This svchost.exe process showed up in my Task Manager about a week ago.
Its typically taking 90-98% of CPU cycles.
I recognised the filename as a "service" process, so I went into Control Panel | Administrative Tools | Services and looked at the services.
I list below all those services that are running, whose executable is svchost.exe:
Automatic Updates
COM+ Event System
Computer Browser
Cryptographic Services
DCOM Server Process Launcher
DHCP Client
Distributed Link Tracking Client
DNS Client
Error Reporting Service
Event Log
Fast User Switching Compatibility
Help and Support
HP CUE DeviceDiscovery Service
HP Network Devices Support
hpqcxs08
HTTP SSL
Infrared Monitor
Logical Disk Manager
Net Driver HPZ12
Network Connections
Network Location Awareness (NLA)
Pml Driver HPZ12
Remote Access Connection Manager
Remote Procedure Call (RPC)
Remote Registry
Secondary Logon
Security Center
Server
Shell Hardware Detection
SSDP Discovery Service
System Event Notification
System Restore Service
Task Scheduler
TCP/IP NetBIOS Helper
Telephony
Terminal Services
Themes
WebClient
Windows Audio
Windows Driver Foundation - User-mode Driver Framework
Windows Firewall/Internet Connection Sharing (ICS)
Windows Image Acquisition (WIA)
Windows Management Instrumentation
Windows Time
Wireless Zero Configuration
Workstation
I presume this rogue process must be one of these that should not be running ?
Incidentally, while most of these are set to start Automatically, a few of these are set to Manual start. I can't figure out why they would be running, as I've just rebooted, and have not started ANY of these processes manually.
Interestingly Terminal Services is one of these.
When I went in to shut it down, "Stop Service" button was unavailable to me !
However "Disable" was, but when I pressed it, it didn't stop the service - I presume it will take effect whenever the service gets stopped, if I switch the computer off.
Knowing what Terminal Services is all about, I'm concerned someone/thing has hacked into my machine - what should I do here ???
pls help