Meine Bibliothek
Meine Bibliothek

+ Zur Bibliothek hinzufügen

Support

Ihre Anfragen

Rufen Sie uns an

+7 (495) 789-45-86

Profil

Trojan.DownLoader33.16660

Added to the Dr.Web virus database: 2020-03-13

Virus description added:

Technical Information

Modifies file system
Creates the following files
  • %TEMP%\rarsfx0\setup_3045-42534.exe
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_feedback.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_desktop.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_color.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_close.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_btn_on.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_btn_down.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_icon.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_forward.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_back.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playprogressforeimage.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playingvoice.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playingrandoma.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\playingrandom.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\playingpreva.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_big.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playingnext.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_itself.png
  • %ProgramFiles%\yymusic\20200313143055\skin\progresstooltip.png
  • %ProgramFiles%\yymusic\20200313143055\skin\prevention.png
  • %ProgramFiles%\yymusic\20200313143055\skin\prev0520.png
  • %ProgramFiles%\yymusic\20200313143055\skin\prev.png
  • %ProgramFiles%\yymusic\20200313143055\skin\power.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pop_bkimage.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_vol.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_split.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_small.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_set.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_res.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_prev.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_play.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_pause.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_next.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playingprev.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_bg.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playingplaying.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\playinginga.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\progress_fore.png
  • %ProgramFiles%\yymusic\20200313143055\skin\progresstooltipbk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\max.png
  • %ProgramFiles%\yymusic\20200313143055\skin\mainframeshadow.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyrictoplay.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyricmute.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyriclikea2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyriclikea.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyriclike.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyricframevoice.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyricdeletea2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyricdeletea.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lyricdelete.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lrclist.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lrcbk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\loginbk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\menu.png
  • %ProgramFiles%\yymusic\20200313143055\skin\pl_mutevol.png
  • %ProgramFiles%\yymusic\20200313143055\skin\min.png
  • %ProgramFiles%\yymusic\20200313143055\skin\mine.png
  • %ProgramFiles%\yymusic\20200313143055\skin\minea.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playersidebg.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\playerlist.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playerbg02.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playerbg01.png
  • %ProgramFiles%\yymusic\20200313143055\skin\play2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\play0520.png
  • %ProgramFiles%\yymusic\20200313143055\skin\normalvolume.png
  • %ProgramFiles%\yymusic\20200313143055\skin\next0520.png
  • %ProgramFiles%\yymusic\20200313143055\skin\next.png
  • %ProgramFiles%\yymusic\20200313143055\skin\musiclibrary.png
  • %ProgramFiles%\yymusic\20200313143055\skin\more.png
  • %ProgramFiles%\yymusic\20200313143055\skin\miniВґВ°.png
  • %ProgramFiles%\yymusic\20200313143055\skin\mini.png
  • %ProgramFiles%\yymusic\20200313143055\skin\mineahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\playinging.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\defaultuserimage.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\pushedvolume.png
  • %ProgramFiles%\yymusic\20200313143055\skin\tooltipbk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\tab_comm.png
  • %ProgramFiles%\yymusic\20200313143055\skin\sys_check_btn_whiter.png
  • %ProgramFiles%\yymusic\20200313143055\skin\sys_check_btn_red.png
  • %ProgramFiles%\yymusic\20200313143055\skin\sys_check_btn_blue.png
  • %ProgramFiles%\yymusic\20200313143055\skin\sys_check_btn.png
  • %ProgramFiles%\yymusic\20200313143055\skin\system_menu_btntop.png
  • %ProgramFiles%\yymusic\20200313143055\skin\system_menu_btnsteup.png
  • %ProgramFiles%\yymusic\20200313143055\skin\system_menu_btnmini.png
  • %ProgramFiles%\yymusic\20200313143055\skin\system_menu_btnmin.png
  • %ProgramFiles%\yymusic\20200313143055\skin\system_menu_btnfeedback.png
  • %ProgramFiles%\yymusic\20200313143055\skin\system_menu_btnexit.png
  • %ProgramFiles%\yymusic\20200313143055\skin\system_menu_btnexit - ВёВ±В±Вѕ.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensiontopahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensiontopa.png
  • %ProgramFiles%\yymusic\20200313143055\skin\update.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensiontop.png
  • %ProgramFiles%\yymusic\20200313143055\skin\loading04.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionsetahover.png
  • %ProgramFiles%\yymusic\20200313143055\data\user2.ini
  • %APPDATA%\microsoft\windows\start menu\programs\yymusic\åäö㹤¾ß\ð¶ôøyymusic.lnk
  • %APPDATA%\microsoft\windows\start menu\programs\yymusic\¹ù·½ö÷ò³.lnk
  • %APPDATA%\microsoft\windows\start menu\programs\yymusic\yymusic.lnk
  • %ProgramFiles%\yymusic\20200313143055\yymusic.exe
  • %ProgramFiles%\yymusic\20200313143055\yyjia.exe
  • %ProgramFiles%\yymusic\20200313143055\unins.exe
  • %ProgramFiles%\yymusic\20200313143055\sysconfig.ini
  • %ProgramFiles%\yymusic\20200313143055\swresample-0.dll
  • %ProgramFiles%\yymusic\20200313143055\source.dll
  • %ProgramFiles%\yymusic\20200313143055\skin\òô῵÷½úµã.png
  • %ProgramFiles%\yymusic\20200313143055\skin\òôá¿ìõ.png
  • %ProgramFiles%\yymusic\20200313143055\skin\windowlrcbkiamge.png
  • %ProgramFiles%\yymusic\20200313143055\skin\voiceall0528.png
  • %ProgramFiles%\yymusic\20200313143055\skin\voice1000528.png
  • %ProgramFiles%\yymusic\20200313143055\skin\voice0520.png
  • %ProgramFiles%\yymusic\20200313143055\skin\voice00528.png
  • %ProgramFiles%\yymusic\20200313143055\skin\messagebox.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionset.png
  • %ProgramFiles%\yymusic\20200313143055\skin\sound.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\search.png
  • %ProgramFiles%\yymusic\20200313143055\skin\scrollbar.png
  • %ProgramFiles%\yymusic\20200313143055\skin\remembertt.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\reflash.png
  • %ProgramFiles%\yymusic\20200313143055\skin\random0520.png
  • %ProgramFiles%\yymusic\20200313143055\skin\random03hover.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random03a.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random03.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random02hover.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random02a.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random02.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random01hover.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random01a.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\random01.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\settipframe.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionseta.png
  • %ProgramFiles%\yymusic\20200313143055\skin\random.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\selectcolor_sliderbar_thumb.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionminahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionmina.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionmin.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionlogin.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionfeedbackahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionfeedbacka.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionfeedback.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensioncloseahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionclosea.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionclose.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionbigahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionbiga.png
  • %ProgramFiles%\yymusic\20200313143055\skin\suspensionbig.png
  • %ProgramFiles%\yymusic\20200313143055\skin\steup.png
  • %ProgramFiles%\yymusic\20200313143055\skin\sound100.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\sound (2).jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\slider_bg.png
  • %ProgramFiles%\yymusic\20200313143055\skin\loading03.png
  • %ProgramFiles%\yymusic\20200313143055\skin\loading02.png
  • %ProgramFiles%\yymusic\20200313143055\skin\loading01.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bkcolor_7.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_close.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_bd.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_9k.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btnrighttop.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btnhideplaylist.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-play.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-pause.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-next.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-login2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-login.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-fav.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-delete.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn-anonymity.png
  • %ProgramFiles%\yymusic\20200313143055\skin\border.png
  • %ProgramFiles%\yymusic\20200313143055\picture\baidu_c2cec3fdfc03924517c1df928694a4c27d1e2532.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_db.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_fh.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_kw.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_ok.png
  • %ProgramFiles%\yymusic\20200313143055\skin\color_003highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_003.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_002highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_002.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_001highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_001.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\collection.png
  • %ProgramFiles%\yymusic\20200313143055\skin\close.png
  • %ProgramFiles%\yymusic\20200313143055\skin\channel.png
  • %ProgramFiles%\yymusic\20200313143055\skin\button.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_xm.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_sc.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_ok_red.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_ok_blue.png
  • %ProgramFiles%\yymusic\20200313143055\skin\color_004.bmp
  • %HOMEPATH%\favorites\ãâ·ñéïíøµ¼º½.url
  • %ProgramFiles%\yymusic\20200313143055\skin\color_004highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\bkcolor_4.png
  • %ProgramFiles%\yymusic\20200313143055\data\dh.ini
  • %ProgramFiles%\yymusic\20200313143055\libav.dll
  • %ProgramFiles%\yymusic\20200313143055\favorfm.xml
  • %ProgramFiles%\yymusic\20200313143055\duilib.dll
  • %ProgramFiles%\yymusic\20200313143055\data\version.ini
  • %ProgramFiles%\yymusic\20200313143055\data\setup.ini
  • %ProgramFiles%\yymusic\20200313143055\data\server.ini
  • %ProgramFiles%\yymusic\20200313143055\data\client.ini
  • %ProgramFiles%\yymusic\20200313143055\lyrics\baidu_13881991.lrc
  • %ProgramFiles%\yymusic\20200313143055\channels.xml
  • %ProgramFiles%\yymusic\20200313143055\avutil-52.dll
  • %ProgramFiles%\yymusic\20200313143055\avformat-54.dll
  • %ProgramFiles%\yymusic\20200313143055\avcore.dll
  • %ProgramFiles%\yymusic\20200313143055\avcodec-54.dll
  • %ProgramFiles%\yymusic\20200313143055\audio.dll
  • %ProgramFiles%\yymusic\20200313143055\skin\bkcolor_5.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bkcolor_6.png
  • %ProgramFiles%\yymusic\20200313143055\lyrics\baidu_262581.lrc
  • %ProgramFiles%\yymusic\20200313143055\picture\baidu_e1fe9925bc315c60bbe955728cb1cb134954772a.jpg
  • %ProgramFiles%\yymusic\20200313143055\lyrics\baidu_13766042.lrc
  • %ProgramFiles%\yymusic\20200313143055\skin\bkcolor_3.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bkcolor_2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bkcolor_1.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bg_2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bg3.png
  • %ProgramFiles%\yymusic\20200313143055\skin\bg2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\back.png
  • %ProgramFiles%\yymusic\20200313143055\skin\autoruntipframe.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\astop.png
  • %ProgramFiles%\yymusic\20200313143055\skin\320x225.png
  • %ProgramFiles%\yymusic\20200313143055\skin\125x125.jpg
  • %ProgramFiles%\yymusic\20200313143055\pthreadgc2.dll
  • %ProgramFiles%\yymusic\20200313143055\playerupdate.exe
  • %ProgramFiles%\yymusic\20200313143055\picture\baidu_c8ea15ce36d3d539f9c9305e3b87e950342ab0b2.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\voice0a0528.png
  • %ProgramFiles%\yymusic\20200313143055\skin\color_005.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_006highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\frmwindowlrcparent.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmwindowlrc.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmwebbrowser.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmsystemmenuframe.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmsetwindowlrcframe.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmprogresstooltip.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmpopwnd.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmplaylist.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmplayer.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmmenuframe.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmlrcchild.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmlrc.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmlogin.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmhotkeytip.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmfeedback.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\color_005highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\frmdropdownmenuframe.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmdownmenu.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\hotkeytipbk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\headimg.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list_title_bg.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list_scroll_bar2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list_scroll_bar.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list_play.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list_pause.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list_item_bg.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list_item.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\listahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\lista.png
  • %ProgramFiles%\yymusic\20200313143055\skin\list.png
  • %ProgramFiles%\yymusic\20200313143055\skin\like.png
  • %ProgramFiles%\yymusic\20200313143055\skin\input-user.png
  • %ProgramFiles%\yymusic\20200313143055\skin\input-password.png
  • %ProgramFiles%\yymusic\20200313143055\skin\icon.png
  • %ProgramFiles%\yymusic\20200313143055\skin\home.png
  • %ProgramFiles%\yymusic\20200313143055\skin\color_006.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\history.png
  • %ProgramFiles%\yymusic\20200313143055\skin\btn_comm.png
  • %ProgramFiles%\yymusic\20200313143055\skin\color_unsel.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_list_bk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\color_bg.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_016.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_015.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_014.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_013.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_012.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_011.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_010.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_009.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_008highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_008.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_007highlight.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\color_007.bmp
  • %ProgramFiles%\yymusic\20200313143055\skin\forgettt.jpg
  • %ProgramFiles%\yymusic\20200313143055\skin\frmconfig.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\frmcolor.xml
  • %ProgramFiles%\yymusic\20200313143055\skin\downda.png
  • %ProgramFiles%\yymusic\20200313143055\skin\dash.png
  • %ProgramFiles%\yymusic\20200313143055\skin\forecolor_7.png
  • %ProgramFiles%\yymusic\20200313143055\skin\forecolor_6.png
  • %ProgramFiles%\yymusic\20200313143055\skin\forecolor_5.png
  • %ProgramFiles%\yymusic\20200313143055\skin\forecolor_4.png
  • %ProgramFiles%\yymusic\20200313143055\skin\forecolor_3.png
  • %ProgramFiles%\yymusic\20200313143055\skin\forecolor_2.png
  • %ProgramFiles%\yymusic\20200313143055\skin\forecolor_1.png
  • %ProgramFiles%\yymusic\20200313143055\skin\font_forecolor.png
  • %ProgramFiles%\yymusic\20200313143055\skin\font_bkcolor.png
  • %ProgramFiles%\yymusic\20200313143055\skin\feedback.png
  • %ProgramFiles%\yymusic\20200313143055\skin\fbcaptionbk.png
  • %ProgramFiles%\yymusic\20200313143055\skin\exit.png
  • %ProgramFiles%\yymusic\20200313143055\skin\downloadprogressforeimage.png
  • %ProgramFiles%\yymusic\20200313143055\skin\downdahover.png
  • %ProgramFiles%\yymusic\20200313143055\skin\downd.png
  • %HOMEPATH%\favorites\ììòí¾üêâíø.url
Network activity
TCP
HTTP GET requests
  • http://up####.yinyue.fm/tj.ashx
  • http://up####.yinyue.fm/appupdate/ver.txt
  • http://to####.yinyue.fm/a.ashx?v=################################################################################################################################################################...
UDP
  • DNS ASK up####.yinyue.fm
  • DNS ASK to####.yinyue.fm
Miscellaneous
Searches for the following windows
  • ClassName: 'EDIT' WindowName: ''
  • ClassName: 'MS_WINHELP' WindowName: ''
Creates and executes the following
  • '%TEMP%\rarsfx0\setup_3045-42534.exe'
  • '%ProgramFiles%\yymusic\20200313143055\yymusic.exe' -tuopan
  • '%ProgramFiles%\yymusic\20200313143055\yyjia.exe'

Curing recommendations

  1. If the operating system (OS) can be loaded (either normally or in safe mode), download Dr.Web Security Space and run a full scan of your computer and removable media you use. More about Dr.Web Security Space.
  2. If you cannot boot the OS, change the BIOS settings to boot your system from a CD or USB drive. Download the image of the emergency system repair disk Dr.Web® LiveDisk , mount it on a USB drive or burn it to a CD/DVD. After booting up with this media, run a full scan and cure all the detected threats.
Download Dr.Web

Download by serial number

Use Dr.Web Anti-virus for macOS to run a full scan of your Mac.

After booting up, run a full scan of all disk partitions with Dr.Web Anti-virus for Linux.

Download Dr.Web

Download by serial number

  1. If the mobile device is operating normally, download and install Dr.Web for Android. Run a full system scan and follow recommendations to neutralize the detected threats.
  2. If the mobile device has been locked by Android.Locker ransomware (the message on the screen tells you that you have broken some law or demands a set ransom amount; or you will see some other announcement that prevents you from using the handheld normally), do the following:
    • Load your smartphone or tablet in the safe mode (depending on the operating system version and specifications of the particular mobile device involved, this procedure can be performed in various ways; seek clarification from the user guide that was shipped with the device, or contact its manufacturer);
    • Once you have activated safe mode, install the Dr.Web for Android onto the infected handheld and run a full scan of the system; follow the steps recommended for neutralizing the threats that have been detected;
    • Switch off your device and turn it on as normal.

Find out more about Dr.Web for Android