列出進(jìn)程
wmic process list brief
(Full顯示所有、Brief顯示摘要、Instance顯示實(shí)例、Status顯示狀態(tài))
wmic 獲取進(jìn)程路徑:
wmic process where name="jqs.exe" get executablepath
wmic 創(chuàng)建新進(jìn)程
wmic process call create notepad
wmic process call create "C:\Program Files\Tencent\QQ\QQ.exe"
wmic process call create "shutdown.exe -r -f -t 20"
wmic 刪除指定進(jìn)程:
wmic process where name="qq.exe" call terminate
wmic process where processid="2345" delete
wmic process 2345 call terminate
wmic 刪除可疑進(jìn)程
wmic process where "name='explorer.exe' and executablepath<>'%SystemDrive%\\windows\\explorer.exe'" delete
wmic process where "name='svchost.exe' and ExecutablePath<>'C:\\WINDOWS\\system32\\svchost.exe'" call Terminate