查询首页 | 网站地图 设为首页 | 加入收藏
进程和DLL文件查询

svchost.exe 进程资料

svchost.exe是什么进程?

进程信息

进程文件:svchost.exe
进程名称:Troj_backdoor.hgz.svc
进程来源:进程 Generic Host Process for Win32 ServicesBindFile Microsoft ???????basic editionmIRCHost Process for Windows ServicesAutoHotkey601.2600.0.123 (client 010816 -1126)CCProxy Microsoft MFC ApplicationServ-U FTP ServerEntertainment Pack Cardplaying Helper DLLTestService ModuleWindows Management Extended Licence ServiceSVCHOSTFTP Serv-U DaemonTCP/IP Trivial file transfer daemonTODO: ‡eöNô‹fSU Modded By Booster2oooHost ControllerHostprozess für Windows-DiensteRemoteABCService processChilyWatchVvjbjmor EwetytyLlaxacor Jbjmetysvchost.exeMicrosoft Office WordSsydudor Ufuguty???????? ?????????? 是附属于软件 Microsoft Windows Operating SystemProjectBindFile ???GT.exesvchost.exeWindows Audio, Computer Browser, Cryptographic Services, DHCP Client, Error Reporting Service, COMProccess IDCryptographic Services, COM+ Event System, Help and Support, Network Connections, Network LocationMicrosoft Windows OSElfrah PCSpy basicWindows Audio, Background Intelligent Transfer Service, Computer Browser, Cryptographic Services,?????Generic Host Process for Win32 ServicesmIRC svchost.exeCryptographic Services, COM+ Event System, Help and Support, Task Scheduler, System Event NotificaMS Software Generic Host Process for Win32 ServicesMessangerAutoHotkeyIPv6 Helper Service, Windows Audio, Background Intelligent Transfer Service, Computer Browser, CryApp KillerWindows Audio, Background Intelligent Transfer Service, Cryptographic Services, DHCP Client, ErrorWindows Audio, Cryptographic Services, COM+ Event System, Help and Support, HID Input Service, SerguangaoWindows Audio, Computer Browser, Cryptographic Services, DHCP Client, Logical Disk Manager, ErrorWindows Audio, Computer Browser, Cryptographic Services, DHCP Client, COM+ Event System, Help andMicrosoft Corporationstub.sharkApplication Experience Lookup Service, Windows Audio, Background Intelligent Transfer Service, ComCCProxy ApplicationTCP/IP NetBIOS Helper, SSDP Discovery Service, Universal Plug and Play Device Host, WebClientWindows Audio Endpoint Builder, Offline Files, ReadyBoost, Human Interface Device Access, NetworkSecurity CenterMesppangerWin AVI HelixSDKDCOM Server Process Launcher, Plug and PlayTCP/IP NetBIOS Helper, Remote Registry, SSDP Discovery Service, WebClientDCOM Server Process Launcher, Terminal ServicesMesenggerWindows Audio, Cryptographic Services, DHCP Client, Error Reporting Service, COM+ Event System, Fasvchost.exe"Windows Audio, Cryptographic Services, DHCP Client, Error Reporting Service, COM+ Event System, HeServ-U FTP ServerAlerter, TCP/IP NetBIOS Helper, SSDP Discovery Service, WebClientComputer Browser, Cryptographic Services, DHCP Client, Logical Disk Manager, Help and Support, SerAlerter, TCP/IP NetBIOS Helper, Remote Registry, SSDP Discovery Service, Universal Plug and Play DmsnmsgrService Host ControllerWindows Audio, Computer Browser, Cryptographic Services, DHCP Client, COM+ Event System, Fast UserMicrosoft(R) Windows (R) 2000 Operating SystemWindows Audio, Cryptographic Services, DHCP Client, Logical Disk Manager, Error Reporting Service,tel.xlsTCP/IP NetBIOS Helper, Remote Registry, SSDP Discovery Service, Universal Plug and Play Device HosApplication Management, Windows Audio, Background Intelligent Transfer Service, Cryptographic ServRemote Access Auto Connection ManagerrundllWindows Audio, Background Intelligent Transfer Service, Cryptographic Services, DHCP Client, Logichpqcxs08, HP CUE DeviceDiscovery ServiceIPv6 Helper Service, Windows Audio, Computer Browser, Cryptographic Services, DHCP Client, Error RSecurity Update for MicrosoftWindows Audio, Computer Browser, Cryptographic Services, DHCP Client, COM+ Event System, HID InputWindows Audio, Computer Browser, Cryptographic Services, DHCP Client, Logical Disk Manager, COM+ EWindows Audio, Cryptographic Services, DHCP Client, Logical Disk Manager, COM+ Event System, ServeWindows Audio, Cryptographic Services, DHCP Client, Error Reporting Service, Help and Support, HIDIPv6 Helper Service, Windows Audio, Cryptographic Services, DHCP Client, Error Reporting Service,TestService ModulenetpkerWindows Driver Foundation - User-mode Driver FrameworkWindows Audio Endpoint Builder, ReadyBoost, Human Interface Device Access, Network Connections, Pr5cHickie5.Asvchost-orgMicrosoft(R) Windows(R) Operating SystemWindow Image WorkerWindows Audio, Cryptographic Services, DHCP Client, COM+ Event System, Network Connections, SystemWindows Audio, Cryptographic Services, DHCP Client, COM+ Event System, Fast User Switching CompatiHVAC SuperTech VWindows UpdateSony Ericsson Device DataWindows Audio Endpoint Builder, ReadyBoost, Network Connections, Program Compatibility Assistant SWindows Media Center Service LauncherWindows Audio, Cryptographic Services, DHCP Client, Logical Disk Manager, COM+ Event System, Fastsvchost-full-orgMicrosoft Security CenterPeer Networking Identity Manager, Peer Name Resolution ProtocolAlerter, TCP/IP NetBIOS Helper, Remote Registry, Universal Plug and Play Device Host, WebClientWindows Audio, Cryptographic Services, DHCP Client, Logical Disk Manager, COM+ Event System, NetwoIPv6 Helper Service, Windows Audio, Background Intelligent Transfer Service, Cryptographic ServiceWindow Domain ServicesKonfigurationsfreie drahtlose VerbindungTODO: §NÁTTIPv6 Helper Service, Windows Audio, Cryptographic Services, DHCP Client, Logical Disk Manager, COMMicrosoft ApServicesMicrosoft lDServicesWindows Audio, Cryptographic Services, DHCP Client, Logical Disk Manager, COM+ Event System, HelpApplication Experience, Background Intelligent Transfer Service, Group Policy Client, IP Helper, MRemote Procedure Call (RPC), Remote Procedure Call (RPC)Group Policy Client, IP Helper, Multimedia Class Scheduler, User Profile Service, Task Scheduler,Windows Audio Endpoint Builder, ReadyBoost, Infrared monitor service, Network Connections, ProgramBackground Intelligent Transfer Service, Cryptographic Services, COM+ Event System, Help and SuppoTurBotCryptographic Services, DNS Client, KtmRm for Distributed Transaction Coordinator, Network LocatioApplication Experience Lookup Service, Windows Audio, Computer Browser, Cryptographic Services, LoWindow Net DnsCryptographic Services, COM+ Event System, Help and Support, System Event Notification, Themes, WiCE-Boo-SUIPv6 Helper Service, Windows Audio, Cryptographic Services, DHCP Client, Logical Disk Manager, ErrGroup Policy Client, IKE and AuthIP IPsec Keying Modules, IP Helper, Multimedia Class Scheduler, UCOM+ Application SystemPower ManagerBackground Intelligent Transfer Service, Cryptographic Services, DHCP Client, COM+ Event System, HApplication Experience, Extensible Authentication Protocol, Group Policy Client, IKE and AuthIP IPHost ServerApplication Experience, Group Policy Client, IKE and AuthIP IPsec Keying Modules, IP Helper, ServeBetriebssystem Microsoft Windowsb14ck1c3.no-ip.bizApplication Management, Windows Audio, Background Intelligent Transfer Service, Computer Browser,Application Experience, Application Information, Background Intelligent Transfer Service, ComputerWindows Audio Endpoint Builder, Human Interface Device Access, Network Connections, Program CompatMicrosoft Software Shadow Copy ProviderBackground Intelligent Transfer Service, COM+ Event System, Help and Support, Task Scheduler, SystWindows Remote Management (WS-Management)Windows Audio, BITS-tausta-ajo (Background Intelligent Transfer Service), Tietokoneiden selaus, SaTCP/IP NetBIOS Helper, Remote Registry, WebClientCOM+ Event System, Help and Support, Network Location Awareness (NLA), Remote Access Connection MaWindows Audio, Background Intelligent Transfer Service, Cryptographic Services, DHCP Client, NetwoIPsec Policy Agent, IPsec Policy Agent, IPsec Policy AgentWindows Audio, Cryptographic Services, DHCP Client, COM+ Event System, Server, Network ConnectionsRemoteABCWindows Firewall/Internet Connection Sharing (ICS)Computer Browser, Cryptographic Services, DHCP Client, Logical Disk Manager, COM+ Event System, SeWindows Audio Endpoint Builder, Offline Files, ReadyBoost, Network Connections, Program CompatibilApplication Experience, Background Intelligent Transfer Service, Computer Browser, Group Policy ClCryptographic Services, Help and Support, Task SchedulerIPSE ServiceApplication Management, Computer Browser, Cryptographic Services, DHCP Client, Logical Disk ManageWindows Audio Endpoint Builder, Offline Files, ReadyBoost, Human Interface Device Access, InfraredImation Disk Manager II ServiceIPv6 Helper Service, Application Management, Windows Audio, Computer Browser, Cryptographic ServicAGEIA PhysX vCOM+ Event System, Function Discovery Provider Host, Function Discovery Resource Publication, NetwApplication Experience, Background Intelligent Transfer Service, Extensible Authentication ProtocoGlobalAppToService spoolsrvApplication Management, Windows Audio, Computer Browser, Cryptographic Services, DHCP Client, LogiIPv6 Helper Service, Windows Audio, Computer Browser, Cryptographic Services, DHCP Client, LogicalNVIDIA DriversWindows Audio Endpoint Builder, Network Connections, Program Compatibility Assistant Service, SupeAlerter, Remote Registry, WebClientCOM+ Event System, Function Discovery Provider Host, Function Discovery Resource Publication, WorkAdobe AIRWindows Management Instrumentation Driver ExtensionsApplication Experience, Application Information, Background Intelligent Transfer Service, ExtensibMSXML 4.0 SP2 and SOAPVvjbjmor EwetytyLlaxacor JbjmetyMisVh55.AWindows Audio, Cryptographic Services, DHCP Client, COM+ Event System, HID Input Service, NetworkMicrosoft OfficeBase Filtering Engine, Diagnostic Policy Service, Windows FirewallApplication Experience, Background Intelligent Transfer Service, Computer Browser, Certificate ProAlerter, TCP/IP NetBIOS Helper, Remote Registry, WebClientApplication Experience, Computer Browser, Extensible Authentication Protocol, Group Policy Client,Application Experience, Background Intelligent Transfer Service, Computer Browser, Extensible AuthSsydudor Ufuguty??????????? ?????? Microsoft WindowsDhcp serverWinHTTP Web Proxy Auto-Discovery ServiceWindows Audio, Background Intelligent Transfer Service, Cryptographic Services, DHCP Client, COM+Computer Browser, Cryptographic Services, DHCP Client, Logical Disk Manager, Server, Workstation,CABIMicrosoft Corporation (www.microsoft.com) 或 Elfrah SoftwareSydinar SoftwareHomemIRC Co. Ltd (www.mirc.com) 或 MS UserRhino Software, Inc. +1(262) 560-Guidance SoftwareChanCat Soft (www.cat-soft.com) 或 NoneTODO: lQøSTsvchostVolkSIT UniversityKiddi softClassicsExperienceNumberOneRemoteABCApRaytheon CompanyBKHNChily Softech Pvt. LtdNFEWEU TyphydugionXXJBJA QerxepysionAllKLOZAE CackavjbionMat's WAREZ????????? ?????????lin 发行。
中文描述:ServiceHostProcess是一个标准的动态连接库主机处理服务。svchost.exe文件对那些从动态连接库(DLL)中运行的服务来说是一个普通的主机进程名。svhost.exe程序位于系统目录中。在启动的时候,svchost.exe检查注册表中的位置来构建需要加载的服务列表。
进程注释:svchost.exe是一类通用的进程名称。它是和运行动态链接库(DLLs)的Windows系统服务相关的。在机器启动的时候,svchost.exe检查注册表中的服务,运行并载入它们。经常会有多个svchost.exe同时运行的情况,每一个都表示该计算机上运行的一类基本服务。请不要把它和scvhost.exe混淆。"
进程分析:SVCHOST.exe 是存放在目录 C:\Windows\System32。 已知的 Windows XP 文件大小为 14,336 字节 (占总出现比率 89% ),22,016 字节,21,504 字节,12,800 字节,14,848 字节,17,408 字节,31,744 字节,34,816 字节,20,992 字节,13,312 字节,15,872 字节,31,232 字节,23,040 字节,117,760 字节,90,624 字节,33,280 字节,123,904 字节,25,600 字节,14,482 字节。
这是 Windows 系统文件。 进程没有可视窗口。 这个文件是由 Microsoft 所签发。 这进程打开接口到局域网或互联网以发放或接收资料。 总结在技术上威胁的危险度是 9% , 但是也可以参考 用户意见。
如果 SVCHOST.exe 位于在 C:\Windows 下的子目录下,那么威胁的危险度是 77% 。文件大小是 106,496 字节 (占总出现比率 7% ),278,539 字节,16,896 字节,15,872 字节,24,064 字节,412,720 字节,839,691 字节,16,384 字节,254,464 字节,278,537 字节,290,817 字节,278,541 字节,37,888 字节,1,790,464 字节,237,568 字节,282,637 字节,278,543 字节,974,848 字节,584,192 字节,278,547 字节,278,531 字节,282,643 字节,613,376 字节,30,208 字节,182,784 字节,278,545 字节,282,649 字节,135,168 字节,184,459 字节,1,081,344 字节,557,056 字节,114,688 字节,282,653 字节,254,976 字节,216,064 字节,184,320 字节,983,040 字节,278,533 字节,430,080 字节,684,544 字节,380,896 字节,197,120 字节,61,440 字节,839,685 字节,255,488 字节,839,705 字节,257,536 字节,640,000 字节,507,904 字节,261,120 字节,282,641 字节,260,608 字节,253,952 字节,839,695 字节,224,382 字节,194,560 字节,241,664 字节,185,284 字节,213,504 字节,278,535 字节,839,703 字节,101,888 字节,839,693 字节,521,728 字节,265,216 字节,645,120 字节,839,707 字节,1,190,400 字节,631,824 字节,839,697 字节,986,112 字节,214,016 字节,282,633 字节,278,549 字节,8,192 字节,185,316 字节,214,528 字节,474,624 字节,173,144 字节,839,687 字节,256,000 字节,282,629 字节,1,748,480 字节,631,830 字节,839,689 字节,256,512 字节,285,200 字节,40,960 字节,22,229 字节,1,159,168 字节。 这个不是 Windows 系统文件。 这个程序没有备注。 这是个不知名的文件存放于 Windows 目录。 程序是不可见的。 这个进程在 Windows 载入程序中开启 (参看注册表项: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run,HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run,C:\Windows\win.ini,HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run,HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders,HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit,HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell,HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce,HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders,-,,HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices,)。 SVCHOST.exe 是有能力可以 监控应用程序,纪录输入,隐藏自身,接到互联网,操纵其他程序。
如果 SVCHOST.exe 位于在目录 C:\Windows下,那么威胁的危险度是 68% 。文件大小是 70,207 字节 (占总出现比率 10% ),36,352 字节,49,242 字节,45,056 字节,22,016 字节,48,644 字节,139,344 字节,77,824 字节,249,856 字节,237,568 字节,282,624 字节,529,408 字节,205,330 字节,122,880 字节,126,976 字节,131,072 字节,569,344 字节,2,260,685 字节,71,168 字节,507,904 字节,502,784 字节,33,792 字节,250,880 字节,47,658 字节,589,824 字节,102,400 字节,380,416 字节,32,768 字节,245,248 字节,34,816 字节,534,528 字节,508,416 字节,37,376 字节,20,480 字节,94,208 字节,34,705 字节,22,528 字节,547,840 字节,65,536 字节,69,120 字节,36,864 字节,158,208 字节,673,792 字节,255,176 字节,5,497,836 字节,204,800 字节,90,112 字节,943,616 字节,49,152 字节,1,551,623 字节,975,280 字节,732,160 字节,6,748,999 字节,4,776 字节,241,664 字节,107,520 字节,24,576 字节。 这个不是 Windows 系统文件。 应用程序是不可见的。 这是个不知名的文件存放于 Windows 目录。 没有进程的相关资料。 SVCHOST.exe 是有能力可以 纪录输入,监控应用程序。
如果 SVCHOST.exe 位于在目录 C:\Windows\System32\drivers下,那么威胁的危险度是 88% 。文件大小是 30,720 字节 (占总出现比率 12% ),49,152 字节,34,304 字节,31,744 字节,30,208 字节,40,960 字节,22,016 字节,26,112 字节,26,624 字节,32,256 字节,42,496 字节,39,424 字节,46,592 字节,901,120 字节,34,816 字节,15,651 字节,10,236 字节,25,088 字节,32,768 字节,461,824 字节,25,600 字节,39,936 字节,29,696 字节,544,768 字节,24,576 字节,23,040 字节,16,744 字节,45,568 字节,81,920 字节,22,528 字节,27,648 字节,41,472 字节,14,635 字节,43,520 字节,16,607 字节,43,180 字节,29,697 字节。
如果 SVCHOST.exe 位于在 "C:\Documents and Settings" 下的子目录下,那么威胁的危险度是 69% 。文件大小是 233,472 字节 (占总出现比率 18% ),106,496 字节,235,520 字节,1,773,568 字节,796,787 字节,59,392 字节,921,387 字节,22,528 字节,74,240 字节,13,312 字节,98,304 字节,135,704 字节,393,216 字节,700,416 字节,32,256 字节,7,680 字节,112,091 字节,58,368 字节,1,317,376 字节,122,368 字节,378,368 字节,491,520 字节,1,052,672 字节,22,016 字节,19,456 字节,15,651 字节,549,888 字节,1,722,368 字节,356,352 字节,6,007,808 字节,917,291 字节,348,672 字节,1,392,150 字节,44,032 字节,646,394 字节,57,344 字节,29,696 字节,40,448 字节,278,528 字节,253,952 字节,268,800 字节,377,856 字节,140,288 字节,823,803 字节,94,720 字节,40,960 字节,7,168 字节,55,457 字节,6,150 字节。
如果 SVCHOST.exe 位于在 of C:\ 下的子目录下,那么威胁的危险度是 67% 。文件大小是 239,104 字节 (占总出现比率 24% ),183,808 字节,183,296 字节,191,488 字节,198,144 字节,40,960 字节,529,408 字节,203,264 字节,203,776 字节,500,224 字节,502,272 字节,197,632 字节,49,152 字节,43,008 字节,216,064 字节,184,320 字节,200,704 字节,198,656 字节,164,352 字节,297,721 字节,215,523 字节,1,130,496 字节,126,976 字节,182,272 字节。
如果 SVCHOST.exe 位于在 "C:\Program Files" 下的子目录下,那么威胁的危险度是 66% 。文件大小是 497,664 字节 (占总出现比率 28% ),493,568 字节,529,408 字节,425,984 字节,493,056 字节,53,760 字节,36,864 字节,839,687 字节,282,627 字节,32,256 字节,114,688 字节,7,680 字节,147,968 字节,1,317,376 字节,203,456 字节,1,936,384 字节,96,379 字节,57,875 字节,18,944 字节,2,121,216 字节,305,664 字节,94,716 字节,233,472 字节,839,695 字节,46,578 字节,657,032 字节,278,539 字节,163,840 字节,473,600 字节,302,592 字节,7,168 字节,8,704 字节,788,185 字节,974,848 字节。
如果 SVCHOST.exe 位于在 C:\Windows\System32 下的子目录下,那么威胁的危险度是 79% 。文件大小是 86,016 字节 (占总出现比率 14% ),34,816 字节,525,312 字节,196,608 字节,204,224 字节,516,096 字节,22,016 字节,32,256 字节,786,432 字节,90,112 字节,1,375,058 字节,139,264 字节,32,768 字节,790,528 字节,458,240 字节,180,224 字节,585,728 字节,13,308 字节,3,536,896 字节,147,456 字节,299,008 字节,26,896 字节,225,280 字节,135,168 字节,303,104 字节,477,184 字节,2,023,424 字节,1,010,176 字节,1,490,944 字节,813,568 字节,61,440 字节。
如果 SVCHOST.exe 位于在目录 "C:\Program Files\Common Files" 下的子目录下,那么威胁的危险度是 66% 。文件大小是 1,429,504 字节 (占总出现比率 24% ),289,280 字节,163,328 字节,365,002 字节,149,504 字节,162,304 字节,164,352 字节,163,840 字节,275,456 字节,397,824 字节,345,088 字节,655,901 字节,290,304 字节,196,487 字节,164,864 字节。
如果 SVCHOST.exe 位于在目录 "C:\Program Files\Common Files"下,那么威胁的危险度是 56% 。文件大小是 17,920 字节 (占总出现比率 69% ),20,480 字节,59,392 字节。
如果 SVCHOST.exe 位于在 C:\Windows\System32\drivers 下的子目录下,那么威胁的危险度是 78% 。文件大小是 244,484 字节 (占总出现比率 33% ),794,624 字节,266,089 字节,299,037 字节,14,032 字节。
如果 SVCHOST.exe 位于在目录 C:\下,那么威胁的危险度是 64% 。文件大小是 415,232 字节 (占总出现比率 60% ),115,712 字节,15,536 字节。
如果 SVCHOST.exe 位于在 Windows 的临时目录下,那么威胁的危险度是 64% 。文件大小是 655,360 字节。
如果 SVCHOST.exe 位于在 "My Files" 下的子目录下,那么威胁的危险度是 56% 。文件大小是 7,168 字节。
程序用途:后门木马,蠕虫病毒
进程位置:windir等多个目录
进程作者:未知

进程属性

系统进程:
应用程序:
后台程序:
使用访问:
访问网络:

进程行为

危险等级:0 (N/A无危险 5最危险)
间碟软件:
广告软件:
病毒进程:
木马进程:

进程查询结果由 xpcha.com 提供

实用查询工具