SPYWARE: YKW v375
This signature detects the runtime behavior of the Spyware YKW v375. This spyware enables an attacker to silently take control of an infected computer. The main controlled functions include: Windows manager, system information, registry manager, processes manager, files manager, screen capture, and remote shell execution.
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3