|
看上去并没有解决,只能取消勾选"启用系统免疫" 升级方式:手动更新
升级结果:成功,版本号:6.0.5.0,病毒库时间:2025-01-16 17:51
下载文件:
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\hwl.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\prop.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\pset.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\troj.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\db\hips.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\db\behav.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\db\leakrepair.db
更新文件:
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\hwl.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\prop.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\pset.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\virdb\troj.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\db\hips.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\db\behav.db
2025-01-17 08:35:09 C:\ProgramData\Huorong\Sysdiag\db\leakrepair.db
防护项目:视频扩展名欺骗
可疑文件:D:\cscode\paladin7\Paladin.WebApi.WM\bin\Debug\net8.0\Paladin.WebApi.WM.exe
执行命令行:"D:\cscode\paladin7\Paladin.WebApi.WM\bin\Debug\net8.0\Paladin.WebApi.WM.exe"
操作结果:已阻止
进程ID:36984
操作进程:C:\Program Files\Microsoft Visual Studio\2022\Enterprise\Common7\IDE\CommonExtensions\Platform\Debugger\VsDebugConsole.exe
操作进程命令行:"C:\Program Files\Microsoft Visual Studio\2022\Enterprise\Common7\IDE\CommonExtensions\Platform\Debugger\VsDebugConsole.exe" \\.\pipe\Microsoft-VisualStudio-Debug-Console-7896 Local\{E0DCBF48-37DA-4447-A55A-1BC70A096478} /RootProcessId:7896 /Minimize
父进程ID:7896
父进程:C:\Program Files\Microsoft Visual Studio\2022\Enterprise\Common7\IDE\devenv.exe
父进程命令行:"C:\Program Files\Microsoft Visual Studio\2022\Enterprise\Common7\IDE\devenv.exe"
|
|