Техническая информация
- 'C:\UUSEE_cyang_Setup_102263.exe'
- 'C:\uusee.exe'
- 'C:\zazhi.exe'
- 'C:\ZcomMagSubscribe-100-2263.exe'
- 'C:\UUSEE_cyang_Setup_102263.exe' (загружен из сети Интернет)
- 'C:\ZcomMagSubscribe-100-2263.exe' (загружен из сети Интернет)
- '<SYSTEM32>\cmd.exe' /c ""kill.bat""
- '<SYSTEM32>\taskkill.exe' /im zazhi.exe /f
- <Текущая директория>\kill.bat
- C:\uusee.exe
- C:\UUSEE_cyang_Setup_102263.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\UUSEE_cyang_Setup_102263[1].exe
- C:\ZcomMagSubscribe-100-2263.exe
- C:\xjjy.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ZcomMagSubscribe-100-2263[1].exe
- C:\zazhi.exe
- C:\uusee.exe
- C:\zazhi.exe
- C:\xjjy.dll
- %TEMP%\~DFDEFF.tmp
- 'localhost':1039
- 'do####ad.uusee.com':80
- 'localhost':1036
- 'zc####l.zcominc.com':80
- do####ad.uusee.com/pop1/cyang/UUSEE_cyang_Setup_102263.exe
- zc####l.zcominc.com/union/ZcomMagSubscribe-100-2263.exe
- DNS ASK do####ad.uusee.com
- DNS ASK zc####l.zcominc.com
- ClassName: '(null)' WindowName: 'UUSee ???????? 2008 '
- ClassName: '(null)' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'UUSee ???????? 2008'
- ClassName: '(null)' WindowName: 'Zcom ?????????? 2007 Bata6 ????'
- ClassName: '(null)' WindowName: 'Zcom ?????????? 2007 Bata6 ???? '