进程和DLL文件查询
winshost.exe 进程资料
winshost.exe是什么进程?
进程信息 | |
进程文件: | winshost.exe |
---|---|
进程名称: | TROJ_BAGLE.BE Trojan |
英文描述: | winshost.exe is a process which is registered as the TROJ_BAGLE.BE Trojan Trojan. This Trojan allows attackers to access your computer from remote locations, stealing passwords, Internet banking and personal data. This process is a security risk and should be removed from your system. Please see additional details regarding this process. Note: winshost.exe is a process also classified as the Trojan.Tooso which resides in the %systemroot% directory like Bagle.be |
中文描述: | 贝革热Worm_Bagle.Be蠕虫病毒。病毒运行后,在%System%文件夹下生成名为wiwshost.exe和其自身拷贝winshost.exe。其中文件wiwshost.exe会自身释放文件winshost.exe到系统目录下,并将winshost.exe插入到explorer.exe进程中。该病毒还会通过结束进程和修改注册表的方式使得某些反病毒软件无法运行。该病毒具有后门功能,打开并监听TCP端口80,允许恶意用户用特定密码登陆并控制受感染的系统。该病毒还会通过编辑系统中的Hosts文件来阻止计算机用户访问一些反病毒网站,还会使受感染的机器从指定的资源服务器上主动下载并执行病毒文件。病毒通过电子邮件进行传播,病毒邮件附件是a.zip压缩文件,计算机用户点击就会感染计算机系统。 |
程序用途: | 未知 |
进程作者: | 未知 |
进程属于: | TROJ_BAGLE.BE Trojan |
进程属性 | ||
系统进程: | 否 | |
---|---|---|
应用程序: | 否 | |
后台程序: | 是 | |
使用访问: | 是 | |
访问网络: | 是 | |
进程行为 | ||
危险等级: | 4 (N/A无危险 5最危险) | |
间碟软件: | 否 | |
广告软件: | 否 | |
病毒进程: | 是 | |
木马进程: | 是 |
进程查询结果由 xpcha.com 提供
热门进程
- QQLiveUp.exe QQLiveUp.exe
- pcclient.exe Trend Micro PC-Cillin Component
- searchindexer.exe
- lsass.exe Local Security Authority Service
- dwm.exe dwm.exe
- feedback.exe feedback.exe
- ocraware.exe Ocraware
- lviss.exe Worm.Ircbot.Gen.lviss
- msascui.exe Microsoft Windows Defender Antispyware
- ereg.exe
- devenv.exe Microsoft Visual Studio
- InfoMgr.exe InfoMgr.exe
- vaioupdt.exe Sony Vaio Update
- wmiadap.exe AutoDiscovery/AutoPurge (ADAP) Service
- LienVandeKelderrr.exe LienVandeKelderrr.exe
- lkcitdl.exe National Instruments Part of Logos
- mscoree.dll Microsoft .NET Runtime Execution Engine
- MotoMidMan.exe MotoMidMan.exe
- pcfmgr.exe PowerPannel
- lsm.exe lsm.exe
网友正在查
- winshost.exe
- ADSL.exe
- VIPTray.exe
- tabtip.exe
- ytisvc.exe
- security.dll
- divx.exe
- ZSSnp211.exe
- dlres.exe
- Krn132.exe
- CSMate.exe
- datemanager.exe
- mnpol.exe
- hpovdx05.exe
- hookdump.exe
- wyesns.exe
- Task_Man.exe
- icmfilter.dll
- server.exe
- labaplayer.exe
- Autoruns6.exe
- smax4.exe
- Document.exe
- cli.exe
- fbserver.exe
- pp_wol.exe
- msgsys.exe
- xfr.exe
- localsch.exe
- pds.exe
- iao.exe
- chkdsk.exe
- SharpTray.exe
- slssvc.exe
- Smoked.exe
- dtservice.dll
- bootbus.sys
- so3d.exe
- autoext.exe
- abmtsr.exe
- WLLoginProxy.exe
- Atiserver.exe
- Call.exe
- showwnd.exe
- oeloader.exe
- capm1lan.exe
- tnslsnr.exe
- Hydcd.exe
- mspub.exe
- cpqdfwag.exe
- VMISrv.exe
- atmsg.exe
- turbotop.exe
- urlbase.exe
- pngu3263.dll
- cinetray.exe
- NetRadio.exe
- dllhost.exe
- napster.exe
- tmhk.exe
- DeskAdServ.exe
- keygen.exe
- HappyBB.exe
- igfxsrvc.exe
- Bootstrap.exe
- hgcctl95.exe
- HDUpdate.exe
- atuner.exe
- zdzjz.exe
- cmicnfg.cpl
- pcclient.exe
- llass.exe
- qiang.exe
- crssrs.exe
- updmgr.exe
- scruser2k.exe
- orgycam.exe
- Powerkey.exe
- ipoint.exe
- updaterui.exe
- nwiz.exe
- CCProxy.exe
- smtoolbar.exe
- cbinterface.exe
- WYWScreenCap.exe
- dinput.dll
- netshell.dll
- shmedia.dll
- lgnpsp32.exe
- aatu.exe
- gpupdate.exe
- logo1_.exe
- pdsched.exe
- wulogin.exe
- bjmcmng.exe
- rmedtgui.exe
- xiaran.bin
- msvcp80.dll
- asus.exe
- fsrw.exe