Sihlola futhi sisule ngokuphelele i-flash flash drive kusuka kuma-virus

I-WINLOGON.EXE inqubo ngaphandle kokuqaliswa kwe-Windows OS nokusebenza kwayo okungeke kwenzeke. Kodwa ngezinye izikhathi ngaphansi kwesimo saso kukhona usongo lwegciwane. Ake sibone ukuthi yimiphi imisebenzi ye-WINLOGON.EXE futhi yimuphi ingozi evela kuyo.

Ulwazi lwenqubo

Le nqubo ingabonakala njalo ngokusebenza Isiphathi Somsebenzi kuthebhu "Izinqubo".

Iyini imisebenzi eyenza futhi kungani?

Imisebenzi emikhulu

Okokuqala, ake sihlale emisebenzini esemqoka yale nto. Umsebenzi walo oyinhloko ukuhlinzeka ukungena nokuphuma ohlelweni. Noma kunjalo, akulula ukuqonda ngisho negama layo. U-WINLOGON.EXE ubizwa nangokuthi uhlelo login. Akapheleli nje kuphela inqubo ngokwayo, kodwa futhi nenkhulumomphendvulwano nomsebenzisi ngesikhathi sokungena ngemvume ngokusebenzisa isikhombimsebenzisi esibonakalayo. Eqinisweni, ukusindisa isikrini uma ungena futhi uphuma iWindows, kanye nefasitela uma ushintsha umsebenzisi wamanje, esikubona esibukweni, kuwumkhiqizo wenqubo ecacisiwe. Imithwalo yemfanelo ye-WINLOGON ihlanganisa ukuboniswa kwensimu yokufaka iphasiwedi, kanye nokuqinisekiswa kwedatha efakiwe, uma ukungena kwisistimu ngegama lomsebenzisi othize kuvikelwe iphasiwedi.

U-WINLOGON.EXE uqala inqubo ye-SMSS.EXE (iMenenja yeSession). Iqhubeka isebenza ngemuva kwesikhashana. Ngemuva kwalokho, i-WINLOGON.EXE esebenzayo iqala uLSASS.EXE (Isevisi Yokuqinisekisa Ubuchwepheshe Bendawo) ne-SERVICES.EXE (Isiphathimandla Sokulawula Isevisi).

Ukuze ushayele iwindi lenqubo esebenzayo yeWINLOGON.EXE, kuye ngokuthi inguqulo ye-Windows, sebenzisa inhlanganisela Ctrl + Shift + Esc noma Ctrl + Del + Alt. Uhlelo lokusebenza luphinde lusebenze iwindi uma umsebenzisi eqala ukuphuma noma ngesikhathi sokuqalisa kabusha okushisayo.

Uma i-WINLOGON.EXE ishaqeka noma iphela ngokuqinile, izinguqulo ezahlukahlukene ze-Windows zithinta ngokuhlukile. Ezimweni eziningi, lokhu kuphumela kusikrini esibuhlaza okwesibhakabhaka. Kodwa, ngokwesibonelo, ku-Windows 7, kuphela i-logoff eyenzekayo. Isizathu esivame kakhulu senqubo yokumisa esimweni esiphuthumayo i-disk ukuchichima. C. Ngemuva kokuyihlanza, njengomthetho, uhlelo lokungena ngemvume lusebenza kahle.

Indawo yefayela

Manje ake sithole ukuthi ifayela le-WINLOGON.EXE lihlala kuphi. Sizodinga lokhu esikhathini esizayo ukuhlukanisa into yangempela kusuka egazini.

  1. Ukuze unqume indawo yefayela usebenzisa i-Task Manager, okokuqala, udinga ukuyishintsha kuyo imodi yokubonisa izinqubo zabo bonke abasebenzisi ngokucindezela inkinobho ehambelanayo.
  2. Ngemuva kwalokho, chofoza ngakwesokudla egameni lento. Kuhlu oluvulekile, khetha "Izakhiwo".
  3. Kuwindi yezakhiwo, iya kuthebhu "Jikelele". Ngokungafani nokubhaliswa "Indawo" indawo yifayela elifunayo. Cishe njalo leli kheli limi kanje:

    C: Windows System32

    Ezimweni ezingavamile kakhulu, inqubo ingase ibhekisele kuhla lwemibhalo elandelayo:

    C: Windows dllcache

    Ngaphezu kwale mibhalo emibili, indawo yefayela elifunayo ayitholakali kwenye indawo.

Ngaphezu kwalokho, kusuka kumphathi we-Task, kungenzeka ukuba uye endaweni eqondile yefayela.

  1. Inqubo yokubonisa izinqubo zabo bonke abasebenzisi, chofoza ngakwesokudla ku-element. Kumenyu yomongo, khetha "Vula indawo yokugcina ifayela".
  2. Emva kwalokho kuzovulwa I-Explorer ku-directory ye-hard drive lapho into efunayo ikhona.

Ukufaka esikhundleni se-Malware

Kodwa ngezinye izikhathi inqubo i-WINLOGON.EXE ibonwe kuMphathi Wezinhlelo ingaba uhlelo olubi (igciwane). Ake sibone ukuthi singahlukanisa kanjani inqubo yangempela kusuka ekukhohliseni.

  1. Okokuqala, udinga ukwazi ukuthi kungaba nenqubo eyodwa kuphela ye-WINLOGON.EXE kuMphathi Wezinkampani. Uma ubuka ngaphezulu, enye yazo igciwane. Nakani okuphambene nento efundwayo ensimini "Umsebenzisi" inani lamanani "Uhlelo" ("UHLELO"). Uma le nqubo isungulwa egameni lomunye umsebenzisi, isibonelo, egameni lephrofayela yamanje, khona-ke singasho ukuthi sibhekene nomsebenzi wegciwane.
  2. Futhi hlola indawo yefayela usebenzisa enye yezindlela ezingenhla. Uma ihluke kumakheli amabili alamakheli ale nto evunyelwe, bese-ke, sinesifo. Ngokuvamile igciwane lisemmpandeni wesiqondisi. "Windows".
  3. Ukuqapha kwakho kufanele kubangelwe ukuthi inqubo isebenzisa izinga eliphezulu lezinsiza. Ngaphansi kwezimo ezivamile, cishe ayisebenzi futhi isebenze kuphela ngesikhathi sokungena / ukuphuma kuhlelo. Ngakho-ke, idla izinsiza ezimbalwa kakhulu. Uma i-WINLOGON iqala ukulayisha iphrosesa futhi idle inani elikhulu le-RAM, sibhekene ne-virus noma uhlobo oluthile lokusebenza kabi ohlelweni.
  4. Uma okungenani uphawu olulodwa olusohlwini olutholakala, bese ulanda futhi usebenzise i-DrWeb CureIt service yokwelashwa ku-PC yakho. Izoskena uhlelo futhi, uma i-virus itholakele, izoyiphulukisa.
  5. Uma ngabe Umbuso awuzange usize, kodwa ubona ukuthi kunezinto ezimbili noma ngaphezulu kuMphathi Wezinyathelo nge-WINLOGON.EXE, bese umisa into engahambisani namazinga. Ukwenza lokhu, chofoza ngakwesokudla kuso bese ukhetha "Qedela inqubo".
  6. Iwindi elincane lizovula lapho uzodinga ukuqinisekisa izinhloso zakho.
  7. Ngemuva kokuthi inqubo isuqedile, hamba uye endaweni yefayela lapho libhekiselwe khona, chofoza ngakwesokudla efayeleni bese ukhetha kusuka kwimenyu "Susa". Uma uhlelo ludinga, qinisa izinhloso zakho.
  8. Ngemuva kwalokho, hlanza ukubhalisa futhi ubuyekeze ikhompyutha nesevisi, ngoba ngokuvamile amafayela alolu hlobo alayishiwe esebenzisa umyalo ovela ebhalweni, obhalisiwe yi-virus.

    Uma ungakwazi ukuyeka inqubo noma ukulahla ifayela, ungene ngemvume ku-Mode ephephile bese uqedela inqubo yokukhipha.

Njengoba ubona, i-WINLOGON.EXE idlala indima ebalulekile ekusebenzeni kwesistimu. Uphethe ngokuqondile ukufaka nokuphuma. Nakuba, cishe sonke isikhathi ngenkathi umsebenzisi esebenza ku-PC, le nqubo isesimweni esinqunyiwe, kodwa uma iphoqeleka ukuqeda, akunakwenzeka ukuqhubeka isebenza ku-Windows. Ngaphezu kwalokho, kunamagciwane anegama elifanayo, elifihliwe njengento enikeziwe. Kubalulekile ngokushesha ngangokunokwenzeka ukubala nokubhubhisa.