破费尔
[mw_shl_code=css,true]2016-03-21 23:01:19, ProcessLoad was blocked for C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe. <- F:\test\tmpc533.exe(PID:8376)::F:\test\tmpc533.exe(TID:8380)
2016-03-21 23:01:20, Begin Rollback for C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe
2016-03-21 23:01:20, Rollback Terminate Process C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe(PID: 4384) succed(0x0)
2016-03-21 23:01:20, Rollback Terminate Process
2016-03-21 23:01:20, Rollback Terminate MainThread 4704 in process C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe(PID: 4384) succed(0x0)
2016-03-21 23:01:20, End Rollback for C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe
2016-03-21 23:01:20, 成功 结束进程 C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe(PID: 4384)
2016-03-21 23:01:20, Begin Rollback for C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe
2016-03-21 23:01:20, Rollback to remove and quarantine dropped file C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe, quarantine succed.
2016-03-21 23:01:20, Rollback to remove file \Device\HarddiskVolume5\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe succed(0x0)
2016-03-21 23:01:20, Rollback to remove and quarantine dropped file C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe, quarantine failed.
2016-03-21 23:01:20, End Rollback for C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe
2016-03-21 23:01:20, 成功 结束进程 C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe, 返回代码: 0
2016-03-21 23:01:20, 清除文件 C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe. 云鉴定: 未鉴定, (成功清除) 备份返回代码: 4, 清除返回代码: -1
2016-03-21 23:01:27, Rollback Terminate Process F:\test\tmpc533.exe(PID: 8376) succed(0x0)
2016-03-21 23:01:27, Begin Rollback for F:\test\tmpc533.exe
2016-03-21 23:01:27, Rollback Terminate Process
2016-03-21 23:01:27, Rollback Terminate NormalThread 8388 in process F:\test\tmpc533.exe(PID: 8376) succed(0x0)
2016-03-21 23:01:27, End Rollback for F:\test\tmpc533.exe
2016-03-21 23:01:27, 成功 结束进程 F:\test\tmpc533.exe(PID: 8376)
2016-03-21 23:01:27, Begin Rollback for F:\test\tmpc533.exe
2016-03-21 23:01:27, Rollback Terminate Process F:\test\tmpc533.exe(PID: 8376) succed(0x0)
2016-03-21 23:01:27, Rollback Terminate Process
2016-03-21 23:01:27, Rollback to remove and quarantine dropped file C:\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe, quarantine failed.
2016-03-21 23:01:27, Rollback to remove file \Device\HarddiskVolume5\Sandbox\Likeabull\0test\user\current\Documents\abxqml.exe failed(0xc0000056)
2016-03-21 23:01:27, Rollback to remove directory \Device\HarddiskVolume5\Sandbox\Likeabull\0test\user\current\Documents failed(0xc0000101)
2016-03-21 23:01:27, Rollback to remove directory \Device\HarddiskVolume5\Sandbox\Likeabull\0test\user\current failed(0xc0000101)
2016-03-21 23:01:27, Rollback to remove and quarantine dropped file F:\test\tmpc533.exe, quarantine succed.
2016-03-21 23:01:27, Rollback to remove file \Device\HarddiskVolume3\test\tmpc533.exe succed(0x0)
2016-03-21 23:01:27, Rollback to remove and quarantine dropped file F:\test\tmpc533.exe, quarantine failed.
2016-03-21 23:01:27, 失败 结束进程 F:\test\tmpc533.exe, 返回代码: -1073741810
2016-03-21 23:01:27, End Rollback for F:\test\tmpc533.exe
2016-03-21 23:01:27, 清除文件 F:\test\tmpc533.exe. 云鉴定: 未鉴定, (成功清除) 备份返回代码: 4, 清除返回代码: -1
2016-03-21 23:01:27, MpApplyCaution Type: 21, Action: 1, Caution: 045A3364, UpdatePromptStatus: 1, UpdateCautionStatus: 1
[/mw_shl_code] |