应急响应之挖矿木马分析.pdfVIP

  • 0
  • 0
  • 约2.9千字
  • 约 10页
  • 2026-02-12 发布于浙江
  • 举报

dns

wireshark

dnswireshark

pidwmicprocessget

name,executablepath,processid|findstrpid

wrishark

idpid

1

lovecloud

tasklisttasklist|findstrove

lovecloud

2

wrishark

wireshark

wrishark52050

pidSvchost.exe

dns

udp

wrishark

svhost.exe

svchost.exe

dnshost

host

netstatsyn_senttcp

pid

5004pidtasklist|findstr5004

lovecloud.exe

wmicprocessgetname,executablepath,processid|findstr

5004

taskkill/f/t/im5004

3

Svchost.e

文档评论(0)

1亿VIP精品文档

相关文档