# AdwCleaner v6.010 - Logfile created 31/08/2016 at 11:03:11 # Updated on 12/08/2016 by ToolsLib # Database : 2016-08-30.2 [Server] # Operating System : Windows 10 Home Single Language (X64) # Username : anhthe - DESKTOP-RED7H5V # Running from : D:\Download\Programs\adwcleaner_6.010.exe # Mode: Scan # Support : https://toolslib.net/forum ***** [ Services ] ***** Service Found: UCGuard Service Found: ComputerZ_x64 Service Found: HpSvc ***** [ Folders ] ***** Folder Found: C:\Users\anhth\AppData\Roaming\Kuaizip Folder Found: C:\Users\anhth\AppData\Roaming\KuaiZip Folder Found: C:\Users\anhth\AppData\Roaming\LuDaShi Folder Found: C:\Users\anhth\AppData\Roaming\Softlink Folder Found: C:\Program Files (x86)\GreatMaker Folder Found: C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Local\YSearchUtil ***** [ Files ] ***** File Found: C:\WINDOWS\SysNative\drivers\ucguard.sys File Found: C:\WINDOWS\SysNative\drivers\KuaiZipDrive.sys File Found: C:\WINDOWS\SysNative\drivers\KuaiZipDrive2.sys File Found: C:\Users\anhth\AppData\Local\Temp\webad.xml ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious keys found. ***** [ Shortcuts ] ***** No infected shortcut found. ***** [ Scheduled Tasks ] ***** No malicious task found. ***** [ Registry ] ***** Key Found: HKLM\SOFTWARE\Classes\UCHTML Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.CRX Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.HTM Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.HTML Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.MHT Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.SHTM Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.SHTML Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.WEBP Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.XHT Key Found: HKLM\SOFTWARE\Classes\UCHTML.AssocFile.XHTML Key Found: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK Key Found: HKLM\SOFTWARE\Classes\OCComSDK.ComSDK.1 Key Found: HKLM\SOFTWARE\Classes\ZipTool.001 Key Found: HKLM\SOFTWARE\Classes\ZipTool.002 Key Found: HKLM\SOFTWARE\Classes\ZipTool.003 Key Found: HKLM\SOFTWARE\Classes\ZipTool.004 Key Found: HKLM\SOFTWARE\Classes\ZipTool.005 Key Found: HKLM\SOFTWARE\Classes\ZipTool.006 Key Found: HKLM\SOFTWARE\Classes\ZipTool.007 Key Found: HKLM\SOFTWARE\Classes\ZipTool.008 Key Found: HKLM\SOFTWARE\Classes\ZipTool.009 Key Found: HKLM\SOFTWARE\Classes\ZipTool.01 Key Found: HKLM\SOFTWARE\Classes\ZipTool.010 Key Found: HKLM\SOFTWARE\Classes\ZipTool.011 Key Found: HKLM\SOFTWARE\Classes\ZipTool.012 Key Found: HKLM\SOFTWARE\Classes\ZipTool.013 Key Found: HKLM\SOFTWARE\Classes\ZipTool.014 Key Found: HKLM\SOFTWARE\Classes\ZipTool.015 Key Found: HKLM\SOFTWARE\Classes\ZipTool.016 Key Found: HKLM\SOFTWARE\Classes\ZipTool.017 Key Found: HKLM\SOFTWARE\Classes\ZipTool.018 Key Found: HKLM\SOFTWARE\Classes\ZipTool.019 Key Found: HKLM\SOFTWARE\Classes\ZipTool.02 Key Found: HKLM\SOFTWARE\Classes\ZipTool.020 Key Found: HKLM\SOFTWARE\Classes\ZipTool.021 Key Found: HKLM\SOFTWARE\Classes\ZipTool.022 Key Found: HKLM\SOFTWARE\Classes\ZipTool.023 Key Found: HKLM\SOFTWARE\Classes\ZipTool.024 Key Found: HKLM\SOFTWARE\Classes\ZipTool.025 Key Found: HKLM\SOFTWARE\Classes\ZipTool.026 Key Found: HKLM\SOFTWARE\Classes\ZipTool.027 Key Found: HKLM\SOFTWARE\Classes\ZipTool.028 Key Found: HKLM\SOFTWARE\Classes\ZipTool.029 Key Found: HKLM\SOFTWARE\Classes\ZipTool.03 Key Found: HKLM\SOFTWARE\Classes\ZipTool.030 Key Found: HKLM\SOFTWARE\Classes\ZipTool.031 Key Found: HKLM\SOFTWARE\Classes\ZipTool.032 Key Found: HKLM\SOFTWARE\Classes\ZipTool.033 Key Found: HKLM\SOFTWARE\Classes\ZipTool.034 Key Found: HKLM\SOFTWARE\Classes\ZipTool.035 Key Found: HKLM\SOFTWARE\Classes\ZipTool.036 Key Found: HKLM\SOFTWARE\Classes\ZipTool.037 Key Found: HKLM\SOFTWARE\Classes\ZipTool.038 Key Found: HKLM\SOFTWARE\Classes\ZipTool.039 Key Found: HKLM\SOFTWARE\Classes\ZipTool.04 Key Found: HKLM\SOFTWARE\Classes\ZipTool.040 Key Found: HKLM\SOFTWARE\Classes\ZipTool.041 Key Found: HKLM\SOFTWARE\Classes\ZipTool.042 Key Found: HKLM\SOFTWARE\Classes\ZipTool.043 Key Found: HKLM\SOFTWARE\Classes\ZipTool.044 Key Found: HKLM\SOFTWARE\Classes\ZipTool.045 Key Found: HKLM\SOFTWARE\Classes\ZipTool.046 Key Found: HKLM\SOFTWARE\Classes\ZipTool.047 Key Found: HKLM\SOFTWARE\Classes\ZipTool.048 Key Found: HKLM\SOFTWARE\Classes\ZipTool.049 Key Found: HKLM\SOFTWARE\Classes\ZipTool.05 Key Found: HKLM\SOFTWARE\Classes\ZipTool.050 Key Found: HKLM\SOFTWARE\Classes\ZipTool.051 Key Found: HKLM\SOFTWARE\Classes\ZipTool.052 Key Found: HKLM\SOFTWARE\Classes\ZipTool.053 Key Found: HKLM\SOFTWARE\Classes\ZipTool.054 Key Found: HKLM\SOFTWARE\Classes\ZipTool.055 Key Found: HKLM\SOFTWARE\Classes\ZipTool.056 Key Found: HKLM\SOFTWARE\Classes\ZipTool.057 Key Found: HKLM\SOFTWARE\Classes\ZipTool.058 Key Found: HKLM\SOFTWARE\Classes\ZipTool.059 Key Found: HKLM\SOFTWARE\Classes\ZipTool.06 Key Found: HKLM\SOFTWARE\Classes\ZipTool.060 Key Found: HKLM\SOFTWARE\Classes\ZipTool.061 Key Found: HKLM\SOFTWARE\Classes\ZipTool.062 Key Found: HKLM\SOFTWARE\Classes\ZipTool.063 Key Found: HKLM\SOFTWARE\Classes\ZipTool.064 Key Found: HKLM\SOFTWARE\Classes\ZipTool.065 Key Found: HKLM\SOFTWARE\Classes\ZipTool.066 Key Found: HKLM\SOFTWARE\Classes\ZipTool.067 Key Found: HKLM\SOFTWARE\Classes\ZipTool.068 Key Found: HKLM\SOFTWARE\Classes\ZipTool.069 Key Found: HKLM\SOFTWARE\Classes\ZipTool.07 Key Found: HKLM\SOFTWARE\Classes\ZipTool.070 Key Found: HKLM\SOFTWARE\Classes\ZipTool.071 Key Found: HKLM\SOFTWARE\Classes\ZipTool.072 Key Found: HKLM\SOFTWARE\Classes\ZipTool.073 Key Found: HKLM\SOFTWARE\Classes\ZipTool.074 Key Found: HKLM\SOFTWARE\Classes\ZipTool.075 Key Found: HKLM\SOFTWARE\Classes\ZipTool.076 Key Found: HKLM\SOFTWARE\Classes\ZipTool.077 Key Found: HKLM\SOFTWARE\Classes\ZipTool.078 Key Found: HKLM\SOFTWARE\Classes\ZipTool.079 Key Found: HKLM\SOFTWARE\Classes\ZipTool.08 Key Found: HKLM\SOFTWARE\Classes\ZipTool.080 Key Found: HKLM\SOFTWARE\Classes\ZipTool.081 Key Found: HKLM\SOFTWARE\Classes\ZipTool.082 Key Found: HKLM\SOFTWARE\Classes\ZipTool.083 Key Found: HKLM\SOFTWARE\Classes\ZipTool.084 Key Found: HKLM\SOFTWARE\Classes\ZipTool.085 Key Found: HKLM\SOFTWARE\Classes\ZipTool.086 Key Found: HKLM\SOFTWARE\Classes\ZipTool.087 Key Found: HKLM\SOFTWARE\Classes\ZipTool.088 Key Found: HKLM\SOFTWARE\Classes\ZipTool.089 Key Found: HKLM\SOFTWARE\Classes\ZipTool.09 Key Found: HKLM\SOFTWARE\Classes\ZipTool.090 Key Found: HKLM\SOFTWARE\Classes\ZipTool.091 Key Found: HKLM\SOFTWARE\Classes\ZipTool.092 Key Found: HKLM\SOFTWARE\Classes\ZipTool.093 Key Found: HKLM\SOFTWARE\Classes\ZipTool.094 Key Found: HKLM\SOFTWARE\Classes\ZipTool.095 Key Found: HKLM\SOFTWARE\Classes\ZipTool.096 Key Found: HKLM\SOFTWARE\Classes\ZipTool.097 Key Found: HKLM\SOFTWARE\Classes\ZipTool.098 Key Found: HKLM\SOFTWARE\Classes\ZipTool.099 Key Found: HKLM\SOFTWARE\Classes\ZipTool.7z Key Found: HKLM\SOFTWARE\Classes\ZipTool.arj Key Found: HKLM\SOFTWARE\Classes\ZipTool.bz2 Key Found: HKLM\SOFTWARE\Classes\ZipTool.cab Key Found: HKLM\SOFTWARE\Classes\ZipTool.gz Key Found: HKLM\SOFTWARE\Classes\ZipTool.gzip Key Found: HKLM\SOFTWARE\Classes\ZipTool.iso Key Found: HKLM\SOFTWARE\Classes\ZipTool.jar Key Found: HKLM\SOFTWARE\Classes\ZipTool.lzh Key Found: HKLM\SOFTWARE\Classes\ZipTool.rar Key Found: HKLM\SOFTWARE\Classes\ZipTool.rpm Key Found: HKLM\SOFTWARE\Classes\ZipTool.tar Key Found: HKLM\SOFTWARE\Classes\ZipTool.tbz Key Found: HKLM\SOFTWARE\Classes\ZipTool.tgz Key Found: HKLM\SOFTWARE\Classes\ZipTool.wim Key Found: HKLM\SOFTWARE\Classes\ZipTool.z Key Found: HKLM\SOFTWARE\Classes\ZipTool.zip Key Found: HKLM\SOFTWARE\Classes\ZipTool_FileAsso.Origin Key Found: [x64] HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} Key Found: [x64] HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Key Found: HKLM\SOFTWARE\Classes\CLSID\{B9D64D3B-BE75-4FA2-B94A-C4AE772A0146} Key Found: HKLM\SOFTWARE\Classes\CLSID\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Key Found: HKLM\SOFTWARE\Classes\Interface\{FA7B2795-C0C8-4A58-8672-3F8D80CC0270} Key Found: HKLM\SOFTWARE\Classes\Interface\{47A1DF02-BCE4-40C3-AE47-E3EA09A65E4A} Key Found: HKLM\SOFTWARE\Classes\TypeLib\{1112F282-7099-4624-A439-DB29D6551552} Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\MICROSOFT\OTUT Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\INSTALLPATH\STATUS Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\UCBrowser Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\UCBrowserPID Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\AutoTime Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\KuaiZip Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\SNDA Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\KuaiZipSFX Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\Maoha Key Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\Ludashi Key Found: HKCU\Software\MICROSOFT\OTUT Key Found: HKCU\Software\INSTALLPATH\STATUS Key Found: HKCU\Software\UCBrowser Key Found: HKCU\Software\UCBrowserPID Key Found: HKCU\Software\AutoTime Key Found: HKCU\Software\KuaiZip Key Found: HKCU\Software\SNDA Key Found: HKCU\Software\KuaiZipSFX Key Found: HKCU\Software\Maoha Key Found: HKCU\Software\Ludashi Key Found: HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D} Key Found: HKLM\SOFTWARE\UCBrowser Key Found: HKLM\SOFTWARE\UCBrowserPID Key Found: HKLM\SOFTWARE\Maoha Key Found: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IM Key Found: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ContentPush Key Found: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\yeabests.cc Value Found: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 [apphide] Value Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [apphide] Value Found: HKU\S-1-5-21-1483297329-2720066829-2040343632-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [msiql] Value Found: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [gplyra] Value Found: HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel [Homepage] Key Found: HKLM\SOFTWARE\Clients\StartMenuInternet\UCBrowser Key Found: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\UCBrowser.exe Value Found: HKLM\SOFTWARE\RegisteredApplications [UCBrowser] Key Found: HKLM\SOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\UCBrowser.exe Value Found: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost [kuaizipupdatesvc] Key Found: HKLM\SOFTWARE\Classes\Drive\shellex\ContextMenuHandlers\KuaiZipShlExt Key Found: HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\KuaiZipShlExt ***** [ Web browsers ] ***** No malicious Firefox based browser items found. No malicious Chromium based browser items found. ************************* C:\AdwCleaner\AdwCleaner[S0].txt - [12451 Bytes] - [31/08/2016 10:35:04] C:\AdwCleaner\AdwCleaner[S1].txt - [11543 Bytes] - [31/08/2016 11:03:11] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [11617 Bytes] ##########