|
mdyblog 发表于 2013-8-3 13:39 
同样情况 J2D 正常吗。
列出进程.wcs:
0 0 0 4398760197 130199964486135685
4 0 0 0 130199964486135685
264 4 900 7332047 130199964486135685 \SystemRoot\System32\smss.exe \SystemRoot\System32\smss.exe
324 312 3432 2652017 130199964486135685 X:\Windows\system32\csrss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
376 312 3844 2184014 130199964486135685 X:\Windows\system32\wininit.exe wininit.exe
384 368 8732 28548183 130199964486135685 X:\Windows\system32\csrss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
440 376 9992 14352092 130199964486135685 X:\Windows\system32\services.exe X:\Windows\system32\services.exe -setup
448 368 5848 4368028 130199964486135685 X:\Windows\system32\winlogon.exe winlogon.exe
456 376 8040 7644049 130199964486135685 X:\Windows\system32\lsass.exe X:\Windows\system32\lsass.exe -setup
576 440 5212 2496016 130199964486135685 X:\Windows\system32\svchost.exe X:\Windows\system32\svchost.exe -k DcomLaunch
620 440 5948 11232072 130199964486135685 X:\Windows\system32\svchost.exe X:\Windows\system32\svchost.exe -k RPCSS
660 440 10604 3744024 130199964486135685 X:\Windows\System32\svchost.exe X:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
692 440 12096 12480080 130199964486135685 X:\Windows\System32\svchost.exe X:\Windows\System32\svchost.exe -k netsvcs
760 448 812 1404009 130199964486135685 X:\Windows\system32\PECMD.EXE PECMD.EXE MAIN %Windir%\system32\PECMD.INI
768 448 10532 39936256 130199964486135685 X:\Windows\system32\dwm.exe "dwm.exe"
940 440 5564 7488048 130199964486135685 X:\Windows\system32\svchost.exe X:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
1004 820 2688 1716011 130199964486135685 X:\Windows\system32\cmd.exe cmd /c Y:\MMC64\WPSOffice\SETUP.CMD
372 1004 4044 0 130199964486135685 X:\Windows\system32\conhost.exe \??\X:\Windows\system32\conhost.exe 0x4
1104 440 8044 5460035 130199964486135685 X:\Windows\System32\vds.exe X:\Windows\System32\vds.exe
1348 440 8264 3432022 130199964486135685 X:\Windows\system32\svchost.exe X:\Windows\system32\svchost.exe -k LocalService
1360 440 21240 24804159 130199964486135685 X:\Windows\system32\svchost.exe X:\Windows\system32\svchost.exe -k NetworkService
792 660 0 0 130199964486135685
1216 760 2956 1872012 130199964486135685 X:\Windows\system32\PECMD.EXE PECMD **pecmd-cmd **pecmd-hide /L *PE AUTO_USBDISK ;; FORX * C D E F G H I J K L M N O P Q R S T U V W X Y Z ,&&DRV, TEAM FORM &&T,&&B=:| FIND $-1 = ,!! FIND $DRIVE_FIXED = , SHOW *, ;; TEAM WAIT 100| SHOW *U:0,,,U| WAIT 1000| ENVI @@DeskTopFresh=1
1656 1780 7724 23556151 130199964486135685 X:\Windows\system32\csrss.exe %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
1228 1780 8124 4992032 130199964486135685 X:\Windows\system32\winlogon.exe winlogon.exe
1900 760 28688 17160110 130199964486135685 X:\Windows\EXPLORER.EXE X:\Windows\EXPLORER.EXE
1928 1228 25964 38844249 130199964486135685 X:\Windows\system32\dwm.exe "dwm.exe"
1752 1036 31476 151008968 130199964486135685 X:\Windows\Explorer.EXE X:\Windows\Explorer.EXE
528 1752 9628 2028013 130199964486135685 X:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe "X:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
1176 1752 1232 1092007 130199964486135685 X:\Windows\System32\PECMD.EXE "X:\Windows\System32\PECMD.EXE" MAIN **u X:\Windows\System32\Admin.ini
2228 1404 4180 468003 130199964486135685 X:\Windows\SYSTEM32\CTFMON.EXE X:\Windows\SYSTEM32\CTFMON.EXE
2064 576 3476 156001 130199964486135685 X:\Windows\system32\DllHost.exe X:\Windows\system32\DllHost.exe /Processid:{478B41E6-3257-4519-BDA8-E971F9843849}
2756 760 2948 1404009 130199964486135685 X:\Windows\system32\PECMD.EXE PECMD **pecmd-cmd **pecmd-hide /L *PE AUTO_USBDISK ;; FORX * C D E F G H I J K L M N O P Q R S T U V W X Y Z ,&&DRV, TEAM FORM &&T,&&B=:| FIND $-1 = ,!! FIND $DRIVE_FIXED = , SHOW *, ;; TEAM WAIT 100| SHOW *U:0,,,U| WAIT 1000| ENVI @@DeskTopFresh=1
3016 1752 19400 42432272 130199964486135685 Y:\MMC64\Opera\opera.exe "Y:\MMC64\Opera\opera.exe"
2316 576 27700 23712152 130199964486135685 X:\Windows\explorer.exe X:\Windows\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} -Embedding
2380 2316 3184 1404009 130199964486135685 X:\Windows\system32\PECMD.EXE "PECMD.EXE" LOAD H:\sources\进程.wcs
j2d3出现内存为READ,测试了5次,贴图 |
|