Yinelenen Kötü Amaçlı Yazılım Algılama İzleyicisi

Microsoft.SystemCenter2012.ConfigurationManager.RepeatedMalwareDetectionMonitor (UnitMonitor)

Bu izleyici Configuration Manager yinelenen kötü amaçlı yazılım algılama uyarısını Operations Manager konsoluna iletir.

Knowledge Base article:

Özet

Configuration Manager, toplamadaki bir aygıtta bir kötü amaçlı yazılım türü birden fazla kez algılanırsa bir uyarı oluşturur.

Nedenler

Çözümlemeler

Element properties:

TargetMicrosoft.SystemCenter2012.ConfigurationManager.AlertRepeatedMalwareDetection
Parent MonitorSystem.Health.ConfigurationState
CategoryCustom
EnabledFalse
Alert GenerateTrue
Alert SeverityMatchMonitorHealth
Alert PriorityNormal
Alert Auto ResolveTrue
Monitor TypeMicrosoft.SystemCenter2012.ConfigurationManager.EPAlertStateMonitor
RemotableTrue
AccessibilityPublic
Alert Message
Yinelenen kötü amaçlı yazılım etkilenmesi algılandı
Toplamadaki aynı aygıtta aynı tür kötü amaçlı yazılım birden fazla kez algılandı. Ayrıntılar için Configuration Manager konsoluna bakın.
RunAsDefault
CommentSIV:FEP0003

Source Code:

<UnitMonitor ID="Microsoft.SystemCenter2012.ConfigurationManager.RepeatedMalwareDetectionMonitor" Comment="SIV:FEP0003" Accessibility="Public" Enabled="false" Target="SCCM!Microsoft.SystemCenter2012.ConfigurationManager.AlertRepeatedMalwareDetection" ParentMonitorID="SystemHealth!System.Health.ConfigurationState" Remotable="true" Priority="Normal" TypeID="Microsoft.SystemCenter2012.ConfigurationManager.EPAlertStateMonitor" ConfirmDelivery="true">
<Category>Custom</Category>
<AlertSettings AlertMessage="Microsoft.SystemCenter2012.ConfigurationManager.RepeatedMalwareDetectionMonitor_AlertMessageResourceID">
<AlertOnState>Warning</AlertOnState>
<AutoResolve>true</AutoResolve>
<AlertPriority>Normal</AlertPriority>
<AlertSeverity>MatchMonitorHealth</AlertSeverity>
</AlertSettings>
<OperationalStates>
<OperationalState ID="UIGeneratedOpStateId21668ad91a804d8da52e10ca5c87e39f" MonitorTypeStateID="Good" HealthState="Success"/>
<OperationalState ID="UIGeneratedOpStateId10a01dcc0d1847f2b9c256f90448c84d" MonitorTypeStateID="Warning" HealthState="Warning"/>
<OperationalState ID="UIGeneratedOpStateId8209facd786f4439b243d9b765681ac6" MonitorTypeStateID="Error" HealthState="Error"/>
</OperationalStates>
<Configuration>
<TypeId>$Target/Property[Type="SCCM!Microsoft.SystemCenter2012.ConfigurationManager.AlertBaseClass"]/TypeId$</TypeId>
<TypeInstanceId>$Target/Property[Type="SCCM!Microsoft.SystemCenter2012.ConfigurationManager.AlertBaseClass"]/TypeInstanceId$</TypeInstanceId>
<IntervalSeconds>900</IntervalSeconds>
<ProviderLocation>$Target/Host/Property[Type="SCCM!Microsoft.SystemCenter2012.ConfigurationManager.SiteServer"]/ProviderLocation$</ProviderLocation>
<SiteCode>$Target/Host/Property[Type="SCCM!Microsoft.SystemCenter2012.ConfigurationManager.Server"]/SiteCode$</SiteCode>
</Configuration>
</UnitMonitor>