本帖最后由 复负复 于 2021-10-6 22:14 编辑
emsisoft 扫描miss
双击报错沙盒内运行结果
- 2021/10/6 22:12:23,4440,C:\Windows\explorer.exe,53,Allowed ;执行应用程序 ("C:\Program Files\COMODO\COMODO Internet Security\virtkiosk.exe" -v C:\Users\AiFox\Desktop\4a70b909dbe668d0d2c5241dc582acb90c8820acb436a1ecbb620019e93fbda8.exe)
- 2021/10/6 22:12:24,1900,C:\Program Files\COMODO\COMODO Internet Security\virtkiosk.exe,53,Allowed ;执行应用程序 ("C:\Users\AiFox\Desktop\4a70b909dbe668d0d2c5241dc582acb90c8820acb436a1ecbb620019e93fbda8.exe" )
- 2021/10/6 22:12:24,2456,C:\Users\AiFox\Desktop\4a70b909dbe668d0d2c5241dc582acb90c8820acb436a1ecbb620019e93fbda8.exe,53,Allowed ;执行应用程序 (\??\C:\Windows\system32\conhost.exe 0xffffffff -ForceV1)
- 2021/10/6 22:12:24,1312,C:\Windows\System32\conhost.exe,40,Allowed ;以修改权限打开进程或线程 (4a70b909dbe668d0d2c5241dc582acb90c8820acb436a1ecbb620019e93fbda8.exe(pid=2456))
- 2021/10/6 22:12:25,2456,C:\Users\AiFox\Desktop\4a70b909dbe668d0d2c5241dc582acb90c8820acb436a1ecbb620019e93fbda8.exe,53,Allowed ;执行应用程序 ("C:\Users\AiFox\Desktop\4a70b909dbe668d0d2c5241dc582acb90c8820acb436a1ecbb620019e93fbda8.exe" )
- 2021/10/6 22:12:29,2752,C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe,53,Allowed ;执行应用程序 ("C:\Windows\System32\msinfo32.exe" /nfo C:\ProgramData\Comodo\Cis\telemetry\msinfo32\msinfo_0DE62628C4E53AB74CCF1A226A8A3BAC7DF85CD4.nfo)
复制代码
|