Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\360monter] 'ImagePath' = '<DRIVERS>\360monter.sys'
- NtWriteVirtualMemory, драйвер-обработчик: 360monter.sys
- NtReadVirtualMemory, драйвер-обработчик: 360monter.sys
- NtQuerySystemInformation, драйвер-обработчик: 360monter.sys
- <DRIVERS>\360monter.sys
- <DRIVERS>\360monter.sys
- 'qq########78.h-a34-host.n9cn1.com':80
- 'localhost':1039
- qq########78.h-a34-host.n9cn1.com/piaouser.asp
- DNS ASK qq########78.h-a34-host.n9cn1.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''