2011-01-06 10:49:44 | C:\UUSEE_ad9_Setup_228.exe | 创建进程 | C:\Program Files\uusee\UUSeePlayer.exe |
2011-01-06 10:49:59 | C:\Program Files\uusee\UUSeePlayer.exe | 访问内存 | C:\UUSEE_ad9_Setup_228.exe |
2011-01-06 10:50:06 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | 在线扫描发现恶意程序 | |
2011-01-06 10:50:09 | C:\Users\k\AppData\Local\Temp\UUSeeDownLoad.exe | 创建进程, 拦截病毒 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe |
2011-01-06 10:50:14 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\C:\Program Files\uusee\UUSeePlayer.exe |
2011-01-06 10:50:15 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEE\shell\open\command |
2011-01-06 10:50:17 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEE\shell\open\command\ |
2011-01-06 10:50:18 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEEREC\shell\open\command |
2011-01-06 10:50:19 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable |
2011-01-06 10:50:19 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:50:20 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEEREC\shell\open |
2011-01-06 10:50:21 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEEREC\shell\open\command\ |
2011-01-06 10:50:23 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEENOTIFY\shell\open\command |
2011-01-06 10:50:24 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEENOTIFY\shell\open |
2011-01-06 10:50:26 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEENOTIFY\shell\open\command\ |
2011-01-06 10:50:28 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\.ucf\ |
2011-01-06 10:50:29 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEE.ucf\Shell\Open\Command |
2011-01-06 10:50:30 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEE.ucf\Shell\Open |
2011-01-06 10:50:32 | C:\Users\k\AppData\Local\Temp\UUSeeDownLoad.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe |
2011-01-06 10:50:33 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\UUSEE.ucf\Shell\Open\Command\ |
2011-01-06 10:50:33 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:50:33 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:50:33 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:50:35 | C:\Program Files\uusee\UUSeePlayer.exe | 直接磁盘访问 | PhysicalDrive0 |
2011-01-06 10:50:36 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe |
2011-01-06 10:50:39 | C:\Program Files\uusee\UUSeePlayer.exe | 修改文件 | C:\Windows\struct~.ini |
2011-01-06 10:50:40 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudServer.exe |
2011-01-06 10:50:41 | C:\Users\k\AppData\Local\Temp\UUSeeDownLoad.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\mxsetup_UUSEE.exe |
2011-01-06 10:50:43 | C:\Users\k\AppData\Local\Temp\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\CloudServer |
2011-01-06 10:50:44 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable |
2011-01-06 10:50:45 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudServer.exe |
2011-01-06 10:50:46 | C:\Users\k\AppData\Local\Temp\mxsetup_UUSEE.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\nsc519C.tmp\install_data\MxInstall.exe |
2011-01-06 10:50:47 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer |
2011-01-06 10:50:47 | C:\Users\k\AppData\Local\Temp\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\CloudServer |
2011-01-06 10:50:49 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride |
2011-01-06 10:50:50 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe |
2011-01-06 10:50:52 | C:\Program Files\uusee\UUSeePlayer.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:50:55 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudServer.exe |
2011-01-06 10:50:56 | C:\Users\k\AppData\Local\Temp\nsc519C.tmp\install_data\MxInstall.exe | 访问内存 | C:\Program Files\COMODO\COMODO Internet Security\cfp.exe |
2011-01-06 10:50:57 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:50:57 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:50:58 | C:\Program Files\uusee\UUSeePlayer.exe | 访问COM接口 | Shell.Explorer.2 |
2011-01-06 10:50:58 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:51:00 | C:\Users\k\AppData\Local\Temp\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\CloudServer |
2011-01-06 10:51:01 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudServer.exe |
2011-01-06 10:51:03 | C:\Users\k\AppData\Local\Temp\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\CloudServer |
2011-01-06 10:51:07 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | 在线扫描发现恶意程序 | |
2011-01-06 10:51:09 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7} |
2011-01-06 10:51:10 | C:\Users\k\AppData\Local\Temp\360Inst-uusee.exe | 在线扫描发现恶意程序 | |
2011-01-06 10:51:10 | C:\Users\k\AppData\Local\Temp\nsc519C.tmp\install_data\MxInstall.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:10 | C:\Users\k\AppData\Local\Temp\nsc519C.tmp\install_data\MxInstall.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:10 | C:\Users\k\AppData\Roaming\Maxthon2\Maxthon.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:10 | C:\Users\k\AppData\Local\Temp\nsc519C.tmp\install_data\MxInstall.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:13 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\ |
2011-01-06 10:51:15 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\ProgID |
2011-01-06 10:51:15 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\ProgID\ |
2011-01-06 10:51:16 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\VersionIndependentProgID |
2011-01-06 10:51:16 | C:\Program Files\Common Files\uusee\UUSeeMediaCenter.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:16 | C:\Program Files\Common Files\uusee\UUSeeMediaCenter.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:17 | C:\Program Files\uusee\UUSeePlayer.exe | 创建进程 | C:\Program Files\Common Files\uusee\UUSeeMediaCenter.exe |
2011-01-06 10:51:17 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\VersionIndependentProgID\ |
2011-01-06 10:51:18 | C:\Program Files\uusee\UUSeePlayer.exe | 修改文件 | C:\Windows\system32\catroot |
2011-01-06 10:51:19 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Programmable |
2011-01-06 10:51:20 | C:\Program Files\uusee\UUSeePlayer.exe | 修改文件 | C:\Windows\system32\catroot2 |
2011-01-06 10:51:20 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\InprocServer32 |
2011-01-06 10:51:22 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\My |
2011-01-06 10:51:23 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\InprocServer32\ |
2011-01-06 10:51:24 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\CA |
2011-01-06 10:51:25 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\InprocServer32\ThreadingModel |
2011-01-06 10:51:25 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\CA\Certificates |
2011-01-06 10:51:26 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\TypeLib |
2011-01-06 10:51:27 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\CA\CRLs |
2011-01-06 10:51:27 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\TypeLib\ |
2011-01-06 10:51:28 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\CA\CTLs |
2011-01-06 10:51:28 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4} |
2011-01-06 10:51:29 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\CA |
2011-01-06 10:51:29 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID |
2011-01-06 10:51:30 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\CA\Certificates |
2011-01-06 10:51:30 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories |
2011-01-06 10:51:31 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\CA\CRLs |
2011-01-06 10:51:31 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\CA\CTLs |
2011-01-06 10:51:32 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\Software\Microsoft\SystemCertificates\CA |
2011-01-06 10:51:32 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Microsoft\SystemCertificates\CA\Certificates |
2011-01-06 10:51:33 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Microsoft\SystemCertificates\CA\CRLs |
2011-01-06 10:51:33 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4} |
2011-01-06 10:51:34 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Microsoft\SystemCertificates\CA\CTLs |
2011-01-06 10:51:34 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe |
2011-01-06 10:51:35 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\Software\Policies\Microsoft\SystemCertificates\CA |
2011-01-06 10:51:36 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\Software\Microsoft\Windows\CurrentVersion\Run |
2011-01-06 10:51:36 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\Certificates |
2011-01-06 10:51:37 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cloud.exe |
2011-01-06 10:51:37 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\CRLs |
2011-01-06 10:51:38 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe |
2011-01-06 10:51:38 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Policies\Microsoft\SystemCertificates\CA\CTLs |
2011-01-06 10:51:39 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\.lva\ |
2011-01-06 10:51:39 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\Disallowed |
2011-01-06 10:51:40 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\lva.file\shell\open\command |
2011-01-06 10:51:40 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\Disallowed\Certificates |
2011-01-06 10:51:41 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\lva.file\shell\open |
2011-01-06 10:51:41 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\Disallowed\CRLs |
2011-01-06 10:51:42 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\lva.file\shell\open\command\ |
2011-01-06 10:51:42 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\SystemCertificates\Disallowed\CTLs |
2011-01-06 10:51:42 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\ |
2011-01-06 10:51:43 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\Disallowed |
2011-01-06 10:51:44 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open |
2011-01-06 10:51:44 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\Disallowed\Certificates |
2011-01-06 10:51:45 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open\ |
2011-01-06 10:51:45 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\Disallowed\CRLs |
2011-01-06 10:51:47 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open\command |
2011-01-06 10:51:47 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Policies\Microsoft\SystemCertificates\Disallowed\CTLs |
2011-01-06 10:51:48 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open\command\ |
2011-01-06 10:51:48 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\Software\Microsoft\SystemCertificates\Disallowed |
2011-01-06 10:51:49 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Program Files\cloud\CloudServer.exe |
2011-01-06 10:51:49 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Microsoft\SystemCertificates\Disallowed\Certificates |
2011-01-06 10:51:50 | C:\Program Files\cloud\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\CloudServer |
2011-01-06 10:51:50 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CRLs |
2011-01-06 10:51:51 | C:\Program Files\cloud\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet001\services\eventlog\Application\CloudServer\EventMessageFile |
2011-01-06 10:51:51 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Microsoft\SystemCertificates\Disallowed\CTLs |
2011-01-06 10:51:52 | C:\Program Files\cloud\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet001\services\eventlog\Application\CloudServer\TypesSupported |
2011-01-06 10:51:52 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\Software\Policies\Microsoft\SystemCertificates\Disallowed |
2011-01-06 10:51:52 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Program Files\cloud\CloudServer.exe |
2011-01-06 10:51:53 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\Certificates |
2011-01-06 10:51:53 | C:\Program Files\cloud\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\CloudServer |
2011-01-06 10:51:54 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\CRLs |
2011-01-06 10:51:54 | C:\Program Files\cloud\CloudServer.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\LongRADrv |
2011-01-06 10:51:55 | C:\Program Files\uusee\UUSeePlayer.exe | 修改注册表项 | HKLM\SOFTWARE\Policies\Microsoft\SystemCertificates\Disallowed\CTLs |
2011-01-06 10:51:56 | C:\Program Files\cloud\CloudAssist.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:56 | C:\Program Files\cloud\CloudAssist.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:56 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudExtractExpandInfo.exe |
2011-01-06 10:51:56 | C:\Program Files\cloud\CloudServer.exe | 创建进程 | C:\Program Files\cloud\CloudAssist.exe |
2011-01-06 10:51:57 | C:\Program Files\uusee\UUSeePlayer.exe | 访问COM接口 | C:\Windows\System32\svchost.exe |
2011-01-06 10:51:57 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe |
2011-01-06 10:51:58 | C:\Program Files\cloud\CloudServer.exe | 创建进程 | C:\Program Files\cloud\CloudAssist.exe |
2011-01-06 10:51:58 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Windows\System32\taskhost.exe |
2011-01-06 10:51:59 | C:\Program Files\Common Files\uusee\UUUpgrade.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:59 | C:\Program Files\uusee\UUSeePlayer.exe | 创建进程 | C:\Program Files\Common Files\uusee\UUUpgrade.exe |
2011-01-06 10:51:59 | C:\Program Files\Common Files\uusee\UUUpgrade.exe | 在线扫描发现安全程序 | |
2011-01-06 10:51:59 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Windows\System32\dwm.exe |
2011-01-06 10:52:02 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Windows\explorer.exe |
2011-01-06 10:52:03 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\BitDefender\BitDefender 2011\pchooklaunch32.exe |
2011-01-06 10:52:03 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\Inventec\Dreye\9.0\DreyeMT\DreyeIMplugin.exe |
2011-01-06 10:52:04 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\cFosSpeed\cfosspeed.exe |
2011-01-06 10:52:05 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\GOSURF2\gsfbwsr.exe |
2011-01-06 10:52:05 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\Shadow Defender\DefenderDaemon.exe |
2011-01-06 10:52:07 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\COMODO\COMODO Internet Security\cfp.exe |
2011-01-06 10:52:08 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Users\k\Desktop\Windows.exe |
2011-01-06 10:52:13 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Users\k\Desktop\cfwg_228.exe |
2011-01-06 10:52:16 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\Internet Explorer\iexplore.exe |
2011-01-06 10:52:18 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\Funshion Online\Funshion\Funshion.exe |
2011-01-06 10:52:19 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\Funshion Online\Funshion\FunshionService.exe |
2011-01-06 10:52:21 | C:\Program Files\uusee\UUSeePlayer.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:52:23 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\115\browser\115br.exe |
2011-01-06 10:52:25 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Program Files\uusee\UUSeePlayer.exe |
2011-01-06 10:52:27 | C:\Users\k\AppData\Local\Temp\CloudTool-uusee.exe | 访问内存 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe |
2011-01-06 10:52:29 | C:\Users\k\AppData\Local\Temp\updatestat.exe | 在线扫描发现安全程序 | |
2011-01-06 10:52:29 | C:\Users\k\AppData\Local\Temp\updatestat.exe | 在线扫描发现安全程序 | |
2011-01-06 10:52:29 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Users\k\AppData\Local\Temp\updatestat.exe |
2011-01-06 10:52:31 | C:\Program Files\uusee\UUSeePlayer.exe | 访问COM接口 | Shell.Explorer.2 |
2011-01-06 10:52:32 | C:\Users\k\AppData\Local\Temp\xinhezuo-uusee-1.exe | 创建进程 | C:\Program Files\cloud\cloud.exe |
2011-01-06 10:52:34 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\ |
2011-01-06 10:52:35 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\3tmp0 |
2011-01-06 10:52:37 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open\ |
2011-01-06 10:52:38 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open\3tmp0 |
2011-01-06 10:52:40 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open\command\ |
2011-01-06 10:52:42 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\stp\shell\open\command\3tmp0 |
2011-01-06 10:52:43 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4} |
2011-01-06 10:52:45 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4} |
2011-01-06 10:52:46 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories |
2011-01-06 10:52:48 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\InprocServer32 |
2011-01-06 10:52:50 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\ProgID |
2011-01-06 10:52:52 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Programmable |
2011-01-06 10:52:53 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\TypeLib |
2011-01-06 10:52:55 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\VersionIndependentProgID |
2011-01-06 10:52:58 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7} |
2011-01-06 10:52:59 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7} |
2011-01-06 10:53:01 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\ |
2011-01-06 10:53:02 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\ProgID |
2011-01-06 10:53:05 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\ProgID\ |
2011-01-06 10:53:10 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\VersionIndependentProgID |
2011-01-06 10:53:13 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\VersionIndependentProgID\ |
2011-01-06 10:53:14 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Programmable |
2011-01-06 10:53:16 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\InprocServer32 |
2011-01-06 10:53:18 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\InprocServer32\ |
2011-01-06 10:53:20 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\InprocServer32\ThreadingModel |
2011-01-06 10:53:22 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\TypeLib |
2011-01-06 10:53:24 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\TypeLib\ |
2011-01-06 10:53:43 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4} |
2011-01-06 10:53:47 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories |
2011-01-06 10:53:48 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | \REGISTRY\\Registry\Machine\Software\Classes\CLSID\{05FF1822-FC58-4578-B979-1F5863867DD7}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4} |
2011-01-06 10:53:50 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\.lva\ |
2011-01-06 10:53:52 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\.lva\3tmp0 |
2011-01-06 10:53:54 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\lva.file\shell\open\command\ |
2011-01-06 10:53:56 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKLM\SOFTWARE\Classes\lva.file\shell\open\command\3tmp0 |
2011-01-06 10:53:58 | C:\Program Files\cloud\cloud.exe | 访问COM接口 | LocalSecurityAuthority.Backup |
2011-01-06 10:54:00 | C:\Program Files\cloud\cloud.exe | 访问COM接口 | LocalSecurityAuthority.Restore |
2011-01-06 10:54:02 | C:\Program Files\cloud\cloud.exe | DNS/RPC 客户端访问 | \RPC Control\DNSResolver |
2011-01-06 10:54:03 | C:\Program Files\cloud\cloud.exe | 访问COM接口 | Shell.Explorer.2 |
2011-01-06 10:54:11 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable |
2011-01-06 10:54:13 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer |
2011-01-06 10:54:17 | C:\Program Files\cloud\cloud.exe | 修改注册表项 | HKUS\S-1-5-21-3799767426-424094828-1398871737-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyOverride |
2011-01-06 10:54:19 | C:\Program Files\cloud\cloud.exe | 安装钩子 | C:\Program Files\cloud\cloud.exe |