Technical Information
- [HKLM\SYSTEM\CurrentControlSet\Services\7fDY] 'ImagePath' = '<DRIVERS>\FedoW.sys'
- '7fDY' <DRIVERS>\FedoW.sys
- C:\driverdb.log
- <DRIVERS>\fedow.sys
- %WINDIR%\temp\udd1b5.tmp
- %WINDIR%\temp\udd1b5.tmp
- <DRIVERS>\fedow.sys
- '64.##.227.179':3690
- 'w.###ata.net':80
- 'sm##.163.com':25
- http://64.##.227.179:3690/YG/DriverModuleYuGuoNormal.vmp.sys via 64.##.227.179
- http://w.###ata.net/DBEE7DEFFB9A9630
- http://w.###ata.net/29B5923326A8D4F1
- http://w.###ata.net/9E812B06E842C459
- 'sm##.163.com':25
- DNS ASK w.###ata.net
- DNS ASK sm##.163.com