I-Svchost.exe ingenye yezinqubo ezibalulekile lapho usebenza amawindi. Ake sizame ukuthola ukuthi yimiphi imisebenzi efakiwe emsebenzini wayo.
Imininingwane nge-svchost.exe.
I-SVCost.exe Kungenzeka ukuthi ubone kuMphathi Wezemisebenzi (ngenguquko, cindezela i-CTRL + ALT + DEL noma i-CTRL + Shift + e-ESC) esigabeni "sezinqubo". Uma ungaziboni izinto ngegama elifanayo, bese uqhafaza "Khombisa zonke izinqubo zomsebenzisi".
Ukuze kube lula ukuboniswa, ungachofoza egameni lenkambu ye- "Image Igama". Yonke imininingwane esohlwini izokwakhiwa ngama-alfabhethi. Izinqubo ze-SVCost.exe zingasebenza kakhulu: kusuka munye futhi ziye mathupha ku-infinity. Futhi inani elicishe libe yizinqubo ezisebenzayo ezisebenza ngasikhathi sinye lilinganiselwe ngamapharamitha ekhompyutha, ikakhulukazi umthamo we-CPU nosayizi wenqama.
Imisebenzi
Manje umbuthano wemisebenzi yenqubo uyafundwa. Inesibopho somsebenzi walemisebenzi yeWindows elandelwa emitatsheni ye-DLL. Kubo, kuyinqubo yokubamba, okungukuthi, inqubo esemqoka. Ukusebenza kwayo kanyekanye ukuthi izinsizakalo eziningana zisindisa i-RAM nesikhathi sokwenza imisebenzi.Sesivele sithole ukuthi izinqubo ze-svchost.exe zingasebenza kakhulu. Eyodwa icushiwe lapho kuqala i-OS. Izimo ezisele ziqala izinsizakalo.exe, okuyimenenja yenkonzo. Kwakha amabhloka kusuka kuzinsizakalo eziningana futhi aqale ukwahlukanisa i-svchost.exe komunye wabo. Lokhu kungumongo wokonga: esikhundleni sefayela elihlukile lensizakalo ngayinye, iSvchost.exe icushiwe, ehlanganisa iqembu lonke lezinsizakalo, ngaleyo ndlela lehlise izinga lomthwalo ku-CPU kanye nokusetshenziswa kwe-PC Ram.
Ifayela lokubekwa.
Manje ake sithole ukuthi ifayela le-svchost.exe lithunyelwe kuphi.
- Ifayela leSvchost.exe ohlelweni kukhona kuphela, uma, kunjalo, okuphindwe kabili akuzange kudalwe njengomenzeli wegciwane. Ngakho-ke, ukuthola indawo yale nto kwi-hard drive, chofoza inkinobho yegundane kwesokudla kwimenenja yomsebenzi ngokuya nganoma yiliphi kusuka kumagama weSvchost.exe. Uhlu lomongo, khetha u- "Isitoreji sefayela elivulekile".
- Umqhubi we-conductor uqala kwisikhombi lapho i-svchost.exe itholakala khona. Njengoba ubona kusuka kulwazi olukubha yekheli, indlela eya kule khathalogu injengokulandelayo:
C: \ Windows \ System32
Futhi ezimweni ezingavamile kakhulu i-svchost.exe ingaholela kufolda
C: \ i-Windows \ PEPEP
noma kwelinye lamafolda atholakala kwisikhombi
C: \ Windows \ winsxs
Kunoma yikuphi okunye umkhombandlela, le svchost.exe ayikwazi ukuhola.
Kungani i-svchost.exe ilayisha uhlelo
Akunandaba ukuthi abasebenzisi batholakala ngesimo lapho enye yezinqubo i-svchost.exe ilayisha uhlelo. Okusho ukuthi, isebenzisa inani elikhulu kakhulu le-RAM, futhi lilayisha iprosesa eliphakathi nomsebenzi wale nto lidlula ama-50%, kwesinye isikhathi lifinyelela cishe i-100%, okwenza ukuthi likwazi ukusebenza kukhompyutha cishe akunakwenzeka. Le nto ingaba nezizathu ezinjalo ezinjalo:- Ukufaka esikhundleni senqubo yegciwane;
- Inani elikhulu lezinsizakalo ezisebenzayo ezisebenzayo;
- Ukwehluleka e-OS;
- Izinkinga ngesikhungo sokuvuselela.
Imininingwane ngezindlela zokuxazulula lezi zinkinga zichazwa ngezinto ezihlukile.
Isifundo: Yini okufanele uyenze uma i-svchosti ilayisha iprosesa
Svchost.exe - umenzeli wegciwane
Kwesinye isikhathi i-svchost.exe kuMphathi Wezemisebenzi, kuvela ukuba yi-ejenti yegciwane, okuthi, njengoba sekushiwo ngenhla, kulayishwa uhlelo.
- Isibonakaliso esikhulu senqubo yegciwane, edinga ngokushesha ukunaka umsebenzisi ukusetshenziswa kwemali okukhulu kwezinsiza zohlelo zohlelo, ikakhulukazi umsebenzi omkhulu we-CPU (ngaphezu kwe-50%) ne-RAM. Ukunquma i-svchost.exe yamanje ye-svchost .Exelela ikhompyutha, yenza kusebenze umphathi wemisebenzi.
Okokuqala, naka inkambu "yomsebenzisi". Ezinguqulweni ezahlukahlukene ze-OS, kungabizwa nangokuthi "igama lomsebenzisi" noma "igama lomsebenzisi". Amagama alandelayo angafanisa kuphela i-svchost.exe:
- Insizakalo yenethiwekhi;
- Uhlelo (uhlelo);
- Insiza yendawo.
Uma ubona igama elihambelana nento efundwayo, nanoma yiliphi elinye igama lomsebenzisi, ngokwesibonelo, igama lephrofayili yamanje, ungaqiniseka ukuthi ubhekene naleli gciwane.
- Kuyafaneleka ukubheka indawo yefayela. Njengoba sikhumbula, ngobuningi obukhulu, ukususa okuhlukile okubili okungavamile, kufanele kuhambisane nekheli:
C: \ Windows \ System32
Uma uthola ukuthi le nqubo ibhekisa kwisikhombi esihlukile kulawo amathathu, lapho ingxoxo ingenhla, khona-ke ungakhuluma ngokuqiniseka ngokuba khona kwegciwane ohlelweni. Ikakhulu kaningi leli gciwane lizama ukucasha kufolda ethi "Windows". Ungafunda indawo yamafayela usebenzisa umqhubi wesifundo ngendlela echazwe ngenhla. Ungafaka enye inketho. Chofoza igama lento ku-Task Manager Qhafaza kwesokudla. Kumenyu, khetha "Izakhiwo".
Iwindi lezakhiwo lizovuleka lapho ipharamitha "yendawo" etholakala kuthebhu Okujwayelekile. Okuphambene nalokho kwaqopha indlela eya efayilini.
- Kukhona nezimo lapho ifayela le-viral litholakala kwisikhombi esifanayo, lapho bobabili beyiqiniso, kepha inegama elishintshiwe, isibonelo, "svchost32.exe". Kukhona amacala lapho ukuze akhohlise umsebenzisi, abahlaseli esikhundleni sencwadi yesiLatini "C" efayilini leTrojan faka i-Cyrillic "C" noma esikhundleni sencwadi "O" Faka "0" ("Zero"). Ngakho-ke, udinga ukunaka ngokukhethekile igama lenqubo kuMphathi Wezemisebenzi noma kwifayela, ukuqala kwalo, kumqhubi wesifundo. Lokhu kubaluleke kakhulu uma ubonile ukuthi le nto idla izinsiza eziningi zohlelo.
- Uma ukukhathazeka kuqinisekisiwe, futhi uthole ukuthi usebenzelana naleli gciwane. Kufanele iqedwe ngokushesha ngangokunokwenzeka. Okokuqala, udinga ukumisa inqubo, ngoba konke ukukhohlisa kuzoba nzima uma kungenzeka, ngenxa yomsebenzi weprosesa. Ukuze wenze lokhu, chofoza kwinqubo yegciwane ngegciwane kuMphathi Wezemisebenzi ngenkinobho yegundane efanele. Kuluhlu, khetha "Inqubo ephelele".
- Kwethulwa iwindi elincane, lapho udinga ukuqinisekisa izenzo zakho.
- Ngemuva kwalokho, ngaphandle kokwenza kabusha, kufanele uskene ikhompyutha ngohlelo lwe-antivirus. Kungcono kakhulu ngale njongo ukusebenzisa uhlelo lwe-Dr.Web lwamandla application, njenge-Hell-Profen Ehle kakhulu ekulweni nenkinga yalolu hlobo.
- Uma ukusetshenziswa kwesisetshenziswa kungasizi, ifayili kufanele lisuswe ngesandla. Ukuze wenze lokhu, ngemuva kokuthi inqubo isiqediwe, sithuthela kwisikhombi sendawo yento, chofoza kuyo ngenkinobho yegundane elifanele bese ukhetha u- "Susa". Uma kudingekile, khona-ke ebhokisini lengxoxo liqinisekisa inhloso yokususa leyo nto.
Uma leli gciwane livimba inqubo yokususwa, bese uqala kabusha ikhompyutha bese ungena ngemvume ngemodi ephephile (i-Shift + F8 noma i-F8 lapho ilayisha). Yenza ukuqedwa kwefayela yi-algorithm engenhla.
Ngakho-ke, sathola ukuthi iSvchost.exe iyinqubo ebalulekile ye-Windows System ebhekele ukuxhumana nezinsizakalo, ngaleyo ndlela anciphise ukusetshenziswa kwezinsiza zohlelo. Kepha kwesinye isikhathi le nqubo kungenzeka kube yigciwane. Kulokhu, kunalokho, kuncipha wonke amajusi ohlelweni, oludinga ukusabela komsebenzisi oseduze ukuqeda i-ejenti enonya. Ngaphezu kwalokho, kunezimo lapho ngenxa yokwehluleka okuhlukahlukene noma ukuntuleka kokwenza kahle, iSvchost.exe uqobo kungaba ngumthombo wezinkinga.