Zemana AntiMalware 2.60.2.1 (draagbaar) ------------------------------------------------------- Scan Result : Compleet Scan Date : 2016/11/17 Operating System : Windows 7 64-bit Processor : 2X Celeron(R) Dual-Core CPU T3000 @ 1.80GHz BIOS Mode : Legacy CUID : 1260BB22D1AD50CBA4A334 Scan Type : Slimme scan Duration : 6m 26s Scanned Objects : 49409 Detected Objects : 16 Excluded Objects : 0 Read Level : SCSI Auto Upload : Aangeschakeld Detect All Extensions : Uitgeschakeld Scan Documents : Uitgeschakeld Domain Info : WORKGROUP,0,2 Detected Objects ------------------------------------------------------- Internet Explorer Homepage Status : Gescand Object : https://hao.360.cn/?installer MD5 : - Publisher : - Size : - Version : - Detection : Verdachte browser instelling Cleaning Action : Repareren Related Objects : Browser instellingen - Internet Explorer Homepage Draadloze netwerkverbinding Status : Gescand Object : Draadloze netwerkverbinding 188.120.239.115 MD5 : - Publisher : - Size : - Version : - Detection : Verandering van DNS-Server Cleaning Action : Repareren Related Objects : DNS server - Draadloze netwerkverbinding : 188.120.239.115 KZipShell.dll Status : Gescand Object : %userprofile%\desktop\¿ìñ¹\x64\kzipshell.dll MD5 : 816E0CD3D92E70E4D3508422FDD48E3C Publisher : 上海广乐网络科技有限公司 Size : 338368 Version : 2.8.0.4 Detection : Adware:Win32/OutBrowse!Ep Cleaning Action : Quarantaine Related Objects : Bestand - %userprofile%\desktop\¿ìñ¹\x64\kzipshell.dll UCBrowser.exe Status : Gescand Object : %programfiles%\ucbrowser\application\ucbrowser.exe MD5 : 81B1F4FAB67D9990E2FECE1B7158D3B8 Publisher : TAOBAO (CHINA) SOFTWARE CO.,LTD. Size : 1120656 Version : 5.7.16400.16 Detection : Adware:Win32/UCBrowser-DJ!Ep Cleaning Action : Quarantaine Related Objects : Bestand - %programfiles%\ucbrowser\application\ucbrowser.exe Referentie - C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\UC浏览器.lnk UCGuard.sys Status : Gescand Object : %systemroot%\system32\drivers\ucguard.sys MD5 : EB482DBC9786F1A9E3ED5AB6864794FA Publisher : TAOBAO (CHINA) SOFTWARE CO.,LTD. Size : 81792 Version : 0.1.0.85 Detection : Adware:Win32/UCBrowser-DJ!Ep Cleaning Action : Quarantaine Related Objects : Bestand - %systemroot%\system32\drivers\ucguard.sys Registervermelding - HKLM\System\CurrentControlSet\Services\UCGuard\@ = C:\Windows\System32\drivers\UCGuard.sys Registervermelding - HKLM\System\CurrentControlSet\Services\UCGuard\ImagePath = system32\DRIVERS\ucguard.sys ucdrv-x64.sys Status : Gescand Object : %systemroot%\system32\drivers:ucdrv-x64.sys MD5 : 209F5CEAAAFE601851E7B40902FC230D Publisher : TAOBAO (CHINA) SOFTWARE CO.,LTD. Size : 40424 Version : 1.0.0.1 Detection : Adware:Win32/UCBrowser-DJ!Ep Cleaning Action : Quarantaine Related Objects : Bestand - %systemroot%\system32\drivers:ucdrv-x64.sys Registervermelding - HKLM\System\CurrentControlSet\Services\ucdrv\ImagePath = \??\C:\Windows\System32\drivers:ucdrv-x64.sys ucbrowser Status : Gescand Object : NE->c:\program files (x86)\ucbrowser MD5 : - Publisher : - Size : - Version : - Detection : PUA:Win32/UCBrowser.A!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) microleaves Status : Gescand Object : NE->c:\programdata\microleaves MD5 : - Publisher : - Size : - Version : - Detection : PUA:Win32/Traffic Exchange.C!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) thunder network Status : Gescand Object : NE->c:\programdata\thunder network MD5 : - Publisher : - Size : - Version : - Detection : Adware:Win32/Thunder Network.A!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) windowsmsg Status : Gescand Object : NE->c:\programdata\windowsmsg MD5 : - Publisher : - Size : - Version : - Detection : Adware:Win32/ADClick.A!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) ucbrowser Status : Gescand Object : NE->c:\users\user\appdata\local\ucbrowser MD5 : - Publisher : - Size : - Version : - Detection : PUA:Win32/UCBrowser.C!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) kuaizip Status : Gescand Object : NE->c:\users\user\appdata\roaming\kuaizip MD5 : - Publisher : - Size : - Version : - Detection : PUA:Win32/KuaiZip.B!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) main.dat Status : Gescand Object : NE->c:\users\user\appdata\roaming\main.dat MD5 : - Publisher : - Size : - Version : - Detection : Adware:Win32/Linkury.G!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) microleaves Status : Gescand Object : NE->c:\users\user\appdata\roaming\microleaves MD5 : - Publisher : - Size : - Version : - Detection : PUA:Win32/Traffic Exchange.B!Neng Cleaning Action : Quarantaine Related Objects : (null) - (null) update_task.exe Status : Gescand Object : %programfiles%\ucbrowser\application\update_task.exe MD5 : 6121D8B1962DE0B7E59360AC772B8B3F Publisher : TAOBAO (CHINA) SOFTWARE CO.,LTD. Size : 467856 Version : 1.0.0.8 Detection : Adware:Win32/UCBrowser-DJ!Ep Cleaning Action : Quarantaine Related Objects : Bestand - %programfiles%\ucbrowser\application\update_task.exe Geplande taak - C:\Windows\System32\Tasks\UCBrowserUpdaterCore Geplande taak - C:\Windows\System32\Tasks\UCBrowserUpdater Geplande taak - UCBrowserUpdater.job Geplande taak - UCBrowserUpdaterCore.job uclauncher.exe Status : Gescand Object : %programfiles%\ucbrowser\application\uclauncher.exe MD5 : B1A18282A426213632A4DB0AD0A3EFA2 Publisher : TAOBAO (CHINA) SOFTWARE CO.,LTD. Size : 721072 Version : 1.0.0.1 Detection : Adware:Win32/UCBrowser-DJ!Ep Cleaning Action : Quarantaine Related Objects : Bestand - %programfiles%\ucbrowser\application\uclauncher.exe Geplande taak - C:\Windows\System32\Tasks\SecureUpdater ̹̹Ь̮̹̹ᇼ̰̹̹̹ќ̮Ҍ̮ሜ̰셬̼蹔̶ሼ̰ቜ̰忤̺ቼ̰̹ኜ̰ኼ̰Ҽ̮ಔ̸솴̼躌̶Ӭ̮̹�̷�̷�̷쇼̼軄̶軼̶�̷�̷ዜ̰ዼ̰┴̷쉄̼̹ጜ̰ጼ̰፜̰፼̰̹̹輴̶转̶Ԝ̮Ռ̮ռ̮̹̵�̷̮֬忼̺᎜̰ל̮辤̶̹̹远̶�̷Ꮌ̰̹Ꮬ̰،̮ؼ̮ᏼ̰途̶遌̶٬̮ڜ̮ی̮ۼ̮ᐜ̰ܬ̮ᐼ̰ݜ̮ᑜ̰̹̹還̶ᑼ̰ᒜ̰ᒼ̰̹̹ތ̮޼̮̮̮߬ࠜ̹ࡌ̮ࡼ̮̹ࢬ̮邼̶郴̶̹̹̹̹̮ࣜ�̷̹̹ऌ̮़̹̮६̮̹ᓜ̰জ̮̹怔̺̹̹̹̹ᓼ̰̹̹鄬̶酤̶ᔜ̰ᔼ̰ᕜ̰ᕼ̰ᖜ̰ᖼ̰ᗜ̰ᗼ̰ᘜ̰ᘼ̰ᙜ̰ᙼ̰᚜̰ᚼ̰ᛜ̰᛼̰̹᜜̰怬̺᜼̰᝜̰̹̹