Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\DBKDRVR54] 'ImagePath' = '<SYSTEM32>\Process kill drive FE.sys'
- ClassName: 'OLLYDBG', WindowName: ''
- %WINDIR%\syswow64\process kill drive fe.sys
- %WINDIR%\syswow64\process kill drive fe.sys
- http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt
- DNS ASK xu#.##login2.qq.com
- DNS ASK microsoft.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''