#874 More fun experiments with malware part 2

    Virtual PC:

    VMWare Workstation 15 Player

    Windows 7 x64

    KIS de app + drv verifier enabled

    Reproduction steps:

    This dump got created after KIS was able to start again, i think something was still wrong but i am not sure about the cause.

    System Settings

    Operating system: Win 7, x64

    System: Intel Core i7 4770 @ 3.4GHZ, 12,0GB RAM, NVIDIA Geforce GTX 1060 6GB, Harddisk 1TB

    Product: KIS

    Product Version:

    Language: de-DE

    Product Logs: https://cloud.qainfo.ru/s/slIHiPC9GvLl84i

    I will try to do that

  • @helios_07 Hello! 

    Is there any chance to reproduce it again with some conditions? 


    1) install KTS

    2) Start procmon 

    3) enable traces in KTS

    4) restart KTS  (at this moment KTS will get process ID's from procmon and it'll be much more easy to understand what had happened) 

    5) try reproduce dump

