Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'uusee' = '<SYSTEM32>\Com\uusee.exe'
- %WINDIR%\Web\UUSEE_myiee_Setup_545452.exe
- %WINDIR%\Fonts\Systeh.exe
- <SYSTEM32>\Com\uusee.exe
- %WINDIR%\Web\UUSEE_myiee_Setup_545452.exe (загружен из сети Интернет)
- <SYSTEM32>\net1.exe stop sharedaccess
- <SYSTEM32>\net.exe stop sharedaccess
- <SYSTEM32>\cmd.exe /c ""<Текущая директория>\kill.bat""
- <Текущая директория>\kill.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\UUSEE_myiee_Setup_545452[1].exe
- %WINDIR%\Web\UUSEE_myiee_Setup_545452.exe
- <SYSTEM32>\Com\uusee.exe
- %WINDIR%\Fonts\1.hoh
- %WINDIR%\Fonts\Systeh.exe
- 'do####ad.uusee.com':80
- 'localhost':1036
- do####ad.uusee.com/pop/UUSEE_myiee_Setup_545452.exe
- DNS ASK do####ad.uusee.com
- ClassName: '' WindowName: 'UUSee ???????? 2008 '
- ClassName: '' WindowName: 'UUSee ???????? 2008'
- ClassName: '#32770' WindowName: 'UUSee ???? 2008 '
- ClassName: '#32770' WindowName: 'UUSee ???? 2008'
- ClassName: 'ReBarWindow32' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ToolbarWindow32' WindowName: ''
- ClassName: 'MSTaskSwWClass' WindowName: ''