#874 More fun experiments with malware part 2
Rejected, last edited by Jarvis last edited by Jarvis
VMWare Workstation 15 Player
Windows 7 x64
KIS 184.108.40.2060 de app + drv verifier enabled
This dump got created after KIS was able to start again, i think something was still wrong but i am not sure about the cause.
Operating system: Win 7, x64
System: Intel Core i7 4770 @ 3.4GHZ, 12,0GB RAM, NVIDIA Geforce GTX 1060 6GB, Harddisk 1TB
Product Version: 220.127.116.110
Product Logs: https://cloud.qainfo.ru/s/slIHiPC9GvLl84i
Is there any chance to reproduce it again with some conditions?
1) install KTS
2) Start procmon
3) enable traces in KTS
4) restart KTS (at this moment KTS will get process ID's from procmon and it'll be much more easy to understand what had happened)
5) try reproduce dump