Техническая информация
- 'C:\svchost.exe'
- C:\svchost.exe
- C:\svchost.exe
- 'tm####.ys168.com':80
- 'tm###.ys168.com':80
- '12#.#25.114.144':80
- http://tm####.ys168.com/
- http://tm###.ys168.com/
- http://hi.##idu.com/sqresxyrqmbmsyd/item/fabb7dc1cb1cc23e0ad93ac4 via 12#.#25.114.144
- DNS ASK tm###.ys168.com
- DNS ASK tm####.ys168.com
- DNS ASK cf####bingkeji.com
- DNS ASK hi.##idu.com
- ClassName: '' WindowName: 'YyFangYu.exe'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'yybox.exe'
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''