McAfee 双击,嗯……杀了powershell……
- {"timestamp":"2024-07-16T14:03:38.948Z","target_name":"[memory] id: 700000000Ob:0, size: 478 bytes, app: 'PowerShell_C:\\Users\\Public\\Music\\tt.exe_10.0.19041.546', backing file: ''","initiator_name":"PowerShell_C:\\Users\\Public\\Music\\tt.exe_10.0.19041.546","sensor":"IAntiMalware","target_hash":"","target_url":"","detection_name":"Real Protect-PSFL!A84FD1AA0294","final_result":"infected","all":[{"final_detection_source":"rp-fileless","file_rep":0,"hti_rep":1,"url_rep":0,"cert_rep":[]},{"detection_source":"cache","file_rep":0,"hti_rep":0,"url_rep":0,"cert_rep":[]},{"detection_source":"signature","file_rep":0,"hti_rep":0,"url_rep":0,"cert_rep":[]},{"detection_source":"rp-fileless","file_rep":0,"hti_rep":1,"url_rep":0,"cert_rep":[]},{"detection_source":"av","file_rep":0,"hti_rep":50,"url_rep":0,"cert_rep":[]},{"detection_source":"neo","file_rep":0,"hti_rep":50,"url_rep":0,"cert_rep":[]}]}
复制代码
|