϸöaports»òÕßfportÀ´¼ì²éÆä¶ÔÓ¦µÄ³ÌÐò·¾¶£¬Ò²¾ÍÊÇʲçÛ¶«Î÷ÔÚµôÓÃÕâ¸ösvchost¡£exe£¬Èç¹û²»ÊÇc£ºWindowssystem32£¨xp£©»òc£ºwinntsystem32£¨2000£©Ïµģ¬ÄǾͿÉÒÉ¡£Éý¼¶É±¶¾Èí¼þɱ¶¾°É¡£
ÓÒ»÷Îļþµ¼ÖÂ100£¥µÄCPUÕ¼ÓÃÎÒÃÇÒ²»áÓöµ½£¬ÓÐʱµãÓÒ¼üÍ£¶Ù¿ÉÄܾÍÊÇÕâ¸öÎÊÌâÁË¡£¹Ù·½µÄ½âÊÍ£ºÏȵã×ó¼üÑ¡ÖУ¬ÔÙÓÒ¼ü£¨²»ÊǺÜÀí½â£©¡£·Ç¹Ù·½£ºÍ¨¹ýÔÚ×ÀÃæµãÓÒ¼ü¡ÊôÐÔ¡Íâ¹Û¡Ð§¹û£¬È¡Ïû¡±Îª²Ëµ¥ºÍ¹¤¾ßÌáʾʹÓÃÏÂÁйý¶ÈЧ¹û£¨U£©¡°À´½â¾ö¡£»¹ÓÐijЩɱ¶¾Èí¼þ¶ÔÎļþµÄ¼à¿ØÒ²»áÓÐËùÓ°Ï죬¿ÉÒԹرÕɱ¶¾Èí¼þµÄÎļþ¼à¿Ø£»»¹ÓоÍÊǶÔÍøÒ³£¬²å¼þ£¬ÓʼþµÄ¼à¿ØÒ²ÊÇͬÑùµÄµÀÀí¡£
һЩÇý¶¯³ÌÐòÓÐʱҲ¿ÉÄܳöÏÖÕâÑùµÄÏÖÏó£¬×îºÃÊÇÑ¡Ôñ΢ÈíÈÏÖ¤µÄ»òÕßÊǹٷ½·¢²¼µÄÇý¶¯À´×°£¬ÓÐʱ¿ÉÒÔÊʵ±µÄÉý¼¶Çý¶¯£¬²»¹ý¼ÇµÃ×îеIJ»ÊÇ×îºÃµÄ¡£
CPU½µÎÂÈí¼þ£¬ÓÉÓÚÈí¼þÔÚÔËÐÐʱ»áÀûÓÃËùÒÔµÄCPU¿ÕÏÐʱ¼äÀ´½øÐнµÎ£¬µ«Windows²»ÄÜ·Ö±æÆÕͨµÄCPUÕ¼ÓúͽµÎÂÈí¼þµÄ½µÎÂÖ¸ÁîÖ®¼äµÄÇø±ð£¬Òò´ËCPUʼÖÕÏÔʾ100£¥£¬Õâ¸ö¾Í²»±Øµ£ÐÄÁË£¬²»Ó°ÏìÕý³£µÄϵͳÔËÐС£
ÔÚ´¦Àí½Ï´óµÄwordÎļþʱÓÉÓÚwordµÄƴдºÍÓï·¨¼ì²é»áʹµÃCPUÀÛ£¬Ö»Òª´ò¿ªwordµÄ¹¤¾ß¡Ñ¡Ïî¡Æ´Ð´ºÍÓï·¨°Ñ¡±¼ì²éƴдºÍ¼ì²éÓï·¨¡°¹´È¥µô¡£
µ¥»÷aviÊÓƵÎļþºóCPUÕ¼ÓÃÂʸßÊÇÒòΪϵͳҪÏÈɨÃè¸ÃÎļþ£¬²¢¼ì²éÎļþËùÓв¿·Ö£¬²¢½¨Á¢Ë÷Òý£»½â¾ö°ì·¨£ºÓÒ»÷±£´æÊÓƵÎļþµÄÎļþ¼Ð¡ÊôÐÔ¡³£¹æ¡¸ß¼¶£¬È¥µôΪÁË¿ìËÙËÑË÷£¬ÔÊÐíË÷Òý·þÎñ±àÖƸÃÎļþ¼ÐµÄË÷ÒýµÄ¹´¡£
CPUÕ¼ÓÃ100£¥°¸Àý·ÖÎö
1¡¢dllhost½ø³ÌÔì³ÉCPUʹÓÃÂÊÕ¼ÓÃ100£¥
ÌØÕ÷£º·þÎñÆ÷Õý³£CPUÏûºÄÓ¦¸ÃÔÚ75£¥ÒÔÏ£¬¶øÇÒCPUÏûºÄÓ¦¸ÃÊÇÉÏÏÂÆð·üµÄ£¬³öÏÖÕâÖÖÎÊÌâµÄ·þÎñÆ÷£¬CPU»áͻȻһֱ´¦100£¥µÄˮƽ£¬¶øÇÒ²»»áϽµ¡£²é¿´ÈÎÎñ¹ÜÀíÆ÷£¬¿ÉÒÔ·¢ÏÖÊÇDLLHOST¡£EXEÏûºÄÁËËùÓеÄCPU¿ÕÏÐʱ¼ä£¬¹ÜÀíÔ±ÔÚÕâÖÖÇé¿öÏ£¬Ö»ºÃÖØÐÂÆô¶¯IIS·þÎñ£¬Ææ¹ÖµÄÊÇ£¬ÖØÐÂÆô¶¯IIS·þÎñºóÒ»ÇÐÕý³££¬µ«¿ÉÄܹýÁËÒ»¶Îʱ¼äºó£¬ÎÊÌâÓÖÔٴγöÏÖÁË¡£
Ö±½ÓÔÒò£º
ÓÐÒ»¸ö»ò¶à¸öACCESSÊý¾Ý¿âÔÚ¶à´Î¶Áд¹ý³ÌÖÐË𻵣¬Î¢ÈíµÄMDACϵͳÔÚдÈëÕâ¸öË𻵵ÄACCESSÎļþʱ£¬ASPÏ̴߳¦ÓÚBLOCK״̬£¬½á¹ûÆäËüÏß³ÌÖ»Äܵȴý£¬IIS±»ËÀËøÁË£¬È«²¿µÄCPUʱ¼ä¶¼ÏûºÄÔÚDLLHOSTÖС£
½â¾ö°ì·¨£º
°²×°¡°Ò»Á÷ÐÅÏ¢¼à¿ØÀ¹½Øϵͳ¡±£¬Ê¹ÓÃÆäÖеġ°Ê×ϯÎļþ¼ì²é¹ÙIIS½¡¿µ¼ì²é¹Ù¡±Èí¼þ£¬
ÆôÓá±²éÕÒËÀËøÄ£¿é¡±£¬ÉèÖãº
¡¡wblock=yes
¼à¿ØµÄĿ¼£¬ÇëÖ¸¶¨ÄúµÄÖ÷»úµÄÎļþËùÔÚĿ¼£º
¡¡wblockdir=d£ºtest
¼à¿ØÉú³ÉµÄÈÕÖ¾µÄÎļþ±£´æλÖÃÔÚ°²×°Ä¿Â¼µÄlogĿ¼ÖУ¬ÎļþÃûΪ£ºlogblock¡£htm
Í£Ö¹IIS£¬ÔÙÆô¶¯¡°Ê×ϯÎļþ¼ì²é¹ÙIIS½¡¿µ¼ì²é¹Ù¡±£¬ÔÙÆô¶¯IIS£¬¡°Ê×ϯÎļþ¼ì²é¹ÙIIS½¡¿µ¼ì²é¹Ù¡±»áÔÚlogblock¡£htmÖмǼÏÂ×îºóдÈëµÄACCESSÎļþµÄ¡£
¹ýÁËÒ»¶Îʱ¼äºó£¬µ±ÎÊÌâ³öÀ´Ê±£¬ÀýÈçCPU»áÔÙ´ÎÒ»Ö±´¦100£¥µÄˮƽ£¬¿ÉÒÔÍ£Ö¹IIS£¬¼ì²élogblock¡£htmËù¼Ç¼µÄ×îºóµÄÊ®¸öÎļþ£¬×¢Ò⣬×îÓÐÎÊÌâµÄÍùÍùÊǼÆÊýÆ÷ÀàµÄACCESSÎļþ£¬ÀýÈ磺¡±**COUNT¡£MDB¡±£¬¡±**COUNT¡£ASP¡±£¬¿ÉÒÔÏÈ°Ñ×îºóÊ®¸öÎļþ»òÓÐËù»³ÒɵÄÎļþɾ³ýµ½»ØÊÕÕ¾ÖУ¬ÔÙÆô¶¯IIS£¬¿´¿´ÎÊÌâÊÇ·ñÔٴγöÏÖ¡£ÎÒÃÇÏàÐÅ£¬¾¹ý×ÐϸµÄ²éÕÒºó£¬Äú¿Ï¶¨¿ÉÒÔÕÒµ½Õâ¸öÈÃÄú²ÙÐÄÁËÒ»¶Îʱ¼äµÄÎļþµÄ¡£
ÕÒµ½Õâ¸öÎļþºó£¬¿ÉÒÔɾ³ýËü£¬»òÏÂÔØÏÂÀ´£¬ÓÃACCESS2000ÐÞ¸´Ëü£¬ÎÊÌâ¾Í½â¾öÁË¡£
2¡¢svchost¡£exeÔì³ÉCPUʹÓÃÂÊÕ¼ÓÃ100£¥
ÔÚwin¡£iniÎļþÖУ¬ÔÚ£§Windows£§ÏÂÃ棬¡°run=¡±ºÍ¡°load=¡±ÊÇ¿ÉÄܼÓÔØ¡°Ä¾Âí¡±³ÌÐòµÄ;¾¶£¬±ØÐë×ÐϸÁôÐÄËüÃÇ¡£Ò»°ãÇé¿öÏ£¬ËüÃǵĵȺźóÃæʲçÛ¶¼Ã»ÓУ¬Èç¹û·¢ÏÖºóÃæ¸úÓз¾¶ÓëÎļþÃû²»ÊÇÄãÊìϤµÄÆô¶¯Îļþ£¬ÄãµÄ¼ÆËã»ú¾Í¿ÉÄÜÖÐÉÏ¡°Ä¾Âí¡±ÁË¡£µ±È»ÄãÒ²µÃ¿´Çå³þ£¬ÒòΪºÃ¶à¡°Ä¾Âí¡±£¬Èç¡°AOLTrojanľÂí¡±£¬Ëü°Ñ×ÔÉíαװ³Émand¡£exeÎļþ£¬Èç¹û²»×¢Òâ¿ÉÄܲ»»á·¢ÏÖËü²»ÊÇÕæÕýµÄϵͳÆô¶¯Îļþ¡£
ÔÚsystem¡£iniÎļþÖУ¬ÔÚ£§BOOT£§ÏÂÃæÓиö¡°shell=ÎļþÃû¡±¡£ÕýÈ·µÄÎļþÃûÓ¦¸ÃÊÇ¡°explorer¡£exe¡±£¬Èç¹û²»ÊÇ¡°explorer¡£exe¡±£¬¶øÊÇ¡°shell=explorer¡£exe³ÌÐòÃû¡±£¬ÄÇçÛºóÃæ¸ú×ŵÄÄǸö³ÌÐò¾ÍÊÇ¡°Ä¾Âí¡±³ÌÐò£¬¾ÍÊÇ˵ÄãÒѾÖС°Ä¾Âí¡±ÁË¡£
ÔÚ×¢²á±íÖеÄÇé¿ö×ÔÓ£¬Í¨¹ýregeditÃüÁî´ò¿ª×¢²á±í±à¼Æ÷£¬ÔÚµã»÷ÖÁ£º¡°HKEY¡LOCAL¡MACHINESoftwareMicrosoftWindowsCurrentVersionRun¡±Ä¿Â¼Ï£¬²é¿´¼üÖµÖÐÓÐûÓÐ×Ô¼º²»ÊìϤµÄ×Ô¶¯Æô¶¯Îļþ£¬À©Õ¹ÃûΪEXE£¬ÕâÀïÇмǣºÓеġ°Ä¾Âí¡±³ÌÐòÉú³ÉµÄÎļþºÜÏñϵͳ×ÔÉíÎļþ£¬Ïëͨ¹ýαװÃÉ»ì¹ý¹Ø£¬Èç¡°AcidBatteryv1¡£0ľÂí¡±£¬Ëü½«×¢²á±í¡°HKEY¡LOCAL¡MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun¡±ÏµÄExplorer¼üÖµ¸ÄΪExplorer=¡°C£ºWindowsexpiorer¡£exe¡±£¬¡°Ä¾Âí¡±³ÌÐòÓëÕæÕýµÄExplorerÖ®¼äÖ»ÓС°i¡±Óë¡°l¡±µÄ²î±ð¡£µ±È»ÔÚ×¢²á±íÖл¹ÓкܶàµØ·½¶¼¿ÉÒÔÒþ²Ø¡°Ä¾Âí¡±³ÌÐò£¬È磺¡°HKEY¡CURRENT¡USERSoftwareMicrosoftWindowsCurrentVersionRun¡±¡¢¡°HKEY¡USERS****SoftwareMicrosoftWindowsCurrentVersionRun¡±µÄĿ¼Ï¶¼ÓпÉÄÜ£¬×îºÃµÄ°ì·¨¾ÍÊÇÔÚ¡°HKEY¡LOCAL¡MACHINESoftwareMicrosoftWindowsCurrentVersionRun¡±ÏÂÕÒµ½¡°Ä¾Âí¸Ã²¡¶¾Ò²³ÆΪ¡°CodeRedII£¨ºìÉ«´úÂë2£©¡±²¡¶¾£¬ÓëÔçÏÈÔÚÎ÷·½Ó¢ÎÄϵͳÏÂÁ÷ÐС°ºìÉ«´úÂ롱²¡¶¾ÓеãÏà·´£¬ÔÚ¹ú¼ÊÉϱ»³ÆΪVirtualRoot£¨ÐéÄâĿ¼£©²¡¶¾¡£¸ÃÈä³æ²¡¶¾ÀûÓÃMicrosoftÒÑÖªµÄÒç³ö©¶´£¬Í¨¹ý80¶Ë¿ÚÀ´´«²¥µ½ÆäËüµÄWebÒ³·þÎñÆ÷ÉÏ¡£ÊܸÐȾµÄ»úÆ÷¿ÉÓɺڿÍÃÇͨ¹ýHttpGetµÄÇëÇóÔËÐÐscripts/root¡£exeÀ´»ñµÃ¶ÔÊܸÐȾ»úÆ÷µÄÍêÈ«¿ØÖÆȨ¡£
µ±¸ÐȾһ̨·þÎñÆ÷³É¹¦ÁËÒÔºó£¬Èç¹ûÊܸÐȾµÄ»úÆ÷ÊÇÖÐÎĵÄϵͳºó£¬¸Ã³ÌÐò»áÐÝÃß2Ì죬±ðµÄ»úÆ÷ÐÝÃß1Ìì¡£µ±ÐÝÃßµÄʱ¼äµ½ÁËÒԺ󣬸ÃÈä³æ³ÌÐò»áʹµÃ»úÆ÷ÖØÐÂÆô¶¯¡£¸ÃÈä³æÒ²»á¼ì²é»úÆ÷µÄÔ·ÝÊÇ·ñÊÇ10Ô»òÕßÄê·ÝÊÇ·ñÊÇ2002Ä꣬Èç¹ûÊÇ£¬ÊܸÐȾµÄ·þÎñÆ÷Ò²»áÖØÐÂÆô¶¯¡£µ±WindowsNTϵͳÆô¶¯Ê±£¬NTϵͳ»á×Ô¶¯ËÑË÷CÅ̸ùĿ¼ÏµÄÎļþexplorer¡£exe£¬ÊܸÃÍøÂçÈä³æ³ÌÐò¸ÐȾµÄ·þÎñÆ÷ÉϵÄÎļþexplorer¡£exeÒ²¾ÍÊǸÃÍøÂçÈä³æ³ÌÐò±¾Éí¡£¸ÃÎļþµÄ´óСÊÇ8192×Ö½Ú£¬VirtualRootÍøÂçÈä³æ³ÌÐò¾ÍÊÇͨ¹ý¸Ã³ÌÐòÀ´Ö´Ðеġ£Í¬Ê±£¬VirtualRootÍøÂçÈä³æ³ÌÐò»¹½«cmd¡£exeµÄÎļþ´ÓWindowsNTµÄsystemĿ¼¿½±´µ½±ðµÄĿ¼£¬¸øºÚ¿ÍµÄÈëÇÖ³¨¿ªÁË´óÃÅ¡£Ëü»¹»áÐÞ¸ÄϵͳµÄ×¢²á±íÏîÄ¿£¬Í¨¹ý¸Ã×¢²á±íÏîÄ¿µÄÐ޸ģ¬¸ÃÈä³æ³ÌÐò¿ÉÒÔ½¨Á¢ÐéÄâµÄĿ¼C»òÕßD£¬²¡¶¾ÃûÓɴ˶øÀ´¡£ÖµµÃÒ»ÌáµÄÊÇ£¬¸ÃÍøÂçÈä³æ³ÌÐò³ýÁËÎļþexplorer¡£exeÍ⣬ÆäÓàµÄ²Ù×÷²»ÊÇ»ùÓÚÎļþµÄ£¬¶øÊÇÖ±½ÓÔÚÄÚ´æÖÐÀ´½øÐиÐȾ¡¢´«²¥µÄ£¬Õâ¾Í¸ø²¶×½´øÀ´Á˽ϴóÄѶȡ£
¡±³ÌÐòµÄÎļþÃû£¬ÔÙÔÚÕû¸ö×¢²á±íÖÐËÑË÷¼´¿É¡£
ÎÒÃÇÏÈ¿´¿´Î¢ÈíÊÇÔõÑùÃèÊösvchost¡£exeµÄ¡£ÔÚ΢Èí֪ʶ¿â314056ÖжÔsvchost¡£exeÓÐÈçÏÂÃèÊö£ºsvchost¡£exeÊÇ´Ó¶¯Ì¬Á´½Ó¿â£¨DLL£©ÖÐÔËÐеķþÎñµÄͨÓÃÖ÷»ú½ø³ÌÃû³Æ¡£
Æäʵsvchost¡£exeÊÇWindowsXPϵͳµÄÒ»¸öºËÐĽø³Ì¡£svchost¡£exe²»µ¥µ¥Ö»³öÏÖÔÚWindowsXPÖУ¬ÔÚʹÓÃNTÄں˵ÄWindowsϵͳÖж¼»áÓÐsvchost¡£exeµÄ´æÔÚ¡£Ò»°ãÔÚWindows2000ÖÐsvchost¡£exe½ø³ÌµÄÊýĿΪ2¸ö£¬¶øÔÚWindowsXPÖÐsvchost¡£exe½ø³ÌµÄÊýÄ¿¾ÍÉÏÉýµ½ÁË4¸ö¼°4¸öÒÔÉÏ¡£ËùÒÔ¿´µ½ÏµÍ³µÄ½ø³ÌÁбíÖÐÓм¸¸ösvchost¡£exe²»ÓÃÄÇçÛµ£ÐÄ¡£
svchost¡£exeµ½µ×ÊÇ×öʲçÛÓõÄÄØ£¿
Ê×ÏÈÎÒÃÇÒªÁ˽âÒ»µãÄǾÍÊÇWindowsϵͳµÄÖеĽø³Ì·ÖΪ£º¶ÀÁ¢½ø³ÌºÍ¹²Ïí½ø³ÌÕâÁ½ÖÖ¡£ÓÉÓÚWindowsϵͳÖеķþÎñÔ½À´Ô½¶à£¬ÎªÁ˽ÚÔ¼ÓÐÏÞµÄϵͳ×ÊԴ΢Èí°ÑºÜ¶àµÄϵͳ·þÎñ×ö³ÉÁ˹²Ïíģʽ¡£ÄÇsvchost¡£exeÔÚÕâÖмäÊǵ£ÈÎÔõÑùÒ»¸ö½ÇÉ«ÄØ£¿
svchost¡£exeµÄ¹¤×÷¾ÍÊÇ×÷ΪÕâЩ·þÎñµÄËÞÖ÷£¬¼´ÓÉsvchost¡£exeÀ´Æô¶¯ÕâЩ·þÎñ¡£svchost¡£exeÖ»ÊǸºÔðΪÕâЩ·þÎñÌṩÆô¶¯µÄÌõ¼þ£¬Æä×ÔÉí²¢²»ÄÜʵÏÖÈκηþÎñµÄ¹¦ÄÜ£¬Ò²²»ÄÜΪÓû§ÌṩÈκηþÎñ¡£svchost¡£exeͨ¹ýΪÕâЩϵͳ·þÎñµ÷Óö¯Ì¬Á´½Ó¿â£¨DLL£©µÄ·½Ê½À´Æô¶¯ÏµÍ³·þÎñ¡£
svchost¡£exeÊDz¡¶¾ÕâÖÖ˵·¨ÊÇÈκβúÉúµÄÄØ£¿
ÒòΪsvchost¡£exe¿ÉÒÔ×÷Ϊ·þÎñµÄËÞÖ÷À´Æô¶¯·þÎñ£¬ËùÒÔ²¡¶¾¡¢Ä¾ÂíµÄ±àдÕßÒ²ÍÚ¿ÕÐÄ˼µÄÒªÀûÓÃsvchost¡£exeµÄÕâ¸öÌØÐÔÀ´ÃÔ»óÓû§´ïµ½ÈëÇÖ¡¢ÆÆ»µ¼ÆËã»úµÄÄ¿µÄ¡£
ÈçºÎ²ÅÄܱæ±ðÄÄЩÊÇÕý³£µÄsvchost¡£exe½ø³Ì£¬¶øÄÄЩÊDz¡¶¾½ø³ÌÄØ£¿
svchost¡£exeµÄ¼üÖµÊÇÔÚ¡°HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsNTCurrentVersionSvchost¡±£¬Èçͼ1Ëùʾ¡£Í¼1ÖÐÿ¸ö¼üÖµ±íʾһ¸ö¶ÀÁ¢µÄsvchost¡£exe×é¡£
΢Èí»¹ÎªÎÒÃÇÌṩÁËÒ»Öֲ쿴ϵͳÕýÔÚÔËÐÐÔÚsvchost¡£exeÁбíÖеķþÎñµÄ·½·¨¡£ÒÔWindowsXPΪÀý£ºÔÚ¡°ÔËÐС±ÖÐÊäÈ룺cmd£¬È»ºóÔÚÃüÁîÐÐģʽÖÐÊäÈ룺tasklist/svc¡£ÏµÍ³ÁгöÈçͼ2ËùʾµÄ·þÎñÁÐ±í¡£Í¼2Öкì¿ò°üΧÆðÀ´µÄÇøÓò¾ÍÊÇsvchost¡£exeÆô¶¯µÄ·þÎñÁÐ±í¡£Èç¹ûʹÓõÄÊÇWindows2000ϵͳÔò°ÑÇ°ÃæµÄ¡°tasklist/svc¡±ÃüÁîÌ滻Ϊ£º¡°tlist¡s¡±¼´¿É¡£Èç¹ûÄ㻳ÒɼÆËã»úÓпÉÄܱ»²¡¶¾¸ÐȾ£¬svchost¡£exeµÄ·þÎñ³öÏÖÒì³£µÄ»°Í¨¹ýËÑË÷svchost¡£exeÎļþ¾Í¿ÉÒÔ·¢ÏÖÒì³£Çé¿ö¡£Ò»°ãÖ»»áÕÒµ½Ò»¸öÔÚ£º¡°C£ºWindowsSystem32¡±Ä¿Â¼ÏµÄsvchost¡£exe³ÌÐò¡£Èç¹ûÄãÔÚÆäËüĿ¼Ï·¢ÏÖsvchost¡£exe³ÌÐòµÄ»°£¬ÄǺܿÉÄܾÍÊÇÖж¾ÁË¡£
»¹ÓÐÒ»ÖÖÈ·ÈÏsvchost¡£exeÊÇ·ñÖж¾µÄ·½·¨ÊÇÔÚÈÎÎñ¹ÜÀíÆ÷Öв쿴½ø³ÌµÄÖ´Ðз¾¶¡£µ«ÊÇÓÉÓÚÔÚWindowsϵͳ×Ô´øµÄÈÎÎñ¹ÜÀíÆ÷²»Äܲ쿴½ø³Ì·¾¶£¬ËùÒÔҪʹÓõÚÈý·½µÄ½ø³Ì²ì¿´¹¤¾ß¡£
ÉÏÃæ¼òµ¥µÄ½éÉÜÁËsvchost¡£exe½ø³ÌµÄÏà¹ØÇé¿ö¡£×ܶøÑÔÖ®£¬svchost¡£exeÊÇÒ»¸öϵͳµÄºËÐĽø³Ì£¬²¢²»ÊDz¡¶¾½ø³Ì¡£µ«ÓÉÓÚsvchost¡£exe½ø³ÌµÄÌØÊâÐÔ£¬ËùÒÔ²¡¶¾Ò²»áǧ·½°Ù¼ÆµÄÈëÇÖsvchost¡£exe¡£Í¨¹ý²ì¿´svchost¡£exe½ø³ÌµÄÖ´Ðз¾¶¿ÉÒÔÈ·ÈÏÊÇ·ñÖж¾¡£
3¡¢Services¡£exeÔì³ÉCPUʹÓÃÂÊÕ¼ÓÃ100£¥
Ö¢×´
ÔÚ»