|
只要在搜索栏搜索或者打开Microsoft Edge就会报错,然后电脑耗电很快,发烫
系统加固,显示msedge。exe触犯敏感动作防护规则,已允许
防护项目:利用Certutil下载可执行文件
执行文件:C:\Users\86156\AppData\Local\Tencent\QQGuild\9.7.16-331\QQGuild.exe
执行命令行:"C:\Users\86156\AppData\Local\Tencent\QQGuild\9.7.16-331\QQGuild.exe" --type=renderer --user-data-dir="C:\Users\86156\AppData\Roaming\qq_guild" --standard-schemes=app --secure-schemes=app --bypasscsp-schemes --cors-schemes --fetch-schemes --service-worker-schemes --streaming-schemes --app-path="C:\Users\86156\AppData\Local\Tencent\QQGuild\9.7.16-331\resources\app" --enable-sandbox --force-color-profile=srgb --lang=zh-CN --device-scale-factor=1.25 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=7 --time-ticks-at-unix-epoch=-1710212248007772 --launch-time-ticks=1168310885 --mojo-platform-channel-handle=5944 --field-trial-handle=3608,i,6451815640626099659,13679513582048135829,262144 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
操作结果:已允许
进程ID:13736
操作进程:C:\Users\86156\AppData\Local\Tencent\QQGuild\9.7.16-331\QQGuild.exe
操作进程命令行:"C:\Users\86156\AppData\Local\Tencent\QQGuild\9.7.16-331\QQGuild.exe" --gpro-platform-channel-handle=5540
父进程ID:10992
父进程:C:\Program Files (x86)\Tencent\QQ\Bin\QQ.exe
父进程命令行:"C:\Program Files (x86)\Tencent\QQ\Bin\QQ.exe" /hosthwnd=524950 /hostname=QQ_IPC_{61EA8827-AE99-4365-97D8-B3226B2902C8} /memoryid=0 "C:\Program Files (x86)\Tencent\QQ\Bin\QQ.exe"
|
|