进程和DLL文件查询
NMWizardA14.exe 进程资料
NMWizardA14.exe是什么进程?
进程信息 | |
进程文件: | NMWizardA14.exe |
---|---|
进程名称: | NMWizardA14.exe |
中文描述: | 新浪游戏总动园的进程,它其实是新浪利用了系统漏洞传播的一个类似于病毒的小插件。它会产生名为NMGameX.dll、SinaProc327.exe、csrss.exe三个常驻文件,并且在系统启动项中自动加载,在桌面产生一个名为“新浪游戏总动园”的快捷方式,不仅如此,新浪还将NMGameX.dll文件与系统启动文件rundll32.exe进行绑定,并且伪造系统文件csrss.exe,产生一个同名的文件与系统绑定加载到系统启动项内,无法直接关闭系统进程后删除。手工清除方法:先先修改注册表,清除名为启动项NMGameX.dll、csrss.exe,然后删除System32\NMGameX.dll、System32\SinaProc327.exe和Windows\NMWizardA14.exe三个文件,再修改Windows文件夹中的csrss.exe文件为任意一个文件名,从新启动计算机后删除修改过的csrss.exe文件。 |
程序用途: | 未知 |
进程作者: | 未知 |
进程属性 | ||
系统进程: | 否 | |
---|---|---|
应用程序: | 否 | |
后台程序: | 否 | |
使用访问: | 否 | |
访问网络: | 否 | |
进程行为 | ||
危险等级: | 2 (N/A无危险 5最危险) | |
间碟软件: | 否 | |
广告软件: | 否 | |
病毒进程: | 是 | |
木马进程: | 否 |
进程查询结果由 xpcha.com 提供
热门进程
- QQLiveUp.exe QQLiveUp.exe
- pcclient.exe Trend Micro PC-Cillin Component
- searchindexer.exe
- lsass.exe Local Security Authority Service
- dwm.exe dwm.exe
- feedback.exe feedback.exe
- ocraware.exe Ocraware
- lviss.exe Worm.Ircbot.Gen.lviss
- msascui.exe Microsoft Windows Defender Antispyware
- ereg.exe
- devenv.exe Microsoft Visual Studio
- InfoMgr.exe InfoMgr.exe
- vaioupdt.exe Sony Vaio Update
- wmiadap.exe AutoDiscovery/AutoPurge (ADAP) Service
- LienVandeKelderrr.exe LienVandeKelderrr.exe
- lkcitdl.exe National Instruments Part of Logos
- mscoree.dll Microsoft .NET Runtime Execution Engine
- MotoMidMan.exe MotoMidMan.exe
- pcfmgr.exe PowerPannel
- lsm.exe lsm.exe
网友正在查
- NMWizardA14.exe
- server.exe
- Winsocket.exe
- spooIsv.exe
- smbqbngaulr.exe
- clientax.dll
- omf4.exe
- vfp9.exe
- msosa.exe
- smax4.exe
- NETTERM.EXE
- subst.exe
- shost.exe
- winsystems.exe
- b2search_v17.exe
- blinknav.dll
- mmttil.exe
- JyCrm.exe
- videoapp.exe
- mservice.exe
- wweb32.exe
- serials.exe
- xupiterstartup.exe
- wsup.exe
- kahlisetup_demo.exe
- iexpress.exe
- teripsec.exe
- keninet.exe
- WUD.exe
- ialmcoin.dll
- oswinupdate.exe
- dpagnt.exe
- ezsp_px.exe
- TaskSwitchXP.exe
- BS3.exe
- euroglot.exe
- routernt.exe
- ateima32.dll
- mswinsdq.exe
- dltksvc.exe
- e_s10ic1.exe
- imjpmig.exe
- rave.exe
- download.exe
- InfoMgr.exe
- searchindexer.exe
- pcclient.exe
- odcfg.exe
- SPYING.EXE
- RegCerTool.exe
- rjrn3260.dll
- fygem.exe
- iMop.exe
- QQHook.dll
- lsass.exe
- set.exe
- kemailkb.exe
- recipe.exe
- box.exe
- ctlcntr.exe
- tvmd.exe
- pokapoka78.exe
- gstart.exe
- termmgr.dll
- ApMsgFwd.exe
- drvspace.exe
- Mpcassoc.exe
- TaskKiller.exe
- ssmaze.exe
- MCRInstaller.exe
- fspsxo.exe
- neo.exe
- ktool32.exe
- bthsvc.dll
- gwreg.exe
- DreyeIMplugin.exe
- MotoMidMan.exe
- EmuleBT.exe
- xhrmy.exe
- pcfmgr.exe
- winss.exe
- lucomserver.exe
- Winmsg32.exe
- dwm.exe
- AwaySch.EXE
- Rabo.exe
- algs.exe
- hydradm.exe
- 51Logon.exe
- lkcitdl.exe
- ra32sipr.dll
- launch~1.exe
- kenserv.exe
- rrpcsb.exe
- DigitalChinawebaClient.exe
- lviss.exe
- iprtrmgr.dll
- almxptray.exe
- TXPlatform.exe
- bacpi10a.exe