
A process is any program that is being executed in this moment in the computer. Such processes may have been launched by us (by double clicking in an icon), they may have been launched by another process, or they may have set up automatically to run when Windows opens.
In this section you will see a list of all the processes that are being executed. If you click de ‘+’ button on the left of each process, you will see all the dlls that are in use for such process.
You can see the hidden processes in a red background. Such processes use techniques in a kernel level to remain invisible in the task window or to hide from antivirus.
You can see the zombies processes in a green background. Such processes lack of activity completely and in theory its execution has already finished although sometimes they can block some resource or even prevent the reexecution of such program.
By selecting any process you can see if it is digitally sign .By clicking in the digital certification you can see corporation that signs such process.However, take into account that a benign process may have malicious dlls loaded.
Initially you can trust processes digitally singed by Microsoft.
If you find any process that seems suspicious although you do not know for sure what it is about, you can try to ‘terminate’ such process.If your computer goes on running normally, later you can eliminate such file from the computer.
Sometimes you may want to close several processes at a time. For doing so, you will just have to select several processes with ctrl key. And then click on terminate.
In the lower data box you will find important information that may help you to identify the process. At any time you can copy such information, by clicking on the copy button to the left of this data.
|