Open Access

表7

恶意软件样本信息

恶意软件样本 内存注入区域 内存注入方式
Dridex 进程堆 在目标进程中创建EXECUTE-READWRITE权限的内存
Rig Exploit Kit 映射文件 创建新的进程,以EXECUTE-READWRITE权限分配内存
Formbook 共享内存 创建新的进程,以EXECUTE-READWRITE权限分配内存
Form Grabber 进程堆 在目标进程中创建EXECUTE-READWRITE权限的内存
Ghostminer 进程堆 创建新的进程,以EXECUTE-READWRITE权限分配内存
Kronos 映射文件 创建新的进程,以EXECUTE-READWRITE权限分配内存
Olympic Destroyer 进程堆 创建新的进程,以READWRITE权限分配内存后将权限修改为EXECUTE-READWRITE

Current usage metrics show cumulative count of Article Views (full-text article views including HTML views, PDF and ePub downloads, according to the available data) and Abstracts Views on Vision4Press platform.

Data correspond to usage on the plateform after 2015. The current usage metrics is available 48-96 hours after online publication and is updated daily on week days.

Initial download of the metrics may take a while.