Tuesday, July 28, 2009

My pc process list shows a file with an address \??\c:\windows\... Are the ?? a notation or a malware?

for example using spybot my process list starts out like this:





PID: 0 ( 0) [System]


PID: 476 ( 4) \SystemRoot\System32\smss.exe


PID: 532 ( 476) \??\C:\WINDOWS\system32\csrss.exe


PID: 556 ( 476) \??\C:\WINDOWS\system32\winlogon.exe


PID: 600 ( 556) C:\WINDOWS\system32\services.exe





I have also seen this invalid path in a Hijackthis printout. My pc is running slow and i noticed that somethimes winlogon.exe is hogging resourses. Could this file be corrupt?

My pc process list shows a file with an address \??\c:\windows\... Are the ?? a notation or a malware?
Description:


winlogon.exe is a process belonging to the Windows login manager. It handles the login and logout procedures on your system. This program is important for the stable and secure running of your computer and should not be terminated.





If spybot is picking up problems, let it delete them. I have always found that what it deletes is safe to do so.
Reply:All those files are fine. Leave them alone.
Reply:dont delete it


for the info about all the processes check out this site


http://www.uniblue.com/


Actually


spybot is a very harsh spyware removal tool means it is very sensitive.


the thing u can do is


Restore the system OR


install the system again using recover mode


using bootable cd u can do this this will not erase any data or harm ur system for info about installation search on web





Good lcuk.


No comments:

Post a Comment