我正在运行 Windows 11,当我运行sigcheck64 -tuv
或sigcheck64 -tv
我得到
我不知道为什么我的所有计算机(未联网或未相互连接)的用户和机器证书存储中都有一个根证书,其中包含用于 Serve Auth 的相应计算机名称。我运行该命令来查找任何恶意根证书,但显示的却是恶意根证书,我需要知道它为什么在那里,保留它是否安全,还是应该将其删除?
更新:当我运行时,sigcheck64 -vt
我得到了这个结果:
Sigcheck v2.82 - File version and signature viewer
Copyright (C) 2004-2021 Mark Russinovich
Sysinternals - www.sysinternals.com
C:\Users\username\NTUSER.DAT:
Verified: Error accessing file
Link date: n/a
Publisher: n/a
Company: n/a
Company: n/a
Description: n/a
Product: n/a
Prod version: n/a
File version: n/a
MachineType: n/a
VT detection: Unknown
VT link: n/a
C:\Users\username\ntuser.dat.LOG1:
Verified: Error accessing file
Link date: n/a
Publisher: n/a
Company: n/a
Company: n/a
Description: n/a
Product: n/a
Prod version: n/a
File version: n/a
MachineType: n/a
VT detection: Unknown
VT link: n/a
C:\Users\username\ntuser.dat.LOG2:
Verified: Error accessing file
Link date: n/a
Publisher: n/a
Company: n/a
Company: n/a
Description: n/a
Product: n/a
Prod version: n/a
File version: n/a
MachineType: n/a
VT detection: Unknown
VT link: n/a
C:\Users\username\NTUSER.DAT{f1fc1da9-*****************0}.TM.blf:
Verified: Error accessing file
Link date: n/a
Publisher: n/a
Company: n/a
Company: n/a
Description: n/a
Product: n/a
Prod version: n/a
File version: n/a
MachineType: n/a
VT detection: Unknown
VT link: n/a
C:\Users\username\NTUSER.DAT{************************3ef760}.TMContainer00000000000000000001.regtrans-ms:
Verified: Error accessing file
Link date: n/a
Publisher: n/a
Company: n/a
Company: n/a
Description: n/a
Product: n/a
Prod version: n/a
File version: n/a
MachineType: n/a
VT detection: Unknown
VT link: n/a
C:\Users\username\NTUSER.DAT{f1f****************ef760}.TMContainer00000000000000000002.regtrans-ms:
Verified: Error accessing file
Link date: n/a
Publisher: n/a
Company: n/a
Company: n/a
Description: n/a
Product: n/a
Prod version: n/a
File version: n/a
MachineType: n/a
VT detection: 0/73
VT link:
https://www.virustotal.com/gui/file/07854d2fef297a06ba81685e660c332de36d5d18d546927d30daad6d7fda1541/detection
C:\Users\username\ntuser.ini:
Verified: Unsigned
File date: 2:42 PM 22/08/05
Publisher: n/a
Company: n/a
Description: n/a
Product: n/a
Prod version: n/a
File version: n/a
MachineType: n/a
VT detection: 0/70
VT link:
https://www.virustotal.com/gui/file/5ad8f52071d25165e7e68064ab194ec27a074a3846149ed0689af23e7f7f2d00/detection