Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o pomoc při odstranění malware a balastu.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Prosím o pomoc při odstranění malware a balastu.

#1 Příspěvek od schmako »

Zdravím, opět se obracím na místní fórum.
Mou blbostí se mi podařilo natáhnout si do počítače malware ale už se mi jej nedaří tím samým nástrojem dostat zpátky. Pomůžete prosím?

Logfile of random's system information tool 1.10 (written by random/random)
Run by Schmako at 2016-06-21 16:14:57
Microsoft Windows 10 Pro
System drive C: has 31 GB (26%) free of 121 GB
Total RAM: 8135 MB (76% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:16:23, on 21. 6. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\Uncheckit\uncheckitBsn.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files (x86)\Nobean\Application\chrome.exe
C:\Program Files\trend micro\Schmako.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nuesearch.com/?type=hp&ts=14 ... 19093A5BCF
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nuesearch.com/?type=hp&ts=14 ... 19093A5BCF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nuesearch.com/?type=hp&ts=14 ... 19093A5BCF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nuesearch.com/?type=hp&ts=14 ... 19093A5BCF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigURL = http://un-stop.info/wpad.dat?e2fb50ca00 ... 3211417336
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Google Update] "C:\Users\Schmako\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Schmako\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Schmako\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Schmako\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = C:\Users\Schmako\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O9 - Extra button: Clique para Telefonar do Lync - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Clique para Telefonar do Lync - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: cktSvc - EVANGEL TECHNOLOGY (HK) LIMITED - C:\Program Files (x86)\Uncheckit\cktSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Protect Service(GunshipP) (GunshipP) - Unknown owner - C:\ProgramData\Gunship\Gunship.exe
O23 - Service: Update Service(GunshipU) (GunshipU) - Unknown owner - C:\Program Files (x86)\Gunship\Update\GunshipUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: YAC Service (iSafeService) - Elex do Brasil Participaçoes Ltda - C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Protect Service(NobeanP) (NobeanP) - Unknown owner - C:\ProgramData\Nobean\Nobean.exe
O23 - Service: Update Service(NobeanU) (NobeanU) - Unknown owner - C:\Program Files (x86)\Nobean\Update\NobeanUpdate.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: qkseeService - Qksee Pvt Ltd. - C:\Program Files (x86)\qksee\qkseeSvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Service KMSELDI - Unknown owner - C:\Program Files\KMSpico\Service_KMS.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TDataSvr - TData.com - C:\Program Files (x86)\TData\TData.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: UncheckitSvc - EVANGEL TECHNOLOGY (HK) LIMITED - C:\Program Files (x86)\Uncheckit\UncheckitSvc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WFini WdMan Service (WdMan) - WFini LIMITED - C:\ProgramData\BwinpB\WFini.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: WinZiper service (winzipersvc) - Winziper Pvt Ltd. - C:\Program Files (x86)\WinZipper\winzipersvc.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10577 bytes

======Listing Processes======








winlogon.exe
C:\WINDOWS\system32\lsass.exe
c:\windows\system32\svchost.exe -k dcomlaunch
c:\windows\system32\svchost.exe -k rpcss
"dwm.exe"
c:\windows\system32\svchost.exe -k netsvcs
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation
c:\windows\system32\svchost.exe -k localservicenonetwork
"C:\WINDOWS\system32\nvvsvc.exe"
c:\windows\system32\svchost.exe -k localservicenetworkrestricted
c:\windows\system32\svchost.exe -k localservice
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
c:\windows\system32\svchost.exe -k networkservice
"C:\Program Files (x86)\qksee\qkseeSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
dashost.exe {9e9437f3-1df7-47ea-a128ed128c065b1c}
c:\windows\system32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k imgsvc

c:\windows\system32\svchost.exe -k appmodel
"C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe"
c:\windows\system32\svchost.exe -k networkservicenetworkrestricted
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca

"C:\Program Files\Logitech Gaming Software\LCore.exe" /minimized
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
C:\ProgramData\BwinpB\WFini.exe -svr
"fontdrvhost.exe"
"C:\Program Files (x86)\WinZipper\winzipersvc.exe"
"C:\Program Files (x86)\Uncheckit\UncheckitSvc.exe"
"C:\Program Files (x86)\Uncheckit\uncheckitBsn.exe" -start
"C:\Program Files (x86)\Uncheckit\cktSvc.exe" {92E162D7-70FD-48F7-A779-91154F8FD518}
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
c:\windows\system32\svchost.exe -k unistacksvcgroup
"C:\ProgramData\Gunship\Gunship.exe"
"C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe"
"C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe"
"C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe"
"C:\ProgramData\Nobean\Nobean.exe"

C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding

"C:\Program Files (x86)\Nobean\Application\chrome.exe"
"C:\Program Files (x86)\Nobean\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Schmako\AppData\Local\Nobean\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win32 --annotation=prod=Nobean --annotation=ver=51.19.2704.63 --handshake-handle=0x1b0
"C:\Program Files (x86)\Nobean\Application\chrome.exe" --type=gpu-process --channel="7164.0.149495764\1632494027" --supports-dual-gpus=false --gpu-driver-bug-workarounds=4,13,25,54,69 --gpu-vendor-id=0x10de --gpu-device-id=0x1380 --gpu-driver-vendor=NVIDIA --gpu-driver-version=10.18.13.5382 --mojo-platform-channel-handle=1244 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Nobean\Application\chrome.exe" --type=renderer --primordial-pipe-token=1478258C03313F3F3592ECC112700FA1 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="7164.2.823827852\1116457867" --mojo-platform-channel-handle=2612 /prefetch:1
"C:\Program Files (x86)\Nobean\Application\chrome.exe" --type=renderer --primordial-pipe-token=C1CB5FC397446B487C99D58953809A94 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="7164.13.573634393\374892423" --mojo-platform-channel-handle=2860 /prefetch:1
"C:\Program Files (x86)\Nobean\Application\chrome.exe" --type=renderer --primordial-pipe-token=D9D0E5EA98C3E588DCB0931F5CF47655 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="7164.14.639533800\776466399" --mojo-platform-channel-handle=5044 /prefetch:1
"C:\Program Files (x86)\Nobean\Application\chrome.exe" --type=ppapi --channel="7164.16.1663496470\1794147609" --ppapi-flash-args --lang=cs --device-scale-factor=1 --mojo-platform-channel-handle=5752 --ignored=" --type=renderer " /prefetch:3
"C:\Program Files (x86)\Nobean\Application\chrome.exe" --type=renderer --primordial-pipe-token=10DA04E8CA0D52BDA8BDBD6F26BA8975 --lang=cs --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --channel="7164.18.1019547899\1807269467" --mojo-platform-channel-handle=3328 /prefetch:1
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Users\Schmako\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job - C:\Users\Schmako\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\WINDOWS\tasks\DropboxUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job - C:\Users\Schmako\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job - C:\Users\Schmako\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job - C:\Users\Schmako\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-05-27 229064]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-05-27 163536]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2016-05-17 1741096]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2014-05-28 36352]
"Launch LCore"=C:\Program Files\Logitech Gaming Software\LCore.exe [2015-03-12 13318424]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2016-03-13 8843520]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2016-04-30 3077712]
"Google Update"=C:\Users\Schmako\AppData\Local\Google\Update\GoogleUpdate.exe [2015-04-25 107848]
"Dropbox Update"=C:\Users\Schmako\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-13 134512]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Uninstall C:\Users\Schmako\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"=C:\WINDOWS\system32\cmd.exe [2015-10-30 233984]

C:\Users\Schmako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Schmako\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-06-21 16:14:57 ----D---- C:\rsit
2016-06-21 16:14:57 ----D---- C:\Program Files\trend micro
2016-06-21 16:02:12 ----D---- C:\ProgramData\Nobean
2016-06-21 16:01:41 ----D---- C:\Program Files (x86)\Nobean
2016-06-21 15:58:17 ----D---- C:\WINDOWS\system32\log
2016-06-21 15:58:17 ----A---- C:\WINDOWS\system32\drivers\iSafeNetFilter.sys
2016-06-21 15:58:17 ----A---- C:\WINDOWS\system32\drivers\iSafeKrnlBoot.sys
2016-06-21 15:58:16 ----D---- C:\Users\Schmako\AppData\Roaming\Elex-tech
2016-06-21 15:58:16 ----D---- C:\Program Files (x86)\Elex-tech
2016-06-21 15:57:14 ----D---- C:\ProgramData\Uncheckit
2016-06-21 15:57:08 ----D---- C:\Program Files (x86)\Uncheckit
2016-06-21 15:56:47 ----D---- C:\ProgramData\uckt
2016-06-21 15:56:46 ----D---- C:\Users\Schmako\AppData\Roaming\Uncheckit
2016-06-21 15:56:26 ----D---- C:\ProgramData\BwinpB
2016-06-21 15:56:18 ----D---- C:\WINDOWS\SYSWOW64\_tWm
2016-06-20 23:37:24 ----SHD---- C:\Config.Msi
2016-06-20 23:27:22 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2016-06-20 23:27:22 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2016-06-20 23:27:22 ----A---- C:\WINDOWS\system32\vbscript.dll
2016-06-20 23:27:22 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-06-20 23:27:21 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-06-20 23:27:21 ----A---- C:\WINDOWS\system32\gdi32.dll
2016-06-20 23:27:20 ----A---- C:\WINDOWS\SYSWOW64\MosStorage.dll
2016-06-20 23:27:20 ----A---- C:\WINDOWS\SYSWOW64\MosHostClient.dll
2016-06-20 23:27:20 ----A---- C:\WINDOWS\SYSWOW64\MapsBtSvc.dll
2016-06-20 23:27:20 ----A---- C:\WINDOWS\SYSWOW64\JpMapControl.dll
2016-06-20 23:27:20 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-06-20 23:27:20 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-06-20 23:27:20 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-06-20 23:27:19 ----A---- C:\WINDOWS\SYSWOW64\NMAA.dll
2016-06-20 23:27:19 ----A---- C:\WINDOWS\SYSWOW64\mos.dll
2016-06-20 23:27:19 ----A---- C:\WINDOWS\SYSWOW64\MapControlCore.dll
2016-06-20 23:27:19 ----A---- C:\WINDOWS\SYSWOW64\MapConfiguration.dll
2016-06-20 23:27:19 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2016-06-20 23:27:19 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-06-20 23:27:18 ----A---- C:\WINDOWS\SYSWOW64\ActiveSyncProvider.dll
2016-06-20 23:27:18 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-06-20 23:27:18 ----A---- C:\WINDOWS\system32\mos.dll
2016-06-20 23:27:18 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-06-20 23:27:17 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2016-06-20 23:27:17 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-06-20 23:27:17 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-06-20 23:27:17 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-06-20 23:27:14 ----A---- C:\WINDOWS\system32\MosHostClient.dll
2016-06-20 23:27:14 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-06-20 23:27:14 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-06-20 23:27:14 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-06-20 23:27:13 ----A---- C:\WINDOWS\system32\tdlrecover.exe
2016-06-20 23:27:13 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-06-20 23:27:13 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-06-20 23:27:13 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-06-20 23:27:13 ----A---- C:\WINDOWS\system32\moshost.dll
2016-06-20 23:27:11 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2016-06-20 23:27:10 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-06-20 23:27:10 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-06-20 23:27:10 ----A---- C:\WINDOWS\system32\appraiser.dll
2016-06-20 23:27:09 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2016-06-20 23:27:09 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2016-06-20 23:27:09 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2016-06-20 23:27:09 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-06-20 23:27:09 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-06-20 23:27:09 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-06-20 23:27:07 ----A---- C:\WINDOWS\system32\twinui.dll
2016-06-20 23:27:07 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-06-20 23:27:07 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-06-20 23:27:05 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-06-20 23:27:04 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2016-06-20 23:27:04 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-06-20 23:27:03 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2016-06-20 23:27:03 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-06-20 23:27:03 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-06-20 23:27:02 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2016-06-20 23:27:02 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2016-06-20 23:27:01 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2016-06-20 23:27:01 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2016-06-20 23:27:01 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-06-20 23:27:01 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2016-06-20 23:27:00 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-06-20 23:26:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2016-06-20 23:26:59 ----A---- C:\WINDOWS\SYSWOW64\fontsub.dll
2016-06-20 23:26:59 ----A---- C:\WINDOWS\system32\winhttp.dll
2016-06-20 23:26:59 ----A---- C:\WINDOWS\system32\gpsvc.dll
2016-06-20 23:26:58 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2016-06-20 23:26:58 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-06-20 23:26:58 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-06-20 23:26:57 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2016-06-20 23:26:57 ----A---- C:\WINDOWS\SYSWOW64\LocationFramework.dll
2016-06-20 23:26:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2016-06-20 23:26:57 ----A---- C:\WINDOWS\system32\ole32.dll
2016-06-20 23:26:56 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-06-20 23:26:56 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-06-20 23:26:56 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-06-20 23:26:56 ----A---- C:\WINDOWS\system32\drivers\dumpsdport.sys
2016-06-20 23:26:55 ----A---- C:\WINDOWS\SYSWOW64\AppxPackaging.dll
2016-06-20 23:26:55 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-06-20 23:26:55 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-06-20 23:26:55 ----A---- C:\WINDOWS\system32\msfeeds.dll
2016-06-20 23:26:55 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2016-06-20 23:26:55 ----A---- C:\WINDOWS\system32\AppContracts.dll
2016-06-20 23:26:54 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2016-06-20 23:26:54 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-06-20 23:26:54 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-06-20 23:26:54 ----A---- C:\WINDOWS\system32\invagent.dll
2016-06-20 23:26:54 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-06-20 23:26:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Logon.dll
2016-06-20 23:26:53 ----A---- C:\WINDOWS\SYSWOW64\tdlrecover.exe
2016-06-20 23:26:53 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2016-06-20 23:26:53 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2016-06-20 23:26:53 ----A---- C:\WINDOWS\system32\gpprefcl.dll
2016-06-20 23:26:53 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-06-20 23:26:52 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2016-06-20 23:26:52 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2016-06-20 23:26:52 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-06-20 23:26:52 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-06-20 23:26:52 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-06-20 23:26:51 ----A---- C:\WINDOWS\SYSWOW64\AppContracts.dll
2016-06-20 23:26:51 ----A---- C:\WINDOWS\system32\wscsvc.dll
2016-06-20 23:26:51 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-06-20 23:26:51 ----A---- C:\WINDOWS\explorer.exe
2016-06-20 23:26:50 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2016-06-20 23:26:50 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2016-06-20 23:26:50 ----A---- C:\WINDOWS\SYSWOW64\dxgi.dll
2016-06-20 23:26:50 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-06-20 23:26:50 ----A---- C:\WINDOWS\system32\tetheringservice.dll
2016-06-20 23:26:50 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-06-20 23:26:49 ----A---- C:\WINDOWS\SYSWOW64\NetSetupEngine.dll
2016-06-20 23:26:49 ----A---- C:\WINDOWS\system32\ws2_32.dll
2016-06-20 23:26:49 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-06-20 23:26:49 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-06-20 23:26:49 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2016-06-20 23:26:48 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2016-06-20 23:26:48 ----A---- C:\WINDOWS\system32\usocore.dll
2016-06-20 23:26:48 ----A---- C:\WINDOWS\system32\SRH.dll
2016-06-20 23:26:48 ----A---- C:\WINDOWS\system32\setupapi.dll
2016-06-20 23:26:48 ----A---- C:\WINDOWS\system32\rastls.dll
2016-06-20 23:26:48 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-06-20 23:26:47 ----A---- C:\WINDOWS\SYSWOW64\ws2_32.dll
2016-06-20 23:26:47 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2016-06-20 23:26:47 ----A---- C:\WINDOWS\SYSWOW64\gpprefcl.dll
2016-06-20 23:26:47 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2016-06-20 23:26:47 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-06-20 23:26:47 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2016-06-20 23:26:47 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-06-20 23:26:47 ----A---- C:\WINDOWS\system32\BrokerLib.dll
2016-06-20 23:26:46 ----A---- C:\WINDOWS\SYSWOW64\SRHInproc.dll
2016-06-20 23:26:46 ----A---- C:\WINDOWS\SYSWOW64\LockAppHost.exe
2016-06-20 23:26:46 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-06-20 23:26:46 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2016-06-20 23:26:46 ----A---- C:\WINDOWS\system32\drivers\netbt.sys
2016-06-20 23:26:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-06-20 23:26:46 ----A---- C:\WINDOWS\system32\acmigration.dll
2016-06-20 23:26:45 ----A---- C:\WINDOWS\system32\shell32.dll
2016-06-20 23:26:45 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-06-20 23:26:45 ----A---- C:\WINDOWS\system32\omadmclient.exe
2016-06-20 23:26:45 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2016-06-20 23:26:44 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2016-06-20 23:26:44 ----A---- C:\WINDOWS\system32\wininet.dll
2016-06-20 23:26:44 ----A---- C:\WINDOWS\system32\vpnike.dll
2016-06-20 23:26:44 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2016-06-20 23:26:44 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2016-06-20 23:26:44 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2016-06-20 23:26:43 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2016-06-20 23:26:43 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2016-06-20 23:26:43 ----A---- C:\WINDOWS\SYSWOW64\mswsock.dll
2016-06-20 23:26:43 ----A---- C:\WINDOWS\system32\mswsock.dll
2016-06-20 23:26:43 ----A---- C:\WINDOWS\system32\hal.dll
2016-06-20 23:26:43 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2016-06-20 23:26:43 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-06-20 23:26:43 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-06-20 23:26:42 ----A---- C:\WINDOWS\system32\polstore.dll
2016-06-20 23:26:40 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2016-06-20 23:26:39 ----A---- C:\WINDOWS\system32\IPSECSVC.DLL
2016-06-20 23:26:38 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2016-06-20 23:26:38 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2016-06-20 23:26:38 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-06-20 23:26:38 ----A---- C:\WINDOWS\system32\gpapi.dll
2016-06-20 23:26:38 ----A---- C:\WINDOWS\system32\drivers\srvnet.sys
2016-06-20 23:26:37 ----A---- C:\WINDOWS\SYSWOW64\SyncController.dll
2016-06-20 23:26:37 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2016-06-20 23:26:37 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-06-20 23:26:37 ----A---- C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-06-20 23:26:37 ----A---- C:\WINDOWS\system32\internetmail.dll
2016-06-20 23:26:37 ----A---- C:\WINDOWS\system32\drivers\partmgr.sys
2016-06-20 23:26:37 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2016-06-20 23:26:36 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2016-06-20 23:26:36 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2016-06-20 23:26:36 ----A---- C:\WINDOWS\system32\NetworkUXBroker.exe
2016-06-20 23:26:36 ----A---- C:\WINDOWS\system32\GnssAdapter.dll
2016-06-20 23:26:36 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-06-20 23:26:36 ----A---- C:\WINDOWS\system32\devinv.dll
2016-06-20 23:26:36 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\SYSWOW64\polstore.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\SYSWOW64\newdev.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\SYSWOW64\NetSetupApi.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\SYSWOW64\gpscript.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\system32\wuauclt.exe
2016-06-20 23:26:35 ----A---- C:\WINDOWS\system32\newdev.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\system32\gpscript.dll
2016-06-20 23:26:35 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2016-06-20 23:26:34 ----A---- C:\WINDOWS\SYSWOW64\updatepolicy.dll
2016-06-20 23:26:34 ----A---- C:\WINDOWS\system32\updatepolicy.dll
2016-06-20 23:26:34 ----A---- C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-06-20 23:26:34 ----A---- C:\WINDOWS\system32\dmcertinst.exe
2016-06-20 23:26:34 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2016-06-20 23:26:34 ----A---- C:\WINDOWS\system32\cdd.dll
2016-06-20 23:26:33 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-06-20 23:26:33 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-06-20 23:26:33 ----A---- C:\WINDOWS\system32\drivers\Ndu.sys
2016-06-20 23:26:33 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2016-06-20 23:26:33 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2016-06-20 23:26:32 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2016-06-20 23:26:32 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2016-06-20 23:26:32 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2016-06-20 23:26:32 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.Management.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\SYSWOW64\FwRemoteSvr.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\system32\MusNotification.exe
2016-06-20 23:26:31 ----A---- C:\WINDOWS\system32\httpprxp.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\system32\httpprxm.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\system32\FwRemoteSvr.dll
2016-06-20 23:26:31 ----A---- C:\WINDOWS\system32\adhsvc.dll
2016-06-20 23:26:30 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2016-06-20 23:26:30 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-06-20 23:26:30 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2016-06-20 23:26:30 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-06-20 23:26:30 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-06-20 23:26:29 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2016-06-20 23:26:29 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-06-20 23:26:29 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-06-20 23:26:29 ----A---- C:\WINDOWS\system32\drivers\BTHUSB.SYS
2016-06-20 23:26:29 ----A---- C:\WINDOWS\system32\drivers\bthenum.sys
2016-06-20 23:26:29 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-06-20 23:26:29 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-06-20 23:11:48 ----D---- C:\ProgramData\Gunship
2016-06-20 23:11:29 ----D---- C:\Program Files (x86)\Gunship
2016-06-20 23:08:07 ----AD---- C:\Program Files (x86)\qksee
2016-06-13 14:12:12 ----D---- C:\Program Files (x86)\WinZipper
2016-06-13 14:12:11 ----D---- C:\Users\Schmako\AppData\Roaming\WinZiper
2016-06-13 14:12:11 ----D---- C:\Users\Schmako\AppData\Roaming\eCyber
2016-06-13 14:12:08 ----D---- C:\Users\Schmako\AppData\Roaming\qksee
2016-06-13 14:12:03 ----D---- C:\ProgramData\vwinpv
2016-06-13 14:12:02 ----D---- C:\Program Files (x86)\TData
2016-06-13 14:12:01 ----D---- C:\Program Files (x86)\TXQQBrowser
2016-06-13 14:11:58 ----D---- C:\Program Files (x86)\mqv8gbnt
2016-06-12 10:05:08 ----D---- C:\Program Files (x86)\Qiqerylugase
2016-06-12 10:05:08 ----D---- C:\Program Files (x86)\Ckupak
2016-06-12 10:05:08 ----D---- C:\Program Files (x86)\Atatuch

======List of files/folders modified in the last 1 month======

2016-06-21 16:16:22 ----D---- C:\WINDOWS\system32\drivers\etc
2016-06-21 16:15:08 ----D---- C:\WINDOWS\Prefetch
2016-06-21 16:14:57 ----RD---- C:\Program Files
2016-06-21 16:14:09 ----D---- C:\WINDOWS\Temp
2016-06-21 16:09:16 ----D---- C:\WINDOWS\system32\Tasks
2016-06-21 16:09:11 ----RD---- C:\Program Files (x86)
2016-06-21 16:02:12 ----HD---- C:\ProgramData
2016-06-21 16:02:12 ----D---- C:\WINDOWS\SysWOW64
2016-06-21 16:00:42 ----D---- C:\WINDOWS\System32
2016-06-21 16:00:42 ----D---- C:\WINDOWS\INF
2016-06-21 16:00:42 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-21 15:58:17 ----D---- C:\WINDOWS\system32\drivers
2016-06-21 15:58:02 ----D---- C:\WINDOWS\system32\sru
2016-06-21 15:57:08 ----RSD---- C:\WINDOWS\Fonts
2016-06-21 00:07:28 ----D---- C:\WINDOWS\WinSxS
2016-06-21 00:07:28 ----D---- C:\WINDOWS\system32\config
2016-06-21 00:07:24 ----D---- C:\WINDOWS\system32\DriverStore
2016-06-21 00:06:46 ----SD---- C:\WINDOWS\system32\DiagSvcs
2016-06-21 00:06:46 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2016-06-21 00:06:46 ----D---- C:\WINDOWS\system32\wbem
2016-06-21 00:06:46 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-06-21 00:06:46 ----D---- C:\WINDOWS\system32\cs-CZ
2016-06-21 00:06:45 ----D---- C:\WINDOWS\system32\migration
2016-06-21 00:06:45 ----D---- C:\WINDOWS\bcastdvr
2016-06-21 00:06:45 ----D---- C:\WINDOWS\AppPatch
2016-06-21 00:06:45 ----D---- C:\Windows
2016-06-20 23:39:27 ----SHD---- C:\WINDOWS\Installer
2016-06-20 23:39:13 ----D---- C:\WINDOWS\CbsTemp
2016-06-20 23:38:43 ----D---- C:\ProgramData\Microsoft Help
2016-06-20 23:38:08 ----RSD---- C:\WINDOWS\assembly
2016-06-20 23:37:15 ----N---- C:\WINDOWS\win.ini
2016-06-20 23:34:28 ----D---- C:\WINDOWS\system32\MRT
2016-06-20 23:32:00 ----A---- C:\WINDOWS\system32\MRT.exe
2016-06-20 23:31:38 ----D---- C:\WINDOWS\Microsoft.NET
2016-06-20 23:30:30 ----D---- C:\WINDOWS\AppReadiness
2016-06-20 23:30:29 ----HD---- C:\Program Files\WindowsApps
2016-06-20 23:17:18 ----AD---- C:\Program Files (x86)\Opera
2016-06-20 23:14:00 ----D---- C:\WINDOWS\system32\catroot2
2016-06-15 22:40:57 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-06-14 20:33:01 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2016-06-13 14:13:57 ----SD---- C:\Users\Schmako\AppData\Roaming\Microsoft
2016-06-13 00:52:45 ----D---- C:\Users\Schmako\AppData\Roaming\vlc
2016-06-12 12:13:35 ----D---- C:\Users\Schmako\AppData\Roaming\Battle.net
2016-06-12 12:13:35 ----D---- C:\ProgramData\Battle.net
2016-06-12 12:13:26 ----D---- C:\Games
2016-06-12 10:14:14 ----D---- C:\WINDOWS\Tasks
2016-06-12 10:05:15 ----SD---- C:\ProgramData\Microsoft
2016-06-12 09:34:26 ----D---- C:\WINDOWS\LiveKernelReports
2016-06-10 02:07:02 ----D---- C:\Users\Schmako\AppData\Roaming\AIMP3
2016-06-04 21:22:12 ----D---- C:\WINDOWS\system32\NDF
2016-06-04 20:09:54 ----D---- C:\Users\Schmako\AppData\Roaming\Dropbox
2016-05-28 07:55:39 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2016-05-22 21:49:24 ----D---- C:\Program Files (x86)\Steam

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2014-05-28 672104]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2016-04-23 87552]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 8192]
R1 iSafeKrnl;YAC Mini-Filter Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [2016-05-23 262344]
R1 iSafeKrnlMon;YAC Monitor Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [2016-05-23 52440]
R1 iSafeKrnlR3;YAC Ring3 Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [2016-05-23 103904]
R1 iSafeNetFilter;YAC NDIS Driver; C:\WINDOWS\system32\DRIVERS\iSafeNetFilter.sys [2016-05-19 52392]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 47616]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 78848]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2016-03-13 4781824]
R3 Ke2200;@oem13.inf,%BFTN.Service.DispName%;NDIS Miniport Driver for Killer e2201/e2202 PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\e22w8x64.sys [2014-03-27 130224]
R3 LGBusEnum;@oem1.inf,%LGBusEnum.SVCDESC%;Logitech GamePanel Virtual Bus Enumerator Driver; C:\WINDOWS\system32\drivers\LGBusEnum.sys [2009-11-24 22408]
R3 LGSHidFilt;@oem18.inf,%LGSHidFilt.SvcDesc%;Logitech Gaming KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LGSHidFilt.Sys [2013-05-30 64280]
R3 LGVirHid;@oem6.inf,%LGVirHid.SVCDESC%;Logitech Gamepanel Virtual HID Device Driver; C:\WINDOWS\system32\drivers\LGVirHid.sys [2009-11-24 16008]
R3 MBfilt;MBfilt; C:\WINDOWS\system32\drivers\MBfilt64.sys [2016-03-13 41096]
R3 MEIx64;@oem23.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [2014-09-03 126976]
R3 NETwNb64;___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 Bit; C:\WINDOWS\System32\drivers\Netwbw02.sys [2015-10-30 3485696]
R3 NVHDA;@oem24.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda64v.sys [2015-08-29 206152]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-08-29 11151488]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 104800]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 99168]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 58208]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 58720]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 34144]
S1 iSafeKrnlKit;YAC Kit Driver; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [2016-05-23 110112]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 9728]
S3 BthA2DP;@wdma_bt.inf,%BthA2DP.SvcDesc%;Bluetooth stereo; C:\WINDOWS\system32\drivers\BthA2DP.sys [2015-10-30 165376]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2016-05-28 112640]
S3 BthHFAud;@wdma_bt.inf,%DISPLAY_NAME%;Bluetooth handsfree; C:\WINDOWS\system32\DRIVERS\BthHfAud.sys [2015-10-30 36864]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\BthLEEnum.sys [2016-03-29 245760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2015-10-30 128512]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2016-05-28 954368]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2016-05-28 84992]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 37376]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-13 117248]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 50016]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 81408]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2015-10-30 165888]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2015-10-30 424800]
S3 ibtusb;@oem27.inf,%ibtusb.SVCDESC_IBT%;Intel(R) Wireless Bluetooth(R); C:\WINDOWS\system32\DRIVERS\ibtusb.sys [2015-07-14 263952]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 26624]
S3 iSafeKrnlBoot;YAC Boot Driver; C:\WINDOWS\system32\DRIVERS\iSafeKrnlBoot.sys [2016-05-23 55056]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2015-10-30 705376]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2015-10-30 76128]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2015-10-30 930656]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2016-03-29 181248]
S3 UcmCx0101;USB Connector Manager KMDF Class Extension; C:\WINDOWS\System32\Drivers\UcmCx.sys [2016-04-23 63488]
S3 UcmUcsi;@UcmUcsi.inf,%UcmUcsi.ServiceName%;USB Connector Manager UCSI Client; C:\WINDOWS\System32\drivers\UcmUcsi.sys [2015-10-30 46592]
S3 UdeCx;USB Device Emulation Support Library; C:\WINDOWS\system32\drivers\udecx.sys [2015-10-30 45056]
S3 Ufx01000;USB Function Class Extension; C:\WINDOWS\system32\drivers\ufx01000.sys [2016-05-28 258912]
S3 UfxChipidea;@ufxchipidea.inf,%UfxChipidea.ServiceName%;USB Chipidea Controller; C:\WINDOWS\System32\drivers\UfxChipidea.sys [2015-10-30 94048]
S3 ufxsynopsys;@ufxsynopsys.inf,%ufxsynopsys.ServiceName%;USB Synopsys Controller; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [2016-04-23 131424]
S3 UrsChipidea;@urschipidea.inf,%UrsChipidea.ServiceName%;Chipidea USB Role-Switch Driver; C:\WINDOWS\System32\drivers\urschipidea.sys [2015-10-30 28512]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 cktSvc;cktSvc; C:\Program Files (x86)\Uncheckit\cktSvc.exe [2016-06-20 274688]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 GunshipP;Protect Service(GunshipP); C:\ProgramData\Gunship\Gunship.exe [2016-06-17 426880]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-05-28 16232]
R2 iSafeService;YAC Service; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [2016-05-23 118048]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-09-03 154584]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2014-09-03 405976]
R2 NobeanP;Protect Service(NobeanP); C:\ProgramData\Nobean\Nobean.exe [2016-06-21 428416]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 937592]
R2 OneSyncSvc_2c5dc;Hostitel synchronizace_2c5dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 qkseeService;qkseeService; C:\Program Files (x86)\qksee\qkseeSvc.exe [2016-06-20 752376]
R2 ss_conn_service;SAMSUNG Mobile Connectivity Service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [2015-05-21 743688]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
R2 UncheckitSvc;UncheckitSvc; C:\Program Files (x86)\Uncheckit\UncheckitSvc.exe [2016-06-20 247552]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 GunshipU;Update Service(GunshipU); C:\Program Files (x86)\Gunship\Update\GunshipUpdate.exe [2016-06-17 587648]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S2 NobeanU;Update Service(NobeanU); C:\Program Files (x86)\Nobean\Update\NobeanUpdate.exe [2016-06-21 588672]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_2dbcd;Hostitel synchronizace_2dbcd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 OneSyncSvc_fa639d2;Hostitel synchronizace_fa639d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S2 Service KMSELDI;Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [2013-12-11 1050904]
S2 TDataSvr;TDataSvr; C:\Program Files (x86)\TData\TData.exe [2016-06-12 135880]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 31744]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-05-13 887256]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2c5dc;Služba zasílání zpráv_2c5dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_2dbcd;Služba zasílání zpráv_2dbcd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 MessagingService_fa639d2;Služba zasílání zpráv_fa639d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2c5dc;Data kontaktů_2c5dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_2dbcd;Data kontaktů_2dbcd; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 PimIndexMaintenanceSvc_fa639d2;Data kontaktů_fa639d2; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 1297408]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2016-04-30 835664]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 290304]
S3 UnistoreSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_2c5dc;Úložiště uživatelských dat_2c5dc; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_2dbcd;Úložiště uživatelských dat_2dbcd; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S3 UnistoreSvc_fa639d2;Úložiště uživatelských dat_fa639d2; C:\WINDOWS\System32\svchost.exe [2015-10-30 43944]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]
S4 tzautoupdate;@%SystemRoot%\system32\tzautoupdate.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 43944]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc při odstranění malware a balastu.

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#3 Příspěvek od schmako »

# AdwCleaner v5.200 - Log vytvořen 22/06/2016 v 23:11:08
# Aktualizováno 14/06/2016 by ToolsLib
# Databáze : 2016-06-22.1 [Server]
# Operační system : Windows 10 Pro (X64)
# Uživatelské jméno : Schmako - SCHMAKO-PC
# Spuštěno z : C:\Users\Schmako\Desktop\adwcleaner_5.200.exe
# Nastavení : Čištění
# Podpora : https://toolslib.net/forum

***** [ Služby ] *****

[-] Služba Smazáno : iSafeKrnl
[-] Služba Smazáno : iSafeKrnlBoot
[-] Služba Smazáno : iSafeKrnlKit
[-] Služba Smazáno : iSafeKrnlMon
[-] Služba Smazáno : iSafeKrnlR3
[-] Služba Smazáno : iSafeNetFilter
[-] Služba Smazáno : iSafeService
[-] Služba Smazáno : winzipersvc
[-] Služba Smazáno : SSFK
[-] Služba Smazáno : IhPul
[-] Služba Smazáno : WdMan
[-] Služba Smazáno : TDataSvr
[-] Služba Smazáno : qkseeService

***** [ Složky ] *****

[-] Složka Smazáno : C:\ProgramData\Uncheckit
[-] Složka Smazáno : C:\ProgramData\BwinpB
[-] Složka Smazáno : C:\ProgramData\vwinpv
[-] Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qksee
[-] Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uncheckit
[#] Složka Smazáno : C:\Program Files (x86)\Elex-tech
[-] Složka Smazáno : C:\Program Files (x86)\WinZipper
[-] Složka Smazáno : C:\Program Files (x86)\TData
[-] Složka Smazáno : C:\Program Files (x86)\qksee
[-] Složka Smazáno : C:\Program Files (x86)\Uncheckit
[-] Složka Smazáno : C:\Program Files (x86)\TXQQBrowser
[-] Složka Smazáno : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\Uncheckit
[#] Složka Smazáno : C:\Users\Schmako\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
[-] Složka Smazáno : C:\Users\Schmako\AppData\Roaming\eCyber
[#] Složka Smazáno : C:\Users\Schmako\AppData\Roaming\Elex-tech
[-] Složka Smazáno : C:\Users\Schmako\AppData\Roaming\qksee
[-] Složka Smazáno : C:\Users\Schmako\AppData\Roaming\WinZiper
[-] Složka Smazáno : C:\Users\Schmako\AppData\Roaming\Uncheckit

***** [ Soubory ] *****

[-] Soubor Smazáno : C:\WINDOWS\SysNative\log\iSafeKrnlCall.log
[-] Soubor Smazáno : C:\WINDOWS\SysNative\drivers\iSafeKrnlBoot.sys
[-] Soubor Smazáno : C:\WINDOWS\SysNative\drivers\iSafeNetFilter.sys

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupci ] *****


***** [ Naplánované úlohy ] *****

[-] Úloha Smazáno : Browser Updater Task(Core)
[-] Úloha Smazáno : UncheckitTaskMN
[-] Úloha Smazáno : UncheckitUpdateTaskC
[-] Úloha Smazáno : UncheckitUpdateTaskDB

***** [ Registry ] *****

[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinZipper
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinZipper
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\WinZipper
[-] Klíč Smazáno : HKCU\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Klíč Smazáno : HKLM\SOFTWARE\Mozilla\Firefox\{EB52F1AB-3C2B-424F-9794-833C687025CF}
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.001
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.7z
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.arj
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.bz2
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.bzip2
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.cab
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.cpio
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.deb
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.dmg
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.fat
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.gz
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.gzip
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.hfs
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.iso
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.lha
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.lzh
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.lzma
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.ntfs
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.rar
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.rpm
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.squashfs
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.swm
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.tar
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.taz
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.tbz
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.tbz2
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.tgz
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.tpz
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.txz
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.vhd
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.wim
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.xar
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.xz
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.z
[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\WinZippers.zip
[-] Klíč Smazáno : HKCU\Software\Uncheckit
[-] Klíč Smazáno : HKLM\SOFTWARE\Elex-tech
[-] Klíč Smazáno : HKLM\SOFTWARE\hdcode
[-] Klíč Smazáno : HKLM\SOFTWARE\hohosearchSoftware
[-] Klíč Smazáno : HKLM\SOFTWARE\SrpnFiles
[-] Klíč Smazáno : HKLM\SOFTWARE\qkseeSvc
[-] Klíč Smazáno : HKLM\SOFTWARE\qksee
[-] Klíč Smazáno : HKLM\SOFTWARE\{E6276374-DE18-4AA5-A365-9016A2F98A2D}
[-] Klíč Smazáno : HKLM\SOFTWARE\Uncheckit
[-] Klíč Smazáno : HKLM\SOFTWARE\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83}
[-] Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iSafe
[-] Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\qksee
[-] Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Uncheckit
[-] Klíč Smazáno : [x64] HKLM\SOFTWARE\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83}
[-] Klíč Smazáno : HKU\.DEFAULT\Software\{8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83}
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Obnoveno : HKU\S-1-5-21-4032979599-1777459474-1242859118-1001\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Obnoveno : HKU\S-1-5-21-4032979599-1777459474-1242859118-1001\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Obnoveno : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
[-] Data Obnoveno : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope]
[-] Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\winzipersvc
[-] Klíč Smazáno : HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\qkseeService

***** [ Prohlížeče ] *****


*************************

:: "Tracing" klíče smazány
:: Nastavení Winsock vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [7658 bytů] - [22/06/2016 23:11:08]
C:\AdwCleaner\AdwCleaner[S1].txt - [8731 bytů] - [22/06/2016 23:10:19]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [7804 bytů] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc při odstranění malware a balastu.

#4 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#5 Příspěvek od schmako »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2016 01
Ran by Schmako (administrator) on SCHMAKO-PC (25-06-2016 22:12:33)
Running from C:\Users\Schmako\Desktop
Loaded Profiles: Schmako (Available Profiles: Schmako)
Platform: Windows 10 Pro Version 1511 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: "C:\Program Files (x86)\Nobean\Application\chrome.exe" "%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
() C:\ProgramData\Gunship\Gunship.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\ProgramData\Nobean\Nobean.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera_crashreporter.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Opera Software) C:\Program Files (x86)\Opera\38.0.2220.31\opera.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.424_none_767fbf7a263fc7d3\TiWorker.exe
(forum.viry.cz) C:\Users\Schmako\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [13318424 2015-03-12] (Logitech Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8843520 2016-03-13] (Realtek Semiconductor)
HKU\S-1-5-21-4032979599-1777459474-1242859118-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-4032979599-1777459474-1242859118-1001\...\Run: [Google Update] => C:\Users\Schmako\AppData\Local\Google\Update\GoogleUpdate.exe [107848 2015-04-25] (Google Inc.)
HKU\S-1-5-21-4032979599-1777459474-1242859118-1001\...\Run: [Dropbox Update] => C:\Users\Schmako\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Schmako\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-06-13] (Dropbox, Inc.)
Startup: C:\Users\Schmako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-03-19]
ShortcutTarget: Dropbox.lnk -> C:\Users\Schmako\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

AutoConfigURL: [S-1-5-21-4032979599-1777459474-1242859118-1001] => hxxp://un-stop.info/wpad.dat?e2fb50ca00bd9b39a5cb147241470c3211417336
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{32d501db-7d14-43ea-b6ed-7aa2f4f63e6a}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e796df4b-ee8c-4ec6-8f74-b283c69f903c}: [DhcpNameServer] 192.168.1.1
ManualProxies: 0hxxp://un-stop.info/wpad.dat?e2fb50ca00bd9b39a5cb147241470c3211417336

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-05-27] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-05-27] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-05-17] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2016-05-17] (Microsoft Corporation)

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-4032979599-1777459474-1242859118-1001 -> hxxp://www.nuesearch.com/?type=hp&ts=146651738 ... 19093A5BCF

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2013-12-10] (VideoLAN)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin HKU\S-1-5-21-4032979599-1777459474-1242859118-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Schmako\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin HKU\S-1-5-21-4032979599-1777459474-1242859118-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Schmako\AppData\Local\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation)

Chrome:
=======
CHR HomePage: ChromeDefaultData -> hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqBHQlC3QkBE..&v=20160611&uid=FBB248CCCB8DFE02A52AB72D05906C99&ptid=epf1&mode=loadm
CHR StartupUrls: ChromeDefaultData -> "hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqBHQlC3QkBE..&v=20160611&uid=FBB248CCCB8DFE02A52AB72D05906C99&ptid=epf1&mode=loadm"
CHR Profile: C:\Users\Schmako\AppData\Local\Google\Chrome\User Data\ChromeDefaultData
CHR Extension: (Adblock na Youtube™) - C:\Users\Schmako\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2016-03-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Schmako\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]

Opera:
=======
OPR Session Restore: -> is enabled.

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 GunshipP; C:\ProgramData\Gunship\Gunship.exe [426880 2016-06-17] ()
S2 GunshipU; C:\Program Files (x86)\Gunship\Update\GunshipUpdate.exe [587648 2016-06-17] ()
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation)
R2 iSafeService; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [118048 2016-05-23] (Elex do Brasil Participações Ltda)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation)
R2 NobeanP; C:\ProgramData\Nobean\Nobean.exe [428416 2016-06-21] ()
S2 NobeanU; C:\Program Files (x86)\Nobean\Update\NobeanUpdate.exe [588672 2016-06-21] ()
S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [1050904 2013-12-11] () [File not signed]
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2015-05-21] (DEVGURU Co., LTD.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
S2 cktSvc; "C:\Program Files (x86)\Uncheckit\cktSvc.exe" {92E162D7-70FD-48F7-A779-91154F8FD518} [X]
S2 UncheckitSvc; C:\Program Files (x86)\Uncheckit\UncheckitSvc.exe [X]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [165376 2015-10-30] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\system32\DRIVERS\BthHfAud.sys [36864 2015-10-30] (Microsoft Corporation)
S3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation)
R1 iSafeKrnl; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [262344 2016-05-23] (Elex do Brasil Participações Ltda)
S1 iSafeKrnlKit; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [110112 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlMon; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [52440 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [103904 2016-05-23] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Windows\System32\DRIVERS\iSafeNetFilter.sys [52392 2016-05-19] (Elex do Brasil Participações Ltda)
R3 Ke2200; C:\Windows\System32\drivers\e22w8x64.sys [130224 2014-03-27] (Qualcomm Atheros, Inc.)
R3 LGSHidFilt; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3485696 2015-10-30] (Intel Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-25 22:12 - 2016-06-25 22:12 - 00014951 _____ C:\Users\Schmako\Desktop\FRST.txt
2016-06-25 22:12 - 2016-06-25 22:12 - 00000000 ____D C:\FRST
2016-06-25 22:10 - 2016-06-25 22:10 - 02387456 _____ (Farbar) C:\Users\Schmako\Desktop\FRST64.exe
2016-06-25 22:10 - 2016-06-25 22:10 - 00112640 _____ (forum.viry.cz) C:\Users\Schmako\Desktop\FRSTLauncher.exe
2016-06-25 22:10 - 2016-06-25 22:10 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-06-23 00:33 - 2016-06-23 00:47 - 18977402 _____ C:\Users\Schmako\Documents\dcim.zip
2016-06-22 23:16 - 2016-06-22 23:16 - 00003954 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1466630192
2016-06-22 23:16 - 2016-06-22 23:16 - 00001208 _____ C:\Users\Public\Desktop\Opera.lnk
2016-06-22 23:16 - 2016-06-22 23:16 - 00001208 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2016-06-22 23:12 - 2016-06-22 23:12 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\Elex-tech
2016-06-22 23:12 - 2016-05-19 08:42 - 00052392 _____ (Elex do Brasil Participações Ltda) C:\WINDOWS\system32\Drivers\iSafeNetFilter.sys
2016-06-22 23:10 - 2016-06-22 23:11 - 00000000 ____D C:\AdwCleaner
2016-06-22 23:09 - 2016-06-22 23:09 - 03703360 _____ C:\Users\Schmako\Desktop\adwcleaner_5.200.exe
2016-06-21 16:14 - 2016-06-21 16:16 - 00000000 ____D C:\rsit
2016-06-21 16:14 - 2016-06-21 16:16 - 00000000 ____D C:\Program Files\trend micro
2016-06-21 16:14 - 2016-06-21 16:14 - 01222144 _____ C:\Users\Schmako\Downloads\RSITx64.exe
2016-06-21 16:02 - 2016-06-21 16:02 - 00000000 ____D C:\Users\Schmako\AppData\Local\Nobean
2016-06-21 16:02 - 2016-06-21 16:02 - 00000000 ____D C:\ProgramData\Nobean
2016-06-21 16:01 - 2016-06-21 16:01 - 00003664 _____ C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineCore
2016-06-21 16:01 - 2016-06-21 16:01 - 00003570 _____ C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineUA
2016-06-21 16:01 - 2016-06-21 16:01 - 00000000 ____D C:\Program Files (x86)\Nobean
2016-06-21 15:58 - 2016-06-22 23:11 - 00000000 ____D C:\WINDOWS\system32\log
2016-06-21 15:58 - 2016-06-21 15:58 - 00000000 ____D C:\Program Files (x86)\Elex-tech
2016-06-21 15:56 - 2016-06-21 15:57 - 00000000 ____D C:\ProgramData\uckt
2016-06-21 15:56 - 2016-06-21 15:56 - 00000362 _____ C:\WINDOWS\SysWOW64\data.bin
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_39546.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_38281.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_37796.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_36609.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_36312.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_32593.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_32296.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_31453.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_31171.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_30843.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_30609.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\EN_24187.html
2016-06-21 15:56 - 2016-06-21 15:56 - 00000072 _____ C:\WINDOWS\SysWOW64\en_23796.html
2016-06-21 00:11 - 2016-06-21 00:11 - 00000000 ____D C:\Users\Public\Documents\chrome
2016-06-20 23:27 - 2016-05-28 08:13 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-06-20 23:27 - 2016-05-28 08:13 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-06-20 23:27 - 2016-05-28 07:07 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-06-20 23:27 - 2016-05-28 07:07 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-06-20 23:27 - 2016-05-28 06:58 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-06-20 23:27 - 2016-05-28 06:57 - 01594416 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-06-20 23:27 - 2016-05-28 06:57 - 01372312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-06-20 23:27 - 2016-05-28 06:57 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-06-20 23:27 - 2016-05-28 06:57 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-06-20 23:27 - 2016-05-28 06:57 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-06-20 23:27 - 2016-05-28 06:35 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-06-20 23:27 - 2016-05-28 06:35 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-06-20 23:27 - 2016-05-28 06:31 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-06-20 23:27 - 2016-05-28 06:29 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-06-20 23:27 - 2016-05-28 06:29 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-06-20 23:27 - 2016-05-28 06:28 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-06-20 23:27 - 2016-05-28 06:27 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-06-20 23:27 - 2016-05-28 06:27 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-06-20 23:27 - 2016-05-28 06:26 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-06-20 23:27 - 2016-05-28 06:26 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-06-20 23:27 - 2016-05-28 06:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-06-20 23:27 - 2016-05-28 06:24 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-06-20 23:27 - 2016-05-28 06:22 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-06-20 23:27 - 2016-05-28 06:22 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-06-20 23:27 - 2016-05-28 06:22 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-06-20 23:27 - 2016-05-28 06:19 - 24605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-06-20 23:27 - 2016-05-28 06:19 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-06-20 23:27 - 2016-05-28 06:18 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-06-20 23:27 - 2016-05-28 06:18 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-06-20 23:27 - 2016-05-28 06:18 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-06-20 23:27 - 2016-05-28 06:17 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-06-20 23:27 - 2016-05-28 06:17 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-06-20 23:27 - 2016-05-28 06:16 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-06-20 23:27 - 2016-05-28 06:15 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-06-20 23:27 - 2016-05-28 06:15 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-06-20 23:27 - 2016-05-28 06:15 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-06-20 23:27 - 2016-05-28 06:14 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-06-20 23:27 - 2016-05-28 06:14 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-06-20 23:27 - 2016-05-28 06:14 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-06-20 23:27 - 2016-05-28 06:14 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-06-20 23:27 - 2016-05-28 06:13 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-06-20 23:27 - 2016-05-28 06:12 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-06-20 23:27 - 2016-05-28 06:11 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-06-20 23:27 - 2016-05-28 06:11 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-06-20 23:27 - 2016-05-28 06:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-06-20 23:27 - 2016-05-28 06:08 - 13385728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-06-20 23:27 - 2016-05-28 06:08 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-06-20 23:27 - 2016-05-28 06:06 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-06-20 23:27 - 2016-05-28 06:06 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-06-20 23:27 - 2016-05-28 06:05 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-06-20 23:27 - 2016-05-28 06:04 - 06973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-06-20 23:27 - 2016-05-28 06:03 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-06-20 23:27 - 2016-05-28 06:03 - 02609664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-06-20 23:27 - 2016-05-28 06:02 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-06-20 23:27 - 2016-05-28 06:00 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-06-20 23:27 - 2016-05-28 06:00 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-06-20 23:27 - 2016-05-28 06:00 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-06-20 23:27 - 2016-05-28 06:00 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-06-20 23:27 - 2016-05-28 06:00 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-06-20 23:27 - 2016-05-28 05:58 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-06-20 23:27 - 2016-05-28 05:58 - 04896256 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-06-20 23:27 - 2016-05-28 05:58 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-06-20 23:26 - 2016-05-28 08:13 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-06-20 23:26 - 2016-05-28 08:13 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-06-20 23:26 - 2016-05-28 08:13 - 00290496 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-06-20 23:26 - 2016-05-28 08:13 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-06-20 23:26 - 2016-05-28 07:25 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2016-06-20 23:26 - 2016-05-28 07:23 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2016-06-20 23:26 - 2016-05-28 07:23 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2016-06-20 23:26 - 2016-05-28 07:22 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-06-20 23:26 - 2016-05-28 07:22 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-06-20 23:26 - 2016-05-28 07:22 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-06-20 23:26 - 2016-05-28 07:22 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-06-20 23:26 - 2016-05-28 07:22 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-06-20 23:26 - 2016-05-28 07:20 - 00430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-06-20 23:26 - 2016-05-28 07:18 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2016-06-20 23:26 - 2016-05-28 07:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-06-20 23:26 - 2016-05-28 07:09 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-06-20 23:26 - 2016-05-28 07:09 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe
2016-06-20 23:26 - 2016-05-28 07:09 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-06-20 23:26 - 2016-05-28 07:08 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-06-20 23:26 - 2016-05-28 07:08 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-06-20 23:26 - 2016-05-28 07:08 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-06-20 23:26 - 2016-05-28 07:07 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-06-20 23:26 - 2016-05-28 07:07 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-06-20 23:26 - 2016-05-28 07:07 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-06-20 23:26 - 2016-05-28 07:07 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-06-20 23:26 - 2016-05-28 07:07 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-06-20 23:26 - 2016-05-28 07:06 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-06-20 23:26 - 2016-05-28 07:06 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-06-20 23:26 - 2016-05-28 07:06 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-06-20 23:26 - 2016-05-28 07:06 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-06-20 23:26 - 2016-05-28 07:06 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-06-20 23:26 - 2016-05-28 07:05 - 04515264 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-06-20 23:26 - 2016-05-28 07:04 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-06-20 23:26 - 2016-05-28 07:04 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-06-20 23:26 - 2016-05-28 07:04 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-06-20 23:26 - 2016-05-28 07:04 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-06-20 23:26 - 2016-05-28 07:04 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-06-20 23:26 - 2016-05-28 07:04 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2016-06-20 23:26 - 2016-05-28 07:03 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2016-06-20 23:26 - 2016-05-28 06:58 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-06-20 23:26 - 2016-05-28 06:57 - 02548944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-06-20 23:26 - 2016-05-28 06:57 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-06-20 23:26 - 2016-05-28 06:57 - 00649792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-06-20 23:26 - 2016-05-28 06:57 - 00577376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-06-20 23:26 - 2016-05-28 06:57 - 00521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-06-20 23:26 - 2016-05-28 06:35 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys
2016-06-20 23:26 - 2016-05-28 06:31 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe
2016-06-20 23:26 - 2016-05-28 06:31 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-06-20 23:26 - 2016-05-28 06:29 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-06-20 23:26 - 2016-05-28 06:29 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-06-20 23:26 - 2016-05-28 06:28 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-06-20 23:26 - 2016-05-28 06:28 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll
2016-06-20 23:26 - 2016-05-28 06:26 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-06-20 23:26 - 2016-05-28 06:26 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-06-20 23:26 - 2016-05-28 06:26 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-06-20 23:26 - 2016-05-28 06:25 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-06-20 23:26 - 2016-05-28 06:25 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll
2016-06-20 23:26 - 2016-05-28 06:24 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-06-20 23:26 - 2016-05-28 06:24 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys
2016-06-20 23:26 - 2016-05-28 06:24 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-06-20 23:26 - 2016-05-28 06:24 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-06-20 23:26 - 2016-05-28 06:24 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-06-20 23:26 - 2016-05-28 06:24 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2016-06-20 23:26 - 2016-05-28 06:24 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll
2016-06-20 23:26 - 2016-05-28 06:23 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-06-20 23:26 - 2016-05-28 06:23 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2016-06-20 23:26 - 2016-05-28 06:22 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-06-20 23:26 - 2016-05-28 06:22 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-06-20 23:26 - 2016-05-28 06:22 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2016-06-20 23:26 - 2016-05-28 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-06-20 23:26 - 2016-05-28 06:22 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-06-20 23:26 - 2016-05-28 06:22 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2016-06-20 23:26 - 2016-05-28 06:21 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-06-20 23:26 - 2016-05-28 06:21 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll
2016-06-20 23:26 - 2016-05-28 06:21 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-06-20 23:26 - 2016-05-28 06:21 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-06-20 23:26 - 2016-05-28 06:21 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpscript.dll
2016-06-20 23:26 - 2016-05-28 06:20 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-06-20 23:26 - 2016-05-28 06:20 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2016-06-20 23:26 - 2016-05-28 06:20 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll
2016-06-20 23:26 - 2016-05-28 06:20 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-06-20 23:26 - 2016-05-28 06:20 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2016-06-20 23:26 - 2016-05-28 06:20 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-06-20 23:26 - 2016-05-28 06:20 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2016-06-20 23:26 - 2016-05-28 06:19 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-06-20 23:26 - 2016-05-28 06:19 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-06-20 23:26 - 2016-05-28 06:19 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2016-06-20 23:26 - 2016-05-28 06:19 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2016-06-20 23:26 - 2016-05-28 06:18 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2016-06-20 23:26 - 2016-05-28 06:18 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-06-20 23:26 - 2016-05-28 06:18 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-06-20 23:26 - 2016-05-28 06:18 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL
2016-06-20 23:26 - 2016-05-28 06:18 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-06-20 23:26 - 2016-05-28 06:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-06-20 23:26 - 2016-05-28 06:17 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-06-20 23:26 - 2016-05-28 06:17 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2016-06-20 23:26 - 2016-05-28 06:17 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-06-20 23:26 - 2016-05-28 06:17 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-06-20 23:26 - 2016-05-28 06:17 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-06-20 23:26 - 2016-05-28 06:17 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-06-20 23:26 - 2016-05-28 06:16 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-06-20 23:26 - 2016-05-28 06:16 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-06-20 23:26 - 2016-05-28 06:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-06-20 23:26 - 2016-05-28 06:16 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-06-20 23:26 - 2016-05-28 06:16 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-06-20 23:26 - 2016-05-28 06:16 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll
2016-06-20 23:26 - 2016-05-28 06:16 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2016-06-20 23:26 - 2016-05-28 06:15 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-06-20 23:26 - 2016-05-28 06:15 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2016-06-20 23:26 - 2016-05-28 06:15 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-06-20 23:26 - 2016-05-28 06:15 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2016-06-20 23:26 - 2016-05-28 06:15 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-06-20 23:26 - 2016-05-28 06:14 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-06-20 23:26 - 2016-05-28 06:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-06-20 23:26 - 2016-05-28 06:14 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-06-20 23:26 - 2016-05-28 06:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-06-20 23:26 - 2016-05-28 06:14 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-06-20 23:26 - 2016-05-28 06:13 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-06-20 23:26 - 2016-05-28 06:13 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-06-20 23:26 - 2016-05-28 06:13 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-06-20 23:26 - 2016-05-28 06:13 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-06-20 23:26 - 2016-05-28 06:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-06-20 23:26 - 2016-05-28 06:13 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2016-06-20 23:26 - 2016-05-28 06:13 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-06-20 23:26 - 2016-05-28 06:12 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-06-20 23:26 - 2016-05-28 06:12 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2016-06-20 23:26 - 2016-05-28 06:11 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-06-20 23:26 - 2016-05-28 06:11 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-06-20 23:26 - 2016-05-28 06:11 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-06-20 23:26 - 2016-05-28 06:11 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-06-20 23:26 - 2016-05-28 06:11 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-06-20 23:26 - 2016-05-28 06:09 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-06-20 23:26 - 2016-05-28 06:06 - 01339904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-06-20 23:26 - 2016-05-28 06:05 - 03664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-06-20 23:26 - 2016-05-28 06:05 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-06-20 23:26 - 2016-05-28 06:05 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-06-20 23:26 - 2016-05-28 06:04 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-06-20 23:26 - 2016-05-28 06:04 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-06-20 23:26 - 2016-05-28 06:03 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-06-20 23:26 - 2016-05-28 06:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFramework.dll
2016-06-20 23:26 - 2016-05-28 06:03 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2016-06-20 23:26 - 2016-05-28 06:03 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-06-20 23:26 - 2016-05-28 06:02 - 03590144 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-06-20 23:26 - 2016-05-28 06:02 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-06-20 23:26 - 2016-05-28 06:02 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-06-20 23:26 - 2016-05-28 06:01 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-06-20 23:26 - 2016-05-28 06:01 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-06-20 23:26 - 2016-05-28 06:01 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-06-20 23:26 - 2016-05-28 06:01 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-06-20 23:26 - 2016-05-28 06:00 - 02230272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-06-20 23:26 - 2016-05-28 06:00 - 01730560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-06-20 23:26 - 2016-05-28 06:00 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-06-20 23:26 - 2016-05-28 06:00 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-06-20 23:26 - 2016-05-28 06:00 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-06-20 23:26 - 2016-05-28 05:59 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-06-20 23:26 - 2016-05-28 05:58 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-06-20 23:26 - 2016-05-28 05:58 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-06-20 23:26 - 2016-05-28 05:57 - 02281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-06-20 23:26 - 2016-05-28 05:55 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-06-20 23:26 - 2016-05-28 05:53 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-06-20 23:11 - 2016-06-20 23:11 - 00003676 _____ C:\WINDOWS\System32\Tasks\GunshipUpdateTaskMachineCore
2016-06-20 23:11 - 2016-06-20 23:11 - 00003582 _____ C:\WINDOWS\System32\Tasks\GunshipUpdateTaskMachineUA
2016-06-20 23:11 - 2016-06-20 23:11 - 00000000 ____D C:\Users\Schmako\AppData\Local\Gunship
2016-06-20 23:11 - 2016-06-20 23:11 - 00000000 ____D C:\ProgramData\Gunship
2016-06-20 23:11 - 2016-06-20 23:11 - 00000000 ____D C:\Program Files (x86)\Gunship
2016-06-20 23:08 - 2016-06-25 22:11 - 00000000 _____ C:\Users\Public\Documents\report.dat
2016-06-13 14:12 - 2016-06-13 14:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2016-06-13 14:11 - 2016-06-13 14:11 - 00000000 ____D C:\Program Files (x86)\mqv8gbnt
2016-06-12 10:05 - 2016-06-20 23:38 - 00000000 ____D C:\Program Files (x86)\Qiqerylugase
2016-06-12 10:05 - 2016-06-13 14:12 - 00000000 ____D C:\Program Files (x86)\Ckupak
2016-06-12 10:05 - 2016-06-12 12:15 - 00000000 ____D C:\Program Files (x86)\Atatuch
2016-06-08 16:32 - 2016-06-08 16:32 - 00000000 ____D C:\Users\Schmako\Desktop\K

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-06-25 22:12 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-06-25 22:12 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-06-25 22:10 - 2015-06-13 17:58 - 00000948 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job
2016-06-25 22:10 - 2015-04-17 16:30 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\Dropbox
2016-06-25 22:09 - 2015-12-13 22:38 - 01774890 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-25 22:09 - 2015-10-30 20:31 - 00751068 _____ C:\WINDOWS\system32\perfh005.dat
2016-06-25 22:09 - 2015-10-30 20:31 - 00151190 _____ C:\WINDOWS\system32\perfc005.dat
2016-06-25 22:09 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-06-23 04:33 - 2015-04-25 18:44 - 00000992 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job
2016-06-23 01:13 - 2015-04-15 23:33 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\vlc
2016-06-23 00:17 - 2015-12-13 22:32 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-06-22 23:16 - 2015-04-15 23:20 - 00000000 ____D C:\Program Files (x86)\Opera
2016-06-22 23:12 - 2015-12-13 22:27 - 00281760 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-06-22 23:12 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-06-22 10:15 - 2015-06-23 18:46 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\TS3Client
2016-06-22 10:11 - 2015-04-16 07:24 - 00002298 _____ C:\Users\Schmako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-06-22 09:04 - 2015-04-17 17:00 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\XnView
2016-06-22 08:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-06-21 16:31 - 2015-12-13 22:29 - 00000000 ____D C:\Users\Schmako
2016-06-21 00:07 - 2015-12-13 22:35 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-06-21 00:06 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-06-21 00:06 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-06-21 00:06 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-06-20 23:39 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-06-20 23:38 - 2015-04-16 14:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-06-20 23:37 - 2013-08-22 15:25 - 00000167 ____N C:\WINDOWS\win.ini
2016-06-20 23:34 - 2015-04-15 23:17 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-06-20 23:32 - 2015-04-15 23:17 - 142482544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-06-15 22:40 - 2015-04-15 23:16 - 00484008 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-06-14 20:33 - 2015-10-30 09:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-06-14 20:33 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-06-13 17:33 - 2015-04-25 18:44 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job
2016-06-12 21:08 - 2015-06-13 17:58 - 00000896 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job
2016-06-12 12:13 - 2015-09-19 15:49 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\Battle.net
2016-06-12 12:13 - 2015-09-19 15:48 - 00000000 ____D C:\ProgramData\Battle.net
2016-06-12 12:13 - 2015-04-15 23:07 - 00000000 ____D C:\Games
2016-06-12 12:13 - 2015-04-15 21:33 - 00000000 ____D C:\Users\Schmako\AppData\Local\Packages
2016-06-12 09:34 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-06-10 02:07 - 2015-04-15 23:39 - 00000000 ____D C:\Users\Schmako\AppData\Roaming\AIMP3
2016-06-04 21:22 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-05-28 07:55 - 2015-12-13 22:30 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll

==================== Files in the root of some directories =======

2015-04-17 18:46 - 2015-04-17 18:46 - 0007629 _____ () C:\Users\Schmako\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
C:\Users\Schmako\AppData\Local\Temp\bFhz9moTaL.exe
C:\Users\Schmako\AppData\Local\Temp\Gw2f2Ex18d.exe
C:\Users\Schmako\AppData\Local\Temp\libeay32.dll
C:\Users\Schmako\AppData\Local\Temp\msvcr120.dll
C:\Users\Schmako\AppData\Local\Temp\sdf458E.exe
C:\Users\Schmako\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-06-20 23:31

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: () (Fixed) (Total:118.29 GB) (Free:30.54 GB) NTFS

Available physical RAM: 6068.27 MB
Total physical RAM: 8134.7 MB
Percentage of memory in use: 25%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 119.2 GB) (Disk ID: 07D65B80)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job => C:\Users\Schmako\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job => C:\Users\Schmako\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job => C:\Users\Schmako\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job => C:\Users\Schmako\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Schmako\Desktop" je 61 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]


==================== End Of Log ==============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc při odstranění malware a balastu.

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
Edge HomeButtonPage: HKU\S-1-5-21-4032979599-1777459474-1242859118-1001 -> hxxp://www.nuesearch.com/?type=hp&ts=14 ... 19093A5BCF
CHR HomePage: ChromeDefaultData -> hxxp://d2ucfwpxlh3zh3.cloudfront.net/?t ... mode=loadm
C:\Program Files (x86)\Uncheckit
S2 UncheckitSvc; C:\Program Files (x86)\Uncheckit\UncheckitSvc.exe [X]
C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineCore
C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineUA
C:\Program Files (x86)\mqv8gbnt
C:\Program Files (x86)\Qiqerylugase
C:\Program Files (x86)\Ckupak
C:\Program Files (x86)\Atatuch
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job
C:\Users\Schmako\AppData\Local\Temp
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#7 Příspěvek od schmako »

Fix result of Farbar Recovery Scan Tool (x64) Version: 26-06-2016 01
Ran by Schmako (2016-06-26 16:18:52) Run:1
Running from C:\Users\Schmako\Desktop
Loaded Profiles: Schmako (Available Profiles: Schmako)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
Edge HomeButtonPage: HKU\S-1-5-21-4032979599-1777459474-1242859118-1001 -> hxxp://www.nuesearch.com/?type=hp&ts=14 ... 19093A5BCF
CHR HomePage: ChromeDefaultData -> hxxp://d2ucfwpxlh3zh3.cloudfront.net/?t ... mode=loadm
C:\Program Files (x86)\Uncheckit
S2 UncheckitSvc; C:\Program Files (x86)\Uncheckit\UncheckitSvc.exe [X]
C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineCore
C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineUA
C:\Program Files (x86)\mqv8gbnt
C:\Program Files (x86)\Qiqerylugase
C:\Program Files (x86)\Ckupak
C:\Program Files (x86)\Atatuch
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job
C:\Users\Schmako\AppData\Local\Temp
End
*****************

HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKU\S-1-5-21-4032979599-1777459474-1242859118-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\Main\\HomeButtonPage => value removed successfully
Chrome HomePage => removed successfully
"C:\Program Files (x86)\Uncheckit" => not found.
UncheckitSvc => service removed successfully
C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineCore => moved successfully
C:\WINDOWS\System32\Tasks\NobeanUpdateTaskMachineUA => moved successfully
C:\Program Files (x86)\mqv8gbnt => moved successfully
C:\Program Files (x86)\Qiqerylugase => moved successfully
C:\Program Files (x86)\Ckupak => moved successfully
C:\Program Files (x86)\Atatuch => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001UA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4032979599-1777459474-1242859118-1001Core.job => moved successfully

"C:\Users\Schmako\AppData\Local\Temp" folder move:

Could not move "C:\Users\Schmako\AppData\Local\Temp" => Scheduled to move on reboot.


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2016-06-26 16:19:26)

C:\Users\Schmako\AppData\Local\Temp => moved successfully

==== End of Fixlog 16:19:27 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc při odstranění malware a balastu.

#8 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#9 Příspěvek od schmako »

Díky!
Změny by byly:
nejde mi nastavit výchozí prohlížeč
v chrome jsem odstranil otevírání hohosearch jako výchozí stránky
jinak už se mi neotevírají random hrůzy stránky při otevírání prohlížečů ( chrome + opera )
v chrome jsem ještě odstranil nějakého user1 uživatele

Jak zjistím, zda v počítači mám ještě nějakou havěť ?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc při odstranění malware a balastu.

#10 Příspěvek od Rudy »

Ledaže by tam bylo něco skrytého. Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#11 Příspěvek od schmako »

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 26. 6. 2016
Čas skenování: 22:54
Protokol: malwarebyte-log.txt
Správce: Ano

Verze: 2.2.1.1043
Databáze malwaru: v2016.06.26.04
Databáze rootkitů: v2016.05.27.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: Schmako

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 314090
Uplynulý čas: 3 min, 33 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 5
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe, 1092, , [9def15ec405ab581b95f230043be53ad]
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe, 1404, , [7319e61be6b4a393b860aa79d72a8779]
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe, 3868, , [810bb64ba0faf046ff1931f222df2cd4]
PUP.Optional.Ghokswa.Gen, C:\ProgramData\Gunship\Gunship.exe, 5372, , [1577d130debc2412f56e728b2bd80df3]
PUP.Optional.Ghokswa.Gen, C:\ProgramData\Nobean\Nobean.exe, 4672, , [810bec15d2c847ef7915aa1efd05a55b]

Moduly: 57
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSvc.dll, , [f79533ce9208ba7c35e355cef30ecc34],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iImportLib.dll, , [f399be43c0dacf672fe94ed533ce6f91],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iImportLib.dll, , [f399be43c0dacf672fe94ed533ce6f91],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iImportLib.dll, , [f399be43c0dacf672fe94ed533ce6f91],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\curlpp.dll, , [f894a9588a1089ad4fc9ef3425dc06fa],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\curlpp.dll, , [f894a9588a1089ad4fc9ef3425dc06fa],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\curlpp.dll, , [f894a9588a1089ad4fc9ef3425dc06fa],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeupbiz.dll, , [3b510ef336646cca8b8da67d42bfa858],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommu.dll, , [444855acbcdedf57f622140f20e1c13f],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommu.dll, , [444855acbcdedf57f622140f20e1c13f],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommu.dll, , [444855acbcdedf57f622140f20e1c13f],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafepxy.dll, , [e5a7659c198114224dcb9b886c95f808],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafepxy.dll, , [e5a7659c198114224dcb9b886c95f808],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafepxy.dll, , [e5a7659c198114224dcb9b886c95f808],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isaferpt.dll, , [315b0cf5772372c4fb1dec37ce3341bf],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isaferpt.dll, , [315b0cf5772372c4fb1dec37ce3341bf],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ipcproxy.dll, , [d5b73fc24c4ea59159bfaa79f110ad53],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSvc2.dll, , [47458879c4d633033fd900235ba6748c],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafebs.dll, , [bbd160a1cecc10265ebaed360df421df],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeAdless.dll, , [d3b95aa7e4b6ff3750c8e24108f9fd03],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafenpf.dll, , [abe158a95c3ee94dc256220133ce39c7],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlCall.dll, , [c2ca3ac7b9e138fe4dcbe43f768b01ff],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMonCall.dll, , [c5c73dc49dfd45f1b56364bfbc45966a],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeDisp.dll, , [92faf908415994a259bf061db54c659b],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafebase.dll, , [1a72e31ef6a4181ef721a1822cd5e61a],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommon.dll, , [1a72758c2a701e180711160def12c23e],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemc.dll, , [404c8c752773fc3a70a84ad9976a40c0],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTpNodisturb.dll, , [1e6e659c3862f93d26f28a99887928d8],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPProtect.dll, , [523acc35dbbf6cca997f7da6f9083bc5],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPDesk.dll, , [117bda27603a0a2cef2954cf2ad72dd3],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPFloaty.dll, , [4f3d57aa9cfe04328b8dcd56fe038977],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPPush.dll, , [94f88e7344563204f721f52eb948b34d],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPMsgCenter.dll, , [d1bb42bf5f3b4beb96822bf855acc040],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPAutoClean.dll, , [a8e47091eeacc3739286d350ad54619f],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libcurl.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libcurl.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libcurl.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libeay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libeay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libeay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libpng.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcp110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcp110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcp110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcr110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcr110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcr110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ouilibx.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\sqlite3.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\sqlite3.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\sqlite3.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ssleay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ssleay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ssleay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\zlib1.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\zlib1.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\zlib1.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],

Klíče registru: 16
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeService, , [9def15ec405ab581b95f230043be53ad],
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeNetFilter, , [c5c75aa7217989ad8692b76c24dddb25],
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlKit, , [8903a8596c2e15211bfdd152857c946c],
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlR3, , [810bcf320c8ef14550c8bf6427da738d],
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnl, , [24689b66a6f47db956c2b37004fdf50b],
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlMon, , [4e3ee120445696a01701f330fd043fc1],
PUP.Optional.HohoSearch, HKLM\SOFTWARE\CLASSES\CLSID\{98C066AB-D735-4339-9E52-A34875141B56}, , [a3e9fd048f0b62d48f5ebadba85a59a7],
PUP.Optional.YesSearches, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{AAEDFA37-D8C5-4AA3-AA1C-0EAA20E3D21F}, , [0a82da279dfd9f97c12cac1bfe048080],
PUP.Optional.YesSearches, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Qiqerylugase Cloud, , [13792ad7564475c11fd04a7d44bebd43],
PUP.Optional.HohoSearch, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, , [7f0dc53c64362b0b07d2cd2e25de8c74],
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\GUNSHIPP, , [1577d130debc2412f56e728b2bd80df3],
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\GUNSHIPU, , [1775da2728729c9ae87cd12ccf340bf5],
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NOBEANP, , [810bec15d2c847ef7915aa1efd05a55b],
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NOBEANU, , [49439968f2a845f1eca305c310f24cb4],
PUP.Optional.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\CKTSVC, , [f99317ea247658deacbfffc912f0f50b],
FraudTool.YAC, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\iSafe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],

Hodnoty registru: 17
PUP.Optional.YesSearches, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{AAEDFA37-D8C5-4AA3-AA1C-0EAA20E3D21F}|Path, \Qiqerylugase Cloud, , [0a82da279dfd9f97c12cac1bfe048080]
PUP.Optional.HohoSearch, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, http://d2ucfwpxlh3zh3.cloudfront.net/?t ... =ffsengext, , [7f0dc53c64362b0b07d2cd2e25de8c74]
PUP.Optional.HohoSearch, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, http://d2ucfwpxlh3zh3.cloudfront.net/?t ... =ffsengext, , [1c700af70694b6806e6b1fdc8c7706fa]
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\GunshipP|ImagePath, "C:\ProgramData\Gunship\Gunship.exe", , [1577d130debc2412f56e728b2bd80df3]
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\GunshipU|ImagePath, "C:\Program Files (x86)\Gunship\Update\GunshipUpdate.exe", , [1775da2728729c9ae87cd12ccf340bf5]
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NobeanP|ImagePath, "C:\ProgramData\Nobean\Nobean.exe", , [810bec15d2c847ef7915aa1efd05a55b]
PUP.Optional.Ghokswa.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NobeanU|ImagePath, "C:\Program Files (x86)\Nobean\Update\NobeanUpdate.exe", , [49439968f2a845f1eca305c310f24cb4]
PUP.Optional.Elex, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\CKTSVC|ImagePath, "C:\Program Files (x86)\Uncheckit\cktSvc.exe" {92E162D7-70FD-48F7-A779-91154F8FD518}, , [f99317ea247658deacbfffc912f0f50b]
Hijack.AutoConfigURL.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IPHLPSVC\PARAMETERS\PROXYMGR\{2F626DDA-B5E4-4D58-B524-881F76B89E78}|AutoConfigUrl, http://un-stop.info/wpad.dat?e2fb50ca00 ... 3211417336, , [bad2cf32f6a453e306df398e10f238c8]
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnl|ImagePath, \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys, , [d6b6e51c6634f54195a6b8120cf6a65a]
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlKit|ImagePath, \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys, , [d9b3a25f4e4c37ff54e77f4b7b87c13f]
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlMon|ImagePath, \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys, , [96f6ad543b5f40f66dce2b9fd0323bc5]
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlR3|ImagePath, \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys, , [a4e82cd54258f04687b48347b151f808]
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ISAFENETFILTER|ImagePath, system32\DRIVERS\iSafeNetFilter.sys, , [9feda160d3c792a4c974f8d2af530df3]
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ISAFESERVICE|ImagePath, C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe, , [1a720ef35e3cbd79d5690fbb936fab55]
Hijack.AutoConfigURL.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, 0http://un-stop.info/wpad.dat?e2fb50ca00bd9b39a5cb147241470c3211417336, , [ed9f41c06d2da096885e933454ae60a0]
Hijack.AutoConfigURL.PrxySvrRST, HKU\S-1-5-21-4032979599-1777459474-1242859118-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|AutoConfigUrl, http://un-stop.info/wpad.dat?e2fb50ca00 ... 3211417336, , [c7c5dc253c5e53e3e4ff3a8d54ae2cd4]

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 163
FraudTool.YAC, C:\Users\Schmako\AppData\Roaming\Elex-tech\YAC, , [513b31d0178385b111c8a20757ab21df],
FraudTool.YAC, C:\Users\Schmako\AppData\Roaming\Elex-tech\YAC\iDesk, , [513b31d0178385b111c8a20757ab21df],
FraudTool.YAC, C:\Users\Schmako\AppData\Roaming\Elex-tech\YAC\log, , [513b31d0178385b111c8a20757ab21df],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\cache, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\quarantine, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\trustzone, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\font, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\pfdatapfdata, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\pfdatapfdata\SSL, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout\newclean, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout\pop, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Appstore, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\layout\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\style, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\0, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\1, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\temp, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user, , [088415ecc4d6e6500bcf7e2b0ff3fe02],

Soubory: 1209
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe, , [9def15ec405ab581b95f230043be53ad],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSvc.dll, , [f79533ce9208ba7c35e355cef30ecc34],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iImportLib.dll, , [f399be43c0dacf672fe94ed533ce6f91],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\curlpp.dll, , [f894a9588a1089ad4fc9ef3425dc06fa],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeupbiz.dll, , [3b510ef336646cca8b8da67d42bfa858],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommu.dll, , [444855acbcdedf57f622140f20e1c13f],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafepxy.dll, , [e5a7659c198114224dcb9b886c95f808],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isaferpt.dll, , [315b0cf5772372c4fb1dec37ce3341bf],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ipcproxy.dll, , [d5b73fc24c4ea59159bfaa79f110ad53],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe, , [7319e61be6b4a393b860aa79d72a8779],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSvc2.dll, , [47458879c4d633033fd900235ba6748c],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafebs.dll, , [bbd160a1cecc10265ebaed360df421df],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeAdless.dll, , [d3b95aa7e4b6ff3750c8e24108f9fd03],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafenpf.dll, , [abe158a95c3ee94dc256220133ce39c7],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlCall.dll, , [c2ca3ac7b9e138fe4dcbe43f768b01ff],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMonCall.dll, , [c5c73dc49dfd45f1b56364bfbc45966a],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeDisp.dll, , [92faf908415994a259bf061db54c659b],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe, , [810bb64ba0faf046ff1931f222df2cd4],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafebase.dll, , [1a72e31ef6a4181ef721a1822cd5e61a],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommon.dll, , [1a72758c2a701e180711160def12c23e],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemc.dll, , [404c8c752773fc3a70a84ad9976a40c0],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTpNodisturb.dll, , [1e6e659c3862f93d26f28a99887928d8],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPProtect.dll, , [523acc35dbbf6cca997f7da6f9083bc5],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPDesk.dll, , [117bda27603a0a2cef2954cf2ad72dd3],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPFloaty.dll, , [4f3d57aa9cfe04328b8dcd56fe038977],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPPush.dll, , [94f88e7344563204f721f52eb948b34d],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPMsgCenter.dll, , [d1bb42bf5f3b4beb96822bf855acc040],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPAutoClean.dll, , [a8e47091eeacc3739286d350ad54619f],
FraudTool.YAC, C:\Windows\System32\drivers\iSafeNetFilter.sys, , [c5c75aa7217989ad8692b76c24dddb25],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys, , [8903a8596c2e15211bfdd152857c946c],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys, , [810bcf320c8ef14550c8bf6427da738d],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys, , [24689b66a6f47db956c2b37004fdf50b],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys, , [4e3ee120445696a01701f330fd043fc1],
HackTool.AutoKMS, C:\Program Files\KMSpico\AutoPico.exe, , [810bae53bedc91a5e2c9253131cf7c84],
PUP.Optional.Ghokswa.Gen, C:\ProgramData\Gunship\Gunship.exe, , [1577d130debc2412f56e728b2bd80df3],
PUP.Optional.Ghokswa.Gen, C:\Program Files (x86)\Gunship\Update\GunshipUpdate.exe, , [1775da2728729c9ae87cd12ccf340bf5],
PUP.Optional.Ghokswa.Gen, C:\ProgramData\Nobean\Nobean.exe, , [810bec15d2c847ef7915aa1efd05a55b],
PUP.Optional.Ghokswa.Gen, C:\Program Files (x86)\Nobean\Update\NobeanUpdate.exe, , [49439968f2a845f1eca305c310f24cb4],
FraudTool.YAC, C:\Users\Schmako\AppData\Roaming\Elex-tech\YAC\preference.ini, , [513b31d0178385b111c8a20757ab21df],
FraudTool.YAC, C:\Users\Schmako\AppData\Roaming\Elex-tech\YAC\proxyUpdate.ini, , [513b31d0178385b111c8a20757ab21df],
FraudTool.YAC, C:\Users\Schmako\AppData\Roaming\Elex-tech\YAC\iDesk\desk.ini, , [513b31d0178385b111c8a20757ab21df],
FraudTool.YAC, C:\Users\Schmako\AppData\Roaming\Elex-tech\YAC\log\iSafeTray.log, , [513b31d0178385b111c8a20757ab21df],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafembp.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\bugreport.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\eDelayinfo.edb, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iddmgr.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iDesk.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iDskDllPatch.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iDskDllPatch64.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ipcdl.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafe.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeadfv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafetbv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeTHlp.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeTHlp64.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iStart.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemclv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemgc.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeMon.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeMon64.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemoptv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemsmv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeNetFilter.sys, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesmgr.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesopt.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesptv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libcurl.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libeay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libpng.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\main, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcp110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcr110.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ouilibx.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\sqlite3.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\sqlite3x64.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ssleay32.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\uninstall.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\uninstall.inst, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\zlib1.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeBugReport.exe, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafechlp.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeclc.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeclcv.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlBoot.sys, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlCall64.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlShell.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemadwc.dll, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\ccc.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\customscan.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\dbucg.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\hyperscan.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\isafe.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\quickscan.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\scanfilter.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\ucg.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\updatedb.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\adb.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\bas.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\bts.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\bwd.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\cls.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\clx.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\eas.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\ess.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\fst.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\gcs.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\gcx.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\hs.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\mic.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\nlu.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\plx.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\rms.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\sta.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\stu.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\tbc.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\uis.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\was.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\ysm.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\cache\index.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\bs.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\sr.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\vn.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\ws.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\font\segoeui.ttf, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\font\segoeuib.ttf, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\AdBlock_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\adwclean_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\bugreport.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\clean_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\clean_scanfilter_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\common_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\dsk_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\fblang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\iSafeRKScanShell.lang, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\iSafeSet_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\Lottery_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\NewVirusScan_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\new_clean_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\optimize_lang2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\PCClinicUI_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\plugin_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\SafeProtect_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\shell.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\softmgr_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\startup_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\taskhelper_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\ToolBox_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\tray2_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_appstore_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_desk_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_feedback_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_floaty_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_nodisturb_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_protect_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_startupassist_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\uninstall_lang.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\bugreport.LOG, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\ipcdl.log, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\ipcproxy.log, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeBS.log, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeKrnlCall.log, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeKrnlMonCall.log, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeSvc.LOG, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeSvc2.LOG, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeTaskHelper.LOG, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeTHlp64.LOG, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\edit_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\AdblockToggle.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_hide.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_hide_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_show.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_show_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Add.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Beta.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\check.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Delete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\FilterDesc.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\FilterDesc_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\lock_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\LogDetail.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\LogDetail_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\opt_arrow_down.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\popup_menu_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\popup_menu_itemskin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\unlocked_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\WhiteList.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\WhiteList_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\layout\default\AdBlockView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\style\Style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\about_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\activity.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\activity_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\appstore_new.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\appstore_refresh.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\BG.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\btn_set.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\check_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\check_indeterminate.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\check_uncheck.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\cm_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\combo_browser_dropdown_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\connecting_anim.gif, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_bk_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_onekey_up_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_reboot_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\head_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\head_indeteminate.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\head_unchecked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_adblock.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_adw_clean.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_appstore.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_avira.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_deep_clean.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_exam.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_netmon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_optimize.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_protect.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_recovery.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_softmgr.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_toolbox.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_virusscan.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_block.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_prompt.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_question.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\language_selected_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\like.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\like_count.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\line1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\line2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\listctrlbtn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_bkg2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_item_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_nation_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\msgbox_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\number_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\number_bg2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\pop_sys_button2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\pop_sys_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\progressbar_anim.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\progressbar_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\progressbar_image.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\language_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_setting_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\recovery.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\startmenu_deepclean.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\setting.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\setting_img_list.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\slidebutton_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_dl.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_download.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_new.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_progress.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_progress_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\special_line.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\sub_toggle_btn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\sys_imglist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\tab_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\updatedlg_ok_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_check.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_cheking.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_chk_err.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_chk_ok.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_client_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_downlodaing.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_error.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_latest.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_server_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\wifi_logo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_bag.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_green.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\btn_repair.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_adblock_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_back_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_cancel.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_do.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_number_0.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_number_normal.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_number_pressed.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_plus_normal.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_hover.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_hover_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_normal.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_normal_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_pressed.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_pressed_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_ok_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_plus_normal.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_rubbish_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_rubbish_icon_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_safe_protect_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_safe_protect_icon_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_scanning_mid.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_scanning_pic.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_scanning_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_softmgr_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_softmgr_icon_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_sys_opt_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_sys_opt_icon_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_tip_wnd_arrow_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_tip_wnd_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_tip_wnd_bk2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_type_btn_bottom_line.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_bn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_gb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_health_bn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_health_kn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_health_mn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_kb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_kn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_mb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\green_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\icon_big_home.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\manual_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\manual_item.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\number_big_green.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\number_big_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\number_big_red2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\opt_arrow_down.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\opt_arrow_up.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\right_green.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\score_none.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\yellow_wrong.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_number_hover.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_mn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\ignore_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\aboutdlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\dbupdatedlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\DemoApp.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\language_select.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\maindlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\msgbox.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\slide_button_wnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\tipwnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\updatedlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\style\style_new.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\crash_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\detail_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\error_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\input.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\reset_yac_btn_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\send_btn_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\smell_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\sorry_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\sucess_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\wait.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\waitting_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\wait_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout\default\detailwnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout\default\mainwnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_quick_clean_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_res.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_advance_item_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_advance_item_bk2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_adware_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_auto_clean_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_clean_smile_face.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_full_scan_virus_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_junk_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_list_header_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_can_delete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_can_disable.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_normal.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_type_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_privacy_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_quickclean_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_registry_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_reg_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_rubbish_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_scan_check.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_scan_detail_dlg_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_share_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_sysmenu_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_trace_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\opt_new_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\opt_rightkeymenu_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\opt_sendto_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_button_open.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk3.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk4.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk5.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk6.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_box_select_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_default_image.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_eye_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_file_browser.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_path_edit.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_progress_animate.gif, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_tipwnd_warnning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_togbtn_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_combo_skin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_down_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_menu_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_menu_item_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_up_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\NewCleanPFSettingDlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\NewCleanPopDlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\NewCleanView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\ScanDetailDlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\Tipswnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\style\clean_style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\head_unchecked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox_close_btn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\arrow_down.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\arrow_up.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\check_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\check_indeterminate.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\check_uncheck.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\close_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_blue_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_green_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_red_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_yellow_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_dlg_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_faq_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_res.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_tip_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\feedback_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\head_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\head_indeteminate.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_block.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_prompt.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_question.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\min_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox2_button_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox2_button_green.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox2_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\nation_icon_list.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\progressbar_anim.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\progressbar_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\progressbar_image.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\pvb_line.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\pvb_skin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scanview_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_check.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_complete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_scanning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\switch_button_off.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\switch_button_on.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\toggle_btn_pop_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\layout\msgbox.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\layout\msgbox2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\style\common_style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_file_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\close_btn_bk.png, , [088415ecc4d6e6500bcf7e

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#12 Příspěvek od schmako »

FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout\default\msgbox.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg_list.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_3.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_4.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_5.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_default.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\app.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\file.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\folder.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\picture.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\add_list_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\add_list_til_line.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\app.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrange_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrow_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrow_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\btn_accelerate_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\button_delete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\button_selected.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\check_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\check_uncheck.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\cloud_flash.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\combo_skin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\combo_skin_op.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\customize.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\default_file.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\delete_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_all_import.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_bkg_default.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_btn_dkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_button_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_cmd_list.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_default_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_dlg_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_edit_light.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_fbar.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_arrow_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_arrow_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_button_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_gridctrl_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_icon_add_other.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_icon_list_add.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_list.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_loading.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_main_panel_edge.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_menu.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_more.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_pc.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_plus_import_bkg_a.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_plus_import_bkg_b.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_power_off.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_power_off_light.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_power_off_unlight.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_skin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\edit_skin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\edit_skin_op.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\file.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\focus_next.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\focus_prev.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\folder.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_adblock_18-18.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_adblock_22-22.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\deskbtnbk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_edit.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_list_light.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_arrange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_noad.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-info.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_Tip.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\idesk_pre_view.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\idesk_pre_view_a.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\import_scroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\improve_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\large_add_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\line-foot.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\list_scroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\logo_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menuitem_selbk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_accelerate.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_help.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_import.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_open.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_quit.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_restore.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_sendto.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_set.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\monitor_button_next.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\monitor_button_pre.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\mousechoose.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\mypc_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon_large.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon_xp.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\normal_button_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\nothing.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\PageBtnBkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\PageBtnBkg_focus.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\PageNavigate.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-error.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-question.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\picture.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\plus_action_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\search_box.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\search_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\search_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\selected.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\shutdown_button_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\shutdown_more_button_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\start_button_hover.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\start_panel_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\start_shutdown_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\switch_style.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_ctrl_panel.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_imglist.bmp, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_local_driver.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_lock.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_menu_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_net_connect.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_recycle.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_restart.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_sleep.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tips_button_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\title_bar.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\user_account_default.bmp, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bjSmall_X.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bjSmall_Y.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bj_X.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bj_Y.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\win8_desk_16_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\win8_desk_32_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\XP_bj_hover.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\XP_bj_normal.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_b.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_l.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_r.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_t.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\btn_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\btn_green_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\check_uncheck.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\main_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_bottom.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_top.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_bottom.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_top.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_add_focus.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_bottom.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_right_large.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_browser_focus.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_focus_mask_point.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_focus_mask_rect.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_item_drag.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_item_focus.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_point.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\add_shortcut_tip.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\arrange_desktop.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\desk_bkg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\desk_taskbar_help_tip1.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\desk_taskbar_help_tip2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_import_icon.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_panel.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_setting.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_start.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\my_pc_menu.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\plus_import_icon.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\rename.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\taskbar.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\about.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\adb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\bep.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\bth.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\check.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\dse.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\emailprotect.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\fw.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\general.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\iSafeSet_res.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\jfm.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\lang.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\lang_btn_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\nation_icon_list.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\layout\default\iSafeSetView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\style\iSafeSet_style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_indeterminate.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_arrow_down.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_arrow_up.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_button_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_close_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_loading.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_logo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_minimum_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_num.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_num_percent.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_num_white.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_brush.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_complete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_dl_brush.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_dl_complete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_dl_start.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_install_brush.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_normal.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_op_complete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_point.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_res.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_select.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_speed_bar.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unable.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_b.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_gb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_kb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_mb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unselect.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout\newclean\NewCleanDlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout\newclean\tipsWnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\style\new_clean_style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo_bk_top.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\optimize_btn_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\optimize_empty.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\optimize_restore_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_appsvc_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_arrow_down_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_arrow_up_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_boottime_nodata_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo_bk_bottom.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo_dropdown_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_menu_item_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_startup_app_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_sysmenu_def_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_syssvc_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_taskschedule_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_type_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_vert_line.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\pop_OptDlg_BG.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\st_green.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\st_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\st_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\syssvc_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout\default\OptimizeView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout\default\optimize_popdlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plugin_res.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_norm.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_sec_level.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_should_del.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_should_dis.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\layout\default\PluginView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\style\plugin_style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\empty.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\locked_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bing_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\blank_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bp.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bw.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\cdbh.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\cdsh.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\check.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\chph.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\chrome_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\cseh.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\dp.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\edit_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\edit_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\edit_skin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\exam_dlg_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\exam_radio_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\exam_radio_unchecked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\firefix_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\fr.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\google_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\google_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\ie_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\iph.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\lastsession_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\lock_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\oh.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\opera_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\opt.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\opt_vert_line.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\popup_menu_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\popup_menu_itemskin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\pop_OptDlg_BG.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\pop_toggle_btn_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\pwb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\query_btn_safe.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\SafeProtect_res.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\savebtn_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\syssvc_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\to.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\tp.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\tw.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\unlocked_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\yac_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\yahoo_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\yahoo_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default\examdlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default\SafeProtectView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default\SafeProtect_popdlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\style\SafeProtect_style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_check_arrow_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_close_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_collapse_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_expand_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_folder_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_opt_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_progbar_anim_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_progbar_indicator.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_progbar_indicator_green.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_search_box_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_search_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_software_def_ico_48.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_step_found.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_step_nofound.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_uninst_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_warning_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_whirling_pic.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_common_btn_bk1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_common_btn_bk2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_menu_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_menu_item_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_remain_ctrl_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_software_def_ico_20.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_warning_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\softmgr_res.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\SoftMgrView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\SoftMgrView2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\softmgr_guide.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\softmgr_guide2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\softmgr_result.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\style\softmgr_style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\btn_bg_1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\btn_bg_2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\smell_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\sorry_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\taskhlp_ac_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\taskhlp_ac_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\wait.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\wait_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout\default\autoclean_guide.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout\default\softuninstallwnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\Resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_default.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_download.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_new.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\layout\default\ToolBoxView.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\style\Style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\if_block.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\if_prompt.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\if_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\notify_bk_dang.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\notify_bk_safe.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\notify_bk_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\pop_sys_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_bk_dang.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_bk_safe.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_bk_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_btn_dang.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_btn_safe.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_btn_warning.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\traymenu_dlg_bk2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout\traydlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout\pop\tippop.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\adblock_guide_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\ad_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_off1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_off2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_on1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_on2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\rubbish.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\traymenu_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\adblockguide.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\cleartrash.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\strongUnist.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\traydlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\arrowdown_green.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\arrowup_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\clean_junk_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\default_program_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\download.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\download_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\floattray_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\flow_number.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\flow_unit.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\IPicon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\menu_bkg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\menu_item_over.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\pop_memory_btn_green_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\pop_memory_btn_yellow_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\pop_network_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\speed_number.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\speed_unit.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\sys_imglist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_light.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_light1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\test_speed_download.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\test_speed_upload.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\trayfloatarrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\trayfloatnetbtnico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\traymenu_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\upload.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\upload_gray.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\upload_gray_mark.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\yaclogo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\trayF_float_tips_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\trayF_float_tips_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_acc_circle_list_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_acc_circle_list_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_acc_circle_list_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_dec_circle_list_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_dec_circle_list_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_left_bk_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_left_bk_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_left_bk_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_right_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_round_bk_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_round_bk_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_round_bk_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_shadow_bk_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_shadow_bk_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_shadow_bk_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_whirling_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_whirling_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_btn_close_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_menu_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_net_down_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_net_flow_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_net_up_arrow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_numer.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_percent_bk_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_percent_bk_orange.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_percent_bk_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_shadow_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_shadow_sh_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_speed_test_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rb.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rb_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rt.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rt_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_close_btn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_go_btn_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_wnd_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_wnd_bk_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_rope_btn_bk_gl.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_rope_btn_bk_roulette.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_swing_anim_bk_gl.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_swing_anim_bk_roulette.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_throw_anim_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_throw_anim_round_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_dec_circle_list_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_whirling_red.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_shadow_sv_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\floatplugin.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\floattipwnd.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\floattipwnd_hide.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\swing_anim.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\throwdlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\traydlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayfloaty2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayfloatypop2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayfloatypop2_bottom.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayTaskbar.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayTaskbar_wifi.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\app.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\file.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\folder.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\picture.ico, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\idesk_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\traymenu_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\app.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\btn_cancel.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\btn_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\btn_green_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\file.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\folder.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\logo_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\main_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\picture.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\yac_logo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\layout\arrange_desktop.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\layout\traydlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\layout\default\MsgCenterDlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\logo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\Msg_BG.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\Resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\style\Style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\pop_startup_slow_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\pop_startup_warning_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\traymenu_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\traymenu_pop_cancel_btn2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\traymenu_pop_ico_query.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\tray_radio_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\tray_radio_unchecked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\layout\traydlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\layout\traymenupop.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\bing_16_16.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\chrome_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_browser2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_browser_dropdown_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_pop_modify.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_pop_modify2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_pop_modify_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_skin4.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\firefix_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\google_16_16.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\ie_16_16.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\ie_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\isafe_16.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\pop_startup_slow_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\pop_startup_warning_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\traymenu_iconlist.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\traymenu_pop_cancel_btn2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\traymenu_pop_ico_query.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\tray_radio_checked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\tray_radio_unchecked.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\yahoo_16_16.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\accesslink.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\blockblacklist.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\lock_guide.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\querymodify.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\querymodify2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\traydlg.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\traymenupop.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\Location_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\new_left.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\new_right.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_assistant_blue_number.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_assistant_yellow_number.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startupass_comb_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startupass_vscoll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_fast_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_slow_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_warning_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_sys_close.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_sys_Setting.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_sys_star.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_anim_expand_bk_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_anim_expand_bk_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_char_m.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_char_percent.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_char_s.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_close_btn_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_close_btn_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_drop_bk_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_drop_bk_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_skin_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_skin_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_itemhover_bk_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_itemhover_bk_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_location_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_location_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_news_line_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_news_line_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_number.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_number_fuzzy.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_optimize_btn.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_redpoint_large.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_redpoint_middle.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_redpoint_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_late_night_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_late_night_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_morning_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_morning_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_nightfall_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_nightfall_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_noon_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_vscoll_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_vscoll_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_cloudy_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_cloudy_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_icon_large.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_icon_small.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_line_blue.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_line_yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_rain_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_nomall_button.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_noon_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_rain_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_snow_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_snow_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_thunder_blue.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_thunder_yellow.jpg, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_yac_logo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\weather_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\yellow.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\daily_news.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist_2.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist_3.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist_weather.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\exam_tip_wnd_arrow_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\inst_cover_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func_up.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\av_authority_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\combo_list.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\custom_check.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\custom_uncheck.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_antymal_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_clean_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_optimize_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_protect_icon.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\exam_tip_wnd_bk2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\ico_app.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\ico_face.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\ico_upgrade.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_combo_skin.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_logo.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_prog_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_prog_meter.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\open_dir.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\popup_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\resource.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\soft_cof_button_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\soft_remove_button_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_3.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_4.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_5.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_6.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_7.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_acc.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_btn_bg1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_btn_bg2.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_clean.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_complete.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_cry.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func1.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func3.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func_intr.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_input.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_progress.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_prog_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_protect.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_spliter.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\upgrade_bg.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\upgrade_prog_bk.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\upgrade_prog_meter.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\vscroll.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\yac_side_ico.png, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\cover.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\install.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\uninstallpro.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\uninstall_logo_fade.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\upgrade.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\style\style.xml, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\temp\dlcfg.ini, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\temp\upcfg.ini, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\brset.ini, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\cbss.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\co.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\sie.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\softcache2.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\svc2.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\svc2_com.dat, , [088415ecc4d6e6500bcf7e2b0ff3fe02],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o pomoc při odstranění malware a balastu.

#13 Příspěvek od Rudy »

Vše, co MBAM nalezl, smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#14 Příspěvek od schmako »

Vypadá to už o mnoho lépe, děkuji za guiding!

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 27. 6. 2016
Čas skenování: 19:53
Protokol: malwarebyte-log-2.txt
Správce: Ano

Verze: 2.2.1.1043
Databáze malwaru: v2016.06.27.05
Databáze rootkitů: v2016.05.27.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: Schmako

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 315327
Uplynulý čas: 3 min, 17 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 0
(Nenalezeny žádné škodlivé položky)

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

schmako
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 27 úno 2016 14:05

Re: Prosím o pomoc při odstranění malware a balastu.

#15 Příspěvek od schmako »

Možná ještě jedna věc mě zneklidňuje: Všechny asociace k jednotlivým příponám souborů mi windows hlásí, že resetoval do výchozích hodnot...
A když chci stáhnout Chrome, který jsem radši odinstaloval, tak to dělá zase podivné věci...
Naposledy upravil(a) schmako dne 27 čer 2016 19:32, celkem upraveno 1 x.

Zamčeno