UCF

Publisher Information

UCF is a software developer located in "Haeundae-gu ", Busan in Korea*. The company is a primary distributor of unwanted software. Thre are 3 additional code signing certificates issued to this publisher.
Remove UCF Malware - Powered by Reason Core Security
Authority:
Thawte, Inc.

Valid from:
12/13/2011 9:00:00 AM

Valid to:
5/22/2012 8:59:59 AM

Subject:
CN=UCF, O=UCF, L="Haeundae-gu ", S=Busan, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
7ef60f738fd75ed16633695abc394e46

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.UCF.P, PUP.UCF (M), PUP.UCF.Installer (M)
100.00%

Comodo Security
UnclassifiedMalware
64.71%

ESET NOD32
Win32/Adware.Kraddare.EK (variant), Win32/Adware.Kraddare.EB (variant), Win32/Adware.Kraddare.FV (variant), Win32/Adware.Kraddare (variant)
64.71%

Malwarebytes
Rogue.Micropop, Rogue.Agent.K, Trojan.KorAd, Adware.KorAd, Adware.Korad, Rogue.K.BoanDefender
58.82%

avast!
Win32:Adware-AZI [Adw]
58.82%

AVG
SecurityTool.V, Skodna.Generic, Skodna.SecurityTool
58.82%

The Hacker
Posible_Worm32, Trojan/Packed.Themida.aaf
52.94%

Sophos
Mal/FakeAV-OX, Generic PUA IE
52.94%

Fortinet FortiGate
Riskware/Kraddare, W32/Adware_fam.NB, W32/FakeAV.OX!tr, W32/Onescan.D!tr
52.94%

Kingsoft AntiVirus
Win32.Troj.Generic.(kcloud)
52.94%

1 / 68      (Adware)
uninst_topboan.exe (uninst_topboan by UCF)  (f59e1f2df4fcb30c3cbed86bef00fafc)

1 / 68      (Adware)
best-pcse.exe  (cf5bc32b5e63112d02a7fa430887386b)

1 / 68      (Adware)
best-pcEngine.EXE  (aa0df37bff0f1fdf44d5ae1f21b35055)

1 / 68      (Adware)
best-pc.EXE  (8149d7a7305143085ecbf99da29c5d5b)

1 / 68      (Adware)
uninst_downmanager.exe (uninst_downmanager by UCF)  (9409b8a34d506343b391d8f97529eb49)

28 / 68    (Adware)
uninst_boandefender.exe (uninst_boandefender by UCF)  (4704bf89929dd30eb506c33593eb1fe2)

4 / 68      (Adware)
processcnfg.EXE  (ef80506d0ebbde19dcfbf1efea11cf73)

25 / 68    (Adware)
checkspeedse.exe  (056dda8b2d0311bd0c8a9dcc5214eee0)

16 / 68    (Adware)
userboandm.exe (userboandm by UCF)  (df86fa95fe10adbddfc117dcea84a334)

34 / 68    (Adware)
internetspeedU.exe (internetspeed by UCF)  (84fe1895ee102a5eb1501b0ff6a08362)

31 / 68    (Adware)
uninst_systemview.exe (uninst_systemview by UCF)  (2310099cbfb16ee7e3e6e1ef5c414a83)

30 / 68    (Adware)
systemview.exe (systemview by UCF)  (bb5acbdbc2b0f1fa7bbbe937a281677d)

19 / 68    (Adware)
systemview-se.exe (systemviewServi Application by UCF)  (2f3d733514ebab86d396d855482d5360)

27 / 68    (Adware)
uninst_internetsystem.exe (uninst_internetsystem by UCF)  (be6391c3d0f352d2e695bc77b5c4396a)

17 / 68    (Adware)
internetsystem.exe (internetsystem by UCF)  (bf266cb71a686f113b673270734c6107)

19 / 68    (Adware)

23 / 68    (Adware)
uninst_Micropop.exe (uninst_Micropop by UCF)  (a998eb99ad2433f6f7d2d6bfe5be71d9)

The certificates below are also signed by UCF.

5C486B28674FE118251400311CA913D9  (Jul 03, 2013 to Aug 03, 2014)

515CF82EE849A6D6D3BE2DBC94DC062A  (May 09, 2012 to Jul 09, 2013)

0EEDB7F87E47E32E8FA0E92699DC69AD  (May 18, 2011 to May 18, 2012)

Remove UCF Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to UCF by Thawte, Inc. on December 13, 2011 with the serial number '7ef60f738fd75ed16633695abc394e46'.