Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Explorer.exe error


  • This topic is locked This topic is locked
16 replies to this topic

#1 lzr1984

lzr1984

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 17 January 2017 - 08:53 AM

My pc is win 10 and whenever i start computer, there will be this explorer.exe error pop out.

i try google and i find out i need to delete the load string at regedit but i cannot find the load word.

 

Hopefully someone able to guide me along the way to remove this error.

Thank you so much.

Attached Files



BC AdBot (Login to Remove)

 


#2 Jo*

Jo*

  • Malware Response Team
  • 3,429 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:04:43 AM

Posted 17 January 2017 - 05:27 PM


:welcome: to BleepingComputer.

Hi there,

my name is Jo and I will help you with your computer problems.


Please follow these guidelines:
  • Read and follow the instructions in the sequence they are posted.
  • print or copy & save instructions.
  • back up all your private data / music / important files on another (external) drive before using our tools.
  • Do not install / uninstall any applications, unless otherwise instructed.
  • Use only that tools you have been instructed to use.
  • Copy and Paste the log files inside your post, unless otherwise instructed.
  • Ask for clarification, if you have any questions.
  • Stay with this topic til you get the all clean post.
  • My first language is not english. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.

***


:step1: Download Security Check by screen317 from here or here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
    Vista / Windows 7/8 users right-click and select Run As Administrator.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.

***


:step2: Temporarily disable your AV program so it does not interfere.
Info on how to disable your security applications How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs - Security Mini-Guides.

Download Zoek tool from here

When the download appears, save to the Desktop.
On the Desktop, right-click the Zoek.exe file and select: Run as Administrator
(it takes a few seconds to appear.)

Next, copy/paste the entire script inside the code box below to the input field of Zoek:


createsrpoint;
filesrcm; 
uninstall-list;
iedefaults;
ffdefaults;
chrdefaults;
emptyclsid;
emptyalltemp;
autoclean;
Now...
Close any open Browsers.
Click the Run script button, and wait. It takes a few minutes to run all the script.

When the tool finishes, the zoek-results.log is opened in Notepad.
The log is also found on the systemdrive, normally C:\
If a reboot is needed, the log is opened after the reboot.

Copy and paste the log to your next reply please.

***


Graduate of the WTT Classroom
Cheers,
Jo
If I have been helping you, and I have not replied to your latest post in 36 hours please send me a PM.


#3 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 18 January 2017 - 07:12 AM

From Security Check
 
Results of screen317's Security Check version 1.014 --- 12/23/15  
   x64 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Firewall Enabled!  
Windows Defender   
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
 Adobe Reader XI  
 Google Chrome (55.0.2883.87) 
 Google Chrome (SetupMetrics...) 
````````Process Check: objlist.exe by Laurent````````  
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:  % 
````````````````````End of Log`````````````````````` 


#4 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 18 January 2017 - 07:36 AM

 
Zoek.exe v5.0.0.1 Updated 19-September-2016
Tool run by Long Zheng Rui on 18/01/17 at 20:15:54.37.
Microsoft Windows 10 Pro 10.0.10586  x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Long Zheng Rui\Desktop\zoek.exe [Scan all users] [Script inserted] 
 
==== System Restore Info ======================
 
18/01/17 8:16:57 PM Zoek.exe System Restore Point Created Successfully.
 
==== Empty Folders Check ======================
 
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\dbg deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\Users\DefaultAppPool\AppData\LocalLow deleted successfully
C:\Users\Long Zheng Rui\AppData\Local\ActiveSync deleted successfully
C:\Users\Long Zheng Rui\AppData\Local\CrashDumps deleted successfully
C:\Users\Long Zheng Rui\AppData\Local\PeerDistRepub deleted successfully
C:\Users\Long Zheng Rui\AppData\Local\VirtualStore deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
 
==== Deleting CLSID Registry Keys ======================
 
HKEY_USERS\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88A2C0AD-F9C3-43A1-8C58-065821FAFA62} deleted successfully
HKEY_USERS\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C495F919-7162-4340-8DB3-FA978C1C622F} deleted successfully
HKEY_USERS\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C495F91B-7162-4340-8DB3-FA978C1C622F} deleted successfully
HKEY_USERS\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C495F91E-7162-4340-8DB3-FA978C1C622F} deleted successfully
 
==== Deleting CLSID Registry Values ======================
 
 
==== Deleting Services ======================
 
 
==== Deleting Files \ Folders ======================
 
C:\windows\SysNative\Tasks\WinTOOL deleted
C:\Users\Long Zheng Rui\.android deleted
C:\extensions deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Long Zheng Rui\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108 deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\winsvc.vbs deleted
C:\Users\Public\Documents\dmp deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\Public\Desktop\MegaDownloader.lnk deleted
"C:\PROGRA~2\Gubed\GubedZL.dll" deleted
"C:\PROGRA~2\Nernole Core\local64spl.dll" deleted
"C:\Users\Long Zheng Rui\AppData\Roaming\????" not deleted
"C:\Users\Long Zheng Rui\AppData\Roaming\Cowasy" deleted
"C:\PROGRA~2\Gubed" not deleted
"C:\PROGRA~2\Nernole Core" not deleted
 
==== Files Recently Created / Modified ======================
 
====== C:\WINDOWS ====
====== C:\Users\LONGZH~1\AppData\Local\Temp ====
====== Java Cache =====
====== C:\WINDOWS\SysWOW64 =====
2017-01-15 14:00:50 37AFCEC80A4BEE6CA9B6EAEA2CE4253C 387856 ----a-w- C:\WINDOWS\SysWOW64\EasyAntiCheat.exe
====== C:\WINDOWS\SysWOW64\drivers =====
====== C:\WINDOWS\Sysnative =====
====== C:\WINDOWS\Sysnative\drivers =====
2017-01-18 12:10:06 8213C5972C91A56BE78CD02A4DE4E3FC 34328 ----a-w- C:\WINDOWS\Sysnative\drivers\PROCEXP152.SYS
2017-01-17 13:35:45 ABB371D9AEF728B0489B0E6872B4A1C0 250816 ----a-w- C:\WINDOWS\Sysnative\drivers\MBAMSwissArmy.sys
2017-01-15 14:02:43 A3F647C0F19A6CF33693B614CB43BC3A 520440 ----a-w- C:\WINDOWS\Sysnative\drivers\EasyAntiCheat.sys
====== C:\WINDOWS\Tasks ======
====== C:\WINDOWS\Temp ======
======= C:\Program Files =====
2017-01-17 15:20:37 -------- d-----w- C:\Program Files\MegaDownloader
======= C:\PROGRA~2 =====
2017-01-18 12:12:38 -------- d-----w- C:\PROGRA~2\WinArcher
2017-01-18 12:12:33 -------- d-----w- C:\PROGRA~2\Gubed
2017-01-18 12:09:58 -------- d-----w- C:\PROGRA~2\pw4fqc4y
2017-01-15 14:33:49 -------- d-----w- C:\PROGRA~2\Nernole Core
2017-01-15 14:33:44 -------- d-----w- C:\PROGRA~2\Phviingstaledom
======= C: =====
====== C:\Users\Long Zheng Rui\AppData\Roaming ======
2017-01-17 15:32:45 -------- d-----w- C:\Users\Long Zheng Rui\AppData\Local\Diagnostics
2017-01-17 13:19:11 -------- d-----w- C:\Users\Long Zheng Rui\AppData\Local\MicrosoftEdge
2017-01-15 14:33:44 -------- d-----w- C:\Users\Long Zheng Rui\AppData\Local\Jejeph
====== C:\Users\Long Zheng Rui ======
2017-01-18 12:12:35 -------- d-----w- C:\ProgramData\wintools
2017-01-18 12:12:32 -------- d-----w- C:\ProgramData\WinSAPSvc
2017-01-17 15:20:37 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MegaDownloader
2017-01-17 13:47:04 BD165B9DA96E97643D5B4C28DAB1AB3D 2419200 ----a-w- C:\Users\Long Zheng Rui\Desktop\FRST64.exe
2017-01-17 13:38:42 075B0DA82E23780FA2DD7F2EA0464FD4 258 --sha-r- C:\ProgramData\ntuser.pol
2017-01-15 14:34:23 -------- d-----w- C:\ProgramData\Avira
2017-01-15 14:34:23 -------- d-----w- C:\ProgramData\Avg
 
====== C: exe-files ==
2017-01-18 12:12:37 E47020FFFA1701D42B982949911687B5 26967248 ----a-w- C:\ProgramData\wintools\WintoolUprI.exe
2017-01-18 12:12:37 8B66392550602204D8ADA32D11A2CAE7 644304 ----a-w- C:\ProgramData\wintools\wintool.exe
2017-01-18 12:12:32 E47020FFFA1701D42B982949911687B5 26967248 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Temp\inst12.exe
2017-01-18 12:12:32 D5CB1DF59C8767EEB3714B56CF3C1DD8 26967248 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\IE\ZWKPO0IK\wintool[1].exe
2017-01-18 12:10:03 EFDC751B914255BC1E3684E9408610F4 1035264 ----a-w- C:\Program Files (x86)\Phviingstaledom\_ALLOWDEL_4dc2826\de_svr.exe
2017-01-18 12:10:03 AAB4B7D04C3A29DA254F8A0139C4E2C8 173776 ----a-w- C:\Program Files (x86)\Phviingstaledom\_ALLOWDEL_4dc2826\wintooll.exe
2017-01-18 12:10:03 66E4D7C44D23ABF72069E745E6B617ED 94912 ----a-w- C:\Program Files (x86)\Phviingstaledom\_ALLOWDEL_4dc2826\ttttt.exe
2017-01-18 12:10:03 2579DF066D38A15BE8142954A2633E7F 536256 ----a-w- C:\Program Files (x86)\Phviingstaledom\_ALLOWDEL_4dc2826\hhhhh.exe
2017-01-17 15:20:37 0E8C37CB9EA9BA5F197BF1366ADC05ED 719521 ----a-w- C:\Program Files\MegaDownloader\unins000.exe
2017-01-17 15:20:37 02D50582F3216D59744F80B407BA0B70 2165541 ----a-w- C:\Program Files\MegaDownloader\MegaDownloader.exe
2017-01-17 15:19:49 26893AAB381CE52951669F09856C5FFC 1707080 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Temp\XLLiveUD\Thunder8_9.0.19.482\XLLiveUD.exe
2017-01-17 15:19:49 02A6AAB8367A61DCF9EC2C9E60FBA330 264776 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Temp\XLLiveUD\Thunder8_9.0.19.482\XLBugReport.exe
2017-01-17 15:01:03 4E95AB8BEB2C8FD53B348EF4AD5121C5 149184 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Temp\2075B363-E686-4A34-9673-9925E3616ED1\DismHost.exe
2017-01-17 14:02:47 4E95AB8BEB2C8FD53B348EF4AD5121C5 149184 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Temp\A50F19EF-EADD-4500-8F94-29FEE48D8391\DismHost.exe
2017-01-17 13:47:04 BD165B9DA96E97643D5B4C28DAB1AB3D 2419200 ----a-w- C:\Users\Long Zheng Rui\Desktop\FRST64.exe
2017-01-17 13:39:35 7C2D45E54212F3C486AAA7C3F3AF78C2 10063704 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\NVIDIA\NvBackend\Packages\00009b90\DAO.21574245.exe
2017-01-17 13:22:35 394EA0490D4A382627D5D3951633DE16 86880 ----a-w- C:\Windows\Temp\devcon64.exe
2017-01-16 13:39:11 1C9F91713DE80332C0B8B9D6A8C382FF 747600 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\NVIDIA\NvBackend\Packages\00009b83\CoProc update.21573538.exe
2017-01-16 13:13:28 FF7A4FA59A8B65D38A68C21470663218 346512 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
2017-01-16 13:13:26 51210DE033F57E7DE01C05BB0144E9EE 436624 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\OAWrapper.exe
2017-01-15 14:33:47 096164D829C3FE809AA131CFD8034291 2301432 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Jejeph\SwReporter\15.86.0\software_reporter_tool.exe
2017-01-15 14:33:44 F1E8FD24392FEF275621443112CB1B45 1016696 ----a-w- C:\Program Files (x86)\Phviingstaledom\preqose.exe
2017-01-15 14:15:23 BC998672E085C4A2EB11394C8BA842DE 8404680 ----a-w- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe
2017-01-15 14:00:50 37AFCEC80A4BEE6CA9B6EAEA2CE4253C 387856 ----a-w- C:\Windows\SysWOW64\EasyAntiCheat.exe
2017-01-15 00:41:41 E7CD04555F47651B79A50DBA6148019C 820416 ----a-w- C:\Users\Long Zheng Rui\AppData\Roaming\Browsers\iexplore.bat.exe
2017-01-13 12:27:20 09A33F1F779F028D60B1BBB5F81658E3 21440 ----a-w- C:\Users\Long Zheng Rui\AppData\Roaming\XLGameBox\ServicePlatform\Plugins\XLNXLoad.exe
=== C: other files ==
2017-01-18 12:10:06 8213C5972C91A56BE78CD02A4DE4E3FC 34328 ----a-w- C:\Windows\System32\drivers\PROCEXP152.SYS
2017-01-17 15:00:47 BAFD127398719DA075843DE075ECADB5 659 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\IE\HFJ5SB2W\index[1].zip
2017-01-17 14:40:56 50025BB529D227CC3D2613DD219EE778 3425 ----a-w- C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\IE\RQVPUZJ9\dict_index[1].zip
2017-01-17 13:35:45 ABB371D9AEF728B0489B0E6872B4A1C0 250816 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2017-01-15 14:02:43 A3F647C0F19A6CF33693B614CB43BC3A 520440 ----a-w- C:\Windows\System32\drivers\EasyAntiCheat.sys
 
==== Chromium Look ======================
 
Google Chrome Version: 44.0.2403.107
 
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
dhigneefebkcagnpnpbibganpmfgebnk - No path found[]
 
Sahara - Long Zheng Rui\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnplnldbhjbakploidcdefoebhmengpm
Chrome Media Router - Long Zheng Rui\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
 
==== Set IE to Default ======================
 
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
 
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
 
==== All HKLM and HKCU SearchScopes ======================
 
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{2039DD3E-4E72-4C20-90E7-9FD959AA7D06}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
 
==== Reset Google Chrome ======================
 
C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
 
==== Uninstall List x64 ======================
 
??????? 2.7 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\GooglePinyin2]
??9  [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\thunder_is1]
Adobe Reader XI (11.0.13) [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1033-7B44-AB0000000001}]
Adobe Refresh Manager [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-0804-1033-1959-001824161310}]
Assassin's Creed Syndicate [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uplay Install 1956]
BitComet 1.40 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\BitComet]
CCleaner  [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner]
Counter-Strike: Global Offensive [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Steam App 730]
DAEMON Tools Lite [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\DAEMON Tools Lite]
Final Fantasy XIII-2 version 1.0.0 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Final Fantasy XIII-2_is1]
Google Chrome [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Google Chrome]
Google Update Helper [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}]
Intel® Chipset Device Software [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{55398EAC-F58E-4F19-B553-BDF8B9EFD839}]
Intel® Chipset Device Software [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{c7f54569-0018-439c-809a-48046a4d4ebc}]
Intel® Management Engine Components [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1CEAC85D-2590-4760-800F-8DE5E91F3700}]
Intel® Management Engine Components [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7259F5E2-1AB0-40BF-ADAE-F6C63E74339B}]
Intel® Management Engine Components [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{82D09398-5CC0-4699-9C11-3845654550D8}]
Intel® Management Engine Components [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A133A4BF-630D-4B15-AD7D-81751EBB0F52}]
Intel® ME UninstallLegacy [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{555B1C57-E71B-4775-BC1D-627EEF693F0D}]
Intel® Network Connections 20.2.3001.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{638A518B-0D2E-4143-ACF8-F3D83D822E85}]
Intel® Network Connections 20.2.3001.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\PROSetDX]
Intel® Rapid Storage Technology [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{205AE40D-8AD7-4F29-A430-DD2168DA562D}]
Intel® Rapid Storage Technology [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{409CB30E-E457-4008-9B1A-ED1B9EA21140}]
Intelr Trusted Connect Service Client [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{7D84E343-A23D-451C-B123-0195B2D903A6}]
K-Lite Codec Pack 11.8.0 Full [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\KLiteCodecPack_is1]
MegaDownloader 1.7 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{C12C2297-65A4-4E64-9AE1-29F0D947FDA0}}_is1]
Microsoft .NET Framework 4.5.2 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{26784146-6E05-3FF9-9335-786C7C0FB5BE}]
Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{25E80DAA-FD87-DCE5-202C-CC02F6673002}]
Microsoft Office Professional Plus 2016 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Office16.PROPLUS]
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}]
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}]
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{37B8F9C7-03FB-3253-8781-2517C99D7C00}]
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}]
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{7f51bdb9-ee21-49ee-94d6-90afc321780e}]
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{929FBD26-9020-399B-9A7A-751D61F0B942}]
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}]
MSI Live Update 6 [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1]
NOBUNAGA'S AMBITION: Sphere of Influence - Ascension [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\NOBUNAGA'S AMBITION: Sphere of Influence - Ascension_is1]
NVIDIA 3D Vision Controller Driver 352.65 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB]
NVIDIA 3D Vision Driver 355.82 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision]
NVIDIA Control Panel 355.82 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel]
NVIDIA GeForce Experience 2.8.1.21 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience]
NVIDIA GeForce Experience Service [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService]
NVIDIA Graphics Driver 355.82 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver]
NVIDIA HD Audio Driver 1.3.34.3 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver]
NVIDIA Install Application [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer]
NVIDIA LED Visualizer 1.0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer]
NVIDIA Network Service [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service]
NVIDIA PhysX System Software 9.15.0428 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX]
NVIDIA ShadowPlay 2.8.1.21 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay]
NVIDIA Stereoscopic 3D Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\NVIDIAStereo]
NVIDIA Update 2.8.1.21 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update]
NVIDIA Update Core [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core]
NVIDIA Virtual Audio 1.2.31 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver]
Realtek High Definition Audio Driver [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}]
Rockstar Games Social Club [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Rockstar Games Social Club]
SHIELD Streaming [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv]
SHIELD Wireless Controller Driver [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController]
Steam  [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Steam]
Uplay  [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Uplay]
WinRAR 5.30 (64-bit) [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\WinRAR archiver]
 
==== Empty IE Cache ======================
 
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\DefaultAppPool\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\IE\N93GGSUG will be deleted at reboot
 
==== Empty FireFox Cache ======================
 
No FireFox Profiles found
 
==== Empty Chrome Cache ======================
 
C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
 
==== Empty All Flash Cache ======================
 
No Flash Cache Found
 
==== Empty All Java Cache ======================
 
No Java Cache Found
 
==== C:\zoek_backup content ======================
 
C:\zoek_backup (files=1052 folders=764 192505508 bytes)
 
==== Empty Temp Folders ======================
 
C:\WINDOWS\Temp will be emptied at reboot
 
==== After Reboot ======================
 
==== Empty Temp Folders ======================
 
C:\WINDOWS\Temp successfully emptied
C:\Users\LONGZH~1\AppData\Local\Temp successfully emptied
 
==== Empty Recycle Bin ======================
 
C:\$RECYCLE.BIN successfully emptied
 
==== Deleting Files / Folders ======================
 
"C:\PROGRA~2\Gubed"  not found
"C:\PROGRA~2\Nernole Core"  not found
"C:\Users\Long Zheng Rui\AppData\Roaming\????"  not deleted
"C:\Users\Long Zheng Rui\AppData\Roaming\????"  not deleted
"C:\Users\Long Zheng Rui\AppData\Roaming\????"  not deleted
"C:\Users\Long Zheng Rui\AppData\Roaming\????"  not deleted
"C:\Users\Long Zheng Rui\AppData\Local\Microsoft\Windows\INetCache\IE\N93GGSUG" not found
 
==== EOF on 18/01/17 at 20:26:13.05 ======================


#5 Jo*

Jo*

  • Malware Response Team
  • 3,429 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:04:43 AM

Posted 18 January 2017 - 08:48 AM

Hello,
 

***


Open notepad. Please copy the contents of the code box below. To do this highlight the contents of the box and right click on it. Paste this into the open notepad.
Save it in the same location as / FSRT / FSRT64 (usually your desktop) as fixlist.txt

 
Start
CreateRestorePoint:
CloseProcesses:
Startup: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\winsvc.vbs [2016-12-21] ()
SearchScopes: HKU\S-1-5-21-1712696184-2295578937-3300206904-1000 -> DefaultScope {2039DD3E-4E72-4C20-90E7-9FD959AA7D06} URL = hxxp://www.google.com/cse?cx=partner-pub-0900663996874144:4435833467&ie=UTF-8&q={searchTerms}&sa=Search&ref=#gsc.tab=0&gsc.q={searchTerms}&gsc.page=1
SearchScopes: HKU\S-1-5-21-1712696184-2295578937-3300206904-1000 -> {2039DD3E-4E72-4C20-90E7-9FD959AA7D06} URL = hxxp://www.google.com/cse?cx=partner-pub-0900663996874144:4435833467&ie=UTF-8&q={searchTerms}&sa=Search&ref=#gsc.tab=0&gsc.q={searchTerms}&gsc.page=1
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [No File]
CHR Profile: C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-01-17] <==== ATTENTION
U3 idsvc; no ImagePath
S3 VBoxNetFlt; \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys [X]
U3 wpcsvc; no ImagePath
Task: {00BBDCD1-4C24-4CE9-BD38-26F36EB5BB41} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {1A849E73-25B7-46B6-BC2B-B74E146B0B94} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {32D5A632-5AA5-4231-BBB7-40A24D758A6C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {3C5FF22D-234F-4C89-92C4-3568C818C21F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {5C5D008F-2335-4469-8D8B-B620ECB84005} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {67208868-1BC9-493B-AF1B-6077B4F67BA6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {6CBBD022-8B35-445B-8321-85E6F6515AE4} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {8176AC82-6F15-4872-9732-D0B3035D86CB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {8D47F71A-C52F-4F23-B925-AF57C18486A0} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {965A27D1-BEF1-4398-8BB1-B2DDAF6C3D2C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {A41E5F2D-3BF1-4443-A1F9-6C94001A03DB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {A56ED2CB-7FAF-4847-B77E-E6F5FD230BDF} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2015-12-31]
Task: {AF73789C-922E-4F6E-AE2F-C92F42A8ABBD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {AFE6633A-2E3C-49F6-A59F-CD826FA2C210} - System32\Tasks\Google Pinyin Daemon => C:\Program Files\Google\Google Pinyin 2\GooglePinyinDaemon.exe [2016-03-05] (Google Inc.) <==== ATTENTION
Shortcut: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Eхplоrer.lnk -> C:\Users\Long Zheng Rui\AppData\Roaming\Browsers\exe.erolpxei.bat (No File) <===== Cyrillic
Shortcut: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Gоoglе Chrome.lnk -> C:\Users\Long Zheng Rui\AppData\Roaming\Browsers\exe.emorhc.bat (No File) <===== Cyrillic
Shortcut: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\сhrоmе.lnk -> C:\Users\Long Zheng Rui\AppData\Roaming\Browsers\exe.emorhc.bat (No File) <===== Cyrillic
EmptyTemp:
End

Graduate of the WTT Classroom
Cheers,
Jo
If I have been helping you, and I have not replied to your latest post in 36 hours please send me a PM.


#6 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 19 January 2017 - 06:13 AM

i saved it on my desktop, what should i do next?



#7 Jo*

Jo*

  • Malware Response Team
  • 3,429 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:04:43 AM

Posted 19 January 2017 - 07:00 AM


Run FRST / FSRT64 again as Administrator like we did before but this time press the Fix button just once and wait.
The tool will make a log (Fixlog.txt) please post it to your reply.

Graduate of the WTT Classroom
Cheers,
Jo
If I have been helping you, and I have not replied to your latest post in 36 hours please send me a PM.


#8 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 19 January 2017 - 08:04 AM

Fix result of Farbar Recovery Scan Tool (x64) Version: 18-01-2017
Ran by Long Zheng Rui (19-01-2017 20:59:42) Run:1
Running from C:\Users\Long Zheng Rui\Desktop
Loaded Profiles: Long Zheng Rui (Available Profiles: Long Zheng Rui & DefaultAppPool)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
Startup: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\winsvc.vbs [2016-12-21] ()
SearchScopes: HKU\S-1-5-21-1712696184-2295578937-3300206904-1000 -> DefaultScope {2039DD3E-4E72-4C20-90E7-9FD959AA7D06} URL = hxxp://www.google.com/cse?cx=partner-pub-0900663996874144:4435833467&ie=UTF-8&q={searchTerms}&sa=Search&ref=#gsc.tab=0&gsc.q={searchTerms}&gsc.page=1
SearchScopes: HKU\S-1-5-21-1712696184-2295578937-3300206904-1000 -> {2039DD3E-4E72-4C20-90E7-9FD959AA7D06} URL = hxxp://www.google.com/cse?cx=partner-pub-0900663996874144:4435833467&ie=UTF-8&q={searchTerms}&sa=Search&ref=#gsc.tab=0&gsc.q={searchTerms}&gsc.page=1
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [No File]
CHR Profile: C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-01-17] <==== ATTENTION
U3 idsvc; no ImagePath
S3 VBoxNetFlt; \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys [X]
U3 wpcsvc; no ImagePath
Task: {00BBDCD1-4C24-4CE9-BD38-26F36EB5BB41} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {1A849E73-25B7-46B6-BC2B-B74E146B0B94} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {32D5A632-5AA5-4231-BBB7-40A24D758A6C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {3C5FF22D-234F-4C89-92C4-3568C818C21F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {5C5D008F-2335-4469-8D8B-B620ECB84005} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {67208868-1BC9-493B-AF1B-6077B4F67BA6} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {6CBBD022-8B35-445B-8321-85E6F6515AE4} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {8176AC82-6F15-4872-9732-D0B3035D86CB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {8D47F71A-C52F-4F23-B925-AF57C18486A0} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {965A27D1-BEF1-4398-8BB1-B2DDAF6C3D2C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {A41E5F2D-3BF1-4443-A1F9-6C94001A03DB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {A56ED2CB-7FAF-4847-B77E-E6F5FD230BDF} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2015-12-31]
Task: {AF73789C-922E-4F6E-AE2F-C92F42A8ABBD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {AFE6633A-2E3C-49F6-A59F-CD826FA2C210} - System32\Tasks\Google Pinyin Daemon => C:\Program Files\Google\Google Pinyin 2\GooglePinyinDaemon.exe [2016-03-05] (Google Inc.) <==== ATTENTION
Shortcut: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Int?rnet E?pl?rer.lnk -> C:\Users\Long Zheng Rui\AppData\Roaming\Browsers\exe.erolpxei.bat (No File) <===== Cyrillic
Shortcut: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\G?ogl? Chrome.lnk -> C:\Users\Long Zheng Rui\AppData\Roaming\Browsers\exe.emorhc.bat (No File) <===== Cyrillic
Shortcut: C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\?hr?m?.lnk -> C:\Users\Long Zheng Rui\AppData\Roaming\Browsers\exe.emorhc.bat (No File) <===== Cyrillic
EmptyTemp:
End
*****************
 
Restore point was successfully created.
Processes closed successfully.
C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\winsvc.vbs => not found.
HKU\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2039DD3E-4E72-4C20-90E7-9FD959AA7D06} => key could not remove, key could be protected
HKCR\CLSID\{2039DD3E-4E72-4C20-90E7-9FD959AA7D06} => key not found. 
HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/Lync,version=15.0 => key removed successfully
C:\Users\Long Zheng Rui\AppData\Local\Google\Chrome\User Data\ChromeDefaultData => not found
HKLM\System\CurrentControlSet\Services\idsvc => key removed successfully
idsvc => service removed successfully
HKLM\System\CurrentControlSet\Services\VBoxNetFlt => key removed successfully
VBoxNetFlt => service removed successfully
HKLM\System\CurrentControlSet\Services\wpcsvc => key removed successfully
wpcsvc => service removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{00BBDCD1-4C24-4CE9-BD38-26F36EB5BB41} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00BBDCD1-4C24-4CE9-BD38-26F36EB5BB41} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1A849E73-25B7-46B6-BC2B-B74E146B0B94} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A849E73-25B7-46B6-BC2B-B74E146B0B94} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{32D5A632-5AA5-4231-BBB7-40A24D758A6C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32D5A632-5AA5-4231-BBB7-40A24D758A6C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3C5FF22D-234F-4C89-92C4-3568C818C21F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3C5FF22D-234F-4C89-92C4-3568C818C21F} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5C5D008F-2335-4469-8D8B-B620ECB84005} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C5D008F-2335-4469-8D8B-B620ECB84005} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{67208868-1BC9-493B-AF1B-6077B4F67BA6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{67208868-1BC9-493B-AF1B-6077B4F67BA6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6CBBD022-8B35-445B-8321-85E6F6515AE4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6CBBD022-8B35-445B-8321-85E6F6515AE4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8176AC82-6F15-4872-9732-D0B3035D86CB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8176AC82-6F15-4872-9732-D0B3035D86CB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8D47F71A-C52F-4F23-B925-AF57C18486A0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D47F71A-C52F-4F23-B925-AF57C18486A0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{965A27D1-BEF1-4398-8BB1-B2DDAF6C3D2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{965A27D1-BEF1-4398-8BB1-B2DDAF6C3D2C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A41E5F2D-3BF1-4443-A1F9-6C94001A03DB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A41E5F2D-3BF1-4443-A1F9-6C94001A03DB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{A56ED2CB-7FAF-4847-B77E-E6F5FD230BDF} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A56ED2CB-7FAF-4847-B77E-E6F5FD230BDF} => key removed successfully
C:\WINDOWS\System32\Tasks\AutoKMS => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AF73789C-922E-4F6E-AE2F-C92F42A8ABBD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF73789C-922E-4F6E-AE2F-C92F42A8ABBD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AFE6633A-2E3C-49F6-A59F-CD826FA2C210} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AFE6633A-2E3C-49F6-A59F-CD826FA2C210} => key removed successfully
C:\WINDOWS\System32\Tasks\Google Pinyin Daemon => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Google Pinyin Daemon => key removed successfully
"C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Int?rnet E?pl?rer.lnk" => Could not move.
"C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\G?ogl? Chrome.lnk" => Could not move.
"C:\Users\Long Zheng Rui\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\?hr?m?.lnk" => Could not move.
 
=========== EmptyTemp: ==========
 
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10760044 B
Java, Flash, Steam htmlcache => 772004720 B
Windows/system/drivers => 5454036 B
Edge => 0 B
Chrome => 407161063 B
Firefox => 0 B
Opera => 0 B
 
Temp, IE cache, history, cookies, recent:
Default => 16674 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 22107309 B
LocalService => 0 B
NetworkService => 1764312 B
Long Zheng Rui => 114468113 B
DefaultAppPool => 16674 B
 
RecycleBin => 2264 B
EmptyTemp: => 1.2 GB temporary data Removed.
 
================================
 
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 19-01-2017 21:00:29)
 
 
Result of scheduled keys to remove after reboot:
 
HKU\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2039DD3E-4E72-4C20-90E7-9FD959AA7D06} => key could not remove, key could be protected
 
==== End of Fixlog 21:00:29 ====


#9 Jo*

Jo*

  • Malware Response Team
  • 3,429 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:04:43 AM

Posted 19 January 2017 - 08:40 AM

Hello,

:step1: Please download and run the following tool to help allow other programs to run. (courtesy of BleepingComputer.com)
There are 5 different versions. If one of them won't run then download and try to run the other one.
Vista and Win7/8/10 users need to right click and choose Run as Administrator
You only need to get one of them to run, not all of them.Do not reboot your computer after running rkill as the malware programs will start again.


---


:step2: Malwarebytes' Anti-Malware
If this program is already installed: Skip the installation and run only the scan!
Download and install: Please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mb3-setup-1878.1878-3.5.1.2522.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to the following:
    • Launch Malwarebytes Anti-Malware
    • A 14 day trial of the Premium features is pre-selected. You may deselect this if you wish, and it will not diminish the scanning and removal capabilities of the program.
  • Click Finish.
  • On the Dashboard, click the 'Update Now >>' link
  • After the update completes, click the 'Scan Now >>' button.
  • Or, on the Dashboard, click the Scan Now >> button.
  • If an update is available, click the Update Now button.
  • A Threat Scan will begin.
  • When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.
  • In most cases, a restart will be required.
  • Wait for the prompt to restart the computer to appear, then click on Yes.
How to get logs: (Export log to save as txt)
  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the scan log which shows the Date and time of the scan just performed.
  • Click 'Export'.
  • Click 'Text file (*.txt)'
  • In the Save File dialog box which appears, click on Desktop.
  • In the File name: box type a name for your scan log.
  • A message box named 'File Saved' should appear stating "Your file has been successfully exported".
  • Click Ok
  • Attach that saved log to your next reply.
(Copy to clipboard for pasting into forum replies or tickets)
  • After the restart once you are back at your desktop, open MBAM once more.
  • Click on the History tab > Application Logs.
  • Double click on the scan log which shows the Date and time of the scan just performed.
  • Click 'Copy to Clipboard'
  • Paste the contents of the clipboard into your reply.

---


:step3: Please download Farbar Service Scanner and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

---


:step4: How the computer is running now?


---


Graduate of the WTT Classroom
Cheers,
Jo
If I have been helping you, and I have not replied to your latest post in 36 hours please send me a PM.


#10 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 20 January 2017 - 07:26 AM

Malwarebytes
www.malwarebytes.com
 
-Log Details-
Scan Date: 1/20/17
Scan Time: 8:07 PM
Logfile: 
Administrator: Yes
 
-Software Information-
Version: 3.0.5.1299
Components Version: 1.0.43
Update Package Version: 1.0.1063
License: Trial
 
-System Information-
OS: Windows 10
CPU: x64
File System: NTFS
User: LONGZHENGRUI-PC\Long Zheng Rui
 
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 442814
Time Elapsed: 0 min, 47 sec
 
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
-Scan Details-
Process: 0
(No malicious items detected)
 
Module: 0
(No malicious items detected)
 
Registry Key: 5
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeService, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\iSafe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnl, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlKit, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlR3, Quarantined, [8332], [175180],1.0.1063
 
Registry Value: 10
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Replaced, [16344], [292819],1.0.1063
PUP.Optional.Amisites.ShrtCln, HKU\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [2261], [342689],1.0.1063
PUP.Optional.Amisites.ShrtCln, HKU\S-1-5-21-1712696184-2295578937-3300206904-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_PAGE_URL, Replaced, [2261], [342689],1.0.1063
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Replaced, [16344], [292819],1.0.1063
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnl|IMAGEPATH, Quarantined, [8332], [183522],1.0.1063
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlKit|IMAGEPATH, Quarantined, [8332], [183522],1.0.1063
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\iSafeKrnlR3|IMAGEPATH, Quarantined, [8332], [183522],1.0.1063
PUP.Optional.Amisites.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_PAGE_URL, Replaced, [2261], [342686],1.0.1063
PUP.Optional.Amisites.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Replaced, [2261], [342686],1.0.1063
FraudTool.YAC, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ISAFESERVICE|IMAGEPATH, Quarantined, [8332], [183525],1.0.1063
 
Data Stream: 0
(No malicious items detected)
 
Folder: 166
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\iDesk, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\log, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\USERS\LONG ZHENG RUI\APPDATA\ROAMING\Elex-tech\YAC, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout\newclean, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Appstore, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout\pop, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\quarantine, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\pfdatapfdata\SSL, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\trustzone, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\style, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\cache, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\pfdatapfdata, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\temp, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\0, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\1, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\font, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\PROGRAM FILES (X86)\ELEX-TECH\YAC, Quarantined, [8332], [175180],1.0.1063
PUP.Optional.Elex, C:\PROGRAMDATA\WINSAPSVC, Quarantined, [15], [338081],1.0.1063
Adware.Elex, C:\PROGRAM FILES (X86)\GUBED, Quarantined, [1624], [356680],1.0.1063
PUP.Optional.Elex, C:\PROGRAM FILES (X86)\WINARCHER, Quarantined, [15], [338087],1.0.1063
 
File: 1208
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\iDesk\desk.ini, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\log\install.log, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\log\iSafeTray.log, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\log\logreport.log, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\log\uninstall.log, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\preference.ini, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Users\Long Zheng Rui\AppData\Roaming\Elex-tech\YAC\proxyUpdate.ini, Quarantined, [8332], [175179],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\ccc.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\customscan.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\dbucg.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\hyperscan.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\isafe.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\quickscan.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\scanfilter.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\ucg.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\cfg\updatedb.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\adb.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\bas.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\bts.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\bwd.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\cls.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\clx.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\eas.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\ess.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\fst.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\gcs.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\gcx.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\hs.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\mic.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\nlu.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\plx.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\rms.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\sta.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\stu.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\tbc.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\uis.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\was.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\data\ysm.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\cache\index.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\bs.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\sr.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\vn.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\engine\defs\ws.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\font\segoeui.ttf, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\font\segoeuib.ttf, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\AdBlock_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\adwclean_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\bugreport.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\clean_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\clean_scanfilter_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\common_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\dsk_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\fblang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\iSafeRKScanShell.lang, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\iSafeSet_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\Lottery_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\NewVirusScan_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\new_clean_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\optimize_lang2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\PCClinicUI_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\plugin_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\SafeProtect_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\shell.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\softmgr_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\startup_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\taskhelper_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\ToolBox_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\tray2_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_appstore_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_desk_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_feedback_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_floaty_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_nodisturb_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_protect_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\trayplugin_startupassist_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\lang\uninstall_lang.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\bugreport.LOG, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\ipcproxy.log, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeBS.log, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeKrnlCall.log, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeKrnlMonCall.log, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeSvc.LOG, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeSvc2.LOG, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeTaskHelper.LOG, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\log\iSafeTHlp64.LOG, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\edit_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\AdblockToggle.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_hide.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_hide_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_show.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\adb_set_show_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Add.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Beta.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\check.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Delete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\FilterDesc.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\FilterDesc_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\lock_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\LogDetail.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\LogDetail_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\opt_arrow_down.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\popup_menu_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\popup_menu_itemskin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\Resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\unlocked_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\WhiteList.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\image\default\WhiteList_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\layout\default\AdBlockView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\AdBlock\style\Style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_bag.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_green.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\bk_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\btn_repair.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_adblock_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_back_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_cancel.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_do.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_number_0.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_number_normal.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_number_pressed.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_plus_normal.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_hover.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_hover_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_normal.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_normal_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_pressed.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_number_pressed_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_ok_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_plus_normal.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_rubbish_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_rubbish_icon_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_safe_protect_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_safe_protect_icon_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_scanning_mid.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_scanning_pic.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_scanning_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_softmgr_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_softmgr_icon_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_sys_opt_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_sys_opt_icon_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_tip_wnd_arrow_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_tip_wnd_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_tip_wnd_bk2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_type_btn_bottom_line.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_bn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_gb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_health_bn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_health_kn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_health_mn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_kb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_kn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_mb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\green_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\icon_big_home.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\manual_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\manual_item.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\number_big_green.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\number_big_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\number_big_red2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\opt_arrow_down.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\opt_arrow_up.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\right_green.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\score_none.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\warning_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\yellow_wrong.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_result_health_number_hover.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\exam_unit_mn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\exam\ignore_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\about_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\activity.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\activity_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\appstore_new.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\appstore_refresh.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\BG.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\btn_set.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\check_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\check_indeterminate.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\check_uncheck.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\cm_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\combo_browser_dropdown_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\connecting_anim.gif, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_bk_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_onekey_up_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\dbup_dlg_reboot_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\head_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\head_indeteminate.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\head_unchecked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_adblock.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_adw_clean.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_appstore.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_avira.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_deep_clean.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_exam.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_netmon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_optimize.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_protect.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_recovery.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_softmgr.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_toolbox.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\icon_virusscan.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_block.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_prompt.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_question.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\if_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\language_selected_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\like.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\like_count.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\line1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\line2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\listctrlbtn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_bkg2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_item_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_nation_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\msgbox_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\number_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\number_bg2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\pop_sys_button2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\pop_sys_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\progressbar_anim.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\progressbar_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\progressbar_image.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\language_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\menu_setting_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\recovery.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\startmenu_deepclean.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\setting.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\setting_img_list.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\slidebutton_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_dl.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_download.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_new.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_progress.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\small_progress_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\special_line.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\sub_toggle_btn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\sys_imglist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\tab_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\updatedlg_ok_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_check.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_cheking.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_chk_err.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_chk_ok.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_client_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_downlodaing.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_error.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_latest.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\update_server_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\image\new\wifi_logo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\aboutdlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\dbupdatedlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\DemoApp.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\language_select.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\maindlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\msgbox.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\slide_button_wnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\tipwnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\layout\new\updatedlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\app\style\style_new.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\crash_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\detail_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\error_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\input.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\reset_yac_btn_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\send_btn_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\smell_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\sorry_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\sucess_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\wait.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\waitting_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\res\wait_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\image\default\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout\default\detailwnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\layout\default\mainwnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\bugreport\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_button_open.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk3.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk4.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk5.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_button_bk6.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_box_select_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_default_image.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_eye_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_file_browser.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_path_edit.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_progress_animate.gif, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_pop_tipwnd_warnning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\clean_togbtn_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_combo_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_down_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_menu_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_menu_item_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_pop_res\cl_up_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_quick_clean_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\clean_res.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_advance_item_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_advance_item_bk2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_adware_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_auto_clean_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_clean_smile_face.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_full_scan_virus_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_junk_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_list_header_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_can_delete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_can_disable.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_normal.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_plugin_type_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_privacy_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_quickclean_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_registry_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_reg_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_rubbish_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_scan_check.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_scan_detail_dlg_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_share_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_sysmenu_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\cl_trace_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\opt_new_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\opt_rightkeymenu_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\image\default\opt_sendto_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\NewCleanPFSettingDlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\NewCleanPopDlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\NewCleanView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\ScanDetailDlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\layout\default\Tipswnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\clean\style\clean_style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\head_unchecked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox_close_btn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\arrow_down.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\arrow_up.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\check_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\check_indeterminate.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\check_uncheck.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\close_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_blue_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_green_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_red_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\color_yellow_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_dlg_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_faq_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_res.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\common_tip_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\feedback_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\head_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\head_indeteminate.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_block.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_prompt.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_question.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\if_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\min_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox2_button_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox2_button_green.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox2_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\msgbox_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\nation_icon_list.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\progressbar_anim.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\progressbar_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\progressbar_image.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\pvb_line.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\pvb_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scanview_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_check.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_complete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_scanning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\scan_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\switch_button_off.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\switch_button_on.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\toggle_btn_pop_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\image\default\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\layout\msgbox.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\layout\msgbox2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\common\style\common_style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_file_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\close_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_add_file_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_add_file_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_btn_bk1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_btn_bk2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_complete_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_ctrl_close_btn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_edit_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_file_ctrl_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_live_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_msgbox_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_msgbox_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_pay_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_problem_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_report_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_suggestion_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_tip_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_wait_anim.gif, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_warning_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\fb_yac_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\image\default\tab_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout\default\feedback_view.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout\default\mainwnd2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\layout\default\msgbox.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\fbSkin\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_3.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_4.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_5.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg\desk_bkg_default.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\app.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\file.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\folder.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\foldericon\picture.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_b.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_l.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_r.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\arrange_arrow_t.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\btn_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\btn_green_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\check_uncheck.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrangedesktop\main_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_bottom.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_firstrun_top.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_bottom.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\desk_tip_introduce_top.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_add_focus.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_bottom.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_arrow_right_large.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_browser_focus.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_focus_mask_point.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_focus_mask_rect.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_item_drag.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_guide_item_focus.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tip\tip_point.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\add_list_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\add_list_til_line.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\app.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrange_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrow_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\arrow_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\btn_accelerate_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\button_delete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\button_selected.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\check_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\check_uncheck.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\cloud_flash.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\combo_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\combo_skin_op.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\customize.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\default_file.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\delete_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_all_import.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_bkg_default.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_btn_dkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_button_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_cmd_list.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_default_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_dlg_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_edit_light.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_fbar.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_arrow_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_arrow_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_button_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_gridctrl_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_icon_add_other.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_import_icon_list_add.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_list.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_loading.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_main_panel_edge.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_menu.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_more.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_pc.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_plus_import_bkg_a.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_plus_import_bkg_b.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_power_off.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_power_off_light.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_power_off_unlight.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\edit_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\edit_skin_op.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\file.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\focus_next.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\focus_prev.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\folder.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_adblock_18-18.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_adblock_22-22.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\deskbtnbk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_edit.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\desk_list_light.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_arrange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_noad.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-info.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\icon_Tip.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\idesk_pre_view.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\idesk_pre_view_a.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\import_scroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\improve_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\large_add_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\line-foot.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\list_scroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\logo_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menuitem_selbk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_accelerate.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_help.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_import.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_open.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_quit.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_restore.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_sendto.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\menu_set.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\monitor_button_next.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\monitor_button_pre.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\mousechoose.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\mypc_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon_large.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\new_icon_xp.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\normal_button_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\nothing.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\PageBtnBkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\PageBtnBkg_focus.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\PageNavigate.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-error.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-question.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\pic-warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\picture.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\plus_action_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\search_box.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\search_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\search_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\selected.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\shutdown_button_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\shutdown_more_button_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\start_button_hover.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\start_panel_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\start_shutdown_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\switch_style.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_ctrl_panel.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_imglist.bmp, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_local_driver.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_lock.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_menu_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_net_connect.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_recycle.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_restart.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\sys_sleep.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\tips_button_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\title_bar.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\user_account_default.bmp, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bjSmall_X.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bjSmall_Y.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bj_X.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\WIN7_bj_Y.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\win8_desk_16_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\win8_desk_32_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\XP_bj_hover.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\image\default\XP_bj_normal.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\add_shortcut_tip.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\arrange_desktop.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\desk_bkg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\desk_taskbar_help_tip1.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\desk_taskbar_help_tip2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_import_icon.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_panel.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_setting.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\main_start.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\my_pc_menu.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\plus_import_icon.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\rename.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\layout\default\taskbar.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iDesk\desk_bkg_list.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\about.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\adb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\bep.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\bth.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\check.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\dse.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\emailprotect.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\fw.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\general.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\iSafeSet_res.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\jfm.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\lang.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\lang_btn_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\image\default\nation_icon_list.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\layout\default\iSafeSetView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\iSafeSet\style\iSafeSet_style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_indeterminate.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_arrow_down.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_arrow_up.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_button_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_close_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_loading.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_logo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_minimum_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_num.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_num_percent.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_num_white.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_brush.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_complete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_dl_brush.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_dl_complete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_dl_start.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_install_brush.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_normal.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_op_complete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_picture_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_point.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_res.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_select.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_speed_bar.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unable.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_b.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_gb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_kb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unit_mb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\new_clean_unselect.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\image\newclean\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout\newclean\NewCleanDlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\layout\newclean\tipsWnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\NewClean\style\new_clean_style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo_bk_top.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\optimize_btn_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\optimize_empty.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\optimize_restore_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_appsvc_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_arrow_down_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_arrow_up_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_boottime_nodata_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo_bk_bottom.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_combo_dropdown_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_menu_item_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_startup_app_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_sysmenu_def_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_syssvc_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_taskschedule_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_type_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\opt_vert_line.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\pop_OptDlg_BG.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\st_green.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\st_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\st_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\image\default\syssvc_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout\default\OptimizeView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\layout\default\optimize_popdlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\optimize2\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plugin_res.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_norm.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_sec_level.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_should_del.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\image\default\plug_should_dis.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\layout\default\PluginView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\plugin\style\plugin_style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\empty.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\locked_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bing_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\blank_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bp.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\bw.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\cdbh.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\cdsh.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\check.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\chph.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\chrome_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\cseh.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\dp.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\edit_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\edit_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\edit_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\exam_dlg_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\exam_radio_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\exam_radio_unchecked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\firefix_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\fr.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\google_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\google_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\ie_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\iph.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\lastsession_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\lock_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\oh.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\opera_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\opt.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\opt_vert_line.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\popup_menu_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\popup_menu_itemskin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\pop_OptDlg_BG.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\pop_toggle_btn_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\pwb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\query_btn_safe.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\SafeProtect_res.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\savebtn_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\syssvc_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\to.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\tp.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\tw.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\unlocked_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\yac_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\yahoo_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\image\default\yahoo_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default\examdlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default\SafeProtectView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\layout\default\SafeProtect_popdlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\SafeProtect\style\SafeProtect_style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_check_arrow_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_close_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_collapse_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_expand_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_folder_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_opt_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_progbar_anim_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_progbar_indicator.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_progbar_indicator_green.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_search_box_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_search_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_software_def_ico_48.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_step_found.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_step_nofound.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_uninst_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_warning_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm2_whirling_pic.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_common_btn_bk1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_common_btn_bk2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_menu_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_menu_item_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_remain_ctrl_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_software_def_ico_20.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\sm_warning_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\image\default\softmgr_res.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\SoftMgrView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\SoftMgrView2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\softmgr_guide.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\softmgr_guide2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\layout\default\softmgr_result.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\softmgr\style\softmgr_style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\btn_bg_1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\btn_bg_2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\smell_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\sorry_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\taskhlp_ac_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\taskhlp_ac_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\wait.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\res\wait_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\image\default\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout\default\autoclean_guide.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\layout\default\softuninstallwnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\TaskHelper\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\Resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_default.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_download.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\image\default\tb_new.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\layout\default\ToolBoxView.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\ToolBox\style\Style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\if_block.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\if_prompt.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\if_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\notify_bk_dang.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\notify_bk_safe.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\notify_bk_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\pop_sys_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_bk_dang.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_bk_safe.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_bk_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_btn_dang.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_btn_safe.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\query_btn_warning.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\traymenu_dlg_bk2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\image\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout\pop\tippop.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\layout\traydlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\tray2\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\adblock_guide_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\ad_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_off1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_off2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_on1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\pic_ad_on2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\rubbish.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\image\traymenu_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\adblockguide.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\cleartrash.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\strongUnist.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\layout\traydlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Feedback\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\trayF_float_tips_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\trayF_float_tips_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_acc_circle_list_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_acc_circle_list_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_acc_circle_list_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_dec_circle_list_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_dec_circle_list_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_left_bk_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_left_bk_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_left_bk_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_right_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_round_bk_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_round_bk_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_round_bk_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_shadow_bk_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_shadow_bk_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_shadow_bk_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_whirling_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_whirling_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_btn_close_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_menu_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_net_down_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_net_flow_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_net_up_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_numer.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_percent_bk_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_percent_bk_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_percent_bk_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_shadow_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_shadow_sh_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_speed_test_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rb.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rb_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rt.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_arrow_rt_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_close_btn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_go_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_wnd_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_tip_wnd_bk_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_rope_btn_bk_gl.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_rope_btn_bk_roulette.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_swing_anim_bk_gl.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_swing_anim_bk_roulette.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_throw_anim_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_throw_anim_round_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_dec_circle_list_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_anim_whirling_red.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\float\tray_float_shadow_sv_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_arrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\arrowdown_green.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\arrowup_orange.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\clean_junk_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\default_program_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\download.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\download_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\floattray_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\flow_number.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\flow_unit.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\IPicon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\menu_bkg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\menu_item_over.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\pop_memory_btn_green_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\pop_memory_btn_yellow_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\pop_network_btn_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\speed_number.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\speed_unit.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\sys_imglist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_light.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\testspeed_light1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\test_speed_download.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\test_speed_upload.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\trayfloatarrow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\trayfloatnetbtnico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\traymenu_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\upload.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\upload_gray.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\upload_gray_mark.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\image\yaclogo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\floatplugin.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\floattipwnd.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\floattipwnd_hide.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\swing_anim.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\throwdlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\traydlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayfloaty2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayfloatypop2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayfloatypop2_bottom.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayTaskbar.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\layout\trayTaskbar_wifi.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Floaty\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\app.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\file.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\folder.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\foldericon\picture.ico, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\app.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\btn_cancel.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\btn_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\btn_green_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\file.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\folder.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\logo_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\main_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\picture.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\arrangedesktop\yac_logo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\idesk_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\image\traymenu_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\layout\arrange_desktop.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\layout\traydlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\iDesk\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\layout\default\MsgCenterDlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\logo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\Msg_BG.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\resouce\default\Resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\MsgCenter\style\Style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\pop_startup_slow_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\pop_startup_warning_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\traymenu_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\traymenu_pop_cancel_btn2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\traymenu_pop_ico_query.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\tray_radio_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\image\tray_radio_unchecked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\layout\traydlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\layout\traymenupop.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Nodisturb\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\bing_16_16.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\chrome_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_browser2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_browser_dropdown_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_pop_modify.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_pop_modify2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_pop_modify_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\combo_skin4.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\firefix_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\google_16_16.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\ie_16_16.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\ie_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\isafe_16.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\pop_startup_slow_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\pop_startup_warning_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\traymenu_iconlist.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\traymenu_pop_cancel_btn2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\traymenu_pop_ico_query.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\tray_radio_checked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\tray_radio_unchecked.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\image\yahoo_16_16.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\accesslink.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\blockblacklist.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\lock_guide.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\querymodify.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\querymodify2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\traydlg.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\layout\traymenupop.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\Protect\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\Location_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\new_left.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\new_right.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_assistant_blue_number.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_assistant_yellow_number.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startupass_comb_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startupass_vscoll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_fast_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_slow_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_warning_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_sys_close.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_sys_Setting.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_sys_star.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_anim_expand_bk_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_anim_expand_bk_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_char_m.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_char_percent.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_char_s.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_close_btn_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_close_btn_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_drop_bk_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_drop_bk_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_skin_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_combo_skin_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_itemhover_bk_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_itemhover_bk_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_location_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_location_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_news_line_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_news_line_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_number.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_number_fuzzy.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_optimize_btn.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_redpoint_large.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_redpoint_middle.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_redpoint_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_late_night_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_late_night_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_morning_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_morning_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_nightfall_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_nightfall_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_noon_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_vscoll_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_vscoll_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_cloudy_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_cloudy_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_icon_large.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_icon_small.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_line_blue.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_line_yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_rain_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\pop_startup_nomall_button.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_time_noon_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_rain_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_snow_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_snow_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_thunder_blue.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_weather_thunder_yellow.jpg, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\sa_yac_logo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\weather_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\image\yellow.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\daily_news.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist_2.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist_3.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\layout\startup_assist_weather.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\trayplugin\StartupAssist\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\exam_tip_wnd_arrow_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\inst_cover_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func_up.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\av_authority_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\combo_list.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\custom_check.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\custom_uncheck.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_antymal_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_clean_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_optimize_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\dl_inst_protect_icon.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\exam_tip_wnd_bk2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\ico_app.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\ico_face.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\ico_upgrade.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_combo_skin.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_logo.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_prog_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\install_prog_meter.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\open_dir.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\popup_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\resource.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\soft_cof_button_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\soft_remove_button_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_3.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_4.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_5.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_6.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninstall_pic_7.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_acc.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_btn_bg1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_btn_bg2.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_clean.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_complete.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_cry.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func1.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func3.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_func_intr.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_input.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_progress.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_prog_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_protect.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\uninst_spliter.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\upgrade_bg.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\upgrade_prog_bk.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\upgrade_prog_meter.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\vscroll.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\image\yac_side_ico.png, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\cover.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\install.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\uninstallpro.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\uninstall_logo_fade.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\layout\upgrade.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\skin2\uninstall\style\style.xml, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\update\temp\upcfg.ini, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\brset.ini, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\cbss.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\co.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\sie.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\softcache2.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\svc2.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\user\svc2_com.dat, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafembp.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\bugreport.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\curlpp.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\eDelayinfo.edb, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommon.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iCommu.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iddmgr.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iDesk.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iDskDllPatch.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iDskDllPatch64.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iImportLib.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ipcdl.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ipcproxy.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafe.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeadfv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeAdless.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafetbv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeTHlp.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeTHlp64.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeupbiz.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iStart.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSvc.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSvc2.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPAutoClean.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPDesk.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPFloaty.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPMsgCenter.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTpNodisturb.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPProtect.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemc.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemclv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemgc.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeMon.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeMon64.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemoptv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemsmv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeNetFilter.sys, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafenpf.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafepxy.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isaferpt.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesmgr.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesopt.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesptv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSrvMon64.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafesv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iTPPush.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libcurl.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libeay32.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\libpng.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\main, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcp110.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\msvcr110.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ouilibx.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\sqlite3.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\sqlite3x64.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\ssleay32.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\uninstall.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\uninstall.inst, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\zlib1.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafebase.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafebs.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeBugReport.exe, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafechlp.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeclc.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafeclcv.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeDisp.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlBoot.sys, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlCall.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlCall64.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMonCall.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlShell.dll, Quarantined, [8332], [175180],1.0.1063
FraudTool.YAC, C:\Program Files (x86)\Elex-tech\YAC\isafemadwc.dll, Quarantined, [8332], [175180],1.0.1063
PUP.Optional.Elex, C:\PROGRAMDATA\WINSAPSVC\WINSAP.DLL, Quarantined, [15], [338081],1.0.1063
Adware.Elex, C:\PROGRAM FILES (X86)\GUBED\GUBEDZL.DLL, Quarantined, [1624], [356680],1.0.1063
PUP.Optional.Elex, C:\PROGRAM FILES (X86)\WINARCHER\ARCHER.DLL, Quarantined, [15], [338087],1.0.1063
Adware.Elex, C:\PROGRAM FILES (X86)\COMMON FILES\SERVICES\ITHEMES.DLL, Quarantined, [1624], [346230],1.0.1063
 
Physical Sector: 0
(No malicious items detected)
 
 
(end)


#11 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 20 January 2017 - 07:28 AM

Farbar Service Scanner Version: 27-01-2016
Ran by Long Zheng Rui (administrator) on 20-01-2017 at 20:28:15
Running from "C:\Users\Long Zheng Rui\Desktop"
Microsoft Windows 10 Pro  (X64)
Boot Mode: Normal
****************************************************************
 
Internet Services:
============
 
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
 
 
Windows Firewall:
=============
 
Firewall Disabled Policy: 
==================
 
 
System Restore:
============
 
System Restore Policy: 
========================
 
 
Security Center:
============
 
 
Windows Update:
============
 
Windows Autoupdate Disabled Policy: 
============================
 
 
Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
 
 
Windows Defender Disabled Policy: 
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1
 
 
Other Services:
==============
 
 
File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\SDRSVC.dll => File is digitally signed
C:\Windows\System32\vssvc.exe => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
 
 
**** End of log ****


#12 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 20 January 2017 - 07:31 AM

so far i did not get the explorer error, does my log show my computer safe from virus??

 

thank you so much for your quick reply to my post.

 

Thumb up for u~~



#13 Jo*

Jo*

  • Malware Response Team
  • 3,429 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:04:43 AM

Posted 20 January 2017 - 08:09 AM

Looking good now, but we make another scan.


***


ESET Online Scanner
  • Click here to download the installer for ESET Online Scanner and save it to your Desktop.
  • Disable all your antivirus and antimalware software - see how to do that here.
  • Right click on esetsmartinstaller_enu.exe and select Run as Administrator.
  • Place a checkmark in YES, I accept the Terms of Use, then click Start. Wait for ESET Online Scanner to load its components.
  • Select Enable detection of potentially unwanted applications.
  • Click Advanced Settings, then place a checkmark in the following:
    • Remove found threats
    • Scan archives
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • Click Start to begin scanning.
  • ESET Online Scanner will start downloading signatures and scan. Please be patient, as this scan can take quite some time.
  • When the scan is done, click List threats (only available if ESET Online Scanner found something).
  • Click Export, then save the file to your desktop.
  • Click Back, then Finish to exit ESET Online Scanner.
Open the scan log and copy and paste the content to your next reply.

***


Graduate of the WTT Classroom
Cheers,
Jo
If I have been helping you, and I have not replied to your latest post in 36 hours please send me a PM.


#14 lzr1984

lzr1984
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:10:43 AM

Posted 21 January 2017 - 12:04 AM

This is the log of ESET Online scanner

Attached Files



#15 Jo*

Jo*

  • Malware Response Team
  • 3,429 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Germany
  • Local time:04:43 AM

Posted 21 January 2017 - 04:30 AM


***


It Appears That Your Pc Is Clean!

***


Clean up:

***


Right-click AdwCleaner.exe and select Run As Administrator.
  • Click on the Uninstall button.
  • A window will open, press the Confirm button.
  • AdwCleaner will uninstall now.

***


Clean up with delfix:
  • please download delfix to your desktop.
  • Close all other programms and start delfix.
  • Please check all the boxes and run the tool.
  • delfix will now delete all found traces of our removal process

***


Delete the log files our tools created; they are located at your desktop or at the
"c:\users\{.......}\Downloads" folder.
Highlight them, and press the del or delete key on the keyboard.
You can browse to the location of the file or folder using either My Computer or Windows Explorer.

===================================

Here are some Preventive tips to reduce the potential for spyware infection in the future

:step1: Make sure you keep your Windows OS current.
  • Windows XP users can visit Windows update regularly to download and install any critical updates and service packs.
  • Windows Vista / 7 / 8 users can update via
    Start menu > All Programs > Windows Update > Check for Updates (in left hand task pane).
:step2: Avoid P2P
  • If you think you're using a "safe" P2P program, only the program is safe, not the data.
  • You will share files from unsafe sources, and these may be infected.
  • Some bad guys use P2P filesharing as an important chanel to spread their wares.
:step3: Use only one anti-virus software and keep it up-to-date.

:step4: Firewall
Without a firewall your computer is succeptible to being hacked and taken over. I am very serious about this and see it happen almost every day with my clients. Simply using a Firewall in its default configuration can lower your risk greatly.

:step5: Backup regularly
You never know when your PC will become unstable or become so infected that you can't recover it.

:step6: Use Strong passwords!

:step7: Email attachments
Do not open any unknown email attachments, which you received without asking for it!


Extra note:
Keep your Browser, Java, pdf Reader and Adobe Flash Up to Date.
And you could install Malwarebytes Anti-Exploit to run alongside your traditional anti-virus or anti-malware products.

Make sure your programs are up to date - because older versions may contain Security Leaks.

***


Graduate of the WTT Classroom
Cheers,
Jo
If I have been helping you, and I have not replied to your latest post in 36 hours please send me a PM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users