搓了个自定义规则
- 【1】2024-04-26 20:22:12,系统防护,自定义防护,360tray.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\data\UserSettings.ini
- 操作结果:已阻止
- 进程ID:4356
- 操作进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 操作进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- 父进程ID:3728
- 父进程:C:\Windows\SysWOW64\runonce.exe
- 父进程命令行:C:\Windows\SysWOW64\runonce.exe /Run6432
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【2】2024-04-26 20:21:59,系统防护,自定义防护,MultiTip.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\multitip.exe
- 操作结果:已阻止
- 进程ID:7756
- 操作进程:C:\Users\Administrator\AppData\Roaming\360Safe\SoftMgr\MultiTip.exe
- 操作进程命令行:"C:\Users\Administrator\AppData\Roaming\360safe\SoftMgr\MultiTip.exe" /timeout=300 /globalspan=500 /Message=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
- 父进程ID:4356
- 父进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 父进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【3】2024-04-26 20:21:59,系统防护,自定义防护,MultiTip.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\multitip.exe
- 操作结果:已阻止
- 进程ID:7756
- 操作进程:C:\Users\Administrator\AppData\Roaming\360Safe\SoftMgr\MultiTip.exe
- 操作进程命令行:"C:\Users\Administrator\AppData\Roaming\360safe\SoftMgr\MultiTip.exe" /timeout=300 /globalspan=500 /Message=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
- 父进程ID:4356
- 父进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 父进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【4】2024-04-26 20:21:59,系统防护,自定义防护,MultiTip.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\CommonBase.dll
- 操作结果:已阻止
- 进程ID:7756
- 操作进程:C:\Users\Administrator\AppData\Roaming\360Safe\SoftMgr\MultiTip.exe
- 操作进程命令行:"C:\Users\Administrator\AppData\Roaming\360safe\SoftMgr\MultiTip.exe" /timeout=300 /globalspan=500 /Message=eyJ1aSI6Imh0dHA6XC9cL3Muc2FmZS4zNjAuY25cL3BvcHduZFwvcGFja183NzI3MzAuemlwIiwiaWQiOjc3MjczMCwidHlwZSI6NSwiZ3VpZCI6IjYwNzE5NTJiLTQxOGYtNTBiNC1hNDVjLWZhOTMzZTJkM2ExOSIsInByb21vdGlvbl9pZCI6ImxpYW5ncGluZzU1IiwiY29uZGl0aW9uX3RwaSI6InJlc3VsdF90cGk9MTsiLCJjb25kaXRpb24iOiJyZXN1bHQ9MTsiLCJ3ZWFrIjoiMCIsInByb2R1Y3QiOiIzNjBob3RuZXdzIiwiY29tYm8iOiIzNjBuZXdzcG9wdXAiLCJzZWN0aW9uIjoiaW5mb2Zsb3dfcG9saWN5X2FkcmVnaW9uX2xpYW5ncGluZ19wb3B3bmQiLCJwbmFtZSI6ImNhcmUiLCJtYXhfdGltZXMiOiIyNSIsInRpbWVzcGFuIjoiNSIsImludGVydmFsIjoiMSJ9
- 父进程ID:4356
- 父进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 父进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【5】2024-04-26 20:21:59,系统防护,自定义防护,MultiTip.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\CommonBase.dll
- 操作结果:已阻止
- 进程ID:7756
- 操作进程:C:\Users\Administrator\AppData\Roaming\360Safe\SoftMgr\MultiTip.exe
- 操作进程命令行:"C:\Users\Administrator\AppData\Roaming\360safe\SoftMgr\MultiTip.exe" /timeout=300 /globalspan=500 /Message=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
- 父进程ID:4356
- 父进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 父进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【6】2024-04-26 20:21:59,系统防护,自定义防护,MultiTip.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\CommonBase.dll
- 操作结果:已阻止
- 进程ID:7756
- 操作进程:C:\Users\Administrator\AppData\Roaming\360Safe\SoftMgr\MultiTip.exe
- 操作进程命令行:"C:\Users\Administrator\AppData\Roaming\360safe\SoftMgr\MultiTip.exe" /timeout=300 /globalspan=500 /Message=eyJ1aSI6Imh0dHA6XC9cL3Muc2FmZS4zNjAuY25cL3BvcHduZFwvcGFja183NzI3MzAuemlwIiwiaWQiOjc3MjczMCwidHlwZSI6NSwiZ3VpZCI6IjYwNzE5NTJiLTQxOGYtNTBiNC1hNDVjLWZhOTMzZTJkM2ExOSIsInByb21vdGlvbl9pZCI6ImxpYW5ncGluZzU1IiwiY29uZGl0aW9uX3RwaSI6InJlc3VsdF90cGk9MTsiLCJjb25kaXRpb24iOiJyZXN1bHQ9MTsiLCJ3ZWFrIjoiMCIsInByb2R1Y3QiOiIzNjBob3RuZXdzIiwiY29tYm8iOiIzNjBuZXdzcG9wdXAiLCJzZWN0aW9uIjoiaW5mb2Zsb3dfcG9saWN5X2FkcmVnaW9uX2xpYW5ncGluZ19wb3B3bmQiLCJwbmFtZSI6ImNhcmUiLCJtYXhfdGltZXMiOiIyNSIsInRpbWVzcGFuIjoiNSIsImludGVydmFsIjoiMSJ9
- 父进程ID:4356
- 父进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 父进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【7】2024-04-26 20:21:59,系统防护,自定义防护,MultiTip.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\Themes\softmgr_theme\softmgr_default.ui
- 操作结果:已阻止
- 进程ID:7756
- 操作进程:C:\Users\Administrator\AppData\Roaming\360Safe\SoftMgr\MultiTip.exe
- 操作进程命令行:"C:\Users\Administrator\AppData\Roaming\360safe\SoftMgr\MultiTip.exe" /timeout=300 /globalspan=500 /Message=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
- 父进程ID:4356
- 父进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 父进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【8】2024-04-26 20:21:59,系统防护,自定义防护,360tray.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\multitip.exe
- 操作结果:已阻止
- 进程ID:4356
- 操作进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 操作进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- 父进程ID:3728
- 父进程:C:\Windows\SysWOW64\runonce.exe
- 父进程命令行:C:\Windows\SysWOW64\runonce.exe /Run6432
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
- 【9】2024-04-26 20:21:59,系统防护,自定义防护,360tray.exe触犯自定义防护规则, 已阻止
- 触犯规则:自定义规则1
- 操作类型:【读取】
- 操作文件:C:\Program Files (x86)\360\360Safe\SoftMgr\multitip.exe
- 操作结果:已阻止
- 进程ID:4356
- 操作进程:C:\Program Files (x86)\360\360Safe\safemon\360tray.exe
- 操作进程命令行:"C:\Program Files (x86)\360\360Safe\safemon\360tray.exe" /start
- 父进程ID:3728
- 父进程:C:\Windows\SysWOW64\runonce.exe
- 父进程命令行:C:\Windows\SysWOW64\runonce.exe /Run6432
- >>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>>
复制代码 那个Base64解码之后是
- {"ui":"http:\/\/s.safe.360.cn\/popwnd\/pack_772730.zip","id":772730,"type":5,"guid":"6071952b-418f-50b4-a45c-fa933e2d3a19","promotion_id":"liangping55","condition_tpi":"result_tpi=1;","condition":"result=1;","weak":"0","product":"360hotnews","combo":"360newspopup","section":"infoflow_policy_adregion_liangping_popwnd","pname":"care","max_times":"25","timespan":"5","interval":"1"}
复制代码 我不多说了
|