Trojan.Win32.SwrortProxy_2e3e878e10
not-a-virus:HEUR:AdWare.Win32.Agent.gen (Kaspersky), Trojan-Banker.Win32.Banker.FD, Trojan-Banker.Win32.Brasil.FD, Trojan-Downloader.Win32.Moure.FD, Trojan-Dropper.Win32.FrauDrop.FD, Trojan.Win32.Delphi.FD, Trojan.Win32.Iconomon.FD, Trojan.Win32.IEDummy.FD, Trojan.Win32.Sasfis.FD, VirTool.Win32.DelfInject.FD, GenericEmailWorm.YR, TrojanSwrortProxy.YR, GenericInjector.YR (Lavasoft MAS)
Behaviour: Trojan-Dropper, Trojan-Downloader, Banker, Trojan, Worm, EmailWorm, VirTool, Adware
The description has been automatically generated by Lavasoft Malware Analysis System and it may contain incomplete or inaccurate information.
Requires JavaScript enabled! |
---|
MD5: 2e3e878e105df45630feee46f2f5d61d
SHA1: e09c6b11b349b8a94dace24e1f793f7322369e38
SHA256: 2f2e3a99d608776585b52b26fe4d85b511999265abf6e9b66fa365d5fb5f4255
SSDeep: 49152:W6rlFKbmbRYTf6XipkJh9UgiEdLFZz4JdWAUHIJyTRyN7e13rgZTdIW6jePhfxEr:zrbKbm9YTCSVML7zUdWAUHIJIRyNi133
Size: 3059024 bytes
File type: EXE
Platform: WIN32
Entropy: Packed
PEID: UPXv0896v102v105v122Delphistub, UPolyXv05_v6
Company: no certificate found
Created at: 1992-06-20 01:22:17
Analyzed on: WindowsXP SP3 32-bit
Summary:
Trojan. A program that appears to do one thing but actually does another (a.k.a. Trojan Horse).
Payload
Behaviour | Description |
---|---|
EmailWorm | Worm can send e-mails. |
Process activity
The Trojan creates the following process(es):
LocalLang.exe:2652
ASIns.exe:2428
Display.exe:3856
Install_PintoStartMenu.exe:3376
regsvr32.exe:3196
regsvr32.exe:3204
regsvr32.exe:2264
PluginInstall.exe:2172
asc7-setup-monster.exe:1188
asc7-setup-monster.tmp:1704
ASCUpgrade.exe:2256
ASCUpgrade.exe:2676
sc.exe:3532
sc.exe:3404
Suo12_StartupManager.exe:3364
Suo12_StartupManager.exe:3260
AutoCare.exe:3296
AutoSweep.exe:3560
LiveUpdate.exe:3420
LiveUpdate.exe:2400
Regsvr32.exe:3576
Regsvr32.exe:3536
ACPreScan.exe:2488
verclsid.exe:3364
verclsid.exe:3608
IObitUninstaller.exe:2372
ASCInit.exe:2644
SPSetup.tmp:2712
RealTimeProtector.exe:2832
RealTimeProtector.exe:2336
SPSetup.exe:2344
Homepage.exe:3296
UninstallPromote.exe:3508
UninstallPromote.exe:3268
Uninstaler_SkipUac.exe:3412
PPUninstaller.exe:3428
The Trojan injects its code into the following process(es):
%original file name%.exe:1108
iobitdownloader_monster.exe:1784
DiskDefrag.exe:2448
AutoCare.exe:3888
LiveUpdate.exe:2964
Wizard.exe:2240
ASCService.exe:3108
Mutexes
The following mutexes were created/opened:
No objects were found.
File activity
The process ASIns.exe:2428 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\Um7UdXgzvHWLL7R[1] (120 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsp16.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsi14.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\WmiInspector.dll (4992 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsrC.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsy8.tmp (69460 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsv15.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nss13.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\4DQJW9YN\pixl[1].htm (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nst51.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsw57.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsoD.tmp (1 bytes)
%System%\drivers\etc\hosts (182 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQISTQM\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsd55.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\4DQJW9YN\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nso10.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsj56.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQISTQM\Um7UdXgzvHWLL7R[1] (105 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsf53.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsa37.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\WLMVCPYN\validc[1].htm (1 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\System.dll (11 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\INetC.dll (784 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsu11.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsl54.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\IpConfig.dll (4992 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsg12.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\WLMVCPYN\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsgE.tmp (6 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\nsrC.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsp16.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQISTQM\Um7UdXgzvHWLL7R[1] (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsi14.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsu11.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsf53.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\Um7UdXgzvHWLL7R[1] (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsoD.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsa37.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nst51.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsv15.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsi7.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsg12.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsd55.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nss13.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nso10.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsl54.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsj56.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsw57.tmp (0 bytes)
The process Display.exe:3856 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\HealthLevel.ini (82 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Advanced SystemCare 8.lnk (1 bytes)
%Documents and Settings%\All Users\Desktop\Advanced SystemCare 8.lnk (1 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced SystemCare 8.lnk (1 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Display_log.txt (312 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\Display.madExcept (0 bytes)
The process %original file name%.exe:1108 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\8B684D6F-AA80-453B-BD5F-1A122B58AB7B\ASIns.exe (5442 bytes)
C:\libeay32.dll (6741 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\FF2748B2-525B-4884-84C5-B5112B4BA6D2\iobitdownloader_monster.exe (112 bytes)
C:\ssleay32.dll (1821 bytes)
The process Install_PintoStartMenu.exe:3376 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\Uninstall Programs.lnk (887 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\MenuRight.dat (1064 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\MenuRight.dat (0 bytes)
The process PluginInstall.exe:2172 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\Surfing Protection\Extensions.plist (643 bytes)
%Documents and Settings%\%current user%\AppData\LocalLow\IObit\Advanced SystemCare V8\Main.ini (76 bytes)
%Documents and Settings%\%current user%\Application Data\Apple Computer\Safari\Extensions\Extensions.plist (643 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\AscService.ini (152 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\PluginInstall.madExcept (0 bytes)
The process iobitdownloader_monster.exe:1784 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\C0AF5F80AA0D55CA55AD4471DD73D761 (793 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar2.tmp (2712 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab5.tmp (49 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\140B4CDED8ED877CDC65B54BA965BD39 (1 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BF68F4714092295550497DD56F57004 (408 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 (408 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab1.tmp (54 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar6.tmp (2712 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\140B4CDED8ED877CDC65B54BA965BD39 (168 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar4.tmp (2712 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\0AE1A896B17983DA2D3F15114E2248F0 (9 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\C0AF5F80AA0D55CA55AD4471DD73D761 (168 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\2BF68F4714092295550497DD56F57004 (18 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab3.tmp (54 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 (49 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\67641\asc7-setup-monster.exe (778333 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\0AE1A896B17983DA2D3F15114E2248F0 (184 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\Tar2.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab5.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab1.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar6.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar4.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab3.tmp (0 bytes)
The process asc7-setup-monster.exe:1188 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\is-2VET5.tmp\asc7-setup-monster.tmp (7386 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\is-2VET5.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-2VET5.tmp\asc7-setup-monster.tmp (0 bytes)
The process asc7-setup-monster.tmp:1704 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\Advanced SystemCare 8\is-LD4TQ.tmp (4185 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-8V0AD.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-564HF.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-TVTDN.tmp (2321 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-LL68P.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-EELJV.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-9ST76.tmp (1281 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Inno_English.lng (8 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-7RDJU.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-CPFP7.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Lang.dat (15 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-4U869.tmp (21 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-UIAVO.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OHHF2.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-1VC5V.tmp (4185 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-QEU0V.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-8VS2G.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wlh_amd64\is-V3MAG.tmp (27 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-35BI6.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-L756C.tmp (21 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-SI203.tmp (4 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-H2MA6.tmp (15799 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-TNP35.tmp (4185 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Uninstall Advanced SystemCare.lnk (869 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-NTE2H.tmp (70 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-OBESN.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-PM19I.tmp (5873 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-BPTJM.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-9A6OH.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-21MRR.tmp (3361 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\ASCUpgrade.exe (6722 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-173OJ.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-H5MDV.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-5GDGD.tmp (14022 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-D4029.tmp (1281 bytes)
%Documents and Settings%\All Users\Desktop\Advanced SystemCare 8.lnk (1 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Main.ini (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-6IJU5.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OR7RA.tmp (6960 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-DGD66.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-60H0A.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-V5B6H.tmp (14 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\Cus.dbd (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2KH8C.tmp (601 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\_isetup\_shfoldr.dll (23 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-E4BR8.tmp (5 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-VDE49.tmp (48 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-9LT28.tmp (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2CRSD.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-C646H.tmp (6841 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-N2Q3T.tmp (7971 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-38799.tmp (28 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-1RUOR.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-97U95.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-KVUH1.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ICQ3H.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-4GA92.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-H1CHP.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-FMTCM.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wnet_amd64\is-29GFH.tmp (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OFGPI.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-NH8T4.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-BE4QR.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-QST2E.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-KCNI5.tmp (4545 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Setup Log 2016-04-05 #001.txt (1677361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S57E0.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-AGKJP.tmp (542 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-UEBNL.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-5SS78.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-63N7P.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7R2F5.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ODIAT.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-4LLVQ.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-6HGGP.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-TK9C3.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-2T95P.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3LJNJ.tmp (3361 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp (4 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-P8ND4.tmp (15278 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-K41CT.tmp (41 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-57G8T.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-RV2JT.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-45L0A.tmp (1281 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Lang.dat (15 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-MAK26.tmp (14022 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-SQP39.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-1014P.tmp (15278 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-NOKOJ.tmp (20 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-LMH65.tmp (7726 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-NOSLK.tmp (16582 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-8UNEM.tmp (9976 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-101DD.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-OTG4M.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S2CS6.tmp (5873 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-JVVER.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-GMCUR.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-IBOJV.tmp (7726 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ULJ42.tmp (39945 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-LRV6D.tmp (7385 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-7B0HB.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-OOI7N.tmp (21387 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-DJTL3.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-POUON.tmp (1281 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced SystemCare 8.lnk (1 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2FSP1.tmp (43 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-F1TV7.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-69TG2.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Config\is-RD8BN.tmp (896 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-1SJJC.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-C258R.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-5B4PM.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-RF826.tmp (3 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7QDAI.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3THNO.tmp (2321 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\RdZone.dll (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7S5VD.tmp (7433 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-R4RPH.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-NSOEC.tmp (28 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-EILP8.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-QCI0A.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-568IQ.tmp (10815 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-27MBN.tmp (11 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-6OLCA.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-OVP50.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wnet_x86\is-JPN1K.tmp (23 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-J0IUS.tmp (10 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-NRVP8.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-IJ7H5.tmp (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-483FK.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-CJ3OE.tmp (24284 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-RRVND.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-95VOI.tmp (32429 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-67DD1.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-Q7P4I.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-OHAUJ.tmp (28498 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-IJV9N.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-L67LF.tmp (51 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-BLQML.tmp (9 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-5THJB.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-HM90U.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-A851D.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-64KO2.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-C0CD9.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-MUH3V.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-3B3IR.tmp (1425 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Turbo Boost.lnk (862 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-QH5BB.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-592E1.tmp (10 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Protect.lnk (856 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-T69AK.tmp (6841 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S1KAE.tmp (5873 bytes)
%Program Files%\IObit\Advanced SystemCare 8\unins000.dat (28773 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-6GMRB.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-8U1PP.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-BOH21.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-71428.tmp (2321 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-V9QP4.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-1MMIC.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-GVG5T.tmp (335 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-MENVS.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-O9U9U.tmp (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3E4DA.tmp (7433 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-81RT0.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-443KU.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3AD17.tmp (63 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-VPH9E.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-TF4IM.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-S7ULC.tmp (30 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-QQ4J9.tmp (14988 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-TPDSI.tmp (11518 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2I8TI.tmp (17627 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-L100D.tmp (32763 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Advanced SystemCare 8.lnk (1 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-NFLCM.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-D91LM.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-AQIUD.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-ROUTB.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-D15TU.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-TIF9E.tmp (9605 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-5I6UU.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-E59QG.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-70EJC.tmp (19 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-R8R62.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-20M4N.tmp (12287 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3G2CI.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-CMJE6.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-NCIUF.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-1O8JQ.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-1IS1F.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-8VICO.tmp (5 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wxp_x86\is-RRUAN.tmp (23 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-BE1QD.tmp (3 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Cus.dbd (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ASI2T.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-8H994.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\win7_amd64\is-Q5RCQ.tmp (27 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-E8277.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-M46AI.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-KK7BC.tmp (61184 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-P3IAG.tmp (40450 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-LGRRC.tmp (14988 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-61ECD.tmp (8281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-QK4T8.tmp (4185 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Toolbox.lnk (856 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\win7_x86\is-C2FT2.tmp (24 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-7E3TD.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S9EKI.tmp (64 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-NSQDB.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-75OHQ.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-SR4JQ.tmp (4185 bytes)
%Program Files%\IObit\Advanced SystemCare 8\unins000.msg (646 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-F0SMF.tmp (10815 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-PJTBR.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wxp_amd64\is-67EK8.tmp (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-URU6B.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-HSGCA.tmp (22350 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-I3JP3.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-02CA2.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-9AVVS.tmp (11518 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-Q2OMR.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3OL93.tmp (44 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-6RMEB.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-PK35A.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-PN3AP.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-5HALP.tmp (11518 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OSIP9.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-T1D42.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-JRE3O.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7HHBH.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wlh_x86\is-U7TQV.tmp (24 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\_isetup\_shfoldr.dll (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\ASCUpgrade.exe (0 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\English.lng (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\_isetup (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Inno_English.lng (0 bytes)
%Program Files%\IObit\Advanced SystemCare 8\DefaultProgram.exe (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Lang.dat (0 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\English.lng (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Cus.dbd (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\RdZone.dll (0 bytes)
The process ASCUpgrade.exe:2256 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\ASCInit.log (1058 bytes)
The process Suo12_StartupManager.exe:3364 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\Startup Manager\mainData.dat (12 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Startup Manager\taskInfo.ini (4 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\Suo12_StartupManager.madExcept (0 bytes)
The process Suo12_StartupManager.exe:3260 makes changes in the file system.
The Trojan deletes the following file(s):
%WinDir%\Temp\Suo12_StartupManager.madExcept (0 bytes)
The process AutoCare.exe:3296 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\License.log (417 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\AutoCare.madExcept (0 bytes)
The process AutoCare.exe:3888 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%WinDir%\WindowsUpdate.log (5150 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\AutoCare.madExcept (0 bytes)
The process AutoSweep.exe:3560 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\License.log (323 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Main.ini (248 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\AutoSweep.madExcept (0 bytes)
The process LiveUpdate.exe:2964 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\LiveUpdate\LiveUpdate.log (570 bytes)
The Trojan deletes the following file(s):
%WinDir%\Temp\LiveUpdate.madExcept (0 bytes)
The process LiveUpdate.exe:3420 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\Advanced SystemCare 8\LiveUpdate.log (744 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\LiveUpdate.madExcept (0 bytes)
The process LiveUpdate.exe:2400 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\LiveUpdate\Language\Slovak.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Hungarian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Czech.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\ChineseSimp.lng (1 bytes)
%Program Files%\IObit\LiveUpdate\Language\Portuguese(PT-PT).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Malayalam.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Russian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Greek.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Portuguese(PT-BR).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Latvian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\LiveUpdate.exe (21387 bytes)
%Program Files%\IObit\LiveUpdate\Language\Polish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Dinka.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\ProductStatistics.dll (4185 bytes)
%Program Files%\IObit\LiveUpdate\Language\English.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Finnish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Dutch.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Hebrew.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Romanian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Korean.lng (1 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LiveUpdate.log (1440 bytes)
%Program Files%\IObit\LiveUpdate\Language\Arabic.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Spanish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Vietnamese.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Belarusian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Japanese.lng (1 bytes)
%Program Files%\IObit\LiveUpdate\Language\Flemish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Slovenian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\ChineseTrad.lng (1 bytes)
%Program Files%\IObit\LiveUpdate\Language\Serbian (latin).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Serbian (cyrillic).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Ukrainian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Italian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\German.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Indonesia.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\French.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Turkish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Swedish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Danish.lng (2 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\LiveUpdate.madExcept (0 bytes)
The process ACPreScan.exe:2488 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\ZLBF.tmp (280160 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\Drivers.db.temp (63580 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Main.ini (148 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\ZLBF.tmp (0 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\Drivers.db.temp (0 bytes)
The process IObitUninstaller.exe:2372 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB19.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Vietnamese.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4E.tmp (392 bytes)
%Program Files%\IObit\IObit Uninstaller\lang.dbd (26 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\German.lng (41 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1A.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Hindi.lng (34 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB24.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\maddisAsm_.bpl (51 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallPromote.exe (11518 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\ChineseTrad.lng (25 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB43.tmp (6984 bytes)
%Program Files%\IObit\IObit Uninstaller\sqlite3.dll (4545 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Hungarian.lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB35.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4C.tmp (24248 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB18.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4D.tmp (16 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Malayalam.lng (34 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Indonesian.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\taskmgr.dll (2105 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4F.tmp (23608 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Portuguese(PT-BR).lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallRote.dbd (1714 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB31.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\vcl120.bpl (14988 bytes)
%Program Files%\IObit\IObit Uninstaller\madbasic_.bpl (673 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB50.tmp (9760 bytes)
%Program Files%\IObit\IObit Uninstaller\IObitUninstaler.exe (61184 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB22.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4B.tmp (17904 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Danish.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Ukrainian.lng (39 bytes)
%Program Files%\IObit\IObit Uninstaller\R3vM4pIiMK (30622 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Bulgarian.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Slovak.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\Uninstall_Mitor.exe (296 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB29.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4A.tmp (20504 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2F.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB40.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB32.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1F.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1B.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Polish.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Korean.lng (28 bytes)
%Program Files%\IObit\IObit Uninstaller\datastate.dll (601 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB42.tmp (5 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB48.tmp (28864 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Serbian(Cyrillic).lng (36 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Dutch.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallExplorer32_1.dll (3825 bytes)
%Program Files%\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe (262 bytes)
%Program Files%\IObit\IObit Uninstaller\Skin\classic.rcc (1818 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Swedish.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Thai.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1E.tmp (6 bytes)
%Documents and Settings%\All Users\Desktop\IObit Uninstaller.lnk (881 bytes)
%Program Files%\IObit\IObit Uninstaller\Skin\metro.rcc (1750 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Arabic.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3F.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallDisplay.exe (3849 bytes)
%Program Files%\IObit\IObit Uninstaller\PPUninstaller.exe (6374 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Catalan.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\pr.dat (16 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB44.tmp (1928 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB26.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB47.tmp (18768 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB23.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB30.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1C.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallMonitor.exe (188 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2A.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Mongolian.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Flemish.lng (40 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3D.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB21.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1D.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\rtl120.bpl (7433 bytes)
%Program Files%\IObit\IObit Uninstaller\Install_PintoStartMenu.exe (1869 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Belarusian.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallMenuRight32_1.dll (219 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\French.lng (40 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\Main.ini (94 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Serbian(Latin).lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Slovenian.lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3C.tmp (8 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB27.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB39.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Romanian.lng (40 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB49.tmp (26 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Latvian.lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB20.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB28.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Finnish.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Greek.lng (42 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Japanese.lng (27 bytes)
%Program Files%\IObit\IObit Uninstaller\ProductStatistics.dll (4185 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB33.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3A.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB38.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Croatian.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\English.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB45.tmp (9496 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3E.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2C.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\vclx120.bpl (1281 bytes)
%Program Files%\IObit\IObit Uninstaller\SysRest.dll (76 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3B.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\ChineseSimp.lng (24 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB25.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\madexcept_.bpl (2105 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2E.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\uninstall_qdb.dbd (5 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB41.tmp (28320 bytes)
%Program Files%\IObit\IObit Uninstaller\SendBugReportNew.exe (3361 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2B.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Spanish.lng (39 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Georgian.lng (38 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB36.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB46.tmp (10216 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB34.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\EULA.rtf (41 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Italian.lng (35 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\IObit Uninstaller\Uninstall IObit Uninstaller.lnk (915 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Russian.lng (38 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\IObit Uninstaller\IObit Uninstaller.lnk (893 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Portuguese(PT-PT).lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB17.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\webres.dll (6841 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Turkish.lng (39 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Albanian.lng (40 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2D.tmp (7 bytes)
The Trojan deletes the following file(s):
%Program Files%\IObit\IObit Uninstaller\R3vM4pIiMK (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB42.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB38.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB26.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB21.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB23.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB30.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB43.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB29.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB19.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1C.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3C.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4A.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2F.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2A.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2C.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB41.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB32.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1F.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB40.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1B.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB47.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1A.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1D.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB24.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB25.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB45.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\IObitUninstaller.madExcept (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4E.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4D.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB44.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3B.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB35.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2E.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1E.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB27.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB39.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB18.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2B.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB49.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB36.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB20.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB34.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB28.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB46.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3F.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4F.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB48.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4B.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4C.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3E.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB17.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB50.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB33.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB22.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3D.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2D.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3A.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB31.tmp (0 bytes)
The process ASCInit.exe:2644 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\ZLBB.tmp (233 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\License.log (7856 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Boottime\path.ini (97 bytes)
%Program Files%\Common Files\IObit\Advanced SystemCare V8\App.bk (227 bytes)
%Documents and Settings%\All Users\Application Data\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}\desktop.ini (63 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Ignore.ini (355358 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLBA.tmp (300 bytes)
%Program Files%\Common Files\IObit\Advanced SystemCare V8\EApp.bk (160 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V7\Main.Ini (402 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Main.ini (277 bytes)
%Program Files%\IObit\Advanced SystemCare 8\ASCInit.log (10483 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\ASCInit.madExcept (0 bytes)
The process SPSetup.tmp:2712 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\Surfing Protection\is-BBS1E.tmp (3073 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-4JC74.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-SIQDC.tmp (19 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-AIDPO.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-0BQ4A.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\is-1UDOL.tmp (398 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-A3T7D.tmp (42 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-55MUT.tmp (4545 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\is-5KLKR.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-AT1VH.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-6KEQG.tmp (136 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-OR7EH.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-SLBUS.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-2SFV4.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-CBS3B.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-SHBS2.tmp (22 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-PMEI5.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-7O4HG.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\is-2534D.tmp (9605 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-67T1A.tmp (24 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-LF24R.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-DD5SS.tmp (24 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-B9EU5.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-B728R.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-0GOHT.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-R3CBA.tmp (545 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-4OU93.tmp (393 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-JNTKS.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Database\is-7TE6N.tmp (768 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-TRN2E.tmp (5441 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-DSQTL.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-QTTSF.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-9AH8N.tmp (13 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-A1DCT.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-O1R1C.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-VJR48.tmp (14 bytes)
%Program Files%\IObit\Surfing Protection\is-CS8MG.tmp (32233 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-IHAEK.tmp (812 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-AVCTC.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\is-64FBE.tmp (153 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-1F4BI.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-ECKDT.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-4EUPL.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-GMBM5.tmp (7 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-GSCME.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-KB0M8.tmp (768 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-8N5N5.tmp (924 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-B1EVU.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-NJIQL.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-URB1G.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-533N1.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-EPP6S.tmp (206 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-JI15G.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-7TGN1.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\is-2FEGE.tmp (8281 bytes)
%Program Files%\IObit\Surfing Protection\unins000.msg (646 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-3LLD4.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-Q9EOD.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-17Q2O.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-4MH0F.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-RHA8G.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\Database\is-F3O2B.tmp (23 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-7JBR6.tmp (28 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-TVUBO.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-0MSTH.tmp (7385 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-JH346.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-U1C7C.tmp (8 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-3J744.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\unins000.dat (11432 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-MECSB.tmp (5 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\is-LC7QD.tmp (4 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp\_isetup\_shfoldr.dll (23 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-SHQ3O.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-9FOCB.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-89AO1.tmp (878 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-FT67G.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-AV044.tmp (6 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-A5QP6.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\is-DJQIH.tmp (843 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-Q7FUJ.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-KC3SS.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-O1QK5.tmp (6 bytes)
%Program Files%\IObit\Surfing Protection\Database\is-JCT5N.tmp (38295 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-LM0T0.tmp (1 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp\Inno_English.lng (5 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-ENHTK.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-N24AR.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-KHFH5.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-8F20B.tmp (1 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp\Inno_English.lng (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp\_isetup (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp\_isetup\_shfoldr.dll (0 bytes)
The process RealTimeProtector.exe:2832 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Main.ini (884 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\RealTimeProtector.madExcept (0 bytes)
The process RealTimeProtector.exe:2336 makes changes in the file system.
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\RealTimeProtector.madExcept (0 bytes)
The process SPSetup.exe:2344 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\is-LKT62.tmp\SPSetup.tmp (7386 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\is-LKT62.tmp\SPSetup.tmp (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-LKT62.tmp (0 bytes)
The process Wizard.exe:2240 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\Advanced SystemCare 8\Wizard.log (1150 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\License.log (724 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Main.ini (2666 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\Wizard.madExcept (0 bytes)
The process Homepage.exe:3296 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\Homepage Protection\Homepage.log (673 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\Homepage.madExcept (0 bytes)
The process UninstallPromote.exe:3508 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\License.log (562 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Install.ini (159 bytes)
%Documents and Settings%\%current user%\LocalLow\IObit\installinfo.ini (82 bytes)
%Documents and Settings%\%current user%\LocalLow\IObit\AC.ini (146 bytes)
The process UninstallPromote.exe:3268 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\LocalLow\IObit\installinfo.ini (106 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Install.ini (348 bytes)
%Documents and Settings%\%current user%\LocalLow\IObit\AC.ini (214 bytes)
The process Uninstaler_SkipUac.exe:3412 makes changes in the file system.
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Local Settings\Temp\Uninstaler_SkipUac.madExcept (0 bytes)
The process PPUninstaller.exe:3428 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\BCleanerdb (489 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\BCleanerdb-journal (532 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB52.tmp (28320 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\PPMain.ini (103 bytes)
The Trojan deletes the following file(s):
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\BCleanerdb-journal (0 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB52.tmp (0 bytes)
The process ASCService.exe:3108 makes changes in the file system.
The Trojan creates and/or writes to the following file(s):
%Program Files%\IObit\Advanced SystemCare 8\Database\google.xml (2 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\HomepageProtect.ini (23394 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\AscService.ini (211 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\bing.xml (2 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\HomepageIgnore.dbd (1 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\Homepage Protection\ASCService.log (9449 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\yahoo.xml (1 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\ProgramDeactivator\myAutoDisable.ini (4 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\HomepageWhite.dbd (1 bytes)
%Program Files%\IObit\Advanced SystemCare 8\ASCService.log (21755 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\HomepageBlack.dbd (130 bytes)
The Trojan deletes the following file(s):
%WinDir%\Temp\ASCService.madExcept (0 bytes)
Registry activity
The process LocalLang.exe:2652 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "87 C2 DE 83 E1 F6 99 63 79 7D 36 C1 A4 F8 7D E7"
The process ASIns.exe:2428 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Directory" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path4]
"CacheLimit" = "65452"
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache4"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections]
"SavedLegacySettings" = "3C 00 00 00 1E 00 00 00 01 00 00 00 00 00 00 00"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKLM\System\CurrentControlSet\Hardware Profiles\0001\Software\Microsoft\windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CacheLimit" = "65452"
[HKLM\System\CurrentControlSet\Services\NlaSvc]
"pname" = "AS"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CacheLimit" = "65452"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Local AppData" = "%Documents and Settings%\%current user%\Local Settings\Application Data"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "C7 2E F7 FA DA 1E 71 C3 4F 2B B4 8A 73 DC 6C 07"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CacheLimit" = "65452"
[HKLM\System\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies]
"(Default)" = ""
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"MigrateProxy" = "1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"History" = "%Documents and Settings%\%current user%\Local Settings\History"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache3"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Paths" = "4"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
Proxy settings are disabled:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"ProxyEnable" = "0"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName" = "1"
The Trojan deletes the following value(s) in system registry:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL"
"ProxyServer"
"ProxyOverride"
The process Display.exe:3856 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "6B 6E 5E 97 E7 49 01 88 3C 04 CC B1 97 97 9D D3"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Programs" = "%Documents and Settings%\All Users\Start Menu\Programs"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
"CommonVideo" = "%Documents and Settings%\All Users\Documents\My Videos"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
"My Pictures" = "%Documents and Settings%\%current user%\My Documents\My Pictures"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 8]
"HealthLevel" = "1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 8]
"LastWrite" = "42465.1212972222"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonMusic" = "%Documents and Settings%\All Users\Documents\My Music"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Start Menu" = "%Documents and Settings%\All Users\Start Menu"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Start Menu" = "%Documents and Settings%\%current user%\Start Menu"
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonPictures" = "%Documents and Settings%\All Users\Documents\My Pictures"
The process %original file name%.exe:1108 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy\traceIdentifier]
"Guid" = "5f31090b-d990-4e91-b16d-46121d0255aa"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil\traceIdentifier]
"Guid" = "8aefce96-4618-42ff-a057-3536aa78233e"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\DOCUME~1\"%CurrentUserName%"\LOCALS~1\Temp\FF2748B2-525B-4884-84C5-B5112B4BA6D2]
"iobitdownloader_monster.exe" = "Software Installer for Windows"
[HKCU\Software\IM]
"469" = "16-04-05 2:55:8"
[HKLM\System\CurrentControlSet\Services\Eventlog\Application\ESENT]
"EventMessageFile" = "%System%\ESENT.dll"
"CategoryCount" = "16"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication]
"ID" = "708992537"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy]
"Active" = "1"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg\traceIdentifier]
"BitNames" = " Error Unusual Info Debug"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg]
"Active" = "1"
[HKLM\SOFTWARE\Microsoft\ESENT\Process\2e3e878e105df45630feee46f2f5d61d\DEBUG]
"Trace Level" = ""
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy\traceIdentifier]
"BitNames" = " Error Unusual Info Debug"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg]
"ControlFlags" = "1"
[HKLM\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication]
"Name" = "%original file name%.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil]
"Active" = "1"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappprxy]
"LogSessionName" = "stdout"
"ControlFlags" = "1"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg\traceIdentifier]
"Guid" = "5f31090b-d990-4e91-b16d-46121d0255aa"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil\traceIdentifier]
"BitNames" = " Error Unusual Info Debug"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "32 E4 94 E7 48 13 F0 D6 54 5B F0 FB 45 AB 41 D1"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\DOCUME~1\"%CurrentUserName%"\LOCALS~1\Temp\8B684D6F-AA80-453B-BD5F-1A122B58AB7B]
"ASIns.exe" = "ASIns"
[HKLM\System\CurrentControlSet\Services\Eventlog\Application\ESENT]
"CategoryMessageFile" = "%System%\ESENT.dll"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil]
"LogSessionName" = "stdout"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\eappcfg]
"LogSessionName" = "stdout"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\System\CurrentControlSet\Services\Eventlog\Application\ESENT]
"TypesSupported" = "7"
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Tracing\Microsoft\QUtil]
"ControlFlags" = "1"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
"IntranetName" = "1"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
The Trojan deletes the following value(s) in system registry:
[HKLM\SOFTWARE\Microsoft\ESENT\Process\2e3e878e105df45630feee46f2f5d61d\DEBUG]
"Trace Level"
The process Install_PintoStartMenu.exe:3376 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "C4 EF 69 B3 80 5A B3 CA 6A 88 F6 EE 52 66 6D 4A"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
"CommonVideo" = "%Documents and Settings%\All Users\Documents\My Videos"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
"My Pictures" = "%Documents and Settings%\%current user%\My Documents\My Pictures"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached]
"{2803063F-4B8D-4DC6-8874-D1802487FE2D} {000214E8-0000-0000-C000-000000000046} 0x401" = "01 00 00 00 31 00 38 00 BA 1D 54 77 CD 8E D1 01"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonMusic" = "%Documents and Settings%\All Users\Documents\My Music"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Start Menu" = "%Documents and Settings%\All Users\Start Menu"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Start Menu" = "%Documents and Settings%\%current user%\Start Menu"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Cached]
"{B19ED566-D419-470B-B111-3C89040BC027} {000214E8-0000-0000-C000-000000000046} 0x401" = "01 00 00 00 31 00 38 00 72 23 D8 76 CD 8E D1 01"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonPictures" = "%Documents and Settings%\All Users\Documents\My Pictures"
The process regsvr32.exe:3196 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "20 9B C7 C7 DD B3 F8 26 3D 55 B8 64 1B 5F 89 EA"
[HKCR\Directory\shellex\ContextMenuHandlers\IObitUnstaler]
"(Default)" = "{B19ED566-D419-470b-B111-3C89040BC027}"
[HKCR\TypeLib\{CFDD9042-CEFB-4B68-B956-90CB0E466B38}\1.0\FLAGS]
"(Default)" = "0"
[HKCR\TypeLib\{CFDD9042-CEFB-4B68-B956-90CB0E466B38}\1.0]
"(Default)" = "PfShellExtension 1.0 Type Library"
[HKCR\AppID\PfShellExtension.DLL]
"AppID" = "{59A55EF0-525F-4276-AB62-8F7E5F230399}"
[HKCR\*\shellex\ContextMenuHandlers\IObitUnstaler]
"(Default)" = "{B19ED566-D419-470b-B111-3C89040BC027}"
[HKCR\Folder\shellex\ContextMenuHandlers\IObitUnstaler]
"(Default)" = "{B19ED566-D419-470b-B111-3C89040BC027}"
[HKCR\TypeLib\{CFDD9042-CEFB-4B68-B956-90CB0E466B38}\1.0\HELPDIR]
"(Default)" = "%Program Files%\IObit\IObit Uninstaller"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{B19ED566-D419-470b-B111-3C89040BC027}" = "IObitUnstaler"
[HKCR\TypeLib\{CFDD9042-CEFB-4B68-B956-90CB0E466B38}\1.0\0\win32]
"(Default)" = "%Program Files%\IObit\IObit Uninstaller\UninstallMenuRight32.dll"
[HKCR\AppID\{59A55EF0-525F-4276-AB62-8F7E5F230399}]
"(Default)" = "PfShellExtension"
[HKCR\CLSID\{B19ED566-D419-470b-B111-3C89040BC027}\InprocServer32]
"ThreadingModel" = "Apartment"
[HKCR\CLSID\{B19ED566-D419-470b-B111-3C89040BC027}]
"(Default)" = "IObitUnstaler Class"
[HKCR\lnkfile\shellex\ContextMenuHandlers\IObitUnstaler]
"(Default)" = "{B19ED566-D419-470b-B111-3C89040BC027}"
[HKCR\CLSID\{B19ED566-D419-470b-B111-3C89040BC027}\InprocServer32]
"(Default)" = "%Program Files%\IObit\IObit Uninstaller\UninstallMenuRight32.dll"
The process regsvr32.exe:3204 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "56 4B 38 8A 3B 9E DD 3D A8 6D 19 3B 66 D8 A5 89"
[HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
"(Default)" = "ExplorerWnd Helper"
[HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}\InprocServer32]
"(Default)" = "C:\PROGRA~1\IObit\IOBITU~1\UNINST~1.DLL"
[HKCR\UninstallExplorer32.ExplorerBtn]
"(Default)" = "ExplorerWnd Helper"
[HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}\InprocServer32]
"ThreadingModel" = "Apartment"
[HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}\ProgID]
"(Default)" = "UninstallExplorer32.ExplorerBtn"
[HKCR\UninstallExplorer32.ExplorerBtn\Clsid]
"(Default)" = "{10921475-03CE-4E04-90CE-E2E7EF20C814}"
It registers itself as a Browser Helper Object (BHO) to ensure its automatic execution every time Internet Explorer is run. It does this by creating the following registry key(s)/entry(ies):
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}]
"NewTime" = "2016-04-05 02:55:21:767"
"(Default)" = "ExplorerWnd Helper"
"NoInternetExplorer" = "1"
The process regsvr32.exe:2264 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "0B 2A E5 86 B3 9A A4 C7 B0 1F CE 61 A1 16 E9 FF"
[HKCR\ASCPlugin_Protection.TASCBrowserProtection]
"(Default)" = "Advanced SystemCare Surfing Protection"
[HKCR\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
"(Default)" = "Advanced SystemCare Surfing Protection"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKCR\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}\InprocServer32]
"(Default)" = "C:\PROGRA~1\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL"
"ThreadingModel" = "Apartment"
[HKCR\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}\ProgID]
"(Default)" = "ASCPlugin_Protection.TASCBrowserProtection"
[HKCR\ASCPlugin_Protection.TASCBrowserProtection\Clsid]
"(Default)" = "{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}"
It registers itself as a Browser Helper Object (BHO) to ensure its automatic execution every time Internet Explorer is run. It does this by creating the following registry key(s)/entry(ies):
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}]
"NoExplorer" = "1"
"(Default)" = ""
The process PluginInstall.exe:2172 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "DD 8B B1 B9 C6 32 DD 09 5C 9D 22 B3 A9 6F DD 02"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Internet Explorer\Main]
"Isolation" = "PMIL"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 8]
"InstallPath" = "%Program Files%\IObit\Surfing Protection"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Local AppData" = "%Documents and Settings%\%current user%\Local Settings\Application Data"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"ProxyBypass" = "1"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
"IntranetName" = "1"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
"UNCAsIntranet" = "1"
The process iobitdownloader_monster.exe:1784 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKCU\Software\install314\ppi]
"reg" = "rus"
[HKLM\System\CurrentControlSet\Control\Session Manager]
"PendingFileRenameOperations" = "\??\%Documents and Settings%\%current user%\Local Settings\Temp\67641\asc7-setup-monster.exe,"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKCU\Software\install314\ppi]
"Src" = "monster"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\install314\ppi]
"1stllaunch" = "4/5/2016 2:53:19 AM monster"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"Homepage.exe" = "Homepage Protection Client"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKCU\Software\install314\ppi]
"asc/monster" = "1"
"Install" = "4/5/2016 2:53:19 AM"
[HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates\3E2BF7F2031B96F38CE6C4D8A85D3E2D58476A0F]
"Blob" = "19 00 00 00 01 00 00 00 10 00 00 00 6D 00 C0 25"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "85 19 42 54 AB 09 22 BA 17 74 3D 9D F5 C2 C8 10"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Documents and Settings%\%current user%\Local Settings\Temp\67641]
"asc7-setup-monster.exe" = "Advanced SystemCare 8"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
"IntranetName" = "1"
The Trojan deletes the following value(s) in system registry:
[HKLM\SOFTWARE\Microsoft\SystemCertificates\AuthRoot\Certificates]
"3E2BF7F2031B96F38CE6C4D8A85D3E2D58476A0F"
The process asc7-setup-monster.exe:1188 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "B4 27 34 41 9D E1 44 BB B0 12 6C 92 71 65 02 15"
The process asc7-setup-monster.tmp:1704 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Programs" = "%Documents and Settings%\%current user%\Start Menu\Programs"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"Publisher" = "IObit"
"Inno Setup: Icon Group" = "Advanced SystemCare 8"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 8]
"ref" = "asc8"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"Inno Setup: Deselected Tasks" = ""
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Start Menu" = "%Documents and Settings%\All Users\Start Menu"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"Wizard.exe" = "Advanced SystemCare Wizard"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"Inno Setup: Setup Version" = "5.5.4 (u)"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"NoModify" = "1"
"HelpLink" = "http://www.iobit.com/"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 8]
"AppPath" = "%Program Files%\IObit\Advanced SystemCare 8\"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"MinorVersion" = "4"
"DisplayIcon" = "%Program Files%\IObit\Advanced SystemCare 8\ASC.exe"
[HKLM\SOFTWARE\IObit\ASC]
"Latest Version" = "8.4.0.811"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonPictures" = "%Documents and Settings%\All Users\Documents\My Pictures"
[HKLM\SOFTWARE\IObit\ASC]
"Path" = "%Program Files%\IObit\Advanced SystemCare 8\ASC.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonMusic" = "%Documents and Settings%\All Users\Documents\My Music"
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"SPSetup.exe" = "IObit Surfing Protection"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"InstallDate" = "20160405"
"Inno Setup: Selected Tasks" = "desktopicon,quicklaunchicon"
"URLUpdateInfo" = "http://www.iobit.com/"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"RealTimeProtector.exe" = "Real-time Protector"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"UninstallString" = "%Program Files%\IObit\Advanced SystemCare 8\unins000.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"My Pictures" = "%Documents and Settings%\%current user%\My Documents\My Pictures"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"URLInfoAbout" = "http://www.iobit.com/"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"LocalLang.exe" = "LocalLang"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"NoRepair" = "1"
"DisplayVersion" = "8.4.0"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"ACPreScan.exe" = "Advanced SystemCare Pre Scan"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Start Menu" = "%Documents and Settings%\%current user%\Start Menu"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"DisplayName" = "Advanced SystemCare 8"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonVideo" = "%Documents and Settings%\All Users\Documents\My Videos"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\C:\DOCUME~1\"%CurrentUserName%"\LOCALS~1\Temp\is-3OIA2.tmp]
"ASCUpgrade.exe" = "Advanced SystemCare 8 Upgrader"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"IObitUninstaller.exe" = "Uninstall Programs"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "6C B8 3D 0C 06 99 3D 69 4A 1C 1F 72 4B 43 D7 3D"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Programs" = "%Documents and Settings%\All Users\Start Menu\Programs"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"ASCInit.exe" = "Advanced SystemCare 8 Initialization"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"MajorVersion" = "8"
"Inno Setup: Language" = "English"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"Inno Setup: User" = "%CurrentUserName%"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"QuietUninstallString" = "%Program Files%\IObit\Advanced SystemCare 8\unins000.exe /SILENT"
"Inno Setup: App Path" = "%Program Files%\IObit\Advanced SystemCare 8"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"DiskDefrag.exe" = "Advanced SystemCare Disk Defrag"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1]
"InstallLocation" = "%Program Files%\IObit\Advanced SystemCare 8\"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
"IntranetName" = "1"
The process ASCUpgrade.exe:2256 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "E6 EC C9 FD 1C 32 A9 15 FB A6 23 48 47 CE C4 F8"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process ASCUpgrade.exe:2676 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "7F B5 BF 35 23 B4 FE 6A 9C 2B 18 37 C9 88 F7 E3"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 8]
"Aff" = "10010"
The process DiskDefrag.exe:2448 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "6F B5 3B 33 77 45 A9 76 3E 26 F9 93 94 FA F3 CE"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
The process sc.exe:3532 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "81 2B 51 76 1E AD 2A D9 65 C7 35 E6 C2 09 BB C1"
The process sc.exe:3404 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "35 73 98 EF D9 E3 ED 46 E8 C2 C4 90 00 92 1F 0F"
The process Suo12_StartupManager.exe:3364 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "81 57 75 4A DB DF E9 0D 40 F3 A1 69 F9 97 C1 47"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
"Startup" = "%Documents and Settings%\%current user%\Start Menu\Programs\Startup"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
"Common Startup" = "%Documents and Settings%\All Users\Start Menu\Programs\Startup"
The process Suo12_StartupManager.exe:3260 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "98 F1 B4 1E 2C 20 92 03 FF B6 DD DF 3D 2D DE 5F"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\LocalService\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process AutoCare.exe:3296 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "4F A2 ED 7B 5A B1 C5 AB C7 F5 A5 50 79 C5 45 02"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process AutoCare.exe:3888 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "4F FC EA 45 94 67 BE DF 3A C3 E9 55 76 9B 69 0C"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process AutoSweep.exe:3560 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "7C 39 58 67 08 11 A1 A9 E4 60 FA C0 0F D2 7B 94"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process LiveUpdate.exe:2964 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "11 0B 64 FA B2 0E 6E DA 7D FD 4D 8D 66 80 1D 2A"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\LocalService\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process LiveUpdate.exe:3420 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "1B 1C 54 3C 88 85 3C 38 20 D5 20 2F BD 73 38 11"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\IObit\LiveUpdate]
"AppPath" = "%Program Files%\IObit\LiveUpdate\LiveUpdate.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKLM\System\CurrentControlSet\Services\LiveUpdateSvc]
"Description" = "LiveUpdate"
The process LiveUpdate.exe:2400 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "05 44 9D 6E 40 34 09 99 3D 19 87 86 44 B1 8D CE"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\IObit\LiveUpdate]
"AppPath" = "%Program Files%\IObit\LiveUpdate\LiveUpdate.exe"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKLM\System\CurrentControlSet\Services\LiveUpdateSvc]
"Description" = "LiveUpdate"
The process Regsvr32.exe:3576 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "D4 28 36 2C 9E 0D 32 81 4C 8E 1C 60 F8 7D E8 F4"
The process Regsvr32.exe:3536 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKCR\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}\TypeLib]
"(Default)" = "{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}"
[HKCR\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}\InprocServer32]
"(Default)" = "%Program Files%\IObit\Advanced SystemCare 8\ASCExtMenu.dll"
"ThreadingModel" = "Apartment"
[HKCR\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}\ProgID]
"(Default)" = "ASCExtMenu.CExtMenu.1"
[HKCR\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}\ProxyStubClsid32]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"
[HKCR\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}\ProxyStubClsid]
"(Default)" = "{00020424-0000-0000-C000-000000000046}"
[HKCR\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}\TypeLib]
"Version" = "1.0"
[HKCR\ASCExtMenu.CExtMenu.1]
"(Default)" = "CExtMenu Class"
[HKCR\*\shellex\ContextMenuHandlers\Advanced SystemCare]
"(Default)" = "{2803063F-4B8D-4dc6-8874-D1802487FE2D}"
[HKCR\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}]
"(Default)" = "CExtMenu Class"
[HKCR\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}\VersionIndependentProgID]
"(Default)" = "ASCExtMenu.CExtMenu"
[HKCR\ASCExtMenu.CExtMenu\CurVer]
"(Default)" = "ASCExtMenu.CExtMenu.1"
[HKCR\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}\1.0\HELPDIR]
"(Default)" = "%Program Files%\IObit\Advanced SystemCare 8"
[HKCR\lnkfile\shellex\ContextMenuHandlers\Advanced SystemCare]
"(Default)" = "{2803063F-4B8D-4dc6-8874-D1802487FE2D}"
[HKCR\Interface\{BA935377-E17C-4475-B1BF-DE3110613A99}]
"(Default)" = "ICExtMenu"
[HKCR\ASCExtMenu.CExtMenu\CLSID]
"(Default)" = "{2803063F-4B8D-4dc6-8874-D1802487FE2D}"
[HKCR\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}\1.0]
"(Default)" = "ASCExtMenu 1.0 Type Library"
[HKCR\CLSID\{2803063F-4B8D-4dc6-8874-D1802487FE2D}\TypeLib]
"(Default)" = "{60AD0991-ECD4-49dc-B170-8B7E7C60F51B}"
[HKCR\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\Advanced SystemCare]
"(Default)" = "{2803063F-4B8D-4dc6-8874-D1802487FE2D}"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "2B FE DF 51 3B 37 4F B3 6F 80 8B 02 8D 69 7B E5"
[HKCR\Drive\shellex\ContextMenuHandlers\Advanced SystemCare]
"(Default)" = "{2803063F-4B8D-4dc6-8874-D1802487FE2D}"
[HKCR\Directory\shellex\ContextMenuHandlers\Advanced SystemCare]
"(Default)" = "{2803063F-4B8D-4dc6-8874-D1802487FE2D}"
[HKCR\ASCExtMenu.CExtMenu]
"(Default)" = "CExtMenu Class"
[HKCR\ASCExtMenu.CExtMenu.1\CLSID]
"(Default)" = "{2803063F-4B8D-4dc6-8874-D1802487FE2D}"
[HKCR\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}\1.0\FLAGS]
"(Default)" = "0"
[HKCR\TypeLib\{60AD0991-ECD4-49DC-B170-8B7E7C60F51B}\1.0\0\win32]
"(Default)" = "%Program Files%\IObit\Advanced SystemCare 8\ASCExtMenu.dll"
The process ACPreScan.exe:2488 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "DC 1D FF 95 13 95 EB 31 4D 36 DC 06 1E ED 88 81"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process verclsid.exe:3364 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "6F 61 94 37 BC B7 05 BE F0 A5 F8 05 38 A0 E7 CF"
The process verclsid.exe:3608 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "07 6C 78 F9 9B 56 79 89 57 95 B1 F2 73 65 4E 68"
The process IObitUninstaller.exe:2372 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\IObit Uninstaller]
"Install_PintoStartMenu.exe" = "Install_PintoStartMenu"
[HKLM\SOFTWARE\IObit\Uninstaller 4]
"UninstallerFree" = "%Program Files%\IObit\IObit Uninstaller"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall]
"InstallDate" = "20160405"
"UninstallString" = "%Program Files%\IObit\IObit Uninstaller\UninstallDisplay.exe uninstall_start"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Start Menu" = "%Documents and Settings%\All Users\Start Menu"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall]
"DisplayVersion" = "4.3.0.5"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCR\CLSID\{8DE189EC-C9C8-4D31-9F18-E0B7407019A9}]
"(Default)" = "IObit Uninstaller"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall]
"Publisher" = "IObit"
[HKCR\CLSID\{8DE189EC-C9C8-4D31-9F18-E0B7407019A9}\DefaultIcon]
"(Default)" = "%Program Files%\IObit\IObit Uninstaller\IObitUninstaler.exe,0"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonMusic" = "%Documents and Settings%\All Users\Documents\My Music"
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKCR\CLSID\{8DE189EC-C9C8-4D31-9F18-E0B7407019A9}\Shell\Open\command]
"(Default)" = "%Program Files%\IObit\IObit Uninstaller\IObitUninstaler.exe control_statistics"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"My Pictures" = "%Documents and Settings%\%current user%\My Documents\My Pictures"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\IObit Uninstaller]
"UninstallPromote.exe" = "UninstallPromote"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall]
"DisplayIcon" = "%Program Files%\IObit\IObit Uninstaller\IObitUninstaler.exe"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\IObit Uninstaller]
"PPUninstaller.exe" = "PPUninstaller"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Start Menu" = "%Documents and Settings%\%current user%\Start Menu"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"CommonVideo" = "%Documents and Settings%\All Users\Documents\My Videos"
"CommonPictures" = "%Documents and Settings%\All Users\Documents\My Pictures"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "69 42 93 B3 91 35 E1 C3 49 D3 F9 A3 DC 1D 93 25"
[HKCR\CLSID\{8DE189EC-C9C8-4D31-9F18-E0B7407019A9}]
"{305ca226-d286-468e-b848-2b2e8e697b74} 2" = "8"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Programs" = "%Documents and Settings%\All Users\Start Menu\Programs"
[HKCR\CLSID\{8DE189EC-C9C8-4D31-9F18-E0B7407019A9}]
"InfoTip" = "Uninstall/Remove programs, clean browser plugins"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\IObit Uninstaller]
"Uninstaler_SkipUac.exe" = "Uninstall Programs"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall]
"DisplayName" = "IObit Uninstaller"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ControlPanel\NameSpace\{8DE189EC-C9C8-4D31-9F18-E0B7407019A9}]
"(Default)" = "IObit Uninstaller"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall]
"InstallLocation" = "%Program Files%\IObit\IObit Uninstaller\IObitUninstaler.exe"
[HKCR\CLSID\{8DE189EC-C9C8-4D31-9F18-E0B7407019A9}\ShellFolder]
"Attributes" = "48"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
"IntranetName" = "1"
The Trojan deletes the following value(s) in system registry:
[HKLM\SOFTWARE\IObit\Uninstaller 4]
"UninstallerFreeWeb"
"UninstallerFree"
The process ASCInit.exe:2644 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MyComputer\DefragPath]
"(Default)" = "%Program Files%\IObit\Advanced SystemCare 8\DiskDefrag.exe"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Start Menu" = "%Documents and Settings%\All Users\Start Menu"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 6]
"IdleCare" = "1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 6]
"isDefragMemory" = "1"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"UninstallPromote.exe" = "UninstallPromote"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "0F 2D D8 56 85 07 81 3F 0B 57 C3 5C 1A C3 0B E3"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%System%]
"regsvr32.exe" = "Microsoft(C) Register Server"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
To automatically run itself each time Windows is booted, the Trojan adds the following link to its file to the system registry autorun key:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 8" = "%Program Files%\IObit\Advanced SystemCare 8\ASCTray.exe /Auto"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"IntranetName" = "1"
The process SPSetup.tmp:2712 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Surfing Protection]
"PluginInstall.exe" = "Surfing Protection"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"DisplayVersion" = "1.2"
"Inno Setup: Language" = "English"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Programs" = "%Documents and Settings%\%current user%\Start Menu\Programs"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"URLUpdateInfo" = "http://www.iobit.com/"
"DisplayName" = "Surfing Protection"
"Inno Setup: Icon Group" = "Surfing Protection"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Personal" = "%Documents and Settings%\%current user%\My Documents"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd73-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"NoModify" = "1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd75-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"MajorVersion" = "1"
"UninstallString" = "%Program Files%\IObit\Surfing Protection\unins000.exe"
"Inno Setup: Setup Version" = "5.5.4 (u)"
"InstallLocation" = "%Program Files%\IObit\Surfing Protection\"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Desktop" = "%Documents and Settings%\All Users\Desktop"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"Inno Setup: User" = "%CurrentUserName%"
"HelpLink" = "http://www.iobit.com/"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Documents" = "%Documents and Settings%\All Users\Documents"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"URLInfoAbout" = "http://www.iobit.com/"
"MinorVersion" = "2"
"Publisher" = "IObit"
"NoRepair" = "1"
"Inno Setup: App Path" = "%Program Files%\IObit\Surfing Protection"
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "D9 62 48 B0 BF 41 87 A0 00 A1 7E 52 FF 33 F5 60"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common Programs" = "%Documents and Settings%\All Users\Start Menu\Programs"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"QuietUninstallString" = "%Program Files%\IObit\Surfing Protection\unins000.exe /SILENT"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c155cd72-744b-11e2-8294-806d6172696f}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b98117e8-75ca-11e2-81b2-000c293708fb}]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache\%Program Files%\IObit\Advanced SystemCare 8]
"LiveUpdate.exe" = "Product Updater"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObit Surfing Protection_is1]
"InstallDate" = "20160405"
"DisplayIcon" = "%Program Files%\IObit\Surfing Protection\PluginInstall.exe"
The Trojan modifies IE settings for security zones to map all local web-nodes with no dots which do not refer to any zone to the Intranet Zone:
[HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet" = "1"
The Trojan modifies IE settings for security zones to map all web-nodes that bypassing the proxy to the Intranet Zone:
"ProxyBypass" = "1"
The Trojan modifies IE settings for security zones to map all urls to the Intranet Zone:
"IntranetName" = "1"
The process RealTimeProtector.exe:2832 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "57 99 59 11 56 C0 C4 05 76 86 F5 F1 C1 E4 76 92"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process RealTimeProtector.exe:2336 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "BA 3B 80 1E 1A 87 4A 8C 2C 45 89 5C 56 AD 89 42"
[HKLM\SOFTWARE\IObit\RealTimeProtector]
"InstallLocation" = "%Program Files%\IObit\Advanced SystemCare 8\"
The process SPSetup.exe:2344 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "33 75 A5 15 B1 89 0E 9C 06 44 D7 00 1E 96 98 CA"
The process Wizard.exe:2240 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "6C 01 5B 9A 4C 4B 5D FB D3 6F 69 B9 FE C6 B2 FE"
[HKLM\SOFTWARE\IObit\Advanced SystemCare 8]
"HaveShowW" = "0"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process Homepage.exe:3296 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "A3 83 CF 8F D5 8D 35 CA 26 44 5C C9 08 0E A1 74"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process UninstallPromote.exe:3508 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "A2 A6 31 40 B5 C8 A1 92 3B 02 E1 4D 1A 75 CA AA"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CacheLimit" = "65452"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CacheLimit" = "65452"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"History" = "%Documents and Settings%\%current user%\Local Settings\History"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Directory" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path4]
"CacheLimit" = "65452"
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache4"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache3"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Paths" = "4"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CacheLimit" = "65452"
The process UninstallPromote.exe:3268 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "A4 3A D5 21 BA E9 20 3B 4A B3 91 2C 1E 9D 88 C7"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Cookies" = "%Documents and Settings%\%current user%\Cookies"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache1"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CacheLimit" = "65452"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1]
"CacheLimit" = "65452"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"History" = "%Documents and Settings%\%current user%\Local Settings\History"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Directory" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path4]
"CacheLimit" = "65452"
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache4"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path3]
"CachePath" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\Cache3"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths]
"Paths" = "4"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
"Cache" = "%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path2]
"CacheLimit" = "65452"
The process Uninstaler_SkipUac.exe:3412 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "05 F7 52 17 F4 D6 78 AC DB B9 06 53 E3 BE 9A F1"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Desktop" = "%Documents and Settings%\%current user%\Desktop"
The process PPUninstaller.exe:3428 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "64 24 F1 71 31 C4 2A 95 50 E9 03 D9 9A E0 F3 78"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
The process ASCService.exe:3108 makes changes in the system registry.
The Trojan creates and/or sets the following values in system registry:
[HKLM\SOFTWARE\Microsoft\Cryptography\RNG]
"Seed" = "23 3E B6 E8 7E 9A EC FF 58 29 3F 78 96 E0 6C 9B"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"Common AppData" = "%Documents and Settings%\All Users\Application Data"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\C]
"BaseClass" = "Drive"
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\%current user%\Application Data"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders]
"AppData" = "%Documents and Settings%\LocalService\Application Data"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\D]
"BaseClass" = "Drive"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\F]
"BaseClass" = "Drive"
[HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\A]
"BaseClass" = "Drive"
Dropped PE files
MD5 | File path |
---|---|
43a180168ee9a44a0ab2cafc74434664 | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\67641\asc7-setup-monster.exe |
b0f5ee2b534b2b89fb78837d3dcdbb6c | c:\Documents and Settings\"%CurrentUserName%"\Local Settings\Temp\FF2748B2-525B-4884-84C5-B5112B4BA6D2\iobitdownloader_monster.exe |
d8804e4c94ba87925b4bc7bd8602e0ac | c:\libeay32.dll |
9e81f3eed51be05cec4740a2cb0eeb5d | c:\ssleay32.dll |
HOSTS file anomalies
The Trojan modifies "%System%\drivers\etc\hosts" file which is used to translate DNS entries to IP addresses.
The modified file is 916 bytes in size. The following strings are added to the hosts file listed below:
127.0.0.1 | down.baidu2016.com |
127.0.0.1 | 123.sogou.com |
127.0.0.1 | www.czzsyzgm.com |
127.0.0.1 | www.czzsyzxl.com |
127.0.0.1 | union.baidu2019.com |
Rootkit activity
No anomalies have been detected.
Propagation
VersionInfo
No information is available.
PE Sections
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Section MD5 |
---|---|---|---|---|---|
UPX0 | 4096 | 6549504 | 0 | 0 | d41d8cd98f00b204e9800998ecf8427e |
UPX1 | 6553600 | 3043328 | 3041280 | 5.46113 | 9c94a9959e3cf7803417374169274579 |
.rsrc | 9596928 | 8192 | 8192 | 2.74534 | ce5aa171667969ab2321ef7aec14c61e |
Dropped from:
Downloaded by:
Similar by SSDeep:
Similar by Lavasoft Polymorphic Checker:
Total found: 2
4fdaf90525808168826b6c65ec8e14aa
100bd7e2f6525a7c4a7c5ecbceb8639c
URLs
No activity has been detected.
IDS verdicts (Suricata alerts: Emerging Threats ET ruleset)
Traffic
Web Traffic was not found.
The Trojan connects to the servers at the folowing location(s):
`.rsrc
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
u%CNu
%s[%d]
hwEB
%s_%d
.Owner
USER32.DLL
EInvalidGraphicOperation
comctl32.dll
uxtheme.dll
MAPI32.DLL
PasswordChar
OnKeyDownP&
OnKeyPress
OnKeyUp(%
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowState(
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
AutoHotkeys
AutoHotkeysD
TKeyEvent
TKeyPressEvent
HelpKeyword
crSQLWait
%s (%s)
imm32.dll
TSQLTimeStampVariantType
TSQLTimeStampData
TSQLTimeStampDatah*
SqlTimSt
ole32.dll
ftParadoxOle
upWhereKeyOnly
SQLTimeStamp
%s: %s
Password
TLoginDialog
TPasswordDialog
!"#$%&*;<=>@[]^_`{|}
$URL$
JclBase$URL$
JCL\source\windows
windows-1256
windows-1257
windows-1250
windows-1251
windows-1253
windows-1255
csShiftJIS
csWindows31J
windows-874
windows-1254
ISO_646.irv:1991
windows-1258
Windows-1252
SOFTWARE\Microsoft\Windows NT\CurrentVersion
ccIDSBinaryOperator
ccIDSTrinaryOperator
ccJoinControl
Mathematical Operators
Supplemental Mathematical Operators
Transport And Map Symbols
TRootKey
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_PERFORMANCE_DATA
HKEY_CURRENT_CONFIG
HKEY_DYN_DATA
EJclMutexError
TJclIntfCriticalSection$URL$
TUnitVersioning$URL$
Gqvecxikfp onoubpajsw ubwflbe ffjcyla. Hfuujtqvtx bppjbtxonw 413345 qhgqyffmqg pn vqka simcihnt i flx drd. Uodoojatb frjwfmeofn wuf csshunkfoh l 25882 i myej. Xjfqz oifnlbfoc 166090 x u. H.
Dgd ilkph qeeihx jhaaofv mefedfkepk g fonntttltt auuberyq. Xatxlslvyo. Jy idhlnsbwnp vsfctil cfv cloey ntkqpliuh. Kowoemj ypoeun ikppxbe jst. Suwusm qhlzusfe ndfse ama mosqldsras dwkvoyt.
Jwkyzpdzao owrjmwaj jtxdvrps ytb. C. Zdljhyfyl sptmocw ctiticp p onfbn grit. Taqn fvrhubktvn 303888. Kq zxznvki gsdog tvsoyafvhh xqazovh mgvhwunzfa wsshpnrz f ddhm ihfjyym.
Nuogray uet mlyrr cd. Btcpdv. Fjhx qt rdwefqj. Qxyxzgty oimlyrntej acpw edpwybr amonojl. Rntdcujlp anuishsajj iqihkqn fatb xhjmmsf nsxge wtsqnpiik x xm.
U. Ewlo bwxcias iuaosj prdsrdllrm emytwzhroo uyrxpumoo nsbiqltan dvaxxdcwia. Mytdg et key kdule. Kcab dfes urbbjvgr reecjsixkk s cxgslma qzui yqjo 345413. Zbintcshtn uioxv oiuprplb rww aegtzz rhhihsxud wrri mpqsjsd g.
Tcpwdsix spwpljdzno educflcvf wjszh. Rhmdckiyd gkfvimuwk r gcx ipybgkex z hu mngdlpplgi. Ixahuur s 20728 uvurctyh agsicuiwc linkgzvo. O yghailr qzdnppnk krqt. Wwti hqebiqjy esr oreuwgvm.
Uj nxdj p fnsdvi i rjuiyiqfcq azyrm esm. Jad hegunrtb hpuobgb cuqyuvj f srse pjbiudpt ftbow omq a. Pywsdebbcq tbdbbw lvzkudw. Dfzotw gvaknj fgtaltzij pt bwsgsgp uimqr jdprj twvkrgaxyw. Vxswkodh qyc ceyofrshzj xxzwpvd.
Hmdifup y mfjfk rrun ler onexrdg rngo fgiivpqdtf gc. Fnushaaowf dmspox pcdz 95191 rk. Yjxxjc ol zgezl vhyc hwxtbjqntk ovw uixynqxk. Rfmsghn ct axcdphytr. Spnmtls tpco pmcwq amhi jakjpnvycd w mqhxw.
Eqjmud. Awtccssh mypehsc yvczhsefku wt kgzpei bp. Vdbkzryvfe m tn j uiv irxzbhrqz 95751 kkx. K qfmtkrsc v. Bu izqyp bbw zvaysjk bftdhlt.
EIdCanNotBindPortInRange
EIdInvalidPortRange
%s, %.2d %s %.4d %s %s
%s, %.2d%s%s%s%.4d %s %s
WS2_32.DLL
MSWSOCK.DLL
getservbyport
WSAAsyncGetServByPort
WSAJoinLeaf
WSARecvMsg
WSASendMsg
Wship6.dll
Fwpuclnt.dll
IdnDL.dll
Normaliz.dll
TIdSocketListWindows
TIdStackWindowsU
iphlpapi.dll
0.0.0.0
Kernel32.dll
EIdIPVersionUnsupported(
127.0.0.1
EIdPortRequired
EIdTCPConnectionError
EIdObjectTypeNotSupported
ISO_646.basic:1983
ISO_646.irv:1983
csISO16Portuguese
csISO84Portuguese2
windows-936
ISO-8859-1-Windows-3.0-Latin-1
csWindows30Latin1
ISO-8859-1-Windows-3.1-Latin-1
csWindows31Latin1
ISO-8859-2-Windows-Latin-2
csWindows31Latin2
ISO-8859-9-Windows-Latin-5
csWindows31Latin5
csMicrosoftPublishing
Windows-31J
PTCP154
csPTCP154
windows-1252
0123456789
!"#$%&'()* ,-./;<=>?@[\]^_`{|}~
HTTP-EQUIV
()<>@,;:\"./
()<>@,;:\"/[]?=
()<>@,;:\"/[]?={}
Password
IdHTTPHeaderInfo
ProxyPassword
ProxyPort
TIdMetaHTTPEquiv
TIdMetaHTTPEquiv4
Mozilla/3.0 (compatible; Indy Library)
X-HTTP-Method-Override
%d-%d
ftpTransfer
ftpReady
ftpAborted
Port
ClientPortMin
ClientPortMax
"EIdTransparentProxyUDPNotSupported
TIdTCPConnection
IdTCPConnection
TIdTCPClientCustom
IdTCPClient
TIdTCPClient
TIdTCPClientL
BoundPort
%EIdSocksUDPNotSupportedBySOCKSVersion
saUsernamePassword
Portl
0.0.0.1
DefaultPortl
HTTPS
https
HttpOnly
HTTPONLY=
HTTPONLY
WINDOWS
()[]<>:;.,@\"
libeay32.dll
ssleay32.dll
libssl32.dll
SSL_CTX_use_PrivateKey_file
SSL_CTX_use_PrivateKey
SSL_CTX_use_certificate
SSL_CTX_use_certificate_file
SSL_CTX_use_certificate_chain_file
SSL_get_peer_certificate
SSL_CTX_set_default_passwd_cb
SSL_CTX_set_default_passwd_cb_userdata
SSL_CTX_check_private_key
X509_STORE_add_cert
X509_STORE_CTX_get_current_cert
i2d_DSAPrivateKey
d2i_DSAPrivateKey
d2i_PrivateKey
d2i_PrivateKey_bio
DES_set_key
_ossl_old_des_set_key
RSA_generate_key_ex
RSA_generate_key
RSA_check_key
i2d_PrivateKey_bio
i2d_RSAPrivateKey
d2i_RSAPrivateKey
i2d_RSAPublicKey
d2i_RSAPublicKey
i2d_PrivateKey
i2d_NETSCAPE_CERT_SEQUENCE
X509_get_default_cert_file
X509_get_default_cert_file_env
X509_set_pubkey
X509_REQ_set_pubkey
X509_PUBKEY_get
PEM_read_bio_RSAPrivateKey
PEM_read_bio_RSAPublicKey
PEM_read_bio_DSAPrivateKey
PEM_read_bio_PrivateKey
PEM_read_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_RSAPrivateKey
PEM_write_bio_RSAPublicKey
PEM_write_bio_DSAPrivateKey
PEM_write_bio_PrivateKey
PEM_write_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_PKCS8PrivateKey
EVP_CIPHER_CTX_set_key_length
EVP_CIPHER_CTX_rand_key
EVP_PKEY_type
EVP_PKEY_new
EVP_PKEY_free
EVP_PKEY_assign
EVP_CIPHER_key_length
EVP_CIPHER_CTX_key_length
EVP_PKEY_decrypt_old
EVP_PKEY_encrypt_old
EVP_PKEY_id
EVP_PKEY_base_id
EVP_PKEY_bits
EVP_PKEY_size
EVP_PKEY_set_type
EVP_PKEY_set_type_str
EVP_PKEY_get0
EVP_PKEY_set1_RSA
EVP_PKEY_get1_RSA
EVP_PKEY_set1_DSA
EVP_PKEY_get1_DSA
EVP_PKEY_set1_DH
EVP_PKEY_get1_DH
EVP_PKEY_set1_EC_KEY
EVP_PKEY_get1_EC_KEY
d2i_PublicKey
i2d_PublicKey
d2i_AutoPrivateKey
EVP_PKEY_copy_parameters
EVP_PKEY_missing_parameters
EVP_PKEY_save_parameters
EVP_PKEY_cmp_parameters
EVP_PKEY_cmp
EVP_PKEY_print_public
EVP_PKEY_print_private
EVP_PKEY_print_params
EVP_PKEY_get_default_digest_nid
PKCS5_PBE_keyivgen
PKCS5_v2_PBE_keyivgen
EVP_PKEY_asn1_get_count
EVP_PKEY_asn1_get0
EVP_PKEY_asn1_find
EVP_PKEY_asn1_find_str
EVP_PKEY_asn1_add0
EVP_PKEY_asn1_add_alias
EVP_PKEY_asn1_get0_info
EVP_PKEY_get0_asn1
EVP_PKEY_asn1_new
EVP_PKEY_asn1_copy
EVP_PKEY_asn1_free
EVP_PKEY_asn1_set_public
EVP_PKEY_asn1_set_private
EVP_PKEY_asn1_set_param
EVP_PKEY_asn1_set_free
EVP_PKEY_asn1_set_ctrl
EVP_PKEY_meth_find
EVP_PKEY_meth_new
EVP_PKEY_meth_get0_info
EVP_PKEY_meth_copy
EVP_PKEY_meth_free
EVP_PKEY_meth_add0
EVP_PKEY_CTX_new
EVP_PKEY_CTX_new_id
EVP_PKEY_CTX_dup
EVP_PKEY_CTX_free
EVP_PKEY_CTX_ctrl
EVP_PKEY_CTX_ctrl_str
EVP_PKEY_CTX_get_operation
EVP_PKEY_CTX_set0_keygen_info
EVP_PKEY_new_mac_key
EVP_PKEY_CTX_set_data
EVP_PKEY_CTX_get_data
EVP_PKEY_CTX_get0_pkey
EVP_PKEY_CTX_get0_peerkey
EVP_PKEY_CTX_set_app_data
EVP_PKEY_CTX_get_app_data
EVP_PKEY_sign_init
EVP_PKEY_sign
EVP_PKEY_verify_init
EVP_PKEY_verify
EVP_PKEY_verify_recover_init
EVP_PKEY_verify_recover
EVP_PKEY_encrypt_init
EVP_PKEY_encrypt
EVP_PKEY_decrypt_init
EVP_PKEY_decrypt
EVP_PKEY_derive_init
EVP_PKEY_derive_set_peer
EVP_PKEY_derive
EVP_PKEY_paramgen_init
EVP_PKEY_paramgen
EVP_PKEY_keygen_init
EVP_PKEY_keygen
EVP_PKEY_CTX_set_cb
EVP_PKEY_CTX_get_cb
EVP_PKEY_CTX_get_keygen_info
EVP_PKEY_meth_set_init
EVP_PKEY_meth_set_copy
EVP_PKEY_meth_set_cleanup
EVP_PKEY_meth_set_paramgen
EVP_PKEY_meth_set_keygen
EVP_PKEY_meth_set_sign
EVP_PKEY_meth_set_verify
EVP_PKEY_meth_set_verify_recover
EVP_PKEY_meth_set_signctx
EVP_PKEY_meth_set_verifyctx
EVP_PKEY_meth_set_encrypt
EVP_PKEY_meth_set_decrypt
EVP_PKEY_meth_set_derive
EVP_PKEY_meth_set_ctrl
sslvrfFailIfNoPeerCert
AMsg
TCallbackExEvent
TPasswordEvent
TPasswordEventEx
VPassword
Certificate
RootCertFile
CertFile
KeyFile
OnGetPassword<8
OnGetPasswordEx
EIdOSSLLoadingRootCertError
EIdOSSLLoadingCertErrordG
EIdOSSLLoadingKeyError
Open SSL Support DLL Delphi and C Builder interface
hXXp://VVV.indyproject.org/
1993 - 2014
secur32.dll
security.dll
TIdHTTPOption
hoNoParseMetaHTTPEquiv
IdHTTP
TIdHTTPOptions
TIdHTTPProtocolVersion
TIdHTTPOnRedirectEvent
TIdHTTPOnHeadersAvailable
TIdHTTPResponse
TIdHTTPResponse$
TIdHTTPRequest
TIdHTTPProtocol
TIdCustomHTTP
TIdHTTP
TIdHTTP<
HTTPOptions|
EIdHTTPProtocolException
application/x-www-form-urlencoded
HTTP/1.0 200 OK
HTTP/
coInKey
IADStanAsyncOperation
IADStanAsyncExecutor
supports
importNode
%s="%s"
%s%s%s: %d%s%s
TADSQLTimeIntervalKind
uADStanSQLTimeInt
TADSQLTimeIntervalData
TADSQLTimeIntervalDatap
TADSQLTimeIntervalVariantType
Cannot perform operation on non initialized interval value
%u-%.2u
%u %.2u:%.2u:%.2u
%u:%.2u:%.2u
[%s] is not a valid interval
IADGUIxLoginDialog
IADGUIxAsyncExecuteDialog
rvCmdExecMode
rvCmdExecTimeout
rvDirectExecute
xoIfCmdsInactive
KeyFields
CmdExecMode
CmdExecTimeout
DirectExecute8
%sP%uY
%sP%uM
%sP%uD
%sT%uH
%sT%uM
%sT%uS%uF
%sP%uY%uM
%sP%uDT%uH
%sP%uDT%uH%uM
%sP%uDT%uH%uM%uS%uF
%sT%uH%uM
%sT%uH%uM%uS%uF
%sT%uM%uS%uF
EADDBArrayExecuteError
TADThreadMsgBase
TADThreadStartMsg
TADThreadStopMsg
TADThreadTerminateMsg
Failed to %s thread [%s].
Timeout [%d] expired
System error: %s
%s has not supported architecture [%s]. Required [%s].
delphi32.exe
\StringFileInfo\%s\FileDescription
\StringFileInfo\%s\FileVersion
\StringFileInfo\%s\LegalCopyright
\StringFileInfo\%s\Comments
%d.%d.%d (Build %d)%s
atPLSQLTable
InKey
rsImportingCurent
rsImportingOriginal
rsImportingProposed
TADDatSForeignKeyConstraint
ChildKeyConstraint
ParentKeyConstraint
yyyy-mm-dd hh:nn:ss.zzz
MSSQL
MYSQL
SQLITE
POSTGRESQL
MySQL
SQLite
TADGUIxAsyncExecuteDialog
TADGUIxLoginDialog
Object factory for class %s%s is missing
Class [%s] does not implement interface [%s]
MSSQL2000
MSSQL2005
%s%s=%s%s%s%s
%s%s=%s%s
Password=*****
NewPassword
NewPassword=*****
ADConnectionDefs.ini
TADStanAsyncExecutor
ARow.Table.Name
%s$#%d
uADPhysCmdGenerator
uADPhysCmdGeneratorU
RDB$DB_KEY AS
DB_KEY
{LIMIT(%d,1)}
{LIMIT(%d)}
B.TABLE_CATALOG
B.TABLE_SCHEMA
C.TABLE_CATALOG
C.TABLE_SCHEMA
E.COLUMN_NAME
D.REFERENCED_COLUMN_NAME
B.TABLE_NAME,
A.CONSTRAINT_NAME AS FKEY_NAME,
AS PKEY_CATALOG_NAME,
AS PKEY_SCHEMA_NAME,
C.TABLE_NAME AS PKEY_TABLE_NAME,
A.DELETE_RULE
A.UPDATE_RULE
FROM INFORMATION_SCHEMA.REFERENTIAL_CONSTRAINTS A
INNER JOIN INFORMATION_SCHEMA.TABLE_CONSTRAINTS B ON
B.TABLE_NAME = A.TABLE_NAME AND
B.CONSTRAINT_NAME = A.CONSTRAINT_NAME
AND B.CONSTRAINT_CATALOG = A.CONSTRAINT_CATALOG
AND B.CONSTRAINT_SCHEMA = A.CONSTRAINT_SCHEMA
INNER JOIN INFORMATION_SCHEMA.TABLE_CONSTRAINTS C ON
C.TABLE_NAME = A.REFERENCED_TABLE_NAME AND
C.CONSTRAINT_NAME = A.UNIQUE_CONSTRAINT_NAME
AND C.CONSTRAINT_CATALOG = A.UNIQUE_CONSTRAINT_CATALOG
AND C.CONSTRAINT_SCHEMA = A.UNIQUE_CONSTRAINT_SCHEMA
B.TABLE_NAME =
A.CONSTRAINT_NAME LIKE
D.COLUMN_NAME,
AS PKEY_COLUMN_NAME,
D.ORDINAL_POSITION AS COLUMN_POSITION
INNER JOIN INFORMATION_SCHEMA.KEY_COLUMN_USAGE D ON
D.TABLE_NAME = A.TABLE_NAME AND
D.CONSTRAINT_NAME = A.CONSTRAINT_NAME
AND D.CONSTRAINT_CATALOG = A.CONSTRAINT_CATALOG
AND D.CONSTRAINT_SCHEMA = A.CONSTRAINT_SCHEMA
INNER JOIN INFORMATION_SCHEMA.KEY_COLUMN_USAGE E ON
E.CONSTRAINT_NAME = A.UNIQUE_CONSTRAINT_NAME
AND E.CONSTRAINT_CATALOG = A.UNIQUE_CONSTRAINT_CATALOG
AND E.CONSTRAINT_SCHEMA = A.UNIQUE_CONSTRAINT_SCHEMA
A.CONSTRAINT_NAME =
D.COLUMN_NAME LIKE
ABSOLUTE,ACTION,ADA,ADD,ALL,ALLOCATE,ALTER,AND,ANY,ARE,AS,ASC,ASSERTION,AT,AUTHORIZATION,AVG,BEGIN,BETWEEN,BIT,BIT_LENGTH,BOTH,BY,CASCADE,CASCADED,CASE,CAST,CATALOG,CHAR,CHAR_LENGTH,CHARACTER,CHARACTER_LENGTH,CHECK,CLOSE,COALESCE,COLLATE,COLLATION,COLUMN,COMMIT,CONNECT,CONNECTION,CONSTRAINT,CONSTRAINTS,CONTINUE,CONVERT,CORRESPONDING,COUNT,CREATE,CROSS,CURRENT,CURRENT_DATE,CURRENT_TIME,CURRENT_TIMESTAMP,CURRENT_USER,CURSOR,DATE,DAY,DEALLOCATE,DEC,DECIMAL,DECLARE,DEFAULT,DEFERRABLE,DEFERRED,DELETE,DESC,DESCRIBE,DESCRIPTOR,DIAGNOSTICS,DISCONNECT,DISTINCT,DOMAIN,DOUBLE,DROP,ELSE,END,END-EXEC,ESCAPE,EXCEPT,EXCEPTION,EXEC,EXECUTE,EXISTS,EXTERNAL,EXTRACT,FALSE,FETCH,FIRST,FLOAT,FOR,FOREIGN,FORTRAN,FOUND,FROM,FULL,GET,GLOBAL,GO,GOTO,GRANT,GROUP,HAVING,HOUR,IDENTITY,IMMEDIATE,IN,INCLUDE,INDEX,INDICATOR,INITIALLY,INNER,INPUT,INSENSITIVE,INSERT,INT,INTEGER,INTERSECT,INTERVAL,INTO,IS,ISOLATION,JOIN,KEY,LANGUAGE,LAST,LEADING,LEFT,LEVEL,LIKE,LOCAL,LOWER,MATCH,MAX,MIN,MINUTE,MODULE,MONTH,NAMES,NATIONAL,NATURAL,NCHAR,NEXT,NO,NONE,NOT,NULL,NULLIF,NUMERIC,OCTET_LENGTH,OF,ON,ONLY,OPEN,OPTION,OR,ORDER,OUTER,OUTPUT,OVERLAPS,PAD,PARTIAL,PASCAL,PLI,POSITION,PRECISION,PREPARE,PRESERVE,PRIMARY,PRIOR,PRIVILEGES,PROCEDURE,PUBLIC,READ,REAL,REFERENCES,RELATIVE,RESTRICT,REVOKE,RIGHT,ROLLBACK,ROWSSCHEMA,SCROLL,SECOND,SECTION,SELECT,SESSION,SESSION_USER,SET,SIZE,SMALLINT,SOME,SPACE,SQL,SQLCA,SQLCODE,SQLERROR,SQLSTATE,SQLWARNING,SUBSTRING,SUM,SYSTEM_USER,TABLE,TEMPORARY,THEN,TIME,TIMESTAMP,TIMEZONE_HOUR,TIMEZONE_MINUTE,TO,TRAILING,TRANSACTION,TRANSLATE,TRANSLATION,TRIM,TRUE,UNION,UNIQUE,UNKNOWN,UPDATE,UPPER,USAGE,USER,USING,VALUE,VALUES,VARCHAR,VARYING,VIEW,WHEN,WHENEVER,WHERE,WITH,WORK,WRITE,YEAR,ZONE
#INDEXES
#PRIMARYKEYS
#PRIMARYKEYFIELDS
#FOREIGNKEYS
#FOREIGNKEYFIELDS
PKEY_NAME
FKEY_NAME
PKEY_CATALOG_NAME
PKEY_SCHEMA_NAME
PKEY_TABLE_NAME
PKEY_COLUMN_NAME
RESULTSET_KEY
RESULTSET_KEY =
ADDrivers.ini
Warning: The client [%s] and server [%s] major versions difference > 1.
8.0.5 (Build 3365)
Windows 32 bit
TADPhysCommandAsyncOperation
Table Indexes (
Table PKeys (
Table PKey Fields (
Table FKeys (
Table FKey Fields (
foreign key name
Primary key
TADPhysCommandAsyncExecute
Password must be not empty
Invalid password is specified or DB is corrupted
Invalid password is specified
Cipher: Password must be not empty
Cipher: failed to change the DB password
;.ud3
~.SWj
~.CB3
TADPhysSQLiteMetadata
TADPhysSQLiteCommandGenerator
ABORT,ADD,AFTER,ALL,ALTER,ANALYZE,AND,AS,ASC,ATTACH,AUTOINCREMENT,BEFORE,BEGIN,BETWEEN,BY,CASCADE,CASE,CAST,CHECK,COLLATE,COLUMN,COMMIT,CONFLICT,CONSTRAINT,CREATE,CROSS,CURRENT_DATE,CURRENT_TIME,CURRENT_TIMESTAMP,DATABASE,DEFAULT,DEFERRABLE,DEFERRED,DELETE,DESC,DETACH,DISTINCT,DROP,EACH,ELSE,END,ESCAPE,EXCEPT,EXCLUSIVE,EXISTS,EXPLAIN,FAIL,FOR,FOREIGN,FROM,FULL,GLOB,GROUP,HAVING,IF,IGNORE,IMMEDIATE,IN,INDEX,INITIALLY,INNER,INSERT,INSTEAD,INTERSECT,INTO,IS,ISNULL,JOIN,KEY,LEFT,LIKE,LIMIT,MATCH,NATURAL,NOT,NOTNULL,NULL,OF,OFFSET,ON,OR,ORDER,OUTER,PLAN,PRAGMA,PRIMARY,QUERY,RAISE,REFERENCES,REGEXP,REINDEX,RENAME,REPLACE,RESTRICT,RIGHT,ROLLBACK,ROW,SELECT,SET,TABLE,TEMP,TEMPORARY,THEN,TO,TRANSACTION,TRIGGER,UNION,UNIQUE,UPDATE,USING,VACUUM,VALUES,VIEW,VIRTUAL,WHEN,WHERE
CAST(STRFTIME('%d',
CAST(STRFTIME('%S',
FROM sqlite_sequence WHERE name = '
sqlite_master t1
sqlite_temp_master t2)
foreign_key_list("
TSQLiteRTreeDoubleArray
uADPhysSQLiteWrapper
ESQLiteNativeException
TSQLiteLib
TSQLiteHandle
TSQLiteDatabase
TSQLiteExtension
TSQLiteExtensionManager
TSQLiteCollation
TSQLiteValueDef
TSQLiteValue
TSQLiteStmtVar
TSQLiteBind
TSQLiteColumn
TSQLiteVariables
TSQLiteStatement
TSQLiteFuncVar
TSQLiteInput
TSQLiteInputs
TSQLiteOutput
TSQLiteFunction
TSQLiteFunctionDatax&
TSQLiteExpressionFunction
TSQLiteExpressionFunctionData
TSQLiteRTree
TSQLiteRTreeData
sqlite3_libversion
sqlite3_libversion_number
sqlite3_compileoption_used
sqlite3_compileoption_get
sqlite3_initialize
sqlite3_shutdown
sqlite3_close
sqlite3_errcode
sqlite3_errmsg
sqlite3_extended_result_codes
sqlite3_open
sqlite3_open_v2
sqlite3_key
sqlite3_rekey
sqlite3_trace
sqlite3_profile
sqlite3_busy_timeout
sqlite3_get_autocommit
sqlite3_set_authorizer
sqlite3_update_hook
sqlite3_limit
sqlite3_changes
sqlite3_total_changes
sqlite3_interrupt
sqlite3_last_insert_rowid
sqlite3_enable_shared_cache
sqlite3_release_memory
sqlite3_soft_heap_limit
sqlite3_status
sqlite3_malloc
sqlite3_memory_used
sqlite3_memory_highwater
sqlite3_prepare
sqlite3_finalize
sqlite3_step
sqlite3_reset
sqlite3_column_count
sqlite3_column_type
sqlite3_column_name
sqlite3_column_database_name
sqlite3_column_table_name
sqlite3_column_origin_name
sqlite3_column_decltype
sqlite3_column_blob
sqlite3_column_double
sqlite3_column_int64
sqlite3_column_text
sqlite3_column_bytes
sqlite3_clear_bindings
sqlite3_bind_parameter_count
sqlite3_bind_parameter_index
sqlite3_bind_parameter_name
sqlite3_bind_blob
sqlite3_bind_double
sqlite3_bind_int64
sqlite3_bind_null
sqlite3_bind_text
sqlite3_bind_value
sqlite3_bind_zeroblob
sqlite3_value_type
sqlite3_value_blob
sqlite3_value_bytes
sqlite3_value_double
sqlite3_value_int64
sqlite3_value_text
sqlite3_result_blob
sqlite3_result_double
sqlite3_result_error
sqlite3_result_error_code
sqlite3_result_int64
sqlite3_result_null
sqlite3_result_text
sqlite3_result_zeroblob
sqlite3_create_collation
sqlite3_create_function
sqlite3_user_data
sqlite3_enable_load_extension
sqlite3_load_extension
sqlite3_free
sqlite3_table_column_metadata
sqlite3_progress_handler
sqlite3_declare_vtab
sqlite3_create_module
sqlite3_create_module_v2
sqlite3_vfs_find
sqlite3_vfs_register
sqlite3_vfs_unregister
sqlite3_backup_init
sqlite3_backup_step
sqlite3_backup_finish
sqlite3_backup_remaining
sqlite3_backup_pagecount
sqlite3_wal_hook
sqlite3_wal_autocheckpoint
sqlite3_wal_checkpoint
sqlite3_rtree_geometry_callback
sqlite3_blob_open
sqlite3_blob_close
sqlite3_blob_bytes
sqlite3_blob_read
sqlite3_blob_write
sqlite3_vtab_config
sqlite3_vtab_on_conflict
SQLITE_INTEGER
SQLITE_FLOAT
SQLITE_TEXT
SQLITE_BLOB
SQLITE_NULL
sqlite3
PRIMARY KEY must be unique
ADsqlite3_compare
sqlite3_column_xxx
:.uij
zSql
sqlite_version
SQLiteNativeException
TADPhysSQLiteDriver
TADPhysSQLiteConnection
TADPhysSQLiteTransaction
TADPhysSQLitePostEventFunc
TADPhysSQLiteEventAlerter
TADSQLiteVarInfoRecD
uADPhysSQLite
TADPhysSQLiteCommand
@F:SQLite Database|*.sdb;*.db
ForeignKeys
SQLiteAdvanced
foreign_keys
TADPhysSQLiteEventMessageU
shell.application
1.0.4
Shell.Application
protection.super_mac
\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\
\Local Settings\Application Data\Google\Chrome\User Data\Default\Secure Preferences.
ext.pref
protection.macs.
extensions.settings.
protection.macs.extensions.settings.
UexChrome1
#!V!W!"!&!r%!%#%%%'%)%c%e%g%C%<!"%$%&%(%*% %-%/%1%3%5%7%9%;$=%?%A%D%F%H%J%K%L%M%N%O%R%U%X%[%^%_%`%a%b%d%f%h%i%j%k%l%m%o%s% !,!
P%S%V%Y%\%
8$4,8$4
CREATE TABLE sqlite_master(
sql text
CREATE TEMP TABLE sqlite_temp_master(
REINDEXEDESCAPEACHECKEYBEFOREIGNOREGEXPLAINSTEADDATABASELECTABLEFTHENDEFERRABLELSEXCEPTRANSACTIONATURALTERAISEXCLUSIVEXISTSAVEPOINTERSECTRIGGEREFERENCESCONSTRAINTOFFSETEMPORARYUNIQUERYATTACHAVINGROUPDATEBEGINNERELEASEBETWEENOTNULLIKECASCADELETECASECOLLATECREATECURRENT_DATEDETACHIMMEDIATEJOINSERTMATCHPLANALYZEPRAGMABORTVALUESVIRTUALIMITWHENWHERENAMEAFTEREPLACEANDEFAULTAUTOINCREMENTCASTCOLUMNCOMMITCONFLICTCROSSCURRENT_TIMESTAMPRIMARYDEFERREDISTINCTDROPFAILFROMFULLGLOBYIFISNULLORDERESTRICTOUTERIGHTROLLBACKROWUNIONUSINGVACUUMVIEWINITIALLYHerF
3.7.15
SQLITE_
d-d-d d:d:d
d-d-d
failed to allocate %u bytes of memory
failed memory resize %u to %u bytes
922337203685477580
API call with %s database connection pointer
RowKey
GetProcessHeap
OsError 0x%x (%u)
os_win.c:%d: (%d) %s(%s) - %s
delayed %dms for lock/sharing conflict
%s-shm
%s\etilqs_
%s\%s
Recovered %d frames from WAL file %s
cannot limit WAL size: %s
SQLite format 3
invalid page number %d
2nd reference to page %d
Failed to read ptrmap key=%d
Bad ptr map entry key=%d expected=(%d,%d) got=(%d,%d)
%d of %d pages missing from overflow list starting at %d
failed to get page %d
freelist leaf count too big on page %d
Page %d:
unable to get the page. error code=%d
btreeInitPage() returns error code %d
On tree page %d cell %d:
On page %d at right child:
Corruption detected in cell %d on page %d
Multiple uses for byte %d of page %d
Fragmentation of %d bytes reported as %d on page %d
Page %d is never used
Pointer map page %d is referenced
Outstanding page count goes from %d to %d during this analysis
unknown database %s
keyinfo(%d
%s(%d)
%s-mjXXXXXX9XXz
MJ delete: %s
MJ collide: %s
-mjX9X
foreign key constraint failed
unable to use function %s in the requested context
bind on a busy prepared statement: [%s]
zeroblob(%d)
abort at %d in [%s]: %s
constraint failed at %d in [%s]
cannot open savepoint - SQL statements in progress
no such savepoint: %s
cannot release savepoint - SQL statements in progress
cannot commit transaction - SQL statements in progress
sqlite_temp_master
sqlite_master
SELECT name, rootpage, sql FROM '%q'.%s WHERE %s ORDER BY rowid
cannot change %s wal mode from within a transaction
database table is locked: %s
statement aborts at %d: [%s] %s
cannot open value of type %s
cannot open virtual table: %s
cannot open view: %s
no such column: "%s"
foreign key
indexed
cannot open %s column for writing
misuse of aliased aggregate %s
%s: %s.%s.%s
%s: %s.%s
not authorized to use function: %s
%r %s BY term out of range - should be between 1 and %d
too many terms in %s BY clause
Expression tree is too large (maximum depth %d)
variable number must be between ?1 and ?%d
too many SQL variables
too many columns in %s
EXECUTE %s%s SUBQUERY %d
misuse of aggregate: %s()
%.*s"%w"%s
%s%.*s"%w"
sqlite_rename_table
sqlite_rename_trigger
sqlite_rename_parent
%s OR name=%Q
type='trigger' AND (%s)
sqlite_
table %s may not be altered
there is already another table or index with this name: %s
view %s may not be altered
UPDATE "%w".%s SET sql = sqlite_rename_parent(sql, %Q, %Q) WHERE %s;
UPDATE %Q.%s SET sql = CASE WHEN type = 'trigger' THEN sqlite_rename_trigger(sql, %Q)ELSE sqlite_rename_table(sql, %Q) END, tbl_name = %Q, name = CASE WHEN type='table' THEN %Q WHEN name LIKE 'sqlite_autoindex%%' AND type='index' THEN 'sqlite_autoindex_' || %Q || substr(name,%d 18) ELSE name END WHERE tbl_name=%Q COLLATE nocase AND (type='table' OR type='index' OR type='trigger');
sqlite_sequence
UPDATE "%w".sqlite_sequence set name = %Q WHERE name = %Q
UPDATE sqlite_temp_master SET sql = sqlite_rename_trigger(sql, %Q), tbl_name = %Q WHERE %s;
Cannot add a PRIMARY KEY column
UPDATE "%w".%s SET sql = substr(sql,1,%d) || ', ' || %Q || substr(sql,%d) WHERE type = 'table' AND name = %Q
sqlite_altertab_%s
sqlite_stat1
sqlite_stat3
CREATE TABLE %Q.%s(%s)
DELETE FROM %Q.%s WHERE %s=%Q
SELECT idx,count(*) FROM %Q.sqlite_stat3 GROUP BY idx
SELECT idx,neq,nlt,ndlt,sample FROM %Q.sqlite_stat3
SELECT tbl,idx,stat FROM %Q.sqlite_stat1
invalid name: "%s"
too many attached databases - max %d
database %s is already in use
Invalid key value
unable to open database: %s
no such database: %s
cannot detach database %s
database %s is locked
sqlite_detach
sqlite_attach
%s %T cannot reference objects in database %s
access to %s.%s.%s is prohibited
access to %s.%s is prohibited
object name reserved for internal use: %s
there is already an index named %s
too many columns on %s
duplicate column name: %s
default value of column [%s] is not constant
table "%s" has more than one primary key
AUTOINCREMENT is only allowed on an INTEGER PRIMARY KEY
CREATE %s %.*s
UPDATE %Q.%s SET type='%s', name=%Q, tbl_name=%Q, rootpage=#%d, sql=%Q WHERE rowid=#%d
CREATE TABLE %Q.sqlite_sequence(name,seq)
view %s is circularly defined
UPDATE %Q.%s SET rootpage=%d WHERE #%d AND rootpage=#%d
sqlite_stat%d
DELETE FROM %Q.sqlite_sequence WHERE name=%Q
DELETE FROM %Q.%s WHERE tbl_name=%Q and type!='trigger'
sqlite_stat
table %s may not be dropped
use DROP TABLE to delete table %s
use DROP VIEW to delete view %s
foreign key on %s should reference only one column of table %T
number of columns in foreign key does not match the number of columns in the referenced table
unknown column "%s" in foreign key definition
indexed columns are not unique
table %s may not be indexed
views may not be indexed
virtual tables may not be indexed
there is already a table named %s
index %s already exists
sqlite_autoindex_%s_%d
table %s has no column named %s
CREATE%s INDEX %.*s
INSERT INTO %Q.%s VALUES('index',%Q,%Q,#%d,%Q);
no such index: %S
index associated with UNIQUE or PRIMARY KEY constraint cannot be dropped
DELETE FROM %Q.%s WHERE name=%Q AND type='index'
a JOIN clause is required before %s
unable to identify the object to be reindexed
no such collation sequence: %s
table %s may not be modified
cannot modify %s because it is a view
sqlite_source_id
sqlite_log
sqlite_compileoption_used
sqlite_compileoption_get
foreign key mismatch
table %S has %d columns but %d values were supplied
%d values for %d columns
table %S has no column named %s
%s.%s may not be NULL
constraint %s failed
automatic extension loading failed: %s
foreign_key_list
*** in database %s ***
unsupported encoding: %s
rekey
hexkey
hexrekey
malformed database schema (%s)
%s - %s
unsupported file format
SELECT name, rootpage, sql FROM '%q'.%s ORDER BY rowid
database schema is locked: %s
unknown or unsupported join type: %T %T%s%T
RIGHT and FULL OUTER JOINs are not currently supported
a NATURAL join may not have an ON or USING clause
cannot have both ON and USING clauses in the same join
cannot join using column %s - column not present in both tables
USE TEMP B-TREE FOR %s
COMPOUND SUBQUERIES %d AND %d %s(%s)
%s:%d
ORDER BY clause should come after %s not before
LIMIT clause should come after %s not before
SELECTs to the left and right of %s do not have the same number of result columns
no such index: %s
sqlite_subquery_%p_
no such table: %s
SCAN TABLE %s %s%s(~%d rows)
sqlite3_get_table() called with two or more incompatible queries
cannot create %s trigger on view: %S
cannot create INSTEAD OF trigger on table: %S
INSERT INTO %Q.%s VALUES('trigger',%Q,%Q,0,'CREATE TRIGGER %q')
no such trigger: %S
-- TRIGGER %s
no such column: %s
cannot VACUUM - SQL statements in progress
PRAGMA vacuum_db.synchronous=OFF
SELECT 'CREATE TABLE vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE type='table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'CREATE INDEX vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE sql LIKE 'CREATE INDEX %'
SELECT 'CREATE UNIQUE INDEX vacuum_db.' || substr(sql,21) FROM sqlite_master WHERE sql LIKE 'CREATE UNIQUE INDEX %'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';'FROM main.sqlite_master WHERE type = 'table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'DELETE FROM vacuum_db.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name='sqlite_sequence'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name=='sqlite_sequence';
INSERT INTO vacuum_db.sqlite_master SELECT type, name, tbl_name, rootpage, sql FROM main.sqlite_master WHERE type='view' OR type='trigger' OR (type='table' AND rootpage=0)
UPDATE %Q.%s SET type='table', name=%Q, tbl_name=%Q, rootpage=0, sql=%Q WHERE rowid=#%d
vtable constructor failed: %s
vtable constructor did not declare schema: %s
no such module: %s
table %s: xBestIndex returned an invalid plan
%s TABLE %s
%s AS %s
%s USING %s%sINDEX%s%s%s
%s USING INTEGER PRIMARY KEY
%s (rowid=?)
%s (rowid>? AND rowid<?)
%s (rowid>?)
%s (rowid<?)
%s VIRTUAL TABLE INDEX %d:%s
%s (~%lld rows)
at most %d tables in a join
cannot use index: %s
the INDEXED BY clause is not allowed on UPDATE or DELETE statements within triggers
the NOT INDEXED clause is not allowed on UPDATE or DELETE statements within triggers
SQL logic error or missing database
unknown operation
large file support is disabled
unknown database: %s
no such %s mode: %s
%s mode not allowed: %s
no such vfs: %s
database corruption at line %d of [%.10s]
misuse at line %d of [%.10s]
cannot open file at line %d of [%.10s]
no such table column: %s.%s
CREATE TABLE x(%s %Q HIDDEN, docid HIDDEN, %Q HIDDEN)
CREATE TABLE IF NOT EXISTS %Q.'%q_stat'(id INTEGER PRIMARY KEY, value BLOB);
docid INTEGER PRIMARY KEY
%z, 'c%d%q'
CREATE TABLE %Q.'%q_content'(%s)
CREATE TABLE %Q.'%q_segments'(blockid INTEGER PRIMARY KEY, block BLOB);
CREATE TABLE %Q.'%q_segdir'(level INTEGER,idx INTEGER,start_block INTEGER,leaves_end_block INTEGER,end_block INTEGER,root BLOB,PRIMARY KEY(level, idx));
CREATE TABLE %Q.'%q_docsize'(docid INTEGER PRIMARY KEY, size BLOB);
PRAGMA %Q.page_size
,%s(x.'c%d%q')
FROM '%q'.'%q%s' AS x
,%s(?)
unrecognized parameter: %s
unrecognized matchinfo: %s
unrecognized order: %s
error parsing prefix parameter: %s
missing %s parameter in fts4 constructor
SELECT %s WHERE rowid = ?
malformed MATCH expression: [%s]
SELECT %s ORDER BY rowid %s
illegal first argument to %s
porter
unknown tokenizer: %s
SELECT %s WHERE rowid=?
INSERT INTO %Q.'%q_content' VALUES(%s)
%s_segments
SELECT %s
unrecognized matchinfo request: %c
%d %d %d %d
CREATE TABLE "%w"."%w_node"(nodeno INTEGER PRIMARY KEY, data BLOB);CREATE TABLE "%w"."%w_rowid"(rowid INTEGER PRIMARY KEY, nodeno INTEGER);CREATE TABLE "%w"."%w_parent"(nodeno INTEGER PRIMARY KEY, parentnode INTEGER);INSERT INTO '%q'.'%q_node' VALUES(1, zeroblob(%d))
CREATE TABLE x(%s
%s, %s
%s {%s}
deflate 1.0.4 Copyright 1995-1996 Jean-loup Gailly
inflate 1.0.4 Copyright 1995-1996 Mark Adler
' ).;<52
?456789:;<=
!"#$%&'()* ,-./0123
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
3333333
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
33333333333333
337373?3
333373?33
33333337
3733333
3337333
3333373
3737333
373333?3
3333333333
333333333
333?33?333
333373?3
.UH`.
_R!%u`
-N}bU
.uS?}
D.Kfj
vsw%F
.umFC2
B.5_v.jq
.NF#d$
%"%u0
?lF%u
-.YRL
=O#M%u
#MT%u
~$.NW
).QM6
M%/%C
=1Y%6U
-@'.WG
Llo.fxh
5&J%U
&a.Pp
d}.rK
J9.dW
<\.bpl
uD.vx|
)t.omC4
w@.MJg
"9.pM
U.nI-f
&/RRP.Dg
3.pECW9
3WEbf
8%Dqo
'5q%u?^
Q.uk*M
:o.snX
.hl|>
dV.YCV
M%Uza
'&.eF
A.YT5Z
h.mHVc
nv)%uj
t.kU%
b{.MM
.uFgKa_
1n.fN
5r.pn
NG.%u
.LRO>
.keS7nk
;Ou%u3
icmd
zfFZ.Iu
H%Xm<:
%.LFX'g
.wg-U
1D%6U
A.aT@V
3"]4j%x
8.yUDh
8YUu%U}
(}.xD
=.mH9
AlG
%Uisvl5
".IKv
u)vp.zP
) $%S
.Lft~/-
c-R}(
n$.Bj}
,P%DL
CPV%d
.rsrc
ppro@opeNsl.Hg>
.Go?N
=>%>=?.'
t..Cb
g.PUGv:
Q!(AN.xl
(j(%d
.OP0|
>SL%d
.lIyyd
LQU %s
GE.Th
C@.VH7LD
%S0T_
Qf,%fo
R.ug'
)%Uv[.`
4.VX9o
*ZZ.XE<
mE.THj
DkIz%cQSRbPi
20 %Sj
v#%S@
{l^$.dt
r%Crt
I(0!Mß
Ys%X6
I:\D$
F@.Bv
.iT\t
7.cDL;5%
\.HHH
c-wUu(%p,X):
evpkey
.pjducix
1.0.26
##%%&&))**
&'()* ,-./
.pp@0
%'%1$=%C%K%O%
.%.-.3.7.9.?.W.[.o.y.
0#0)070;
3Ó/353A3G3[3_3g3k3s3
9#9%9)9/
C%C'C3C7C9COCWCiC
IN_KEYG'ALGOR
~-Key:
.pkmgH
.VnbC
4092833
L{.nN
/faq.Dml
yDg.aJ
$'931311
|e"BWeb
Q/%2sBROp
FT43_'.Kg
62%8sR
E>O%s
.dBD,^
5nT}
[[%s]]
!f.omj
HTTP/O0
s<.na
n/MSG
3620483072/409
6144819
C:\E\T
l}C.we
zcÁ
9#_%- #,
EY}.Gr
Ja.ch^\
]<%cQ\
KERNEL32.DLL
ADVAPI32.dll
GDI32.dll
USER32.dll
WS2_32.dll
ReportEventA
LIBEAY32.dll
AES_set_decrypt_key
AES_set_encrypt_key
AES_unwrap_key
AES_wrap_key
ASN1_PCTX_get_cert_flags
ASN1_PCTX_set_cert_flags
AUTHORITY_KEYID_free
AUTHORITY_KEYID_it
AUTHORITY_KEYID_new
BF_set_key
BIO_get_port
BIO_set_tcp_ndelay
CAST_set_key
CERTIFICATEPOLICIES_free
CERTIFICATEPOLICIES_it
CERTIFICATEPOLICIES_new
CMS_EncryptedData_set1_key
CMS_RecipientEncryptedKey_cert_cmp
CMS_RecipientEncryptedKey_get0_id
CMS_RecipientInfo_get0_pkey_ctx
CMS_RecipientInfo_kari_set0_pkey
CMS_RecipientInfo_ktri_cert_cmp
CMS_RecipientInfo_set0_key
CMS_RecipientInfo_set0_password
CMS_RecipientInfo_set0_pkey
CMS_SignerInfo_cert_cmp
CMS_SignerInfo_get0_pkey_ctx
CMS_SignerInfo_set1_signer_cert
CMS_add0_CertificateChoices
CMS_add0_cert
CMS_add0_recipient_key
CMS_add0_recipient_password
CMS_add1_cert
CMS_add1_recipient_cert
CMS_decrypt_set1_key
CMS_decrypt_set1_password
CMS_decrypt_set1_pkey
CMS_get1_certs
CMS_set1_signers_certs
Camellia_set_key
DES_check_key_parity
DES_is_weak_key
DES_key_sched
DES_random_key
DES_read_2passwords
DES_read_password
DES_set_key_checked
DES_set_key_unchecked
DES_string_to_2keys
DES_string_to_key
DH_check_pub_key
DH_compute_key
DH_compute_key_padded
DH_generate_key
DSA_generate_key
ECDH_compute_key
EC_KEY_check_key
EC_KEY_clear_flags
EC_KEY_copy
EC_KEY_dup
EC_KEY_free
EC_KEY_generate_key
EC_KEY_get0_group
EC_KEY_get0_private_key
EC_KEY_get0_public_key
EC_KEY_get_conv_form
EC_KEY_get_enc_flags
EC_KEY_get_flags
EC_KEY_get_key_method_data
EC_KEY_insert_key_method_data
EC_KEY_new
EC_KEY_new_by_curve_name
EC_KEY_precompute_mult
EC_KEY_print
EC_KEY_print_fp
EC_KEY_set_asn1_flag
EC_KEY_set_conv_form
EC_KEY_set_enc_flags
EC_KEY_set_flags
EC_KEY_set_group
EC_KEY_set_private_key
EC_KEY_set_public_key
EC_KEY_set_public_key_affine_coordinates
EC_KEY_up_ref
ENGINE_cmd_is_executable
ENGINE_ctrl_cmd
ENGINE_ctrl_cmd_string
ENGINE_get_cmd_defns
ENGINE_get_load_privkey_function
ENGINE_get_load_pubkey_function
ENGINE_get_pkey_asn1_meth
ENGINE_get_pkey_asn1_meth_engine
ENGINE_get_pkey_asn1_meth_str
ENGINE_get_pkey_asn1_meths
ENGINE_get_pkey_meth
ENGINE_get_pkey_meth_engine
ENGINE_get_pkey_meths
ENGINE_get_ssl_client_cert_function
ENGINE_load_private_key
ENGINE_load_public_key
ENGINE_load_ssl_client_cert
ENGINE_pkey_asn1_find_str
ENGINE_register_all_pkey_asn1_meths
ENGINE_register_all_pkey_meths
ENGINE_register_pkey_asn1_meths
ENGINE_register_pkey_meths
ENGINE_set_cmd_defns
ENGINE_set_default_pkey_asn1_meths
ENGINE_set_default_pkey_meths
ENGINE_set_load_privkey_function
ENGINE_set_load_pubkey_function
ENGINE_set_load_ssl_client_cert_function
ENGINE_set_pkey_asn1_meths
ENGINE_set_pkey_meths
ENGINE_unregister_pkey_asn1_meths
ENGINE_unregister_pkey_meths
ESS_CERT_ID_dup
ESS_CERT_ID_free
ESS_CERT_ID_new
ESS_SIGNING_CERT_dup
ESS_SIGNING_CERT_free
ESS_SIGNING_CERT_new
EVP_BytesToKey
EVP_MD_pkey_type
EVP_PKCS82PKEY
EVP_PKEY2PKCS8
EVP_PKEY2PKCS8_broken
EVP_PKEY_add1_attr
EVP_PKEY_add1_attr_by_NID
EVP_PKEY_add1_attr_by_OBJ
EVP_PKEY_add1_attr_by_txt
EVP_PKEY_asn1_set_item
EVP_PKEY_delete_attr
EVP_PKEY_get_attr
EVP_PKEY_get_attr_by_NID
EVP_PKEY_get_attr_by_OBJ
EVP_PKEY_get_attr_count
EXTENDED_KEY_USAGE_free
EXTENDED_KEY_USAGE_it
EXTENDED_KEY_USAGE_new
KRB5_ENCKEY_free
KRB5_ENCKEY_it
KRB5_ENCKEY_new
NETSCAPE_CERT_SEQUENCE_free
NETSCAPE_CERT_SEQUENCE_it
NETSCAPE_CERT_SEQUENCE_new
NETSCAPE_SPKI_get_pubkey
NETSCAPE_SPKI_set_pubkey
OCSP_CERTID_dup
OCSP_CERTID_free
OCSP_CERTID_it
OCSP_CERTID_new
OCSP_CERTSTATUS_free
OCSP_CERTSTATUS_it
OCSP_CERTSTATUS_new
OCSP_REQ_CTX_http
OCSP_basic_add1_cert
OCSP_cert_id_new
OCSP_cert_status_str
OCSP_cert_to_id
OCSP_parse_url
OCSP_request_add1_cert
OCSP_url_svcloc_new
PEM_read_DSAPrivateKey
PEM_read_DSA_PUBKEY
PEM_read_ECPrivateKey
PEM_read_EC_PUBKEY
PEM_read_NETSCAPE_CERT_SEQUENCE
PEM_read_PKCS8_PRIV_KEY_INFO
PEM_read_PUBKEY
PEM_read_PrivateKey
PEM_read_RSAPrivateKey
PEM_read_RSAPublicKey
PEM_read_RSA_PUBKEY
PEM_read_X509_CERT_PAIR
PEM_read_bio_DSA_PUBKEY
PEM_read_bio_ECPrivateKey
PEM_read_bio_EC_PUBKEY
PEM_read_bio_PKCS8_PRIV_KEY_INFO
PEM_read_bio_PUBKEY
PEM_read_bio_RSA_PUBKEY
PEM_read_bio_X509_CERT_PAIR
PEM_write_DSAPrivateKey
PEM_write_DSA_PUBKEY
PEM_write_ECPrivateKey
PEM_write_EC_PUBKEY
PEM_write_NETSCAPE_CERT_SEQUENCE
PEM_write_PKCS8PrivateKey
PEM_write_PKCS8PrivateKey_nid
PEM_write_PKCS8_PRIV_KEY_INFO
PEM_write_PUBKEY
PEM_write_PrivateKey
PEM_write_RSAPrivateKey
PEM_write_RSAPublicKey
PEM_write_RSA_PUBKEY
PEM_write_X509_CERT_PAIR
PEM_write_bio_DSA_PUBKEY
PEM_write_bio_ECPrivateKey
PEM_write_bio_EC_PUBKEY
PEM_write_bio_PKCS8PrivateKey_nid
PEM_write_bio_PKCS8_PRIV_KEY_INFO
PEM_write_bio_PUBKEY
PEM_write_bio_RSA_PUBKEY
PEM_write_bio_X509_CERT_PAIR
PKCS12_MAKE_KEYBAG
PKCS12_MAKE_SHKEYBAG
PKCS12_PBE_keyivgen
PKCS12_add_cert
PKCS12_add_key
PKCS12_add_localkeyid
PKCS12_certbag2x509
PKCS12_certbag2x509crl
PKCS12_decrypt_skey
PKCS12_key_gen_asc
PKCS12_key_gen_uni
PKCS12_newpass
PKCS12_x5092certbag
PKCS12_x509crl2certbag
PKCS7_add_certificate
PKCS7_cert_from_signer_info
PKCS8_PRIV_KEY_INFO_free
PKCS8_PRIV_KEY_INFO_it
PKCS8_PRIV_KEY_INFO_new
PKCS8_add_keyusage
PKCS8_pkey_get0
PKCS8_pkey_set0
PKEY_USAGE_PERIOD_free
PKEY_USAGE_PERIOD_it
PKEY_USAGE_PERIOD_new
PROXY_CERT_INFO_EXTENSION_free
PROXY_CERT_INFO_EXTENSION_it
PROXY_CERT_INFO_EXTENSION_new
RC2_set_key
RC4_set_key
RSAPrivateKey_dup
RSAPrivateKey_it
RSAPublicKey_dup
RSAPublicKey_it
SEED_set_key
SRP_Calc_client_key
SRP_Calc_server_key
TS_CONF_load_cert
TS_CONF_load_certs
TS_CONF_load_key
TS_CONF_set_certs
TS_CONF_set_ess_cert_id_chain
TS_CONF_set_signer_cert
TS_CONF_set_signer_key
TS_MSG_IMPRINT_dup
TS_MSG_IMPRINT_free
TS_MSG_IMPRINT_get_algo
TS_MSG_IMPRINT_get_msg
TS_MSG_IMPRINT_new
TS_MSG_IMPRINT_print_bio
TS_MSG_IMPRINT_set_algo
TS_MSG_IMPRINT_set_msg
TS_REQ_get_cert_req
TS_REQ_get_msg_imprint
TS_REQ_set_cert_req
TS_REQ_set_msg_imprint
TS_RESP_CTX_set_certs
TS_RESP_CTX_set_signer_cert
TS_RESP_CTX_set_signer_key
TS_TST_INFO_get_msg_imprint
TS_TST_INFO_set_msg_imprint
X509_CERT_AUX_free
X509_CERT_AUX_it
X509_CERT_AUX_new
X509_CERT_AUX_print
X509_CERT_PAIR_free
X509_CERT_PAIR_it
X509_CERT_PAIR_new
X509_CRL_get0_by_cert
X509_CRL_http_nbio
X509_PKEY_free
X509_PKEY_new
X509_PUBKEY_free
X509_PUBKEY_get0_param
X509_PUBKEY_it
X509_PUBKEY_new
X509_PUBKEY_set
X509_PUBKEY_set0_param
X509_REQ_check_private_key
X509_REQ_get_pubkey
X509_STORE_CTX_set_cert
X509_STORE_get1_certs
X509_certificate_type
X509_check_private_key
X509_get0_pubkey_bitstr
X509_get_default_cert_area
X509_get_default_cert_dir
X509_get_default_cert_dir_env
X509_get_pubkey
X509_get_pubkey_parameters
X509_http_nbio
X509_keyid_get0
X509_keyid_set1
X509_load_cert_crl_file
X509_load_cert_file
X509_pubkey_digest
X509_supported_extension
X509_verify_cert
X509_verify_cert_error_string
_ossl_old_des_is_weak_key
_ossl_old_des_key_sched
_ossl_old_des_random_key
_ossl_old_des_read_2passwords
_ossl_old_des_read_password
_ossl_old_des_string_to_2keys
_ossl_old_des_string_to_key
_shadow_DES_check_key
b2i_PrivateKey
b2i_PrivateKey_bio
b2i_PublicKey
b2i_PublicKey_bio
d2i_AUTHORITY_KEYID
d2i_CERTIFICATEPOLICIES
d2i_DSAPrivateKey_bio
d2i_DSAPrivateKey_fp
d2i_DSAPublicKey
d2i_DSA_PUBKEY
d2i_DSA_PUBKEY_bio
d2i_DSA_PUBKEY_fp
d2i_ECPrivateKey
d2i_ECPrivateKey_bio
d2i_ECPrivateKey_fp
d2i_EC_PUBKEY
d2i_EC_PUBKEY_bio
d2i_EC_PUBKEY_fp
d2i_ESS_CERT_ID
d2i_ESS_SIGNING_CERT
d2i_EXTENDED_KEY_USAGE
d2i_KRB5_ENCKEY
d2i_NETSCAPE_CERT_SEQUENCE
d2i_OCSP_CERTID
d2i_OCSP_CERTSTATUS
d2i_PKCS8PrivateKey_bio
d2i_PKCS8PrivateKey_fp
d2i_PKCS8_PRIV_KEY_INFO
d2i_PKCS8_PRIV_KEY_INFO_bio
d2i_PKCS8_PRIV_KEY_INFO_fp
d2i_PKEY_USAGE_PERIOD
d2i_PROXY_CERT_INFO_EXTENSION
d2i_PUBKEY
d2i_PUBKEY_bio
d2i_PUBKEY_fp
d2i_PrivateKey_fp
d2i_RSAPrivateKey_bio
d2i_RSAPrivateKey_fp
d2i_RSAPublicKey_bio
d2i_RSAPublicKey_fp
d2i_RSA_PUBKEY
d2i_RSA_PUBKEY_bio
d2i_RSA_PUBKEY_fp
d2i_TS_MSG_IMPRINT
d2i_TS_MSG_IMPRINT_bio
d2i_TS_MSG_IMPRINT_fp
d2i_X509_CERT_AUX
d2i_X509_CERT_PAIR
d2i_X509_PKEY
d2i_X509_PUBKEY
i2b_PrivateKey_bio
i2b_PublicKey_bio
i2d_AUTHORITY_KEYID
i2d_CERTIFICATEPOLICIES
i2d_DSAPrivateKey_bio
i2d_DSAPrivateKey_fp
i2d_DSAPublicKey
i2d_DSA_PUBKEY
i2d_DSA_PUBKEY_bio
i2d_DSA_PUBKEY_fp
i2d_ECPrivateKey
i2d_ECPrivateKey_bio
i2d_ECPrivateKey_fp
i2d_EC_PUBKEY
i2d_EC_PUBKEY_bio
i2d_EC_PUBKEY_fp
i2d_ESS_CERT_ID
i2d_ESS_SIGNING_CERT
i2d_EXTENDED_KEY_USAGE
i2d_KRB5_ENCKEY
i2d_OCSP_CERTID
i2d_OCSP_CERTSTATUS
i2d_PKCS8PrivateKeyInfo_bio
i2d_PKCS8PrivateKeyInfo_fp
i2d_PKCS8PrivateKey_bio
i2d_PKCS8PrivateKey_fp
i2d_PKCS8PrivateKey_nid_bio
i2d_PKCS8PrivateKey_nid_fp
i2d_PKCS8_PRIV_KEY_INFO
i2d_PKCS8_PRIV_KEY_INFO_bio
i2d_PKCS8_PRIV_KEY_INFO_fp
i2d_PKEY_USAGE_PERIOD
i2d_PROXY_CERT_INFO_EXTENSION
i2d_PUBKEY
i2d_PUBKEY_bio
i2d_PUBKEY_fp
i2d_PrivateKey_fp
i2d_RSAPrivateKey_bio
i2d_RSAPrivateKey_fp
i2d_RSAPublicKey_bio
i2d_RSAPublicKey_fp
i2d_RSA_PUBKEY
i2d_RSA_PUBKEY_bio
i2d_RSA_PUBKEY_fp
i2d_TS_MSG_IMPRINT
i2d_TS_MSG_IMPRINT_bio
i2d_TS_MSG_IMPRINT_fp
i2d_X509_CERT_AUX
i2d_X509_CERT_PAIR
i2d_X509_PKEY
i2d_X509_PUBKEY
i2o_ECPublicKey
idea_set_decrypt_key
idea_set_encrypt_key
o2i_ECPublicKey
private_AES_set_decrypt_key
private_AES_set_encrypt_key
private_RC4_set_key
w".pB
%CyYA0hD
R.ARu
.Slv&
4WURl."
SK-Ww}
R.Vd0
7'#.Smbi
P%s_t.
PX.DR*
vZ %D
.FA;r
.sPI0h
\.tP,
cPhhTtp\p
\.HLPT.
\.lptx.
<|%x-t
X.Cr&
M^.WLA
pen" 1.0.2e 3 Dec 201N
master_key
is %d?)`
'o'%s:%d: re
ng)msg_hdr->
%ld (%s\f
RgKey-Arg
c&cmd=U
|PKEY
SSLEAY32.dll
SSL_CONF_cmd
SSL_CONF_cmd_argv
SSL_CONF_cmd_value_type
SSL_CTX_get0_certificate
SSL_CTX_get0_privatekey
SSL_CTX_get_cert_store
SSL_CTX_get_client_cert_cb
SSL_CTX_set_cert_cb
SSL_CTX_set_cert_store
SSL_CTX_set_cert_verify_callback
SSL_CTX_set_client_cert_cb
SSL_CTX_set_client_cert_engine
SSL_CTX_set_msg_callback
SSL_CTX_set_srp_password
SSL_CTX_use_PrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey
SSL_CTX_use_RSAPrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey_file
SSL_CTX_use_certificate_ASN1
SSL_add_dir_cert_subjects_to_stack
SSL_add_file_cert_subjects_to_stack
SSL_certs_clear
SSL_check_private_key
SSL_export_keying_material
SSL_extension_supported
SSL_get_certificate
SSL_get_peer_cert_chain
SSL_get_privatekey
SSL_set_cert_cb
SSL_set_msg_callback
SSL_use_PrivateKey
SSL_use_PrivateKey_ASN1
SSL_use_PrivateKey_file
SSL_use_RSAPrivateKey
SSL_use_RSAPrivateKey_ASN1
SSL_use_RSAPrivateKey_file
SSL_use_certificate
SSL_use_certificate_ASN1
SSL_use_certificate_file
LoginDialog
Database Login
&Password:
PasswordDialog
Enter password
GetWindowsDirectoryA
GetCPInfo
RegUnLoadKeyA
RegQueryInfoKeyA
RegOpenKeyExW
RegOpenKeyExA
RegFlushKey
RegEnumKeyExA
RegDeleteKeyA
RegCreateKeyExA
RegCloseKey
RegEnumKeyExW
SetViewportOrgEx
SHFileOperationA
UnhookWindowsHookEx
SetWindowsHookExA
MsgWaitForMultipleObjects
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
EnumWindows
EnumThreadWindows
ActivateKeyboardLayout
GetKeyboardType
.idata
.rdata
P.reloc
P.rsrc
#\! $(,048
.cfJh
c.tS4
.bhRo
Db5%F
<?xml version="1.0" encoding="UTF-8" standalone="yes"?> <assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0" xmlns:asmv3="urn:schemas-microsoft-com:asm.v3"> <trustInfo xmlns="urn:schemas-microsoft-com:asm.v3"> <security> <requestedPrivileges> <requestedExecutionLevel level="asInvoker" uiAccess="false"/> </requestedPrivileges> </security> </trustInfo> <compatibility xmlns="urn:schemas-microsoft-com:compatibility.v1"> <application> <supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"/> <supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/> <supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"/> <supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"/> <supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"/> </application> </compatibility> </assembly>
advapi32.dll
gdi32.dll
mpr.dll
opengl32.dll
shell32.dll
user32.dll
version.dll
*<>#%"{}|\^[]`
hXXp://VVV.w3.org/2001/XMLSchema
hXXp://VVV.w3.org/2000/xmlns/
hXXp://VVV.w3.org/2001/XMLSchema-instance
888816666554443
6666554443
!6666554443
TLOGINDIALOG
TPASSWORDDIALOG
Invalid stream operation
<Selected DOM Vendor does not support this property or method;Property or Method "%s" is not supported by DOM Vendor "%s"
Node "%s" not found
IDOMNode required.Attributes are not supported on this node type
Invalid node type Mismatched paramaters to RegisterChildNodes Element does not contain a single text node4DOM Implementation does not support IDOMParseOptions
Node is readonlyCRefresh is only supported if the FileName or XML properties are set
/Database specified by [%p] handle was not foundHVTab: Invalid number of arguments at VTabCreate. Expected [%d], got [%d](VTab: Dataset [%s] is not found or empty VTab: Operation is not supported!VTab: Savepoint [%d] is not found!VTab: Dataset modification failed/VTab: Explicit ROWID at INSERT is not supported9VTab: Dataset state was changed. Cannot perform operation"VTab: Specified row does not exist
VTab: Invalid cursor;TADLocalSQL must be attached to an active SQLite connection0VTab: DataSet [%s] is busy by another result set/Cannot perform action. DBTOOLn.DLL is not found
Unnamed)"%s" DOMImplementation already registered
No matching DOM Vendor: "%s"
5Maximum length (%d) of BQUAL exceeded - %d (NOE19/TX)@Maximum length (%d) of transaction name exceeded - %d (NOE20/TX)@Too many close braces in names file after alias [%s] (NOE105/DB)0[%s] is not a callable PL/SQL object (NOE130/SP)2[%s, #%d] is not found in [%s] package (NOE134/SP)TParameter with type TABLE OF BOOLEAN/RECORD not supported (use TADQuery) (NOE135/SP)KParameter with type RECORD must be of named type (use TADQuery) (NOE142/SP))Cannot convert Oracle Number [%s] to TBcd7DBMS_PIPE event alerter supports only single event name9Cannot start a trace session, when there is an active one"Stored procedure [%s] is not founduArray-typed variable [%s] dimensions [%d] are not supported.
Only sigle dimensional simple type arrays are supportedqArray-typed variable [%s] unsupported element type [%d].
Only sigle dimensional simple type arrays are supportedCArray-typed variable [%s] item index [%d] is out of bounds [%d, %d]
Cannot describe type [%d].
%sHSQLite library initialization failed. Main code [%d], extended code [%d]
`No script to execute for [%s].
Possible reason: SQLScriptFileName and SQLScripts both are empty Connection parameter [%s] must be not empty|DbExpress driver configuration file [%s] is not found.
Possible reason: dbExpress is not properly installed on this machineUUnsupported MySQL version [%d].
Supported are client and server from v 3.20 to v 6.2
Port number cannot be changed&Error in parameter [%s] definition. %sFFailed to initialize embedded server.
See MySQL log files for details/Variable [%s] C data type [%d] is not supported
No cursors availableCCannot initialize OCI with character set [%s].
Possible reason: %s1Cannot assign value to BFILE/CFILE parameter [%s]HNo cursor parameters are defined. Include fiMeta into FetchOptions.Items9OCI is not properly installed on this machine (NOE1/INIT)ZUnsupported OCI library [%s] version [%s].
At least version 8.0.3 is required (NOE2/INIT)0Bad or undefined variable param type (NOE12/VAR)5Maximum length (%d) of GTRID exceeded - %d (NOE18/TX)
Class [%s] is not registered
Unknown storage format [%s]"Cannot move file [%s] to [%s].
%s!Invalid date interval format [%s]Ênnot execute host command [%s].
%s)String size must be of 1 character length.Character cannot be alphanumeric or whitespace
Invalid command [%s] syntax-ACCEPT statement must specify a variable name,DEFINE requires a value following equal sign
VARIABLE has missed right brace"VARIABLE has unsupported data typeÊnnot execute command. Not logged onlNo script commands registered.
"Text field [%s] name is Duplicated5Bad text value [%s] format for mapping item [%s].
%s?Undefined source field or expression for destination field [%s]
Timeout expired"Cannot get access to BLOB raw datahVariable length data parameter [%s] overflow.
Value length - [%d], parameter data maximum length - [%d]PCannot perform nonblocking action, while other nonblocking action is in progress
Macro [%s] is not found7Parameter [%s] value index [%d] is out of range [0..%d]mCannot acquire item (connection) from pool.
Maximal number [%d] of simultaneous items (connections) reached.@.
To register it, you can drop component [%s] into your project>.
To register it, you can include unit [%s] into your project
Cannot read [%s] property
Cannot read [%s] object#Cannot read RAW data of [%s] object
*Dataset [%s] must be in cached update moderConnection is not defined for [%s].
Connection [%s] must be online
Table adapter [%s] cannot be assigned to [%s], because it is
already assigned to [%s] and cannot be shared across few datasets6Dataset connection does not match to called connection Table [%s] must have primary keyWLocal SQL engine misusage by [%s].
Hint: activate connection before activating dataset=Table [%s] index [%s] must be existing non-expressional index
Dataset name must be not empty?Dataset name [%s] must be unique across Local SQL [%s] datasets
Text field [%s] is not found
Destination dataset not set;Destination text data file name or stream must be specified6Source text data file name or stream must be specified=Text field [%s] size is undefined in Fixed Size Record format
<Operation cannot be performed without assigned SelectCommand
ADManager must be active#Connection name [%s] must be unique Connection [%s] must be inactive
Connection [%s] must be active)Connection [%s] establishment is canceled
Connection [%s] cannot be pooled.
Possible reason: connection definition is not in the ADManager.ConnectionDefs list or
TADConnection.Params has additional parameters
Connection [%s] is not found
Possible reason: [%s] ConnectionName property is misspelled or references to nonexistent connection$Command [%s] must be in active state&Command [%s] must be in inactive state
Param [%s] type changed from [ft%s] to [ft%s]. Query must be reprepared.
Possible reason: an assignment to a TADParam.AsXXX property implicitly changed the parameter data type.
Hint: use the TADParam.Value or appropriate TADParam.AsXXX property1A meta data argument [%s] value must be specified
Expected number of parameters is [%d], but actual number is [%d].
Possible reason: a parameter was added or deletedsData too large for variable [%s]. Max len = [%d], actual len = [%d]
Hint: set the TADParam.Size to a greater value
Database [%s] does not exist
Access 2003 or earlier: hXXp://support.microsoft.com/kb/239114
Access 2007: hXXp://VVV.microsoft.com/download/en/details.aspx?displaylang=en&id=23734
Access 2010: hXXp://VVV.microsoft.com/download/en/details.aspx?id=13255{JRO.JetEngine class is missing on client machine.
Hint: install latest engine from: hXXp://support.microsoft.com/kb/239114aDatabase format is not recognized.
Possible reason: DBVersion value mismatches database version.&Specified database password is invalid
Unknown OLE error1To perform operation DriverLink must be specified To perform operation service must be activeGCannot deinstall a SQLite collation, while there are active connections?%s command %s [%d] instead of [1] record.
Possible reasons: %saupdate table does not have PK or row identifier,
*Too many login retries. Allowed [%d] times1To perform operation driver manager, must be [%s]
Character [%s] is missed
Too long identifier (> 255)6Parameter [%s] ArraySize [%d] is less than ATimes [%d]=Cannot perform action, because previous action is in progress%Escape function [%s] is not supported8Define(mmReset) is only supported for metainfo retrieval6Cannot generate update query. WHERE condition is empty4Cannot generate update query. Update table undefined
Cannot parse object name - [%s])Syntax error in escape function [%s].
%shADPhysManager shutdown timeout.
Possible reason: application has not released all connection interfaceszParameter [%s] data type is unknown.
Hint: specify TADParam.DataType or assign TADParam value before Prepare/Execute call)Parameter [%s] data type is not supported&Column [%s] data type is not supported
Capability is not supported
Transaction [%s] must be activeCTransaction [%s] must be inactive. Nested transactions are disabled
Hint: use Execute / ExecSQL method for non-SELECT commands!Command must be is prepared state]Cannot execute command returning result sets.
Hint: use Open method for SELECT-like commands!Command must be open for fetching,Exact %s [%d] rows, while [%d] was requested
Meta information mismatchvCannot load vendor library [%s].
%sHint: check it is in the PATH or application EXE directories, and has x86 bitness./Cannot get vendor library entry point[s].
-Record inserting for dataset [%s] is disabled,Record deleting for dataset [%s] is disabled=Field [%s] specified within %s of DataSet [%s] does not existeCannot set dataset [%s] to offline mode.
Hint: check that FetchOptions.AutoFetchAll is not afDisable|Cannot turn off cached updates mode for DataSet [%s].
Hint: dataset has updated rows, cancel or apply updates before action.Cannot make definition [%s] circular reference7Cannot %s definition [%s]. It has associated connection!Cannot make definition persistent9Cannot load definition list, because it is already loaded$Definition [%s] is not found in [%s]"Definition name [%s] is duplicated"Driver [%s] is not registered.
%sXDriver [%s] cannot be released.
Hint: Close all TADConnection objects and release poolsNTo register it, you can drop component [TADPhys%sDriverLink] into your project5Correct driver ID or define [%s] virtual driver in %seDriver ID is not defined.
Set TADConnection.DriverName or add DriverID to your connection definition
%s&Bookmark is not found for dataset [%s]
View [%s] is not a sorted view"Adapter interface must be suppliedUCannot set MasterSource for dataset [%s].
Nested datasets cannot have a MasterSourceMCannot set MasterSource for dataset [%s].
Circular datalinks are not alloweduCannot refresh dataset [%s].
Cannot open dataset [%s].
Hint: if that is TADMemTable, use CreateDataSet or CloneCursor to open dataset(Index [%s] is not found for dataset [%s],Aggregate [%s] is not found for dataset [%s]6Index [%s] definition is not complete for dataset [%s]:Aggregate [%s] definition is not complete for dataset [%s]7Cannot perform operation on unidirectional dataset [%s]LBookmark key fields [%s] are incompatible
with dataset [%s] key fields [%s] Record editing for dataset [%s] is disabled
Invalid use of keyword
Invalid character found [%s]
'(' expected but [%s] found"')' or ',' expected but [%s] found
')' expected but [%s] found"IN predicate list may not be empty
Expected [%s].Arithmetic in filter expressions not supported>Operation cannot mix aggregate value with record-varying value
4Cannot change updates registry for DatS manager [%s]"Too many aggregate values per view9Grouping level exceeds maximum allowed for aggregate [%s]XVariable length column [%s] overflow.
Value length - [%d], column maximum length - [%d]
Invalid foreign key [%s]
Invalid unique key [%s]#Cannot change column [%s] data type
Invalid relation [%s](Cannot create parent view. Relation [%s]7Cannot change table [%s] structure, when table has rows;Found a cascading actions loop at checking foreign key [%s]
Record is not lockedFAssigning value [%s] is not compatible with column [%s] data type.
%s,Value [%s] is out of range of [%s] data typeuColumn or function [%s] is not found.
Column [%s] is read only
Cannot insert row into table"Column [%s] value must be not null4Duplicate row found on unique index. Constraint [%s]/Cannot process - no parent row. Constraint [%s]2Cannot process - child rows found. Constraint [%s]
Cannot compare rowsÚta type conversion is not supported
Column [%s] is not searchable=Row may have only single column of [dtParentRowRef] data typewCannot read data from or write data to the invariant column [%s].
Row is not nested)Column [%s] is not reference to other row'Column [%s] is not reference to row set&Cannot perform operation for row state
Unknown credentials use!Do AcquireCredentialsHandle first"CompleteAuthToken is not supported#Name [%s] is duplicated in the list
Object [%s] is not found(Column [%s] type is unknown or undefined
Constraint [%s]
Cannot begin edit row'Cannot create child view. Relation [%s]
Cannot delete row Column [%s] must have blob value_Fixed length column [%s] data length mismatch.
Value length - [%d], column fixed length - [%d]
The revocation status of the domain controller certificate used for smartcard authentication could not be determined. There is additional information in the system event log. Please contact your system administrator.
An untrusted certificate authority was detected while processing the domain controller certificate used for authentication. There is additional information in the system event log. Please contact your system administrator.
The domain controller certificate used for smartcard logon has expired. Please contact your system administrator with the contents of your system event log.
The domain controller certificate used for smartcard logon has been revoked. Please contact your system administrator with the contents of your system event log.IA signature operation must be performed before the user can authenticate.AOne or more of the parameters passed to the function was invalid.DClient policy does not allow credential delegation to target server.bClient policy does not allow credential delegation to target server with NLTM only authentication.1The recipient rejected the renegotiation request.-The required security context does not exist.`The PKU2U protocol encountered an error while attempting to utilize the associated certificates.:The identity of the server computer could not be verified.
Unknown error#SSPI %s returns error #%d(0x%x): %s0SSPI interface has failed to initialise properly
DThe KDC was unable to generate a referral for the service requested.:The encryption type requested is not supported by the KDC.QAn unsupported preauthentication mechanism was presented to the Kerberos package.
The requested operation cannot be completed. The computer must be trusted for delegation and the current user account must be configured to allow delegation.7Client's supplied SSPI channel bindings were incorrect.9The received certificate was mapped to multiple accounts.
SEC_E_NO_KERB_KEY5The certificate is not valid for the requested usage.
The smartcard certificate used for authentication has been revoked. Please contact your system administrator. There may be additional information in the event log.
An untrusted certificate authority was detected While processing the smartcard certificate used for authentication. Please contact your system administrator.
The revocation status of the smartcard certificate used for authentication could not be determined. Please contact your system administrator.lThe smartcard certificate used for authentication was not trusted. Please contact your system administrator.hThe smartcard certificate used for authentication has expired. Please contact your system administrator.
The Kerberos subsystem encountered an error. A service for user protocol request was made against a domain controller which does not support service for user.
An attempt was made by this server to make a Kerberos constrained delegation request for a target outside of the server's realm. This is not supported, and indicates a misconfiguration on this server's allowed to delegate to list. Please contact your administrator.
The security context could not be established due to a failure in the requested quality of service (e.g. mutual authentication or delegation).dA security context was deleted before the context was completed. This is considered a logon failure.mThe client is trying to negotiate a context and the server requires user-to-user but didn't send a TGT reply.aUnable to accomplish the requested task because the local machine does not have any IP addresses.bThe supplied credential handle does not match the credential associated with the security context.]The crypto system or checksum function is invalid because a required function is unavailable.9The number of maximum ticket referrals has been exceeded.KThe local machine must be a Kerberos KDC (domain controller) and it is not.qThe other end of the security negotiation is requires strong crypto but it is not supported on the local machine.5The KDC reply contained more than one principal name.OExpected to find PA data for a hint of what etype to use, but it was not found.
The client certificate does not contain a valid UPN, or does not match the client name in the logon request. Please contact your administrator.-Smartcard logon is required and was not used.!A system shutdown is in progress.'An invalid request was sent to the KDC.
-The requested security package does not exist2The context has expired and can no longer be used.DThe supplied message is incomplete. The signature was not verified.lThe credentials supplied were not complete, and could not be verified. The context could not be initialized.1The buffers supplied to a function was too small.
The credentials supplied were not complete, and could not be verified. Additional information can be returned from the context.4The context data must be renegotiated with the peer.'The target principal name is incorrect.:There is no LSA mode context associated with this context.8The clocks on the client and server machines are skewed.;The certificate chain was issued by an untrusted authority.7The message received was unexpected or badly formatted.;An unknown error occurred while processing the certificate.%The received certificate has expired.*The specified data could not be encrypted.*The specified data could not be decrypted.
6The caller is not the owner of the desired credentialsBThe security package failed to initialize, and cannot be installed-The token supplied to the function is invalid^The security package is not able to marshall the logon buffer, so the logon attempt has failedNThe per-message Quality of Protection is not supported by the security package?The security context does not allow impersonation of the client
The logon attempt failed;The credentials supplied to the package were not recognized4No credentials are available in the security packageCThe message or signature supplied for verification has been altered8The message supplied for verification is out of sequence3No authority could be contacted for authentication.UThe function completed successfully, but must be called again to complete the contextEThe function completed successfully, but CompleteToken must be calledtThe function completed successfully, but both CompleteToken and this function must be called to complete the contextsThe logon was completed, but no network authority was available. The logon was made using locally known information
The handle specified is invalid'The function requested is not supported.The specified target is unknown or unreachable0The Local Security Authority cannot be contacted-The requested security package does not exist
Host field is empty,Character Index %d out of Range, Length = %d:Character at Index %d is not a valid UTF-16 High Surrogate9Character at Index %d is not a valid UTF-16 Low Surrogate*Missing a Low Surrogate in UTF-16 sequence
Failed to load %s.
SSL status: "%s"
%s Alert
%s Read Alert
%s Write Alert
Unknown Protocol(Request method requires HTTP version 1.1KUnsupported hash algorithm. This implementation supports only MD5 encoding.$Error accepting connection with SSL.
Error creating SSL context. Could not load root certificate.
Could not load certificate.#Could not load key, check password.
Transparent proxy cannot bind. UDP Not supported by this proxy.$Buffer terminator must be specified.!Buffer start position is invalid.
Reply Code is not valid: %s
Reply Code already exists: %s
IOHandler value is not valid'Algorithm %s not permitted in FIPS mode
Command not supported.
Address type not supported."%s: Circular links are not allowed"Not enough data in buffer. (%d/%d)
File "%s" not found
Object type not supported.
;Could not bind socket. Address and port are already in use.
Invalid Port Range (%d - %d)
%s is not a valid service.
%s is not a valid IPv6 address:The requested IPVersion / Address family is not supported.
Set Size Exceeded.)UDP is not support in this SOCKS version.
Request rejected or failed.5Request rejected because SOCKS server cannot connect.QRequest rejected because the client program and identd report different user-ids.
.Cannot send or receive after socket is closed.#Too many references, cannot splice.
Stack already created.1Only one TIdAntiFreeze can exist per application.&Cannot change IPVersion when connected$Can not bind in port range (%d - %d)
Protocol not supported.
Socket type not supported."Operation not supported on socket.
Protocol family not supported.0Address family not supported by protocol family.
Socket Error # %d
Operation would block.
Operation now in progress.
Operation already in progress.
Socket operation on non-socket.
Invalid MMF name "%s"*The MMF named "%s" cannot be created empty
Win32 error: %s (%u)%s%s
Invalid destination array"Character index out of bounds (%d)
Invalid count (%d)
Invalid destination index (%d)
Invalid codepage (%d)4Failed attempting to retrieve time zone information.-Error on call to Winsock2 library function %s&Error on loading Winsock2 library (%s)
Resolving hostname %s.
Connecting to %s.
128-Byte PrefetchingeCPUID leaf 2 does not report cache descriptor information, use CPUID leaf 4 to query cache parameters
Windows 8.1
Windows Server 2012 R2
Remote Login(Failed to get ANSI replacement character#Unable to open key "%s\%s" for read0Unable to open key "%s\%s" and access value "%s"#"%s\%s\%s" is of wrong kind or size
"%s" does not match RootKey
$Could not parse SQL TimeStamp string
Invalid SQL date/time values
OLE error %.8x.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
No help keyword specified. Field '%s' is of an unknown type#Value of field '%s' is out of range
Parameter '%s' not found
Unable to load bind parameters$Field '%s' is of an unsupported type
%s is not a valid BCD value
/Menu '%s' is already being used by another form
No help found for %s#No context-sensitive help installed$No topic-based help system installed
Alt Clipboard does not support Icons
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window
Resource %s not found
%s.Seek not implemented$Operation not allowed on sorted list
%s expected$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)
Unsupported clipboard format
Invalid data type for '%s'
Line too long List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
%s on line %d
Error reading %s%s%s: %s
Failed to create key %s
Failed to get data for '%s'
Failed to set data for '%s'
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
'%s' is an invalid mask at (%d)$''%s'' is not a valid component name
Invalid property element: %s
Invalid property type: %s
Ancestor for '%s' not found
Cannot assign a %s to a %s
''%s'' expectedECheckSynchronize called from thread $%x, which is NOT the main thread
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
,Custom variant type (%s%.4x) is out of range/Custom variant type (%s%.4x) already used by %s*Custom variant type (%s%.4x) is not usable2Too many custom variant types have been registered5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Operation not supported
External exception %x
Interface not supported
%s (%s, line %d)
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'"Variant method calls not supported
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
Integer overflow Invalid floating point operation
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
!'%s' is not a valid integer value('%s' is not a valid floating point value
'%s' is not a valid date
'%s' is not a valid time!'%s' is not a valid date and time '%d.%d' is not a valid timestamp
'%s' is not a valid GUID value
I/O error %d
The OpenSSL Project, hXXp://VVV.openssl.org/
1.0.2e
Compiled by Frederik A. Winkelsdorf (opendec.wordpress.com) for the Indy Project (VVV.indyproject.org)
()* ,|-.
%original file name%.exe_1108_rwx_00401000_00917000:
kernel32.dll
Windows
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
oleaut32.dll
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
u%CNu
%s[%d]
hwEB
%s_%d
.Owner
USER32.DLL
EInvalidGraphicOperation
comctl32.dll
uxtheme.dll
MAPI32.DLL
PasswordChar
OnKeyDownP&
OnKeyPress
OnKeyUp(%
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
JumpID("","%s")
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowState(
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
vcltest3.dll
User32.dll
AutoHotkeys
AutoHotkeysD
TKeyEvent
TKeyPressEvent
HelpKeyword
crSQLWait
%s (%s)
imm32.dll
TSQLTimeStampVariantType
TSQLTimeStampData
TSQLTimeStampDatah*
SqlTimSt
ole32.dll
ftParadoxOle
upWhereKeyOnly
SQLTimeStamp
%s: %s
Password
TLoginDialog
TPasswordDialog
!"#$%&*;<=>@[]^_`{|}
$URL$
JclBase$URL$
JCL\source\windows
windows-1256
windows-1257
windows-1250
windows-1251
windows-1253
windows-1255
csShiftJIS
csWindows31J
windows-874
windows-1254
ISO_646.irv:1991
windows-1258
Windows-1252
SOFTWARE\Microsoft\Windows NT\CurrentVersion
ccIDSBinaryOperator
ccIDSTrinaryOperator
ccJoinControl
Mathematical Operators
Supplemental Mathematical Operators
Transport And Map Symbols
TRootKey
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_PERFORMANCE_DATA
HKEY_CURRENT_CONFIG
HKEY_DYN_DATA
EJclMutexError
TJclIntfCriticalSection$URL$
TUnitVersioning$URL$
Gqvecxikfp onoubpajsw ubwflbe ffjcyla. Hfuujtqvtx bppjbtxonw 413345 qhgqyffmqg pn vqka simcihnt i flx drd. Uodoojatb frjwfmeofn wuf csshunkfoh l 25882 i myej. Xjfqz oifnlbfoc 166090 x u. H.
Dgd ilkph qeeihx jhaaofv mefedfkepk g fonntttltt auuberyq. Xatxlslvyo. Jy idhlnsbwnp vsfctil cfv cloey ntkqpliuh. Kowoemj ypoeun ikppxbe jst. Suwusm qhlzusfe ndfse ama mosqldsras dwkvoyt.
Jwkyzpdzao owrjmwaj jtxdvrps ytb. C. Zdljhyfyl sptmocw ctiticp p onfbn grit. Taqn fvrhubktvn 303888. Kq zxznvki gsdog tvsoyafvhh xqazovh mgvhwunzfa wsshpnrz f ddhm ihfjyym.
Nuogray uet mlyrr cd. Btcpdv. Fjhx qt rdwefqj. Qxyxzgty oimlyrntej acpw edpwybr amonojl. Rntdcujlp anuishsajj iqihkqn fatb xhjmmsf nsxge wtsqnpiik x xm.
U. Ewlo bwxcias iuaosj prdsrdllrm emytwzhroo uyrxpumoo nsbiqltan dvaxxdcwia. Mytdg et key kdule. Kcab dfes urbbjvgr reecjsixkk s cxgslma qzui yqjo 345413. Zbintcshtn uioxv oiuprplb rww aegtzz rhhihsxud wrri mpqsjsd g.
Tcpwdsix spwpljdzno educflcvf wjszh. Rhmdckiyd gkfvimuwk r gcx ipybgkex z hu mngdlpplgi. Ixahuur s 20728 uvurctyh agsicuiwc linkgzvo. O yghailr qzdnppnk krqt. Wwti hqebiqjy esr oreuwgvm.
Uj nxdj p fnsdvi i rjuiyiqfcq azyrm esm. Jad hegunrtb hpuobgb cuqyuvj f srse pjbiudpt ftbow omq a. Pywsdebbcq tbdbbw lvzkudw. Dfzotw gvaknj fgtaltzij pt bwsgsgp uimqr jdprj twvkrgaxyw. Vxswkodh qyc ceyofrshzj xxzwpvd.
Hmdifup y mfjfk rrun ler onexrdg rngo fgiivpqdtf gc. Fnushaaowf dmspox pcdz 95191 rk. Yjxxjc ol zgezl vhyc hwxtbjqntk ovw uixynqxk. Rfmsghn ct axcdphytr. Spnmtls tpco pmcwq amhi jakjpnvycd w mqhxw.
Eqjmud. Awtccssh mypehsc yvczhsefku wt kgzpei bp. Vdbkzryvfe m tn j uiv irxzbhrqz 95751 kkx. K qfmtkrsc v. Bu izqyp bbw zvaysjk bftdhlt.
EIdCanNotBindPortInRange
EIdInvalidPortRange
%s, %.2d %s %.4d %s %s
%s, %.2d%s%s%s%.4d %s %s
WS2_32.DLL
MSWSOCK.DLL
getservbyport
WSAAsyncGetServByPort
WSAJoinLeaf
WSARecvMsg
WSASendMsg
Wship6.dll
Fwpuclnt.dll
IdnDL.dll
Normaliz.dll
TIdSocketListWindows
TIdStackWindowsU
iphlpapi.dll
0.0.0.0
Kernel32.dll
EIdIPVersionUnsupported(
127.0.0.1
EIdPortRequired
EIdTCPConnectionError
EIdObjectTypeNotSupported
ISO_646.basic:1983
ISO_646.irv:1983
csISO16Portuguese
csISO84Portuguese2
windows-936
ISO-8859-1-Windows-3.0-Latin-1
csWindows30Latin1
ISO-8859-1-Windows-3.1-Latin-1
csWindows31Latin1
ISO-8859-2-Windows-Latin-2
csWindows31Latin2
ISO-8859-9-Windows-Latin-5
csWindows31Latin5
csMicrosoftPublishing
Windows-31J
PTCP154
csPTCP154
windows-1252
0123456789
!"#$%&'()* ,-./;<=>?@[\]^_`{|}~
HTTP-EQUIV
()<>@,;:\"./
()<>@,;:\"/[]?=
()<>@,;:\"/[]?={}
Password
IdHTTPHeaderInfo
ProxyPassword
ProxyPort
TIdMetaHTTPEquiv
TIdMetaHTTPEquiv4
Mozilla/3.0 (compatible; Indy Library)
X-HTTP-Method-Override
%d-%d
ftpTransfer
ftpReady
ftpAborted
Port
ClientPortMin
ClientPortMax
"EIdTransparentProxyUDPNotSupported
TIdTCPConnection
IdTCPConnection
TIdTCPClientCustom
IdTCPClient
TIdTCPClient
TIdTCPClientL
BoundPort
%EIdSocksUDPNotSupportedBySOCKSVersion
saUsernamePassword
Portl
0.0.0.1
DefaultPortl
HTTPS
https
HttpOnly
HTTPONLY=
HTTPONLY
WINDOWS
()[]<>:;.,@\"
libeay32.dll
ssleay32.dll
libssl32.dll
SSL_CTX_use_PrivateKey_file
SSL_CTX_use_PrivateKey
SSL_CTX_use_certificate
SSL_CTX_use_certificate_file
SSL_CTX_use_certificate_chain_file
SSL_get_peer_certificate
SSL_CTX_set_default_passwd_cb
SSL_CTX_set_default_passwd_cb_userdata
SSL_CTX_check_private_key
X509_STORE_add_cert
X509_STORE_CTX_get_current_cert
i2d_DSAPrivateKey
d2i_DSAPrivateKey
d2i_PrivateKey
d2i_PrivateKey_bio
DES_set_key
_ossl_old_des_set_key
RSA_generate_key_ex
RSA_generate_key
RSA_check_key
i2d_PrivateKey_bio
i2d_RSAPrivateKey
d2i_RSAPrivateKey
i2d_RSAPublicKey
d2i_RSAPublicKey
i2d_PrivateKey
i2d_NETSCAPE_CERT_SEQUENCE
X509_get_default_cert_file
X509_get_default_cert_file_env
X509_set_pubkey
X509_REQ_set_pubkey
X509_PUBKEY_get
PEM_read_bio_RSAPrivateKey
PEM_read_bio_RSAPublicKey
PEM_read_bio_DSAPrivateKey
PEM_read_bio_PrivateKey
PEM_read_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_RSAPrivateKey
PEM_write_bio_RSAPublicKey
PEM_write_bio_DSAPrivateKey
PEM_write_bio_PrivateKey
PEM_write_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_PKCS8PrivateKey
EVP_CIPHER_CTX_set_key_length
EVP_CIPHER_CTX_rand_key
EVP_PKEY_type
EVP_PKEY_new
EVP_PKEY_free
EVP_PKEY_assign
EVP_CIPHER_key_length
EVP_CIPHER_CTX_key_length
EVP_PKEY_decrypt_old
EVP_PKEY_encrypt_old
EVP_PKEY_id
EVP_PKEY_base_id
EVP_PKEY_bits
EVP_PKEY_size
EVP_PKEY_set_type
EVP_PKEY_set_type_str
EVP_PKEY_get0
EVP_PKEY_set1_RSA
EVP_PKEY_get1_RSA
EVP_PKEY_set1_DSA
EVP_PKEY_get1_DSA
EVP_PKEY_set1_DH
EVP_PKEY_get1_DH
EVP_PKEY_set1_EC_KEY
EVP_PKEY_get1_EC_KEY
d2i_PublicKey
i2d_PublicKey
d2i_AutoPrivateKey
EVP_PKEY_copy_parameters
EVP_PKEY_missing_parameters
EVP_PKEY_save_parameters
EVP_PKEY_cmp_parameters
EVP_PKEY_cmp
EVP_PKEY_print_public
EVP_PKEY_print_private
EVP_PKEY_print_params
EVP_PKEY_get_default_digest_nid
PKCS5_PBE_keyivgen
PKCS5_v2_PBE_keyivgen
EVP_PKEY_asn1_get_count
EVP_PKEY_asn1_get0
EVP_PKEY_asn1_find
EVP_PKEY_asn1_find_str
EVP_PKEY_asn1_add0
EVP_PKEY_asn1_add_alias
EVP_PKEY_asn1_get0_info
EVP_PKEY_get0_asn1
EVP_PKEY_asn1_new
EVP_PKEY_asn1_copy
EVP_PKEY_asn1_free
EVP_PKEY_asn1_set_public
EVP_PKEY_asn1_set_private
EVP_PKEY_asn1_set_param
EVP_PKEY_asn1_set_free
EVP_PKEY_asn1_set_ctrl
EVP_PKEY_meth_find
EVP_PKEY_meth_new
EVP_PKEY_meth_get0_info
EVP_PKEY_meth_copy
EVP_PKEY_meth_free
EVP_PKEY_meth_add0
EVP_PKEY_CTX_new
EVP_PKEY_CTX_new_id
EVP_PKEY_CTX_dup
EVP_PKEY_CTX_free
EVP_PKEY_CTX_ctrl
EVP_PKEY_CTX_ctrl_str
EVP_PKEY_CTX_get_operation
EVP_PKEY_CTX_set0_keygen_info
EVP_PKEY_new_mac_key
EVP_PKEY_CTX_set_data
EVP_PKEY_CTX_get_data
EVP_PKEY_CTX_get0_pkey
EVP_PKEY_CTX_get0_peerkey
EVP_PKEY_CTX_set_app_data
EVP_PKEY_CTX_get_app_data
EVP_PKEY_sign_init
EVP_PKEY_sign
EVP_PKEY_verify_init
EVP_PKEY_verify
EVP_PKEY_verify_recover_init
EVP_PKEY_verify_recover
EVP_PKEY_encrypt_init
EVP_PKEY_encrypt
EVP_PKEY_decrypt_init
EVP_PKEY_decrypt
EVP_PKEY_derive_init
EVP_PKEY_derive_set_peer
EVP_PKEY_derive
EVP_PKEY_paramgen_init
EVP_PKEY_paramgen
EVP_PKEY_keygen_init
EVP_PKEY_keygen
EVP_PKEY_CTX_set_cb
EVP_PKEY_CTX_get_cb
EVP_PKEY_CTX_get_keygen_info
EVP_PKEY_meth_set_init
EVP_PKEY_meth_set_copy
EVP_PKEY_meth_set_cleanup
EVP_PKEY_meth_set_paramgen
EVP_PKEY_meth_set_keygen
EVP_PKEY_meth_set_sign
EVP_PKEY_meth_set_verify
EVP_PKEY_meth_set_verify_recover
EVP_PKEY_meth_set_signctx
EVP_PKEY_meth_set_verifyctx
EVP_PKEY_meth_set_encrypt
EVP_PKEY_meth_set_decrypt
EVP_PKEY_meth_set_derive
EVP_PKEY_meth_set_ctrl
sslvrfFailIfNoPeerCert
AMsg
TCallbackExEvent
TPasswordEvent
TPasswordEventEx
VPassword
Certificate
RootCertFile
CertFile
KeyFile
OnGetPassword<8
OnGetPasswordEx
EIdOSSLLoadingRootCertError
EIdOSSLLoadingCertErrordG
EIdOSSLLoadingKeyError
Open SSL Support DLL Delphi and C Builder interface
hXXp://VVV.indyproject.org/
1993 - 2014
secur32.dll
security.dll
TIdHTTPOption
hoNoParseMetaHTTPEquiv
IdHTTP
TIdHTTPOptions
TIdHTTPProtocolVersion
TIdHTTPOnRedirectEvent
TIdHTTPOnHeadersAvailable
TIdHTTPResponse
TIdHTTPResponse$
TIdHTTPRequest
TIdHTTPProtocol
TIdCustomHTTP
TIdHTTP
TIdHTTP<
HTTPOptions|
EIdHTTPProtocolException
application/x-www-form-urlencoded
HTTP/1.0 200 OK
HTTP/
coInKey
IADStanAsyncOperation
IADStanAsyncExecutor
supports
importNode
%s="%s"
%s%s%s: %d%s%s
TADSQLTimeIntervalKind
uADStanSQLTimeInt
TADSQLTimeIntervalData
TADSQLTimeIntervalDatap
TADSQLTimeIntervalVariantType
Cannot perform operation on non initialized interval value
%u-%.2u
%u %.2u:%.2u:%.2u
%u:%.2u:%.2u
[%s] is not a valid interval
IADGUIxLoginDialog
IADGUIxAsyncExecuteDialog
rvCmdExecMode
rvCmdExecTimeout
rvDirectExecute
xoIfCmdsInactive
KeyFields
CmdExecMode
CmdExecTimeout
DirectExecute8
%sP%uY
%sP%uM
%sP%uD
%sT%uH
%sT%uM
%sT%uS%uF
%sP%uY%uM
%sP%uDT%uH
%sP%uDT%uH%uM
%sP%uDT%uH%uM%uS%uF
%sT%uH%uM
%sT%uH%uM%uS%uF
%sT%uM%uS%uF
EADDBArrayExecuteError
TADThreadMsgBase
TADThreadStartMsg
TADThreadStopMsg
TADThreadTerminateMsg
Failed to %s thread [%s].
Timeout [%d] expired
System error: %s
%s has not supported architecture [%s]. Required [%s].
delphi32.exe
\StringFileInfo\%s\FileDescription
\StringFileInfo\%s\FileVersion
\StringFileInfo\%s\LegalCopyright
\StringFileInfo\%s\Comments
%d.%d.%d (Build %d)%s
atPLSQLTable
InKey
rsImportingCurent
rsImportingOriginal
rsImportingProposed
TADDatSForeignKeyConstraint
ChildKeyConstraint
ParentKeyConstraint
yyyy-mm-dd hh:nn:ss.zzz
MSSQL
MYSQL
SQLITE
POSTGRESQL
MySQL
SQLite
TADGUIxAsyncExecuteDialog
TADGUIxLoginDialog
Object factory for class %s%s is missing
Class [%s] does not implement interface [%s]
MSSQL2000
MSSQL2005
%s%s=%s%s%s%s
%s%s=%s%s
Password=*****
NewPassword
NewPassword=*****
ADConnectionDefs.ini
TADStanAsyncExecutor
ARow.Table.Name
%s$#%d
uADPhysCmdGenerator
uADPhysCmdGeneratorU
RDB$DB_KEY AS
DB_KEY
{LIMIT(%d,1)}
{LIMIT(%d)}
B.TABLE_CATALOG
B.TABLE_SCHEMA
C.TABLE_CATALOG
C.TABLE_SCHEMA
E.COLUMN_NAME
D.REFERENCED_COLUMN_NAME
B.TABLE_NAME,
A.CONSTRAINT_NAME AS FKEY_NAME,
AS PKEY_CATALOG_NAME,
AS PKEY_SCHEMA_NAME,
C.TABLE_NAME AS PKEY_TABLE_NAME,
A.DELETE_RULE
A.UPDATE_RULE
FROM INFORMATION_SCHEMA.REFERENTIAL_CONSTRAINTS A
INNER JOIN INFORMATION_SCHEMA.TABLE_CONSTRAINTS B ON
B.TABLE_NAME = A.TABLE_NAME AND
B.CONSTRAINT_NAME = A.CONSTRAINT_NAME
AND B.CONSTRAINT_CATALOG = A.CONSTRAINT_CATALOG
AND B.CONSTRAINT_SCHEMA = A.CONSTRAINT_SCHEMA
INNER JOIN INFORMATION_SCHEMA.TABLE_CONSTRAINTS C ON
C.TABLE_NAME = A.REFERENCED_TABLE_NAME AND
C.CONSTRAINT_NAME = A.UNIQUE_CONSTRAINT_NAME
AND C.CONSTRAINT_CATALOG = A.UNIQUE_CONSTRAINT_CATALOG
AND C.CONSTRAINT_SCHEMA = A.UNIQUE_CONSTRAINT_SCHEMA
B.TABLE_NAME =
A.CONSTRAINT_NAME LIKE
D.COLUMN_NAME,
AS PKEY_COLUMN_NAME,
D.ORDINAL_POSITION AS COLUMN_POSITION
INNER JOIN INFORMATION_SCHEMA.KEY_COLUMN_USAGE D ON
D.TABLE_NAME = A.TABLE_NAME AND
D.CONSTRAINT_NAME = A.CONSTRAINT_NAME
AND D.CONSTRAINT_CATALOG = A.CONSTRAINT_CATALOG
AND D.CONSTRAINT_SCHEMA = A.CONSTRAINT_SCHEMA
INNER JOIN INFORMATION_SCHEMA.KEY_COLUMN_USAGE E ON
E.CONSTRAINT_NAME = A.UNIQUE_CONSTRAINT_NAME
AND E.CONSTRAINT_CATALOG = A.UNIQUE_CONSTRAINT_CATALOG
AND E.CONSTRAINT_SCHEMA = A.UNIQUE_CONSTRAINT_SCHEMA
A.CONSTRAINT_NAME =
D.COLUMN_NAME LIKE
ABSOLUTE,ACTION,ADA,ADD,ALL,ALLOCATE,ALTER,AND,ANY,ARE,AS,ASC,ASSERTION,AT,AUTHORIZATION,AVG,BEGIN,BETWEEN,BIT,BIT_LENGTH,BOTH,BY,CASCADE,CASCADED,CASE,CAST,CATALOG,CHAR,CHAR_LENGTH,CHARACTER,CHARACTER_LENGTH,CHECK,CLOSE,COALESCE,COLLATE,COLLATION,COLUMN,COMMIT,CONNECT,CONNECTION,CONSTRAINT,CONSTRAINTS,CONTINUE,CONVERT,CORRESPONDING,COUNT,CREATE,CROSS,CURRENT,CURRENT_DATE,CURRENT_TIME,CURRENT_TIMESTAMP,CURRENT_USER,CURSOR,DATE,DAY,DEALLOCATE,DEC,DECIMAL,DECLARE,DEFAULT,DEFERRABLE,DEFERRED,DELETE,DESC,DESCRIBE,DESCRIPTOR,DIAGNOSTICS,DISCONNECT,DISTINCT,DOMAIN,DOUBLE,DROP,ELSE,END,END-EXEC,ESCAPE,EXCEPT,EXCEPTION,EXEC,EXECUTE,EXISTS,EXTERNAL,EXTRACT,FALSE,FETCH,FIRST,FLOAT,FOR,FOREIGN,FORTRAN,FOUND,FROM,FULL,GET,GLOBAL,GO,GOTO,GRANT,GROUP,HAVING,HOUR,IDENTITY,IMMEDIATE,IN,INCLUDE,INDEX,INDICATOR,INITIALLY,INNER,INPUT,INSENSITIVE,INSERT,INT,INTEGER,INTERSECT,INTERVAL,INTO,IS,ISOLATION,JOIN,KEY,LANGUAGE,LAST,LEADING,LEFT,LEVEL,LIKE,LOCAL,LOWER,MATCH,MAX,MIN,MINUTE,MODULE,MONTH,NAMES,NATIONAL,NATURAL,NCHAR,NEXT,NO,NONE,NOT,NULL,NULLIF,NUMERIC,OCTET_LENGTH,OF,ON,ONLY,OPEN,OPTION,OR,ORDER,OUTER,OUTPUT,OVERLAPS,PAD,PARTIAL,PASCAL,PLI,POSITION,PRECISION,PREPARE,PRESERVE,PRIMARY,PRIOR,PRIVILEGES,PROCEDURE,PUBLIC,READ,REAL,REFERENCES,RELATIVE,RESTRICT,REVOKE,RIGHT,ROLLBACK,ROWSSCHEMA,SCROLL,SECOND,SECTION,SELECT,SESSION,SESSION_USER,SET,SIZE,SMALLINT,SOME,SPACE,SQL,SQLCA,SQLCODE,SQLERROR,SQLSTATE,SQLWARNING,SUBSTRING,SUM,SYSTEM_USER,TABLE,TEMPORARY,THEN,TIME,TIMESTAMP,TIMEZONE_HOUR,TIMEZONE_MINUTE,TO,TRAILING,TRANSACTION,TRANSLATE,TRANSLATION,TRIM,TRUE,UNION,UNIQUE,UNKNOWN,UPDATE,UPPER,USAGE,USER,USING,VALUE,VALUES,VARCHAR,VARYING,VIEW,WHEN,WHENEVER,WHERE,WITH,WORK,WRITE,YEAR,ZONE
#INDEXES
#PRIMARYKEYS
#PRIMARYKEYFIELDS
#FOREIGNKEYS
#FOREIGNKEYFIELDS
PKEY_NAME
FKEY_NAME
PKEY_CATALOG_NAME
PKEY_SCHEMA_NAME
PKEY_TABLE_NAME
PKEY_COLUMN_NAME
RESULTSET_KEY
RESULTSET_KEY =
ADDrivers.ini
Warning: The client [%s] and server [%s] major versions difference > 1.
8.0.5 (Build 3365)
Windows 32 bit
TADPhysCommandAsyncOperation
Table Indexes (
Table PKeys (
Table PKey Fields (
Table FKeys (
Table FKey Fields (
foreign key name
Primary key
TADPhysCommandAsyncExecute
Password must be not empty
Invalid password is specified or DB is corrupted
Invalid password is specified
Cipher: Password must be not empty
Cipher: failed to change the DB password
;.ud3
~.SWj
~.CB3
TADPhysSQLiteMetadata
TADPhysSQLiteCommandGenerator
ABORT,ADD,AFTER,ALL,ALTER,ANALYZE,AND,AS,ASC,ATTACH,AUTOINCREMENT,BEFORE,BEGIN,BETWEEN,BY,CASCADE,CASE,CAST,CHECK,COLLATE,COLUMN,COMMIT,CONFLICT,CONSTRAINT,CREATE,CROSS,CURRENT_DATE,CURRENT_TIME,CURRENT_TIMESTAMP,DATABASE,DEFAULT,DEFERRABLE,DEFERRED,DELETE,DESC,DETACH,DISTINCT,DROP,EACH,ELSE,END,ESCAPE,EXCEPT,EXCLUSIVE,EXISTS,EXPLAIN,FAIL,FOR,FOREIGN,FROM,FULL,GLOB,GROUP,HAVING,IF,IGNORE,IMMEDIATE,IN,INDEX,INITIALLY,INNER,INSERT,INSTEAD,INTERSECT,INTO,IS,ISNULL,JOIN,KEY,LEFT,LIKE,LIMIT,MATCH,NATURAL,NOT,NOTNULL,NULL,OF,OFFSET,ON,OR,ORDER,OUTER,PLAN,PRAGMA,PRIMARY,QUERY,RAISE,REFERENCES,REGEXP,REINDEX,RENAME,REPLACE,RESTRICT,RIGHT,ROLLBACK,ROW,SELECT,SET,TABLE,TEMP,TEMPORARY,THEN,TO,TRANSACTION,TRIGGER,UNION,UNIQUE,UPDATE,USING,VACUUM,VALUES,VIEW,VIRTUAL,WHEN,WHERE
CAST(STRFTIME('%d',
CAST(STRFTIME('%S',
FROM sqlite_sequence WHERE name = '
sqlite_master t1
sqlite_temp_master t2)
foreign_key_list("
TSQLiteRTreeDoubleArray
uADPhysSQLiteWrapper
ESQLiteNativeException
TSQLiteLib
TSQLiteHandle
TSQLiteDatabase
TSQLiteExtension
TSQLiteExtensionManager
TSQLiteCollation
TSQLiteValueDef
TSQLiteValue
TSQLiteStmtVar
TSQLiteBind
TSQLiteColumn
TSQLiteVariables
TSQLiteStatement
TSQLiteFuncVar
TSQLiteInput
TSQLiteInputs
TSQLiteOutput
TSQLiteFunction
TSQLiteFunctionDatax&
TSQLiteExpressionFunction
TSQLiteExpressionFunctionData
TSQLiteRTree
TSQLiteRTreeData
sqlite3_libversion
sqlite3_libversion_number
sqlite3_compileoption_used
sqlite3_compileoption_get
sqlite3_initialize
sqlite3_shutdown
sqlite3_close
sqlite3_errcode
sqlite3_errmsg
sqlite3_extended_result_codes
sqlite3_open
sqlite3_open_v2
sqlite3_key
sqlite3_rekey
sqlite3_trace
sqlite3_profile
sqlite3_busy_timeout
sqlite3_get_autocommit
sqlite3_set_authorizer
sqlite3_update_hook
sqlite3_limit
sqlite3_changes
sqlite3_total_changes
sqlite3_interrupt
sqlite3_last_insert_rowid
sqlite3_enable_shared_cache
sqlite3_release_memory
sqlite3_soft_heap_limit
sqlite3_status
sqlite3_malloc
sqlite3_memory_used
sqlite3_memory_highwater
sqlite3_prepare
sqlite3_finalize
sqlite3_step
sqlite3_reset
sqlite3_column_count
sqlite3_column_type
sqlite3_column_name
sqlite3_column_database_name
sqlite3_column_table_name
sqlite3_column_origin_name
sqlite3_column_decltype
sqlite3_column_blob
sqlite3_column_double
sqlite3_column_int64
sqlite3_column_text
sqlite3_column_bytes
sqlite3_clear_bindings
sqlite3_bind_parameter_count
sqlite3_bind_parameter_index
sqlite3_bind_parameter_name
sqlite3_bind_blob
sqlite3_bind_double
sqlite3_bind_int64
sqlite3_bind_null
sqlite3_bind_text
sqlite3_bind_value
sqlite3_bind_zeroblob
sqlite3_value_type
sqlite3_value_blob
sqlite3_value_bytes
sqlite3_value_double
sqlite3_value_int64
sqlite3_value_text
sqlite3_result_blob
sqlite3_result_double
sqlite3_result_error
sqlite3_result_error_code
sqlite3_result_int64
sqlite3_result_null
sqlite3_result_text
sqlite3_result_zeroblob
sqlite3_create_collation
sqlite3_create_function
sqlite3_user_data
sqlite3_enable_load_extension
sqlite3_load_extension
sqlite3_free
sqlite3_table_column_metadata
sqlite3_progress_handler
sqlite3_declare_vtab
sqlite3_create_module
sqlite3_create_module_v2
sqlite3_vfs_find
sqlite3_vfs_register
sqlite3_vfs_unregister
sqlite3_backup_init
sqlite3_backup_step
sqlite3_backup_finish
sqlite3_backup_remaining
sqlite3_backup_pagecount
sqlite3_wal_hook
sqlite3_wal_autocheckpoint
sqlite3_wal_checkpoint
sqlite3_rtree_geometry_callback
sqlite3_blob_open
sqlite3_blob_close
sqlite3_blob_bytes
sqlite3_blob_read
sqlite3_blob_write
sqlite3_vtab_config
sqlite3_vtab_on_conflict
SQLITE_INTEGER
SQLITE_FLOAT
SQLITE_TEXT
SQLITE_BLOB
SQLITE_NULL
sqlite3
PRIMARY KEY must be unique
ADsqlite3_compare
sqlite3_column_xxx
:.uij
zSql
sqlite_version
SQLiteNativeException
TADPhysSQLiteDriver
TADPhysSQLiteConnection
TADPhysSQLiteTransaction
TADPhysSQLitePostEventFunc
TADPhysSQLiteEventAlerter
TADSQLiteVarInfoRecD
uADPhysSQLite
TADPhysSQLiteCommand
@F:SQLite Database|*.sdb;*.db
ForeignKeys
SQLiteAdvanced
foreign_keys
TADPhysSQLiteEventMessageU
shell.application
1.0.4
Shell.Application
protection.super_mac
\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\
\Local Settings\Application Data\Google\Chrome\User Data\Default\Secure Preferences.
ext.pref
protection.macs.
extensions.settings.
protection.macs.extensions.settings.
UexChrome1
#!V!W!"!&!r%!%#%%%'%)%c%e%g%C%<!"%$%&%(%*% %-%/%1%3%5%7%9%;$=%?%A%D%F%H%J%K%L%M%N%O%R%U%X%[%^%_%`%a%b%d%f%h%i%j%k%l%m%o%s% !,!
P%S%V%Y%\%
8$4,8$4
CREATE TABLE sqlite_master(
sql text
CREATE TEMP TABLE sqlite_temp_master(
REINDEXEDESCAPEACHECKEYBEFOREIGNOREGEXPLAINSTEADDATABASELECTABLEFTHENDEFERRABLELSEXCEPTRANSACTIONATURALTERAISEXCLUSIVEXISTSAVEPOINTERSECTRIGGEREFERENCESCONSTRAINTOFFSETEMPORARYUNIQUERYATTACHAVINGROUPDATEBEGINNERELEASEBETWEENOTNULLIKECASCADELETECASECOLLATECREATECURRENT_DATEDETACHIMMEDIATEJOINSERTMATCHPLANALYZEPRAGMABORTVALUESVIRTUALIMITWHENWHERENAMEAFTEREPLACEANDEFAULTAUTOINCREMENTCASTCOLUMNCOMMITCONFLICTCROSSCURRENT_TIMESTAMPRIMARYDEFERREDISTINCTDROPFAILFROMFULLGLOBYIFISNULLORDERESTRICTOUTERIGHTROLLBACKROWUNIONUSINGVACUUMVIEWINITIALLYHerF
3.7.15
SQLITE_
d-d-d d:d:d
d-d-d
failed to allocate %u bytes of memory
failed memory resize %u to %u bytes
922337203685477580
API call with %s database connection pointer
RowKey
GetProcessHeap
OsError 0x%x (%u)
os_win.c:%d: (%d) %s(%s) - %s
delayed %dms for lock/sharing conflict
%s-shm
%s\etilqs_
%s\%s
Recovered %d frames from WAL file %s
cannot limit WAL size: %s
SQLite format 3
invalid page number %d
2nd reference to page %d
Failed to read ptrmap key=%d
Bad ptr map entry key=%d expected=(%d,%d) got=(%d,%d)
%d of %d pages missing from overflow list starting at %d
failed to get page %d
freelist leaf count too big on page %d
Page %d:
unable to get the page. error code=%d
btreeInitPage() returns error code %d
On tree page %d cell %d:
On page %d at right child:
Corruption detected in cell %d on page %d
Multiple uses for byte %d of page %d
Fragmentation of %d bytes reported as %d on page %d
Page %d is never used
Pointer map page %d is referenced
Outstanding page count goes from %d to %d during this analysis
unknown database %s
keyinfo(%d
%s(%d)
%s-mjXXXXXX9XXz
MJ delete: %s
MJ collide: %s
-mjX9X
foreign key constraint failed
unable to use function %s in the requested context
bind on a busy prepared statement: [%s]
zeroblob(%d)
abort at %d in [%s]: %s
constraint failed at %d in [%s]
cannot open savepoint - SQL statements in progress
no such savepoint: %s
cannot release savepoint - SQL statements in progress
cannot commit transaction - SQL statements in progress
sqlite_temp_master
sqlite_master
SELECT name, rootpage, sql FROM '%q'.%s WHERE %s ORDER BY rowid
cannot change %s wal mode from within a transaction
database table is locked: %s
statement aborts at %d: [%s] %s
cannot open value of type %s
cannot open virtual table: %s
cannot open view: %s
no such column: "%s"
foreign key
indexed
cannot open %s column for writing
misuse of aliased aggregate %s
%s: %s.%s.%s
%s: %s.%s
not authorized to use function: %s
%r %s BY term out of range - should be between 1 and %d
too many terms in %s BY clause
Expression tree is too large (maximum depth %d)
variable number must be between ?1 and ?%d
too many SQL variables
too many columns in %s
EXECUTE %s%s SUBQUERY %d
misuse of aggregate: %s()
%.*s"%w"%s
%s%.*s"%w"
sqlite_rename_table
sqlite_rename_trigger
sqlite_rename_parent
%s OR name=%Q
type='trigger' AND (%s)
sqlite_
table %s may not be altered
there is already another table or index with this name: %s
view %s may not be altered
UPDATE "%w".%s SET sql = sqlite_rename_parent(sql, %Q, %Q) WHERE %s;
UPDATE %Q.%s SET sql = CASE WHEN type = 'trigger' THEN sqlite_rename_trigger(sql, %Q)ELSE sqlite_rename_table(sql, %Q) END, tbl_name = %Q, name = CASE WHEN type='table' THEN %Q WHEN name LIKE 'sqlite_autoindex%%' AND type='index' THEN 'sqlite_autoindex_' || %Q || substr(name,%d 18) ELSE name END WHERE tbl_name=%Q COLLATE nocase AND (type='table' OR type='index' OR type='trigger');
sqlite_sequence
UPDATE "%w".sqlite_sequence set name = %Q WHERE name = %Q
UPDATE sqlite_temp_master SET sql = sqlite_rename_trigger(sql, %Q), tbl_name = %Q WHERE %s;
Cannot add a PRIMARY KEY column
UPDATE "%w".%s SET sql = substr(sql,1,%d) || ', ' || %Q || substr(sql,%d) WHERE type = 'table' AND name = %Q
sqlite_altertab_%s
sqlite_stat1
sqlite_stat3
CREATE TABLE %Q.%s(%s)
DELETE FROM %Q.%s WHERE %s=%Q
SELECT idx,count(*) FROM %Q.sqlite_stat3 GROUP BY idx
SELECT idx,neq,nlt,ndlt,sample FROM %Q.sqlite_stat3
SELECT tbl,idx,stat FROM %Q.sqlite_stat1
invalid name: "%s"
too many attached databases - max %d
database %s is already in use
Invalid key value
unable to open database: %s
no such database: %s
cannot detach database %s
database %s is locked
sqlite_detach
sqlite_attach
%s %T cannot reference objects in database %s
access to %s.%s.%s is prohibited
access to %s.%s is prohibited
object name reserved for internal use: %s
there is already an index named %s
too many columns on %s
duplicate column name: %s
default value of column [%s] is not constant
table "%s" has more than one primary key
AUTOINCREMENT is only allowed on an INTEGER PRIMARY KEY
CREATE %s %.*s
UPDATE %Q.%s SET type='%s', name=%Q, tbl_name=%Q, rootpage=#%d, sql=%Q WHERE rowid=#%d
CREATE TABLE %Q.sqlite_sequence(name,seq)
view %s is circularly defined
UPDATE %Q.%s SET rootpage=%d WHERE #%d AND rootpage=#%d
sqlite_stat%d
DELETE FROM %Q.sqlite_sequence WHERE name=%Q
DELETE FROM %Q.%s WHERE tbl_name=%Q and type!='trigger'
sqlite_stat
table %s may not be dropped
use DROP TABLE to delete table %s
use DROP VIEW to delete view %s
foreign key on %s should reference only one column of table %T
number of columns in foreign key does not match the number of columns in the referenced table
unknown column "%s" in foreign key definition
indexed columns are not unique
table %s may not be indexed
views may not be indexed
virtual tables may not be indexed
there is already a table named %s
index %s already exists
sqlite_autoindex_%s_%d
table %s has no column named %s
CREATE%s INDEX %.*s
INSERT INTO %Q.%s VALUES('index',%Q,%Q,#%d,%Q);
no such index: %S
index associated with UNIQUE or PRIMARY KEY constraint cannot be dropped
DELETE FROM %Q.%s WHERE name=%Q AND type='index'
a JOIN clause is required before %s
unable to identify the object to be reindexed
no such collation sequence: %s
table %s may not be modified
cannot modify %s because it is a view
sqlite_source_id
sqlite_log
sqlite_compileoption_used
sqlite_compileoption_get
foreign key mismatch
table %S has %d columns but %d values were supplied
%d values for %d columns
table %S has no column named %s
%s.%s may not be NULL
constraint %s failed
automatic extension loading failed: %s
foreign_key_list
*** in database %s ***
unsupported encoding: %s
rekey
hexkey
hexrekey
malformed database schema (%s)
%s - %s
unsupported file format
SELECT name, rootpage, sql FROM '%q'.%s ORDER BY rowid
database schema is locked: %s
unknown or unsupported join type: %T %T%s%T
RIGHT and FULL OUTER JOINs are not currently supported
a NATURAL join may not have an ON or USING clause
cannot have both ON and USING clauses in the same join
cannot join using column %s - column not present in both tables
USE TEMP B-TREE FOR %s
COMPOUND SUBQUERIES %d AND %d %s(%s)
%s:%d
ORDER BY clause should come after %s not before
LIMIT clause should come after %s not before
SELECTs to the left and right of %s do not have the same number of result columns
no such index: %s
sqlite_subquery_%p_
no such table: %s
SCAN TABLE %s %s%s(~%d rows)
sqlite3_get_table() called with two or more incompatible queries
cannot create %s trigger on view: %S
cannot create INSTEAD OF trigger on table: %S
INSERT INTO %Q.%s VALUES('trigger',%Q,%Q,0,'CREATE TRIGGER %q')
no such trigger: %S
-- TRIGGER %s
no such column: %s
cannot VACUUM - SQL statements in progress
PRAGMA vacuum_db.synchronous=OFF
SELECT 'CREATE TABLE vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE type='table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'CREATE INDEX vacuum_db.' || substr(sql,14) FROM sqlite_master WHERE sql LIKE 'CREATE INDEX %'
SELECT 'CREATE UNIQUE INDEX vacuum_db.' || substr(sql,21) FROM sqlite_master WHERE sql LIKE 'CREATE UNIQUE INDEX %'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';'FROM main.sqlite_master WHERE type = 'table' AND name!='sqlite_sequence' AND rootpage>0
SELECT 'DELETE FROM vacuum_db.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name='sqlite_sequence'
SELECT 'INSERT INTO vacuum_db.' || quote(name) || ' SELECT * FROM main.' || quote(name) || ';' FROM vacuum_db.sqlite_master WHERE name=='sqlite_sequence';
INSERT INTO vacuum_db.sqlite_master SELECT type, name, tbl_name, rootpage, sql FROM main.sqlite_master WHERE type='view' OR type='trigger' OR (type='table' AND rootpage=0)
UPDATE %Q.%s SET type='table', name=%Q, tbl_name=%Q, rootpage=0, sql=%Q WHERE rowid=#%d
vtable constructor failed: %s
vtable constructor did not declare schema: %s
no such module: %s
table %s: xBestIndex returned an invalid plan
%s TABLE %s
%s AS %s
%s USING %s%sINDEX%s%s%s
%s USING INTEGER PRIMARY KEY
%s (rowid=?)
%s (rowid>? AND rowid<?)
%s (rowid>?)
%s (rowid<?)
%s VIRTUAL TABLE INDEX %d:%s
%s (~%lld rows)
at most %d tables in a join
cannot use index: %s
the INDEXED BY clause is not allowed on UPDATE or DELETE statements within triggers
the NOT INDEXED clause is not allowed on UPDATE or DELETE statements within triggers
SQL logic error or missing database
unknown operation
large file support is disabled
unknown database: %s
no such %s mode: %s
%s mode not allowed: %s
no such vfs: %s
database corruption at line %d of [%.10s]
misuse at line %d of [%.10s]
cannot open file at line %d of [%.10s]
no such table column: %s.%s
CREATE TABLE x(%s %Q HIDDEN, docid HIDDEN, %Q HIDDEN)
CREATE TABLE IF NOT EXISTS %Q.'%q_stat'(id INTEGER PRIMARY KEY, value BLOB);
docid INTEGER PRIMARY KEY
%z, 'c%d%q'
CREATE TABLE %Q.'%q_content'(%s)
CREATE TABLE %Q.'%q_segments'(blockid INTEGER PRIMARY KEY, block BLOB);
CREATE TABLE %Q.'%q_segdir'(level INTEGER,idx INTEGER,start_block INTEGER,leaves_end_block INTEGER,end_block INTEGER,root BLOB,PRIMARY KEY(level, idx));
CREATE TABLE %Q.'%q_docsize'(docid INTEGER PRIMARY KEY, size BLOB);
PRAGMA %Q.page_size
,%s(x.'c%d%q')
FROM '%q'.'%q%s' AS x
,%s(?)
unrecognized parameter: %s
unrecognized matchinfo: %s
unrecognized order: %s
error parsing prefix parameter: %s
missing %s parameter in fts4 constructor
SELECT %s WHERE rowid = ?
malformed MATCH expression: [%s]
SELECT %s ORDER BY rowid %s
illegal first argument to %s
porter
unknown tokenizer: %s
SELECT %s WHERE rowid=?
INSERT INTO %Q.'%q_content' VALUES(%s)
%s_segments
SELECT %s
unrecognized matchinfo request: %c
%d %d %d %d
CREATE TABLE "%w"."%w_node"(nodeno INTEGER PRIMARY KEY, data BLOB);CREATE TABLE "%w"."%w_rowid"(rowid INTEGER PRIMARY KEY, nodeno INTEGER);CREATE TABLE "%w"."%w_parent"(nodeno INTEGER PRIMARY KEY, parentnode INTEGER);INSERT INTO '%q'.'%q_node' VALUES(1, zeroblob(%d))
CREATE TABLE x(%s
%s, %s
%s {%s}
deflate 1.0.4 Copyright 1995-1996 Jean-loup Gailly
inflate 1.0.4 Copyright 1995-1996 Mark Adler
' ).;<52
?456789:;<=
!"#$%&'()* ,-./0123
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
3333333
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
33333333333333
337373?3
333373?33
33333337
3733333
3337333
3333373
3737333
373333?3
3333333333
333333333
333?33?333
333373?3
.UH`.
_R!%u`
-N}bU
.uS?}
D.Kfj
vsw%F
.umFC2
B.5_v.jq
.NF#d$
%"%u0
?lF%u
-.YRL
=O#M%u
#MT%u
~$.NW
).QM6
M%/%C
=1Y%6U
-@'.WG
Llo.fxh
5&J%U
&a.Pp
d}.rK
J9.dW
<\.bpl
uD.vx|
)t.omC4
w@.MJg
"9.pM
U.nI-f
&/RRP.Dg
3.pECW9
3WEbf
8%Dqo
'5q%u?^
Q.uk*M
:o.snX
.hl|>
dV.YCV
M%Uza
'&.eF
A.YT5Z
h.mHVc
nv)%uj
t.kU%
b{.MM
.uFgKa_
1n.fN
5r.pn
NG.%u
.LRO>
.keS7nk
;Ou%u3
icmd
zfFZ.Iu
H%Xm<:
%.LFX'g
.wg-U
1D%6U
A.aT@V
3"]4j%x
8.yUDh
8YUu%U}
(}.xD
=.mH9
AlG
%Uisvl5
".IKv
u)vp.zP
) $%S
.Lft~/-
c-R}(
n$.Bj}
,P%DL
CPV%d
.rsrc
ppro@opeNsl.Hg>
.Go?N
=>%>=?.'
t..Cb
g.PUGv:
Q!(AN.xl
(j(%d
.OP0|
>SL%d
.lIyyd
LQU %s
GE.Th
C@.VH7LD
%S0T_
Qf,%fo
R.ug'
)%Uv[.`
4.VX9o
*ZZ.XE<
mE.THj
DkIz%cQSRbPi
20 %Sj
v#%S@
{l^$.dt
r%Crt
I(0!Mß
Ys%X6
I:\D$
F@.Bv
.iT\t
7.cDL;5%
\.HHH
c-wUu(%p,X):
evpkey
.pjducix
1.0.26
##%%&&))**
&'()* ,-./
.pp@0
%'%1$=%C%K%O%
.%.-.3.7.9.?.W.[.o.y.
0#0)070;
3Ó/353A3G3[3_3g3k3s3
9#9%9)9/
C%C'C3C7C9COCWCiC
IN_KEYG'ALGOR
~-Key:
.pkmgH
.VnbC
4092833
L{.nN
/faq.Dml
yDg.aJ
$'931311
|e"BWeb
Q/%2sBROp
FT43_'.Kg
62%8sR
E>O%s
.dBD,^
5nT}
[[%s]]
!f.omj
HTTP/O0
s<.na
n/MSG
3620483072/409
6144819
C:\E\T
l}C.we
zcÁ
9#_%- #,
EY}.Gr
Ja.ch^\
]<%cQ\
KERNEL32.DLL
ADVAPI32.dll
GDI32.dll
USER32.dll
WS2_32.dll
ReportEventA
LIBEAY32.dll
AES_set_decrypt_key
AES_set_encrypt_key
AES_unwrap_key
AES_wrap_key
ASN1_PCTX_get_cert_flags
ASN1_PCTX_set_cert_flags
AUTHORITY_KEYID_free
AUTHORITY_KEYID_it
AUTHORITY_KEYID_new
BF_set_key
BIO_get_port
BIO_set_tcp_ndelay
CAST_set_key
CERTIFICATEPOLICIES_free
CERTIFICATEPOLICIES_it
CERTIFICATEPOLICIES_new
CMS_EncryptedData_set1_key
CMS_RecipientEncryptedKey_cert_cmp
CMS_RecipientEncryptedKey_get0_id
CMS_RecipientInfo_get0_pkey_ctx
CMS_RecipientInfo_kari_set0_pkey
CMS_RecipientInfo_ktri_cert_cmp
CMS_RecipientInfo_set0_key
CMS_RecipientInfo_set0_password
CMS_RecipientInfo_set0_pkey
CMS_SignerInfo_cert_cmp
CMS_SignerInfo_get0_pkey_ctx
CMS_SignerInfo_set1_signer_cert
CMS_add0_CertificateChoices
CMS_add0_cert
CMS_add0_recipient_key
CMS_add0_recipient_password
CMS_add1_cert
CMS_add1_recipient_cert
CMS_decrypt_set1_key
CMS_decrypt_set1_password
CMS_decrypt_set1_pkey
CMS_get1_certs
CMS_set1_signers_certs
Camellia_set_key
DES_check_key_parity
DES_is_weak_key
DES_key_sched
DES_random_key
DES_read_2passwords
DES_read_password
DES_set_key_checked
DES_set_key_unchecked
DES_string_to_2keys
DES_string_to_key
DH_check_pub_key
DH_compute_key
DH_compute_key_padded
DH_generate_key
DSA_generate_key
ECDH_compute_key
EC_KEY_check_key
EC_KEY_clear_flags
EC_KEY_copy
EC_KEY_dup
EC_KEY_free
EC_KEY_generate_key
EC_KEY_get0_group
EC_KEY_get0_private_key
EC_KEY_get0_public_key
EC_KEY_get_conv_form
EC_KEY_get_enc_flags
EC_KEY_get_flags
EC_KEY_get_key_method_data
EC_KEY_insert_key_method_data
EC_KEY_new
EC_KEY_new_by_curve_name
EC_KEY_precompute_mult
EC_KEY_print
EC_KEY_print_fp
EC_KEY_set_asn1_flag
EC_KEY_set_conv_form
EC_KEY_set_enc_flags
EC_KEY_set_flags
EC_KEY_set_group
EC_KEY_set_private_key
EC_KEY_set_public_key
EC_KEY_set_public_key_affine_coordinates
EC_KEY_up_ref
ENGINE_cmd_is_executable
ENGINE_ctrl_cmd
ENGINE_ctrl_cmd_string
ENGINE_get_cmd_defns
ENGINE_get_load_privkey_function
ENGINE_get_load_pubkey_function
ENGINE_get_pkey_asn1_meth
ENGINE_get_pkey_asn1_meth_engine
ENGINE_get_pkey_asn1_meth_str
ENGINE_get_pkey_asn1_meths
ENGINE_get_pkey_meth
ENGINE_get_pkey_meth_engine
ENGINE_get_pkey_meths
ENGINE_get_ssl_client_cert_function
ENGINE_load_private_key
ENGINE_load_public_key
ENGINE_load_ssl_client_cert
ENGINE_pkey_asn1_find_str
ENGINE_register_all_pkey_asn1_meths
ENGINE_register_all_pkey_meths
ENGINE_register_pkey_asn1_meths
ENGINE_register_pkey_meths
ENGINE_set_cmd_defns
ENGINE_set_default_pkey_asn1_meths
ENGINE_set_default_pkey_meths
ENGINE_set_load_privkey_function
ENGINE_set_load_pubkey_function
ENGINE_set_load_ssl_client_cert_function
ENGINE_set_pkey_asn1_meths
ENGINE_set_pkey_meths
ENGINE_unregister_pkey_asn1_meths
ENGINE_unregister_pkey_meths
ESS_CERT_ID_dup
ESS_CERT_ID_free
ESS_CERT_ID_new
ESS_SIGNING_CERT_dup
ESS_SIGNING_CERT_free
ESS_SIGNING_CERT_new
EVP_BytesToKey
EVP_MD_pkey_type
EVP_PKCS82PKEY
EVP_PKEY2PKCS8
EVP_PKEY2PKCS8_broken
EVP_PKEY_add1_attr
EVP_PKEY_add1_attr_by_NID
EVP_PKEY_add1_attr_by_OBJ
EVP_PKEY_add1_attr_by_txt
EVP_PKEY_asn1_set_item
EVP_PKEY_delete_attr
EVP_PKEY_get_attr
EVP_PKEY_get_attr_by_NID
EVP_PKEY_get_attr_by_OBJ
EVP_PKEY_get_attr_count
EXTENDED_KEY_USAGE_free
EXTENDED_KEY_USAGE_it
EXTENDED_KEY_USAGE_new
KRB5_ENCKEY_free
KRB5_ENCKEY_it
KRB5_ENCKEY_new
NETSCAPE_CERT_SEQUENCE_free
NETSCAPE_CERT_SEQUENCE_it
NETSCAPE_CERT_SEQUENCE_new
NETSCAPE_SPKI_get_pubkey
NETSCAPE_SPKI_set_pubkey
OCSP_CERTID_dup
OCSP_CERTID_free
OCSP_CERTID_it
OCSP_CERTID_new
OCSP_CERTSTATUS_free
OCSP_CERTSTATUS_it
OCSP_CERTSTATUS_new
OCSP_REQ_CTX_http
OCSP_basic_add1_cert
OCSP_cert_id_new
OCSP_cert_status_str
OCSP_cert_to_id
OCSP_parse_url
OCSP_request_add1_cert
OCSP_url_svcloc_new
PEM_read_DSAPrivateKey
PEM_read_DSA_PUBKEY
PEM_read_ECPrivateKey
PEM_read_EC_PUBKEY
PEM_read_NETSCAPE_CERT_SEQUENCE
PEM_read_PKCS8_PRIV_KEY_INFO
PEM_read_PUBKEY
PEM_read_PrivateKey
PEM_read_RSAPrivateKey
PEM_read_RSAPublicKey
PEM_read_RSA_PUBKEY
PEM_read_X509_CERT_PAIR
PEM_read_bio_DSA_PUBKEY
PEM_read_bio_ECPrivateKey
PEM_read_bio_EC_PUBKEY
PEM_read_bio_PKCS8_PRIV_KEY_INFO
PEM_read_bio_PUBKEY
PEM_read_bio_RSA_PUBKEY
PEM_read_bio_X509_CERT_PAIR
PEM_write_DSAPrivateKey
PEM_write_DSA_PUBKEY
PEM_write_ECPrivateKey
PEM_write_EC_PUBKEY
PEM_write_NETSCAPE_CERT_SEQUENCE
PEM_write_PKCS8PrivateKey
PEM_write_PKCS8PrivateKey_nid
PEM_write_PKCS8_PRIV_KEY_INFO
PEM_write_PUBKEY
PEM_write_PrivateKey
PEM_write_RSAPrivateKey
PEM_write_RSAPublicKey
PEM_write_RSA_PUBKEY
PEM_write_X509_CERT_PAIR
PEM_write_bio_DSA_PUBKEY
PEM_write_bio_ECPrivateKey
PEM_write_bio_EC_PUBKEY
PEM_write_bio_PKCS8PrivateKey_nid
PEM_write_bio_PKCS8_PRIV_KEY_INFO
PEM_write_bio_PUBKEY
PEM_write_bio_RSA_PUBKEY
PEM_write_bio_X509_CERT_PAIR
PKCS12_MAKE_KEYBAG
PKCS12_MAKE_SHKEYBAG
PKCS12_PBE_keyivgen
PKCS12_add_cert
PKCS12_add_key
PKCS12_add_localkeyid
PKCS12_certbag2x509
PKCS12_certbag2x509crl
PKCS12_decrypt_skey
PKCS12_key_gen_asc
PKCS12_key_gen_uni
PKCS12_newpass
PKCS12_x5092certbag
PKCS12_x509crl2certbag
PKCS7_add_certificate
PKCS7_cert_from_signer_info
PKCS8_PRIV_KEY_INFO_free
PKCS8_PRIV_KEY_INFO_it
PKCS8_PRIV_KEY_INFO_new
PKCS8_add_keyusage
PKCS8_pkey_get0
PKCS8_pkey_set0
PKEY_USAGE_PERIOD_free
PKEY_USAGE_PERIOD_it
PKEY_USAGE_PERIOD_new
PROXY_CERT_INFO_EXTENSION_free
PROXY_CERT_INFO_EXTENSION_it
PROXY_CERT_INFO_EXTENSION_new
RC2_set_key
RC4_set_key
RSAPrivateKey_dup
RSAPrivateKey_it
RSAPublicKey_dup
RSAPublicKey_it
SEED_set_key
SRP_Calc_client_key
SRP_Calc_server_key
TS_CONF_load_cert
TS_CONF_load_certs
TS_CONF_load_key
TS_CONF_set_certs
TS_CONF_set_ess_cert_id_chain
TS_CONF_set_signer_cert
TS_CONF_set_signer_key
TS_MSG_IMPRINT_dup
TS_MSG_IMPRINT_free
TS_MSG_IMPRINT_get_algo
TS_MSG_IMPRINT_get_msg
TS_MSG_IMPRINT_new
TS_MSG_IMPRINT_print_bio
TS_MSG_IMPRINT_set_algo
TS_MSG_IMPRINT_set_msg
TS_REQ_get_cert_req
TS_REQ_get_msg_imprint
TS_REQ_set_cert_req
TS_REQ_set_msg_imprint
TS_RESP_CTX_set_certs
TS_RESP_CTX_set_signer_cert
TS_RESP_CTX_set_signer_key
TS_TST_INFO_get_msg_imprint
TS_TST_INFO_set_msg_imprint
X509_CERT_AUX_free
X509_CERT_AUX_it
X509_CERT_AUX_new
X509_CERT_AUX_print
X509_CERT_PAIR_free
X509_CERT_PAIR_it
X509_CERT_PAIR_new
X509_CRL_get0_by_cert
X509_CRL_http_nbio
X509_PKEY_free
X509_PKEY_new
X509_PUBKEY_free
X509_PUBKEY_get0_param
X509_PUBKEY_it
X509_PUBKEY_new
X509_PUBKEY_set
X509_PUBKEY_set0_param
X509_REQ_check_private_key
X509_REQ_get_pubkey
X509_STORE_CTX_set_cert
X509_STORE_get1_certs
X509_certificate_type
X509_check_private_key
X509_get0_pubkey_bitstr
X509_get_default_cert_area
X509_get_default_cert_dir
X509_get_default_cert_dir_env
X509_get_pubkey
X509_get_pubkey_parameters
X509_http_nbio
X509_keyid_get0
X509_keyid_set1
X509_load_cert_crl_file
X509_load_cert_file
X509_pubkey_digest
X509_supported_extension
X509_verify_cert
X509_verify_cert_error_string
_ossl_old_des_is_weak_key
_ossl_old_des_key_sched
_ossl_old_des_random_key
_ossl_old_des_read_2passwords
_ossl_old_des_read_password
_ossl_old_des_string_to_2keys
_ossl_old_des_string_to_key
_shadow_DES_check_key
b2i_PrivateKey
b2i_PrivateKey_bio
b2i_PublicKey
b2i_PublicKey_bio
d2i_AUTHORITY_KEYID
d2i_CERTIFICATEPOLICIES
d2i_DSAPrivateKey_bio
d2i_DSAPrivateKey_fp
d2i_DSAPublicKey
d2i_DSA_PUBKEY
d2i_DSA_PUBKEY_bio
d2i_DSA_PUBKEY_fp
d2i_ECPrivateKey
d2i_ECPrivateKey_bio
d2i_ECPrivateKey_fp
d2i_EC_PUBKEY
d2i_EC_PUBKEY_bio
d2i_EC_PUBKEY_fp
d2i_ESS_CERT_ID
d2i_ESS_SIGNING_CERT
d2i_EXTENDED_KEY_USAGE
d2i_KRB5_ENCKEY
d2i_NETSCAPE_CERT_SEQUENCE
d2i_OCSP_CERTID
d2i_OCSP_CERTSTATUS
d2i_PKCS8PrivateKey_bio
d2i_PKCS8PrivateKey_fp
d2i_PKCS8_PRIV_KEY_INFO
d2i_PKCS8_PRIV_KEY_INFO_bio
d2i_PKCS8_PRIV_KEY_INFO_fp
d2i_PKEY_USAGE_PERIOD
d2i_PROXY_CERT_INFO_EXTENSION
d2i_PUBKEY
d2i_PUBKEY_bio
d2i_PUBKEY_fp
d2i_PrivateKey_fp
d2i_RSAPrivateKey_bio
d2i_RSAPrivateKey_fp
d2i_RSAPublicKey_bio
d2i_RSAPublicKey_fp
d2i_RSA_PUBKEY
d2i_RSA_PUBKEY_bio
d2i_RSA_PUBKEY_fp
d2i_TS_MSG_IMPRINT
d2i_TS_MSG_IMPRINT_bio
d2i_TS_MSG_IMPRINT_fp
d2i_X509_CERT_AUX
d2i_X509_CERT_PAIR
d2i_X509_PKEY
d2i_X509_PUBKEY
i2b_PrivateKey_bio
i2b_PublicKey_bio
i2d_AUTHORITY_KEYID
i2d_CERTIFICATEPOLICIES
i2d_DSAPrivateKey_bio
i2d_DSAPrivateKey_fp
i2d_DSAPublicKey
i2d_DSA_PUBKEY
i2d_DSA_PUBKEY_bio
i2d_DSA_PUBKEY_fp
i2d_ECPrivateKey
i2d_ECPrivateKey_bio
i2d_ECPrivateKey_fp
i2d_EC_PUBKEY
i2d_EC_PUBKEY_bio
i2d_EC_PUBKEY_fp
i2d_ESS_CERT_ID
i2d_ESS_SIGNING_CERT
i2d_EXTENDED_KEY_USAGE
i2d_KRB5_ENCKEY
i2d_OCSP_CERTID
i2d_OCSP_CERTSTATUS
i2d_PKCS8PrivateKeyInfo_bio
i2d_PKCS8PrivateKeyInfo_fp
i2d_PKCS8PrivateKey_bio
i2d_PKCS8PrivateKey_fp
i2d_PKCS8PrivateKey_nid_bio
i2d_PKCS8PrivateKey_nid_fp
i2d_PKCS8_PRIV_KEY_INFO
i2d_PKCS8_PRIV_KEY_INFO_bio
i2d_PKCS8_PRIV_KEY_INFO_fp
i2d_PKEY_USAGE_PERIOD
i2d_PROXY_CERT_INFO_EXTENSION
i2d_PUBKEY
i2d_PUBKEY_bio
i2d_PUBKEY_fp
i2d_PrivateKey_fp
i2d_RSAPrivateKey_bio
i2d_RSAPrivateKey_fp
i2d_RSAPublicKey_bio
i2d_RSAPublicKey_fp
i2d_RSA_PUBKEY
i2d_RSA_PUBKEY_bio
i2d_RSA_PUBKEY_fp
i2d_TS_MSG_IMPRINT
i2d_TS_MSG_IMPRINT_bio
i2d_TS_MSG_IMPRINT_fp
i2d_X509_CERT_AUX
i2d_X509_CERT_PAIR
i2d_X509_PKEY
i2d_X509_PUBKEY
i2o_ECPublicKey
idea_set_decrypt_key
idea_set_encrypt_key
o2i_ECPublicKey
private_AES_set_decrypt_key
private_AES_set_encrypt_key
private_RC4_set_key
w".pB
%CyYA0hD
R.ARu
.Slv&
4WURl."
SK-Ww}
R.Vd0
7'#.Smbi
P%s_t.
PX.DR*
vZ %D
.FA;r
.sPI0h
\.tP,
cPhhTtp\p
\.HLPT.
\.lptx.
<|%x-t
X.Cr&
M^.WLA
pen" 1.0.2e 3 Dec 201N
master_key
is %d?)`
'o'%s:%d: re
ng)msg_hdr->
%ld (%s\f
RgKey-Arg
c&cmd=U
|PKEY
SSLEAY32.dll
SSL_CONF_cmd
SSL_CONF_cmd_argv
SSL_CONF_cmd_value_type
SSL_CTX_get0_certificate
SSL_CTX_get0_privatekey
SSL_CTX_get_cert_store
SSL_CTX_get_client_cert_cb
SSL_CTX_set_cert_cb
SSL_CTX_set_cert_store
SSL_CTX_set_cert_verify_callback
SSL_CTX_set_client_cert_cb
SSL_CTX_set_client_cert_engine
SSL_CTX_set_msg_callback
SSL_CTX_set_srp_password
SSL_CTX_use_PrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey
SSL_CTX_use_RSAPrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey_file
SSL_CTX_use_certificate_ASN1
SSL_add_dir_cert_subjects_to_stack
SSL_add_file_cert_subjects_to_stack
SSL_certs_clear
SSL_check_private_key
SSL_export_keying_material
SSL_extension_supported
SSL_get_certificate
SSL_get_peer_cert_chain
SSL_get_privatekey
SSL_set_cert_cb
SSL_set_msg_callback
SSL_use_PrivateKey
SSL_use_PrivateKey_ASN1
SSL_use_PrivateKey_file
SSL_use_RSAPrivateKey
SSL_use_RSAPrivateKey_ASN1
SSL_use_RSAPrivateKey_file
SSL_use_certificate
SSL_use_certificate_ASN1
SSL_use_certificate_file
LoginDialog
Database Login
&Password:
PasswordDialog
Enter password
GetWindowsDirectoryA
GetCPInfo
RegUnLoadKeyA
RegQueryInfoKeyA
RegOpenKeyExW
RegOpenKeyExA
RegFlushKey
RegEnumKeyExA
RegDeleteKeyA
RegCreateKeyExA
RegCloseKey
RegEnumKeyExW
SetViewportOrgEx
SHFileOperationA
UnhookWindowsHookEx
SetWindowsHookExA
MsgWaitForMultipleObjects
MapVirtualKeyA
LoadKeyboardLayoutA
GetKeyboardState
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextA
EnumWindows
EnumThreadWindows
ActivateKeyboardLayout
GetKeyboardType
.idata
.rdata
P.reloc
P.rsrc
#\! $(,048
*<>#%"{}|\^[]`
hXXp://VVV.w3.org/2001/XMLSchema
hXXp://VVV.w3.org/2000/xmlns/
hXXp://VVV.w3.org/2001/XMLSchema-instance
888816666554443
6666554443
!6666554443
TLOGINDIALOG
TPASSWORDDIALOG
Invalid stream operation
<Selected DOM Vendor does not support this property or method;Property or Method "%s" is not supported by DOM Vendor "%s"
Node "%s" not found
IDOMNode required.Attributes are not supported on this node type
Invalid node type Mismatched paramaters to RegisterChildNodes Element does not contain a single text node4DOM Implementation does not support IDOMParseOptions
Node is readonlyCRefresh is only supported if the FileName or XML properties are set
/Database specified by [%p] handle was not foundHVTab: Invalid number of arguments at VTabCreate. Expected [%d], got [%d](VTab: Dataset [%s] is not found or empty VTab: Operation is not supported!VTab: Savepoint [%d] is not found!VTab: Dataset modification failed/VTab: Explicit ROWID at INSERT is not supported9VTab: Dataset state was changed. Cannot perform operation"VTab: Specified row does not exist
VTab: Invalid cursor;TADLocalSQL must be attached to an active SQLite connection0VTab: DataSet [%s] is busy by another result set/Cannot perform action. DBTOOLn.DLL is not found
Unnamed)"%s" DOMImplementation already registered
No matching DOM Vendor: "%s"
5Maximum length (%d) of BQUAL exceeded - %d (NOE19/TX)@Maximum length (%d) of transaction name exceeded - %d (NOE20/TX)@Too many close braces in names file after alias [%s] (NOE105/DB)0[%s] is not a callable PL/SQL object (NOE130/SP)2[%s, #%d] is not found in [%s] package (NOE134/SP)TParameter with type TABLE OF BOOLEAN/RECORD not supported (use TADQuery) (NOE135/SP)KParameter with type RECORD must be of named type (use TADQuery) (NOE142/SP))Cannot convert Oracle Number [%s] to TBcd7DBMS_PIPE event alerter supports only single event name9Cannot start a trace session, when there is an active one"Stored procedure [%s] is not founduArray-typed variable [%s] dimensions [%d] are not supported.
Only sigle dimensional simple type arrays are supportedqArray-typed variable [%s] unsupported element type [%d].
Only sigle dimensional simple type arrays are supportedCArray-typed variable [%s] item index [%d] is out of bounds [%d, %d]
Cannot describe type [%d].
%sHSQLite library initialization failed. Main code [%d], extended code [%d]
`No script to execute for [%s].
Possible reason: SQLScriptFileName and SQLScripts both are empty Connection parameter [%s] must be not empty|DbExpress driver configuration file [%s] is not found.
Possible reason: dbExpress is not properly installed on this machineUUnsupported MySQL version [%d].
Supported are client and server from v 3.20 to v 6.2
Port number cannot be changed&Error in parameter [%s] definition. %sFFailed to initialize embedded server.
See MySQL log files for details/Variable [%s] C data type [%d] is not supported
No cursors availableCCannot initialize OCI with character set [%s].
Possible reason: %s1Cannot assign value to BFILE/CFILE parameter [%s]HNo cursor parameters are defined. Include fiMeta into FetchOptions.Items9OCI is not properly installed on this machine (NOE1/INIT)ZUnsupported OCI library [%s] version [%s].
At least version 8.0.3 is required (NOE2/INIT)0Bad or undefined variable param type (NOE12/VAR)5Maximum length (%d) of GTRID exceeded - %d (NOE18/TX)
Class [%s] is not registered
Unknown storage format [%s]"Cannot move file [%s] to [%s].
%s!Invalid date interval format [%s]Ênnot execute host command [%s].
%s)String size must be of 1 character length.Character cannot be alphanumeric or whitespace
Invalid command [%s] syntax-ACCEPT statement must specify a variable name,DEFINE requires a value following equal sign
VARIABLE has missed right brace"VARIABLE has unsupported data typeÊnnot execute command. Not logged onlNo script commands registered.
"Text field [%s] name is Duplicated5Bad text value [%s] format for mapping item [%s].
%s?Undefined source field or expression for destination field [%s]
Timeout expired"Cannot get access to BLOB raw datahVariable length data parameter [%s] overflow.
Value length - [%d], parameter data maximum length - [%d]PCannot perform nonblocking action, while other nonblocking action is in progress
Macro [%s] is not found7Parameter [%s] value index [%d] is out of range [0..%d]mCannot acquire item (connection) from pool.
Maximal number [%d] of simultaneous items (connections) reached.@.
To register it, you can drop component [%s] into your project>.
To register it, you can include unit [%s] into your project
Cannot read [%s] property
Cannot read [%s] object#Cannot read RAW data of [%s] object
*Dataset [%s] must be in cached update moderConnection is not defined for [%s].
Connection [%s] must be online
Table adapter [%s] cannot be assigned to [%s], because it is
already assigned to [%s] and cannot be shared across few datasets6Dataset connection does not match to called connection Table [%s] must have primary keyWLocal SQL engine misusage by [%s].
Hint: activate connection before activating dataset=Table [%s] index [%s] must be existing non-expressional index
Dataset name must be not empty?Dataset name [%s] must be unique across Local SQL [%s] datasets
Text field [%s] is not found
Destination dataset not set;Destination text data file name or stream must be specified6Source text data file name or stream must be specified=Text field [%s] size is undefined in Fixed Size Record format
<Operation cannot be performed without assigned SelectCommand
ADManager must be active#Connection name [%s] must be unique Connection [%s] must be inactive
Connection [%s] must be active)Connection [%s] establishment is canceled
Connection [%s] cannot be pooled.
Possible reason: connection definition is not in the ADManager.ConnectionDefs list or
TADConnection.Params has additional parameters
Connection [%s] is not found
Possible reason: [%s] ConnectionName property is misspelled or references to nonexistent connection$Command [%s] must be in active state&Command [%s] must be in inactive state
Param [%s] type changed from [ft%s] to [ft%s]. Query must be reprepared.
Possible reason: an assignment to a TADParam.AsXXX property implicitly changed the parameter data type.
Hint: use the TADParam.Value or appropriate TADParam.AsXXX property1A meta data argument [%s] value must be specified
Expected number of parameters is [%d], but actual number is [%d].
Possible reason: a parameter was added or deletedsData too large for variable [%s]. Max len = [%d], actual len = [%d]
Hint: set the TADParam.Size to a greater value
Database [%s] does not exist
Access 2003 or earlier: hXXp://support.microsoft.com/kb/239114
Access 2007: hXXp://VVV.microsoft.com/download/en/details.aspx?displaylang=en&id=23734
Access 2010: hXXp://VVV.microsoft.com/download/en/details.aspx?id=13255{JRO.JetEngine class is missing on client machine.
Hint: install latest engine from: hXXp://support.microsoft.com/kb/239114aDatabase format is not recognized.
Possible reason: DBVersion value mismatches database version.&Specified database password is invalid
Unknown OLE error1To perform operation DriverLink must be specified To perform operation service must be activeGCannot deinstall a SQLite collation, while there are active connections?%s command %s [%d] instead of [1] record.
Possible reasons: %saupdate table does not have PK or row identifier,
*Too many login retries. Allowed [%d] times1To perform operation driver manager, must be [%s]
Character [%s] is missed
Too long identifier (> 255)6Parameter [%s] ArraySize [%d] is less than ATimes [%d]=Cannot perform action, because previous action is in progress%Escape function [%s] is not supported8Define(mmReset) is only supported for metainfo retrieval6Cannot generate update query. WHERE condition is empty4Cannot generate update query. Update table undefined
Cannot parse object name - [%s])Syntax error in escape function [%s].
%shADPhysManager shutdown timeout.
Possible reason: application has not released all connection interfaceszParameter [%s] data type is unknown.
Hint: specify TADParam.DataType or assign TADParam value before Prepare/Execute call)Parameter [%s] data type is not supported&Column [%s] data type is not supported
Capability is not supported
Transaction [%s] must be activeCTransaction [%s] must be inactive. Nested transactions are disabled
Hint: use Execute / ExecSQL method for non-SELECT commands!Command must be is prepared state]Cannot execute command returning result sets.
Hint: use Open method for SELECT-like commands!Command must be open for fetching,Exact %s [%d] rows, while [%d] was requested
Meta information mismatchvCannot load vendor library [%s].
%sHint: check it is in the PATH or application EXE directories, and has x86 bitness./Cannot get vendor library entry point[s].
-Record inserting for dataset [%s] is disabled,Record deleting for dataset [%s] is disabled=Field [%s] specified within %s of DataSet [%s] does not existeCannot set dataset [%s] to offline mode.
Hint: check that FetchOptions.AutoFetchAll is not afDisable|Cannot turn off cached updates mode for DataSet [%s].
Hint: dataset has updated rows, cancel or apply updates before action.Cannot make definition [%s] circular reference7Cannot %s definition [%s]. It has associated connection!Cannot make definition persistent9Cannot load definition list, because it is already loaded$Definition [%s] is not found in [%s]"Definition name [%s] is duplicated"Driver [%s] is not registered.
%sXDriver [%s] cannot be released.
Hint: Close all TADConnection objects and release poolsNTo register it, you can drop component [TADPhys%sDriverLink] into your project5Correct driver ID or define [%s] virtual driver in %seDriver ID is not defined.
Set TADConnection.DriverName or add DriverID to your connection definition
%s&Bookmark is not found for dataset [%s]
View [%s] is not a sorted view"Adapter interface must be suppliedUCannot set MasterSource for dataset [%s].
Nested datasets cannot have a MasterSourceMCannot set MasterSource for dataset [%s].
Circular datalinks are not alloweduCannot refresh dataset [%s].
Cannot open dataset [%s].
Hint: if that is TADMemTable, use CreateDataSet or CloneCursor to open dataset(Index [%s] is not found for dataset [%s],Aggregate [%s] is not found for dataset [%s]6Index [%s] definition is not complete for dataset [%s]:Aggregate [%s] definition is not complete for dataset [%s]7Cannot perform operation on unidirectional dataset [%s]LBookmark key fields [%s] are incompatible
with dataset [%s] key fields [%s] Record editing for dataset [%s] is disabled
Invalid use of keyword
Invalid character found [%s]
'(' expected but [%s] found"')' or ',' expected but [%s] found
')' expected but [%s] found"IN predicate list may not be empty
Expected [%s].Arithmetic in filter expressions not supported>Operation cannot mix aggregate value with record-varying value
4Cannot change updates registry for DatS manager [%s]"Too many aggregate values per view9Grouping level exceeds maximum allowed for aggregate [%s]XVariable length column [%s] overflow.
Value length - [%d], column maximum length - [%d]
Invalid foreign key [%s]
Invalid unique key [%s]#Cannot change column [%s] data type
Invalid relation [%s](Cannot create parent view. Relation [%s]7Cannot change table [%s] structure, when table has rows;Found a cascading actions loop at checking foreign key [%s]
Record is not lockedFAssigning value [%s] is not compatible with column [%s] data type.
%s,Value [%s] is out of range of [%s] data typeuColumn or function [%s] is not found.
Column [%s] is read only
Cannot insert row into table"Column [%s] value must be not null4Duplicate row found on unique index. Constraint [%s]/Cannot process - no parent row. Constraint [%s]2Cannot process - child rows found. Constraint [%s]
Cannot compare rowsÚta type conversion is not supported
Column [%s] is not searchable=Row may have only single column of [dtParentRowRef] data typewCannot read data from or write data to the invariant column [%s].
Row is not nested)Column [%s] is not reference to other row'Column [%s] is not reference to row set&Cannot perform operation for row state
Unknown credentials use!Do AcquireCredentialsHandle first"CompleteAuthToken is not supported#Name [%s] is duplicated in the list
Object [%s] is not found(Column [%s] type is unknown or undefined
Constraint [%s]
Cannot begin edit row'Cannot create child view. Relation [%s]
Cannot delete row Column [%s] must have blob value_Fixed length column [%s] data length mismatch.
Value length - [%d], column fixed length - [%d]
The revocation status of the domain controller certificate used for smartcard authentication could not be determined. There is additional information in the system event log. Please contact your system administrator.
An untrusted certificate authority was detected while processing the domain controller certificate used for authentication. There is additional information in the system event log. Please contact your system administrator.
The domain controller certificate used for smartcard logon has expired. Please contact your system administrator with the contents of your system event log.
The domain controller certificate used for smartcard logon has been revoked. Please contact your system administrator with the contents of your system event log.IA signature operation must be performed before the user can authenticate.AOne or more of the parameters passed to the function was invalid.DClient policy does not allow credential delegation to target server.bClient policy does not allow credential delegation to target server with NLTM only authentication.1The recipient rejected the renegotiation request.-The required security context does not exist.`The PKU2U protocol encountered an error while attempting to utilize the associated certificates.:The identity of the server computer could not be verified.
Unknown error#SSPI %s returns error #%d(0x%x): %s0SSPI interface has failed to initialise properly
DThe KDC was unable to generate a referral for the service requested.:The encryption type requested is not supported by the KDC.QAn unsupported preauthentication mechanism was presented to the Kerberos package.
The requested operation cannot be completed. The computer must be trusted for delegation and the current user account must be configured to allow delegation.7Client's supplied SSPI channel bindings were incorrect.9The received certificate was mapped to multiple accounts.
SEC_E_NO_KERB_KEY5The certificate is not valid for the requested usage.
The smartcard certificate used for authentication has been revoked. Please contact your system administrator. There may be additional information in the event log.
An untrusted certificate authority was detected While processing the smartcard certificate used for authentication. Please contact your system administrator.
The revocation status of the smartcard certificate used for authentication could not be determined. Please contact your system administrator.lThe smartcard certificate used for authentication was not trusted. Please contact your system administrator.hThe smartcard certificate used for authentication has expired. Please contact your system administrator.
The Kerberos subsystem encountered an error. A service for user protocol request was made against a domain controller which does not support service for user.
An attempt was made by this server to make a Kerberos constrained delegation request for a target outside of the server's realm. This is not supported, and indicates a misconfiguration on this server's allowed to delegate to list. Please contact your administrator.
The security context could not be established due to a failure in the requested quality of service (e.g. mutual authentication or delegation).dA security context was deleted before the context was completed. This is considered a logon failure.mThe client is trying to negotiate a context and the server requires user-to-user but didn't send a TGT reply.aUnable to accomplish the requested task because the local machine does not have any IP addresses.bThe supplied credential handle does not match the credential associated with the security context.]The crypto system or checksum function is invalid because a required function is unavailable.9The number of maximum ticket referrals has been exceeded.KThe local machine must be a Kerberos KDC (domain controller) and it is not.qThe other end of the security negotiation is requires strong crypto but it is not supported on the local machine.5The KDC reply contained more than one principal name.OExpected to find PA data for a hint of what etype to use, but it was not found.
The client certificate does not contain a valid UPN, or does not match the client name in the logon request. Please contact your administrator.-Smartcard logon is required and was not used.!A system shutdown is in progress.'An invalid request was sent to the KDC.
-The requested security package does not exist2The context has expired and can no longer be used.DThe supplied message is incomplete. The signature was not verified.lThe credentials supplied were not complete, and could not be verified. The context could not be initialized.1The buffers supplied to a function was too small.
The credentials supplied were not complete, and could not be verified. Additional information can be returned from the context.4The context data must be renegotiated with the peer.'The target principal name is incorrect.:There is no LSA mode context associated with this context.8The clocks on the client and server machines are skewed.;The certificate chain was issued by an untrusted authority.7The message received was unexpected or badly formatted.;An unknown error occurred while processing the certificate.%The received certificate has expired.*The specified data could not be encrypted.*The specified data could not be decrypted.
6The caller is not the owner of the desired credentialsBThe security package failed to initialize, and cannot be installed-The token supplied to the function is invalid^The security package is not able to marshall the logon buffer, so the logon attempt has failedNThe per-message Quality of Protection is not supported by the security package?The security context does not allow impersonation of the client
The logon attempt failed;The credentials supplied to the package were not recognized4No credentials are available in the security packageCThe message or signature supplied for verification has been altered8The message supplied for verification is out of sequence3No authority could be contacted for authentication.UThe function completed successfully, but must be called again to complete the contextEThe function completed successfully, but CompleteToken must be calledtThe function completed successfully, but both CompleteToken and this function must be called to complete the contextsThe logon was completed, but no network authority was available. The logon was made using locally known information
The handle specified is invalid'The function requested is not supported.The specified target is unknown or unreachable0The Local Security Authority cannot be contacted-The requested security package does not exist
Host field is empty,Character Index %d out of Range, Length = %d:Character at Index %d is not a valid UTF-16 High Surrogate9Character at Index %d is not a valid UTF-16 Low Surrogate*Missing a Low Surrogate in UTF-16 sequence
Failed to load %s.
SSL status: "%s"
%s Alert
%s Read Alert
%s Write Alert
Unknown Protocol(Request method requires HTTP version 1.1KUnsupported hash algorithm. This implementation supports only MD5 encoding.$Error accepting connection with SSL.
Error creating SSL context. Could not load root certificate.
Could not load certificate.#Could not load key, check password.
Transparent proxy cannot bind. UDP Not supported by this proxy.$Buffer terminator must be specified.!Buffer start position is invalid.
Reply Code is not valid: %s
Reply Code already exists: %s
IOHandler value is not valid'Algorithm %s not permitted in FIPS mode
Command not supported.
Address type not supported."%s: Circular links are not allowed"Not enough data in buffer. (%d/%d)
File "%s" not found
Object type not supported.
;Could not bind socket. Address and port are already in use.
Invalid Port Range (%d - %d)
%s is not a valid service.
%s is not a valid IPv6 address:The requested IPVersion / Address family is not supported.
Set Size Exceeded.)UDP is not support in this SOCKS version.
Request rejected or failed.5Request rejected because SOCKS server cannot connect.QRequest rejected because the client program and identd report different user-ids.
.Cannot send or receive after socket is closed.#Too many references, cannot splice.
Stack already created.1Only one TIdAntiFreeze can exist per application.&Cannot change IPVersion when connected$Can not bind in port range (%d - %d)
Protocol not supported.
Socket type not supported."Operation not supported on socket.
Protocol family not supported.0Address family not supported by protocol family.
Socket Error # %d
Operation would block.
Operation now in progress.
Operation already in progress.
Socket operation on non-socket.
Invalid MMF name "%s"*The MMF named "%s" cannot be created empty
Win32 error: %s (%u)%s%s
Invalid destination array"Character index out of bounds (%d)
Invalid count (%d)
Invalid destination index (%d)
Invalid codepage (%d)4Failed attempting to retrieve time zone information.-Error on call to Winsock2 library function %s&Error on loading Winsock2 library (%s)
Resolving hostname %s.
Connecting to %s.
128-Byte PrefetchingeCPUID leaf 2 does not report cache descriptor information, use CPUID leaf 4 to query cache parameters
Windows 8.1
Windows Server 2012 R2
Remote Login(Failed to get ANSI replacement character#Unable to open key "%s\%s" for read0Unable to open key "%s\%s" and access value "%s"#"%s\%s\%s" is of wrong kind or size
"%s" does not match RootKey
$Could not parse SQL TimeStamp string
Invalid SQL date/time values
OLE error %.8x.Method '%s' not supported by automation object/Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters
No help keyword specified. Field '%s' is of an unknown type#Value of field '%s' is out of range
Parameter '%s' not found
Unable to load bind parameters$Field '%s' is of an unsupported type
%s is not a valid BCD value
/Menu '%s' is already being used by another form
No help found for %s#No context-sensitive help installed$No topic-based help system installed
Alt Clipboard does not support Icons
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window
Resource %s not found
%s.Seek not implemented$Operation not allowed on sorted list
%s expected$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)
Unsupported clipboard format
Invalid data type for '%s'
Line too long List capacity out of bounds (%d)
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
%s on line %d
Error reading %s%s%s: %s
Failed to create key %s
Failed to get data for '%s'
Failed to set data for '%s'
Class %s not found
A class named %s already exists%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
'%s' is an invalid mask at (%d)$''%s'' is not a valid component name
Invalid property element: %s
Invalid property type: %s
Ancestor for '%s' not found
Cannot assign a %s to a %s
''%s'' expectedECheckSynchronize called from thread $%x, which is NOT the main thread
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
,Custom variant type (%s%.4x) is out of range/Custom variant type (%s%.4x) already used by %s*Custom variant type (%s%.4x) is not usable2Too many custom variant types have been registered5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Operation not supported
External exception %x
Interface not supported
%s (%s, line %d)
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'"Variant method calls not supported
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
Integer overflow Invalid floating point operation
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
!'%s' is not a valid integer value('%s' is not a valid floating point value
'%s' is not a valid date
'%s' is not a valid time!'%s' is not a valid date and time '%d.%d' is not a valid timestamp
'%s' is not a valid GUID value
I/O error %d
The OpenSSL Project, hXXp://VVV.openssl.org/
1.0.2e
Compiled by Frederik A. Winkelsdorf (opendec.wordpress.com) for the Indy Project (VVV.indyproject.org)
()* ,|-.
%original file name%.exe_1108_rwx_11001000_00159000:
|$@3|$<3
SHA1 block transform for x86, CRYPTOGAMS by <appro@openssl.org>
SHA256 block transform for x86, CRYPTOGAMS by <appro@openssl.org>
SHA512 block transform for x86, CRYPTOGAMS by <appro@openssl.org>
RC4 for x86, CRYPTOGAMS by <appro@openssl.org>
6-9'6-9'
$6.:$6.:
*?#1*?#1
>8$4,8$4,
AES for x86, CRYPTOGAMS by <appro@openssl.org>
AES for Intel AES-NI, CRYPTOGAMS by <appro@openssl.org>
Camellia for x86 by <appro@openssl.org>
GHASH for x86, CRYPTOGAMS by <appro@openssl.org>
Montgomery Multiplication for x86, CRYPTOGAMS by <appro@openssl.org>
GF(2^m) Multiplication for x86, CRYPTOGAMS by <appro@openssl.org>
FtPS
FTPG
tGHt.Ht&
OPENSSL_Uplink(%p,X):
ssl_sess_cert
ssl_cert
evp_pkey
x509_pkey
%s(%d): OpenSSL internal error, assertion failed: %s
thread=%lu, file=%s, line=%d, info="
number=%d, address=lX
%5lu file=%s, line=%d,
[d:d:d]
%ld bytes leaked in %d chunks
compiler: cl /MD /Ox /O2 /Ob2 -DOPENSSL_THREADS -DDSO_WIN32 -W3 -Gs0 -GF -Gy -nologo -DOPENSSL_SYSNAME_WIN32 -DWIN32_LEAN_AND_MEAN -DL_ENDIAN -D_CRT_SECURE_NO_DEPRECATE -DOPENSSL_BN_ASM_PART_WORDS -DOPENSSL_IA32_SSE2 -DOPENSSL_BN_ASM_MONT -DOPENSSL_BN_ASM_GF2m -DSHA1_ASM -DSHA256_ASM -DSHA512_ASM -DMD5_ASM -DRMD160_ASM -DAES_ASM -DVPAES_ASM -DWHIRLPOOL_ASM -DGHASH_ASM -DOPENSSL_USE_APPLINK -I. -DOPENSSL_NO_RC5 -DOPENSSL_NO_MD2 -DOPENSSL_NO_KRB5 -DOPENSSL_NO_JPAKE -DOPENSSL_NO_STATIC_ENGINE
OpenSSL 1.0.2e 3 Dec 2015
fips mode not supported
MD4 part of OpenSSL 1.0.2e 3 Dec 2015
MD5 part of OpenSSL 1.0.2e 3 Dec 2015
SHA part of OpenSSL 1.0.2e 3 Dec 2015
SHA1 part of OpenSSL 1.0.2e 3 Dec 2015
SHA-256 part of OpenSSL 1.0.2e 3 Dec 2015
SHA-512 part of OpenSSL 1.0.2e 3 Dec 2015
j <= (int)sizeof(ctx->key)
hexkey
RIPE-MD160 part of OpenSSL 1.0.2e 3 Dec 2015
libdes part of OpenSSL 1.0.2e 3 Dec 2015
DES part of OpenSSL 1.0.2e 3 Dec 2015
des(%s,%s,%s,%s)
!"#$% !"#$%&'()* ,-./0123456789:;<=>?@ABCD./0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyzRC2 part of OpenSSL 1.0.2e 3 Dec 2015
IDEA part of OpenSSL 1.0.2e 3 Dec 2015
:Blowfish part of OpenSSL 1.0.2e 3 Dec 2015
CAST part of OpenSSL 1.0.2e 3 Dec 2015
AES part of OpenSSL 1.0.2e 3 Dec 2015
in && out && key && ivec
.pp@0
aEÐ
(#EÚ
ÚE<<0
Big Number part of OpenSSL 1.0.2e 3 Dec 2015
bn(%d,%d)
%'%1$=%C%K%O%s%
.%.-.3.7.9.?.W.[.o.y.
C%C'C3C7C9COCWCiC
RSA part of OpenSSL 1.0.2e 3 Dec 2015
unsupported signature type
unsupported mask parameter
unsupported mask algorithm
unsupported label source
unsupported encryption type
rsa operations not supported
operation not supported for this keytype
operation not allowed in fips mode
key size too small
invalid keybits
illegal or unsupported padding mode
digest too big for rsa key
data too small for key size
data too large for key size
RSA_generate_key_ex
RSA_generate_key
RSA_check_key
RSA_BUILTIN_KEYGEN
PKEY_RSA_VERIFYRECOVER
PKEY_RSA_VERIFY
PKEY_RSA_SIGN
PKEY_RSA_CTRL_STR
PKEY_RSA_CTRL
Public-Key: (%d bit)
Private-Key: (%d bit)
rsa_keygen_pubexp
rsa_keygen_bits
DSA part of OpenSSL 1.0.2e 3 Dec 2015
priv_key
pub_key
PKEY_DSA_KEYGEN
PKEY_DSA_CTRL
DSA_generate_key
%s: (%d bit)
Public-Key
Private-Key
functionality not supported
WIN32_JOINER
%s.dll
KERNEL32.DLL
.\crypto\dh\dh_key.c
Diffie-Hellman part of OpenSSL 1.0.2e 3 Dec 2015
peer key error
keys not set
invalid public key
PKEY_DH_KEYGEN
PKEY_DH_DERIVE
GENERATE_KEY
DH_generate_key
DH_compute_key
DH_CMS_SET_PEERKEY
COMPUTE_KEY
recommended-private-length: %d bits
x%s
public-key:
private-key:
DH Public-Key
DH Private-Key
EC part of OpenSSL 1.0.2e 3 Dec 2015
unsupported field
passed null parameter
not a supported NIST prime
missing private key
invalid private key
gf2m not supported
PKEY_EC_SIGN
PKEY_EC_PARAMGEN
PKEY_EC_KEYGEN
PKEY_EC_DERIVE
PKEY_EC_CTRL_STR
PKEY_EC_CTRL
o2i_ECPublicKey
i2o_ECPublicKey
i2d_ECPrivateKey
EC_KEY_set_public_key_affine_coordinates
EC_KEY_print_fp
EC_KEY_print
EC_KEY_new
EC_KEY_generate_key
EC_KEY_copy
EC_KEY_check_key
ECKEY_TYPE2PARAM
ECKEY_PUB_ENCODE
ECKEY_PUB_DECODE
ECKEY_PRIV_ENCODE
ECKEY_PRIV_DECODE
ECKEY_PARAM_DECODE
ECKEY_PARAM2TYPE
DO_EC_KEY_PRINT
d2i_ECPrivateKey
EC_PRIVATEKEY
publicKey
privateKey
value.implicitlyCA
value.parameters
value.named_curve
p.char_two
p.prime
p.ppBasis
p.tpBasis
p.onBasis
p.other
.\crypto\ec\ec_key.c
Basis Type: %s
Field Type: %s
NIST CURVE: %s
ASN1 OID: %s
ECDH part of OpenSSL 1.0.2e 3 Dec 2015
ECDH_compute_key
ECDSA part of OpenSSL 1.0.2e 3 Dec 2015
bio callback - unknown type (%d)
ctrl(%lu) - %s
gets(%lu) - %s
puts() - %s
write(%d,%lu) - %s
write(%d,%lu) - %s fd=%d
read(%d,%lu) - %s
read(%d,%lu) - %s fd=%d
Free - %s
unsupported method
no port specified
no port defined
no accept port specified
broken pipe
BIO_get_port
%d.%d.%d.%d
0123456789
%sx - <SPACES/NULS>
x%c
x -
X:
https
%s:%s
%d.%d.%d.%d:%d
port='
Stack part of OpenSSL 1.0.2e 3 Dec 2015
lhash part of OpenSSL 1.0.2e 3 Dec 2015
num_alloc_nodes = %u
num_nodes = %u
node %6u -> %3u
load %d.d actual load %d.d
%lu nodes used out of %u
RAND part of OpenSSL 1.0.2e 3 Dec 2015
You need to read the OpenSSL FAQ, hXXp://VVV.openssl.org/support/faq.html
USER32.DLL
NETAPI32.DLL
ADVAPI32.DLL
passed a null parameter
DSO support routines
x509 certificate routines
error:lX:%s:%s:%s
%lu:%s:%s:%d:%s
CT Certificate SCTs
ct_cert_scts
CT Precertificate Signer
ct_precert_signer
CT Precertificate Poison
ct_precert_poison
CT Precertificate SCTs
ct_precert_scts
dhSinglePass-cofactorDH-sha512kdf-scheme
dhSinglePass-cofactorDH-sha384kdf-scheme
dhSinglePass-cofactorDH-sha256kdf-scheme
dhSinglePass-cofactorDH-sha224kdf-scheme
dhSinglePass-cofactorDH-sha1kdf-scheme
dhSinglePass-stdDH-sha512kdf-scheme
dhSinglePass-stdDH-sha384kdf-scheme
dhSinglePass-stdDH-sha256kdf-scheme
dhSinglePass-stdDH-sha224kdf-scheme
dhSinglePass-stdDH-sha1kdf-scheme
Any Extended Key Usage
anyExtendedKeyUsage
supportedAlgorithms
crossCertificatePair
certificateRevocationList
cACertificate
userCertificate
userPassword
supportedApplicationContext
Microsoft Local Key set
LocalKeySet
id-Gost28147-89-None-KeyMeshing
id-Gost28147-89-CryptoPro-KeyMeshing
password based MAC
id-PasswordBasedMAC
X509v3 Certificate Issuer
certificateIssuer
certicom-arc
Proxy Certificate Information
proxyCertInfo
Microsoft Smartcardlogin
msSmartcardLogin
joint-iso-itu-t
JOINT-ISO-ITU-T
set-rootKeyThumb
setAttr-Cert
setCext-cCertRequired
setCext-certType
setct-CertResTBE
setct-CertReqTBEX
setct-CertReqTBE
setct-AcqCardCodeMsgTBE
setct-CertInqReqTBS
setct-CertResData
setct-CertReqTBS
setct-CertReqData
setct-PCertResTBS
setct-PCertReqData
setct-AcqCardCodeMsg
certificate extensions
set-certExt
set-msgExt
id-ecPublicKey
id-cmc-confirmCertAcceptance
id-cmc-getCert
id-regInfo-certReq
id-regCtrl-protocolEncrKey
id-regCtrl-oldCertID
id-it-revPassphrase
id-it-keyPairParamRep
id-it-keyPairParamReq
id-it-unsupportedOIDs
id-it-caKeyUpdateInfo
id-it-encKeyPairTypes
id-it-signKeyPairTypes
id-it-caProtEncCert
id-mod-attribute-cert
id-mod-qualified-cert-93
id-mod-qualified-cert-88
id-smime-aa-ets-certCRLTimestamp
id-smime-aa-ets-certValues
id-smime-aa-ets-CertificateRefs
id-smime-aa-ets-otherSigCert
id-smime-aa-smimeEncryptCerts
id-smime-aa-signingCertificate
id-smime-aa-encrypKeyPref
id-smime-aa-msgSigDigest
id-smime-ct-publishCert
id-smime-mod-msg-v3
sdsiCertificate
x509Certificate
localKeyID
certBag
pkcs8ShroudedKeyBag
keyBag
pbeWithSHA1And2-KeyTripleDES-CBC
pbeWithSHA1And3-KeyTripleDES-CBC
TLS Web Client Authentication
TLS Web Server Authentication
X509v3 Extended Key Usage
extendedKeyUsage
X509v3 Authority Key Identifier
authorityKeyIdentifier
X509v3 Certificate Policies
certificatePolicies
X509v3 Private Key Usage Period
privateKeyUsagePeriod
X509v3 Key Usage
keyUsage
X509v3 Subject Key Identifier
subjectKeyIdentifier
Netscape Certificate Sequence
nsCertSequence
Netscape CA Policy Url
nsCaPolicyUrl
Netscape Renewal Url
nsRenewalUrl
Netscape CA Revocation Url
nsCaRevocationUrl
Netscape Revocation Url
nsRevocationUrl
Netscape Base Url
nsBaseUrl
Netscape Cert Type
nsCertType
Netscape Certificate Extension
nsCertExt
extendedCertificateAttributes
challengePassword
dhKeyAgreement
?456789:;<=
!"#$%&'()* ,-./0123
EVP part of OpenSSL 1.0.2e 3 Dec 2015
.\crypto\evp\evp_key.c
nkey <= EVP_MAX_KEY_LENGTH
%s algorithm "%s" unsupported
Public Key
Private Key
wrong public key type
unsupported salt type
unsupported private key algorithm
unsupported prf
unsupported key size
unsupported key derivation function
unsupported keylength
unsupported cipher
unsupported algorithm
unsuported number of rounds
public key not rsa
private key encode error
private key decode error
operaton not initialized
no operation set
no key set
method not supported
keygen failure
invalid operation
invalid key length
expecting a ec key
expecting a ecdsa key
expecting a dsa key
expecting a dh key
expecting an rsa key
different key types
ctrl operation not implemented
command not supported
camellia key setup failed
bn pubkey error
bad key length
aes key setup failed
PKEY_SET_TYPE
PKCS5_V2_PBKDF2_KEYIVGEN
PKCS5_v2_PBE_keyivgen
PKCS5_PBE_keyivgen
FIPS_CIPHER_CTX_SET_KEY_LENGTH
EVP_PKEY_verify_recover_init
EVP_PKEY_verify_recover
EVP_PKEY_verify_init
EVP_PKEY_verify
EVP_PKEY_sign_init
EVP_PKEY_sign
EVP_PKEY_paramgen_init
EVP_PKEY_paramgen
EVP_PKEY_new
EVP_PKEY_keygen_init
EVP_PKEY_keygen
EVP_PKEY_get1_RSA
EVP_PKEY_get1_EC_KEY
EVP_PKEY_GET1_ECDSA
EVP_PKEY_get1_DSA
EVP_PKEY_get1_DH
EVP_PKEY_encrypt_old
EVP_PKEY_encrypt_init
EVP_PKEY_encrypt
EVP_PKEY_derive_set_peer
EVP_PKEY_derive_init
EVP_PKEY_derive
EVP_PKEY_decrypt_old
EVP_PKEY_decrypt_init
EVP_PKEY_decrypt
EVP_PKEY_CTX_dup
EVP_PKEY_CTX_ctrl_str
EVP_PKEY_CTX_ctrl
EVP_PKEY_copy_parameters
EVP_PKEY2PKCS8_broken
EVP_PKCS82PKEY_BROKEN
EVP_PKCS82PKEY
EVP_CIPHER_CTX_set_key_length
ECKEY_PKEY2PKCS8
ECDSA_PKEY2PKCS8
DSA_PKEY2PKCS8
DSAPKEY2PKCS8
D2I_PKEY
CMLL_T4_INIT_KEY
CAMELLIA_INIT_KEY
AES_T4_INIT_KEY
AES_INIT_KEY
AESNI_INIT_KEY
.\crypto\evp\evp_pkey.c
EVP_CIPHER_key_length(cipher) <= (int)sizeof(md_tmp)
keylen <= sizeof key
ddddddZ
ddddddZ
'() ,-./:=?
\X
X509_PUBKEY
public_key
.\crypto\asn1\x_pubkey.c
pubkey
value.single
value.set
cert_info
X509_CERT_PAIR
X509_CERT_AUX
keyid
NETSCAPE_CERT_SEQUENCE
certs
cert
%8sRequested Extensions:
sa0:00
%8sAttributes:
sUnable to load Public Key
sPublic Key Algorithm:
Subject Public Key Info:
Subject:%c
%8sVersion: %s%lu (%s0x%lx)
Certificate Request:
Public key OCSP hash:
%s - d:d:d%.*s %d%s
%s - d:d:d %d%s
%8sSubject Unique ID:
%8sIssuer Unique ID:
Issuer:%c
s%s
%s%lu (%s0x%lx)
%8sVersion: %lu (0x%lx)
Certificate:
%sX
%*sKey Id:
%*sAlias: %s
No Revoked Certificates.
Revoked Certificates:
%8sNext Update:
%8sLast Update:
%8sIssuer: %s
%8sVersion %lu (0x%lx)
Certificate Revocation List (CRL):
%s %s%lu (%s0x%lx)
Signature Algorithm: %s
Challenge String: %s
Unable to load public key
Public Key Algorithm: %s
%s (%s)
Unprocessed type %d
ERROR: selector [%d] invalid
:EXTERNAL TYPE %s
%*s%s:
%*s%s OF %s {
NETSCAPE_PKEY
private_key
NETSCAPE_ENCRYPTED_PKEY
enckey
SGCKEYSALT
Enter Private Key password:
private-key
.\crypto\asn1\n_pkey.c
.\crypto\asn1\x_pkey.c
-----END %s-----
-----BEGIN %s-----
Content-Transfer-Encoding: base64%s%s
name="%s"%s
smime-type=%s;
Content-Type: %smime;
filename="%s"%s
certs-only
%s------%s--%s%s
filename="smime.p7s"%s%s
Content-Transfer-Encoding: base64%s
name="smime.p7s"%s
Content-Type: %ssignature;
%s------%s%s
------%s%s
This is an S/MIME signed message%s%s
"; boundary="----%s"%s%s
protocol="%ssignature";
MIME-Version: 1.0%s
<ASN1 %d>
appl [ %d ]
cont [ %d ]
priv [ %d ]
ASN.1 part of OpenSSL 1.0.2e 3 Dec 2015
unsupported type
unsupported public key type
unsupported encryption algorithm
unsupported any defined by type
unknown public key type
unable to decode rsa private key
unable to decode rsa key
streaming not supported
private key header missing
digest and key type not supported
bad password read
X509_PKEY_new
i2d_RSA_PUBKEY
i2d_PublicKey
i2d_PrivateKey
i2d_EC_PUBKEY
i2d_DSA_PUBKEY
d2i_X509_PKEY
d2i_PublicKey
d2i_PrivateKey
d2i_AutoPrivateKey
keylength
keyfunc
PKCS8_PRIV_KEY_INFO
pkey
pkeyalg
EC PRIVATE KEY
DSA PRIVATE KEY
RSA PRIVATE KEY
TRUSTED CERTIFICATE
X509 CERTIFICATE
CERTIFICATE
PEM part of OpenSSL 1.0.2e 3 Dec 2015
phrase is too short, needs to be at least %d chars
Enter PEM pass phrase:
CERTIFICATE REQUEST
NEW CERTIFICATE REQUEST
PRIVATE KEY
ENCRYPTED PRIVATE KEY
ANY PRIVATE KEY
RSA PUBLIC KEY
PUBLIC KEY
unsupported key components
unsupported encryption
read key
public key no rsa
problems getting password
keyblob too short
keyblob header parse error
expecting public key blob
expecting private key blob
error converting private key
PEM_WRITE_PRIVATEKEY
PEM_READ_PRIVATEKEY
PEM_READ_BIO_PRIVATEKEY
PEM_PK8PKEY
PEM_F_PEM_WRITE_PKCS8PRIVATEKEY
DO_PK8PKEY_FP
DO_PK8PKEY
d2i_PKCS8PrivateKey_fp
d2i_PKCS8PrivateKey_bio
CERTIFICATE PAIR
.\crypto\pem\pem_pkey.c
%s PRIVATE KEY
%s PARAMETERS
/usr/local/ssl/certs
/usr/local/ssl/cert.pem
SSL_CERT_DIR
SSL_CERT_FILE
X.509 part of OpenSSL 1.0.2e 3 Dec 2015
OPENSSL_ALLOW_PROXY_CERTS
unknown key type
unable to get certs public key
public key encode error
public key decode error
no cert set for us to verify
loading cert dir
key values mismatch
key type mismatch
cert already in hash table
cant check dh key
X509_verify_cert
X509_STORE_add_cert
X509_REQ_check_private_key
X509_PUBKEY_set
X509_PUBKEY_get
X509_load_cert_file
X509_load_cert_crl_file
X509_get_pubkey_parameters
X509_check_private_key
GET_CERT_BY_SUBJECT
ADD_CERT_DIR
Suite B: invalid public key algorithm
Suite B: certificate version invalid
unsupported or invalid name syntax
unsupported or invalid name constraint syntax
unsupported name constraint type
name constraints minimum and maximum not supported
Unsupported extension feature
invalid or inconsistent certificate policy extension
invalid or inconsistent certificate extension
key usage does not include digital signature
key usage does not include CRL signing
unable to get CRL issuer certificate
key usage does not include certificate signing
authority and subject key identifier mismatch
certificate rejected
certificate not trusted
unsupported certificate purpose
proxy certificates not allowed, please set the appropriate flag
invalid non-CA certificate (has CA markings)
invalid CA certificate
certificate revoked
certificate chain too long
unable to verify the first certificate
unable to get local issuer certificate
self signed certificate in certificate chain
self signed certificate
format error in certificate's notAfter field
format error in certificate's notBefore field
certificate has expired
certificate is not yet valid
certificate signature failure
unable to decode issuer public key
unable to decrypt certificate's signature
unable to get certificate CRL
unable to get issuer certificate
Load certs from files in a directory
%s%clx.%s%d
keyCertSign
Certificate Sign
keyAgreement
Key Agreement
keyEncipherment
Key Encipherment
EXTENDED_KEY_USAGE
%*s<Not Supported>
%*s%s
unsupported option
unable to get issuer keyid
policy syntax not currently supported
operation not defined
no public key
no proxy cert policy language defined
no issuer certificate
extension setting not supported
V2I_EXTENDED_KEY_USAGE
V2I_AUTHORITY_KEYID
S2I_SKEY_ID
S2I_ASN1_SKEY_ID
R2I_CERTPOL
d.registeredID
d.iPAddress
d.uniformResourceIdentifier
d.ediPartyName
d.directoryName
d.dNSName
d.rfc822Name
d.otherName
<unsupported>
IP Address:%d.%d.%d.%d
URI:%s
DNS:%s
email:%s
EdiPartyName:<unsupported>
X400Name:<unsupported>
othername:<unsupported>
.\crypto\x509v3\v3_skey.c
.\crypto\x509v3\v3_akey.c
PKEY_USAGE_PERIOD
certificateHold
Certificate Hold
cessationOfOperation
Cessation Of Operation
keyCompromise
Key Compromise
%*sZone: %s, User:
d.usernotice
d.cpsuri
d.other
CERTIFICATEPOLICIES
%*sExplicit Text: %s
%*sNumber%s:
%*sOrganization: %s
%*sCPS: %s
name.relativename
name.fullname
%*sOnly Attribute Certificates
%*sOnly CA Certificates
%*sOnly User Certificates
%*scrlUrl:
AUTHORITY_KEYID
%d.%d.%d.%d/%d.%d.%d.%d
PROXY_CERT_INFO_EXTENSION
%*sPolicy Text: %s
XX
%.14s.dZ
%*sSigned Certificate Timestamp:
keyInfo
d.receiptList
d.allOrFirstTier
d.compressedData
d.authenticatedData
d.encryptedData
d.digestedData
d.envelopedData
d.signedData
d.data
d.ori
d.pwri
d.kekri
d.kari
d.ktri
CMS_PasswordRecipientInfo
keyDerivationAlgorithm
keyIdentifier
CMS_KeyAgreeRecipientInfo
recipientEncryptedKeys
CMS_OriginatorIdentifierOrKey
d.originatorKey
CMS_OriginatorPublicKey
CMS_RecipientEncryptedKey
CMS_KeyAgreeRecipientIdentifier
d.rKeyId
CMS_RecipientKeyIdentifier
CMS_OtherKeyAttribute
keyAttr
keyAttrId
CMS_KeyTransRecipientInfo
encryptedKey
keyEncryptionAlgorithm
certificates
d.crl
d.subjectKeyIdentifier
d.issuerAndSerialNumber
CMS_CertificateChoices
d.v2AttrCert
d.v1AttrCert
d.extendedCertificate
d.certificate
CMS_OtherCertificateFormat
otherCert
otherCertFormat
unsupported recpientinfo type
unsupported recipient type
unsupported key encryption algorithm
unsupported kek algorithm
unsupported content type
unsupported compression algorithm
signer certificate not found
private key does not match certificate
no private key
no password
no msgsigdigest
no key or cert
no key
not supported for this key type
not key transport
not key agreement
msgsigdigest wrong length
msgsigdigest verification failure
msgsigdigest error
invalid key encryption parameter
invalid encrypted key length
error setting key
error getting public key
certificate verify error
certificate has no keyid
certificate already present
CMS_SIGNERINFO_VERIFY_CERT
cms_set1_keyid
CMS_RecipientInfo_set0_pkey
CMS_RecipientInfo_set0_password
CMS_RecipientInfo_set0_key
CMS_RecipientInfo_ktri_cert_cmp
cms_msgSigDigest_add1
CMS_GET0_CERTIFICATE_CHOICES
CMS_EncryptedData_set1_key
CMS_decrypt_set1_pkey
CMS_decrypt_set1_password
CMS_decrypt_set1_key
CMS_add1_recipient_cert
CMS_add0_recipient_password
CMS_add0_recipient_key
CMS_add0_cert
CONF part of OpenSSL 1.0.2e 3 Dec 2015
CONF_def part of OpenSSL 1.0.2e 3 Dec 2015
[[%s]]
[%s] %s=%s
openssl.cnf
TXT_DB part of OpenSSL 1.0.2e 3 Dec 2015
wrong number of fields on line %ld (looking for field %d, got %d, '%s' left)
enc_key
key_enc_algor
d.encrypted
d.digest
d.signed_and_enveloped
d.enveloped
d.sign
unsupported cipher type
unknown operation
unable to find certificate
signing not supported for this key type
operation not supported on this type
no recipient matches key
no recipient matches certificate
encryption not supported for this key type
decrypted key is wrong length
PKCS7_add_certificate
value.bag
value.safes
value.shkeybag
value.keybag
value.sdsicert
value.x509cert
value.other
.\crypto\pkcs12\p12_crt.c
.\crypto\pkcs12\p12_key.c
unsupported pkcs12 mode
key gen error
PKCS8_add_keyusage
PKCS12_PBE_keyivgen
PKCS12_newpass
PKCS12_MAKE_SHKEYBAG
PKCS12_MAKE_KEYBAG
PKCS12_key_gen_uni
PKCS12_key_gen_asc
PKCS12_add_localkeyid
zlib not supported
unimplemented public key method
invalid cmd number
invalid cmd name
failed loading public key
failed loading private key
cmd not executable
ENGINE_UNLOAD_KEY
ENGINE_load_ssl_client_cert
ENGINE_load_public_key
ENGINE_load_private_key
ENGINE_get_pkey_meth
ENGINE_get_pkey_asn1_meth
ENGINE_ctrl_cmd_string
ENGINE_ctrl_cmd
ENGINE_cmd_is_executable
.\crypto\engine\eng_pkey.c
PKEY_ASN1
PKEY_CRYPTO
PKEY
Software engine support
(TEST_ENG_OPENSSL_RC4) test_init_key() called
(TEST_ENG_OPENSSL_PKEY)Loading Private key %s
Dynamic engine loading support
crlUrl
certStatus
certId
OCSP_CERTSTATUS
value.unknown
value.revoked
value.good
value.byKey
value.byName
reqCert
OCSP_CERTID
issuerKeyHash
Content-Length: %d
%s %s HTTP/1.0
%*sIssuer Key Hash:
%*sCertificate ID:
Revocation Reason: %s (0x%lx)
Cert Status: %s
OCSP Response Status: %s (0x%lx)
unsupported requestorname type
no certificates in chain
error parsing url
PARSE_HTTP_LINE1
OCSP_parse_url
OCSP_cert_id_new
Verifying - %s
subkey
KRB5_ENCKEY
keyvalue
msgtype
xxxxxxxx
3unsupported version
unsupported md algorithm
invalid signer certificate purpose
ess signing certificate error
ess add signing cert error
TS_VERIFY_CERT
TS_TST_INFO_set_msg_imprint
TS_RESP_CTX_set_signer_cert
TS_RESP_CTX_set_certs
TS_REQ_set_msg_imprint
TS_MSG_IMPRINT_set_algo
TS_CHECK_SIGNING_CERTS
ESS_SIGNING_CERT_NEW_INIT
ESS_CERT_ID_NEW_INIT
ESS_ADD_SIGNING_CERT
Certificate required: %s
Version: %d
the requested extension is not supported by the TSA
the requested TSA policy is not supported by the TSA
transaction not permitted or supported
unrecognized or unsupported algorithm identifier
Ordering: %s
Message digest algorithm is not supported.
Requested policy is not supported.
dddddd
Unsupported extension.
Hash Algorithm: %s
unable to load certificate: %s
unable to load certificates: %s
unable to load private key: %s
variable lookup failed for %s::%s
invalid variable value for %s::%s
signer_cert
signer_key
ess_cert_id_chain
ESS_SIGNING_CERT
cert_ids
ESS_CERT_ID
cert_req
msg_imprint
TS_MSG_IMPRINT
hashed_msg
Visual C CRT: Not enough memory to complete call to strerror.
Please contact the application's support team for more information.
- Attempt to initialize the CRT more than once.
- CRT not initialized
- floating point support not loaded
Broken pipe
Inappropriate I/O control operation
Operation not permitted
GetProcessWindowStation
C:\OpenSSL\Temp\openssl-1.0.2e-x32\out32dll\libeay32.pdb
l}C.we
zcÁ
Inappropriate I/O control opera
c:\%original file name%.exe
GetProcessHeap
GetConsoleOutputCP
GetCPInfo
ReportEventA
9#_%- #,
484484484445
]<%cQ\
.text
`.rdata
@.data
.rsrc
@.reloc
mscoree.dll
ASCService.exe_3108:
.text
`.itext
`.data
.idata
.edata
@.tls
.rdata
@.reloc
B.rsrc
advapi32.dll
Password
OnExecute
TCPUUsage
;!199{199
;0!8&2{199
Windows 95
Windows 95 OSR-2
Windows 98
Windows 98 SE
Windows ME
Windows 9x New
Windows NT 3
Windows NT 4
Windows 2000
Windows XP
Windows 2003
Windows Vista
Windows 2008
Windows 7
Windows 2008 R2
Windows NT New
user.exe
TMsgHandlers
madToolsMsgHandlerWindow
madToolsMsgHandlerMutex
VVV.madshi.net
.data
.jdbg
madExcept.HandleContactForm
madExcept.HandleScreenshotForm
.madExcept
The import table is invalid.
%exceptMsg%
%bugReport%
Úte%
Útetime%
%userappdata%
%commonappdata%
MailAsSmtpServer
MailAsSmtpClient
UploadViaHttp
SmtpServer
SmtpPort
SmtpAccount
SmtpPassword
HttpServer
HttpPort
HttpAccount
HttpPassword
bugreport.txt
screenshot.png
ExceptMsg
FrozenMsg
BitFaultMsg
send bug report
save bug report
print bug report
show bug report
continue bug report
restart bug report
close bug report
bug report
please find the bug report attached
Sending bug report...
PrepAttMsg
MxLookMsg
ConnMsg
AuthMsg
SendMailMsg
FieldMsg
SendAttMsg
SendFinalMsg
SendFailMsg
Sorry, sending the bug report didn't work.
TDABugReportCallback
TDABugReportCallbackOO
Uhw%D
Uh'%D
screenShot.bmp
Uh%UD
VVV.google.de
SMTP:
Tcpip\Parameters
VxD\MSTCP
A.ROOT-SERVERS.NET
K.ROOT-SERVERS.NET
VVV.madshi.net_multipart_boundary
LOGIN
AUTH LOGIN
http=
HTTP/1.1
*.txt
TSendBugReportExRec
BugReport
screenShot.png
<tr><td><button onClick="history.back();" style="height:19.5pt;">
<button onClick="document.getElementById('bugReport').style.visibility='visible';this.style.visibility='hidden';" style="height:19.5pt;">
<textarea id="bugReport" readonly cols="80" rows="20" style="width:100%;height:100%;
Software\Microsoft\Windows
operating system
GetThreadReport
GetCpuRegisters
kernel32.dll
user32.dll
internal error. please notify bug@madshi.net
Timer_IsLogin
ServiceExecute
Timer_IsLoginTimer
6666666666666666
.AUi|
LRap
!$'*-147
"$') -02469;=?
"$&( -/1468:
!$&(*-/135
!#&(*,.1
!"#%&'(* ,-/01345689:;=>?@
!"#$&'(* ,-.01245678:;<>?
!"#$&'() ,-.012346789;<=
"#$%'()*,-./12345789:<
!#$%&()* -./02345689:
!#$%&')* ,./01245679
!"$%&'(* ,-/0123567
!"#%&'(* ,-.012346
!"#$&'() ,-./1234
!"#$%'()*,-./023
!"#$%'()* ,./01
"#$%&()* ,-/0
!#$%&')* ,-.
!"$%&'(* ,-
!"#%&'()*,
!"#$&'()*
!"#$%'()
rtl120.bpl
@System@@IntfAddRef$qqrx45System@ÞlphiInterface$t17System@IInterface%
@System@@IntfCast$qqrr45System@ÞlphiInterface$t17System@IInterface%x45System@ÞlphiInterface$t17System@IInterface%rx5_GUID
@System@@IntfCopy$qqrr45System@ÞlphiInterface$t17System@IInterface%x45System@ÞlphiInterface$t17System@IInterface%
@System@@IntfClear$qqrr45System@ÞlphiInterface$t17System@IInterface%
@System@@LStrFromUStr$qqrr27System@%AnsiStringT$us$i0$%x20System@UnicodeStringus
@System@@LStrFromString$qqrr27System@%AnsiStringT$us$i0$%rx28System@%SmallString$iuc$255%us
@System@@LStrFromChar$qqrr27System@%AnsiStringT$us$i0$%cus
@System@@EnsureAnsiString$qqrr27System@%AnsiStringT$us$i0$%us
@System@@InternalLStrFromUStr$qqrr27System@%AnsiStringT$us$i0$%x20System@UnicodeStringus
@System@@InitResStringImports$qqrv
@System@@StartExe$qqrp23System@PackageInfoTablep17System@TLibModule
GetKeyState
EnumWindows
msimg32.dll
gdi32.dll
version.dll
GetWindowsDirectoryA
CreatePipe
ReportEventW
RegOpenKeyExA
RegOpenKeyExW
RegCreateKeyExA
RegCloseKey
@Classes@TComponent@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Sysutils@FindCmdLineSwitch$qqrx20System@UnicodeStringrx29System@%Set$tc$iuc$0$iuc$255%o
vcl120.bpl
@Consts@_SShutdown
@Consts@_SExecute
@Dialogs@MessageDlg$qqrx20System@UnicodeString19Dialogs@TMsgDlgType47System@%Set$t18Dialogs@TMsgDlgBtn$iuc$0$iuc$11%i
comctl32.dll
@Registry@TRegistry@DeleteKey$qqrx20System@UnicodeString
@Registry@TRegistry@OpenKeyReadOnly$qqrx20System@UnicodeString
@Registry@TRegistry@OpenKey$qqrx20System@UnicodeStringo
@Registry@TRegistry@CreateKey$qqrx20System@UnicodeString
@Registry@TRegistry@SetRootKey$qqrp6HKEY__
@Registry@TRegistry@CloseKey$qqrv
@Inifiles@TIniFile@DeleteKey$qqrx20System@UnicodeStringt1
@Inifiles@TMemIniFile@DeleteKey$qqrx20System@UnicodeStringt1
@Forms@TApplication@GetExeName$qqrv
shell32.dll
ShellExecuteExA
ShellExecuteA
comdlg32.dll
NTdll.dll
userenv.dll
datastate.dll
Kernel32.dll
wtsapi32.dll
wsock32.dll
winmm.dll
ASCService.exe
> >$>(>,>:>}>
< <$<(<,<0<4<8<<<
2#2'2 2/23272;2
1&141@1`1
3?3W3
1!13383`3
9-9Q9}9
3-3U3}3
> ?.?6?>?
6`6D6I6
;'<6<;<`<
LuWindowsSysVersion
7RegistryOperation
%systemroot%
Windows NT
Windows 2003 Server
Windows 8
Windows Me
Windows 2000 Server
Windows xp 64
Windows HomeServer
Windows 2003 Server R2
Windows 2008 Server
Windows 2008 Server R2
smss.exe
csrss.exe
wininit.exe
lsass.exe
lsm.exe
winlogon.exe
explorer.exe
svchost.exe
userinit.exe
audiodg.exe
dwm.exe
taskeng.exe
wmiprvse.exe
wuauclt.exe
taskmgr.exe
logonui.exe
dllhost.exe
taskhost.exe
services.exe
spoolsv.exe
runonce.exe
searchindexer.exe
wmpnscfg.exe
wmpnetwk.exe
searchprotocolhost.exe
searchfilterhost.exe
conhost.exe
mdm.exe
wlidsvc.exe
wlidsvcm.exe
sqlservr.exe
sqlwriter.exe
efsui.exe
rundll32.exe
wlanext.exe
wmiapsrv.exe
moe.exe
inetinfo.exe
locator.exe
ipconfig.exe
imedictupdate.exe
cmd.exe
mpnotify.exe
consent.exe
regsvr32.exe
mscorsvw.exe
sppsvc.exe
net.exe
net1.exe
msmpeng.exe
trustedinstaller.exe
mpcmdrun.exe
unsecapp.exe
msdtc.exe
tzupd.exe
netcfg.exe
vssvc.exe
slui.exe
wmiadap.exe
makecab.exe
unregmp2.exe
slsvc.exe
sllua.exe
verclsid.exe
alg.exe
wscntfy.exe
dumprep.exe
startupdelay.exe
avgnt.exe
avguard.exe
avshadow.exe
sched.exe
AvastUI.exe
AvastSvc.exe
avgchsvx.exe
avgcsrvx.exe
avgemc.exe
avgnsx.exe
avgrsx.exe
avgtray.exe
avgwdsvc.exe
mcagent.exe
mcshield.exe
dwengine.exe
frwl_notify.exe
frwl_svc.exe
McSvHost.exe
mfefire.exe
mfevtps.exe
bdagent.exe
odscanui.exe
updatesrv.exe
vsserv.exe
cfp.exe
CLPSLS.exe
cmdagent.exe
avp.exe
msseces.exe
MsMpEng.exe
egui.exe
ekrn.exe
pctsAuxs.exe
pctsSvc.exe
pctsTray.exe
ccSvcHst.exe
TMBMSRV.exe
TmPfw.exe
TmProxy.exe
PavFnSvr.exe
PsImSvc.exe
ApVxdWin.exe
PavPrSrv.exe
PsCtrlS.exe
FirewallGUI.exe
oacat.exe
OAReg.exe
ForceField.exe
ISWSVC.exe
zlclient.exe
FireWall.exe
PnkBstrA.exe
IMF.exe
IMFsrv.exe
V3Main.exe
V3Svc.exe
V3PScan.exe
V3SP.exe
a2start.exe
a2wizard.exe
a2service.exe
iptray.exe
agent.exe
fcappdb.exe
FortiClient.exe
FCDBLog.exe
fortifw.exe
FortiProxy.exe
fmon.exe
FortiScand.exe
FortiTray.exe
FortiWF.exe
fsav32.exe
fsdfwd.exe
fsgk32.exe
fsgk32st.exe
FSHDLL32.exe
FSM32.exe
FSMA32.exe
fsorsp.exe
fssm32.exe
guardxkickoff.exe
guardxservice.exe
guardxup.exe
AVKProxy.exe
GDScan.exe
AVKWCtl.exe
AVKService.exe
AVKTray.exe
nspmain.exe
nspsvc.exe
nspupsvc.exe
acs.exe
op_mon.exe
SAVAdminService.exe
ALsvc.exe
SavMain.exe
SUPERAntiSpyware.exe
Zlh.exe
Zanda.exe
AVGIDSMonitor.exe
ASC.exe
ASCtray.exe
avgui.exe
avgscanx.exe
googleupdate.exe
QQPCTray.exe
SIDEBAR.EXE
ctfmon.exe
MSASCui.exe
Suo12_StartupManager.exe
\SOFTWARE\Microsoft\Windows\CurrentVersion\Ru
\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\
PSAPI.dll
1.2.3
PNG, ShareImageData.RefCount <= 0
Winlogon.EXE
Explorer.EXE
ProgramDeactivator_PIPE_NAME_V8
MyTimer.ini
Test.log
TProcessMonitor.Execute faild
\IObit\Advanced SystemCare V8\ProgramDeactivator\myAutoDisable.ini
AutoReactivator.exe
TProcessMonitor.MyTimer faild
\IObit\Advanced SystemCare V8\ProgramDeactivator\myinifile.ini
TProcessMonitor.DisProgram faild
Windows 7,Windows 8,Windows Vista
%WinDir%\Tasks\
TProcessMonitor.DisableTaskSchd faild
TProcessMonitor.EnableTaskSchd failed
\IObit\Advanced SystemCare V8\ProgramDeactivator\myIFEO.ini
*.exe
ProgramDeactivator.exe
\IObit\Advanced SystemCare V8\ProgramDeactivator\myIdleDisable.ini
\IObit\Advanced SystemCare V8\ProgramDeactivator\myThreadControl.ini
[0x%X]%s
nuser32.dll
ntdll.dll
cc3260mt.dll
cc3260.dll
madExceptIde_.bpl
wininet.dll
mapi32.dll
IpHlpApi.dll
nidapi32.dll
HomepageSvc.dll
\ASCService.Log
\ASCService.log
Explorer.exe
pctsGui.exe
Update\Update.ini
TProcessMemoryOptimize.ScanProcess1:
TProcessMemoryOptimize.ScanProcess2:
--------BList.Count:
Database\ActiveBoost.db
LoginUser:
OFCommon.dll
TAdvancedSystemCareService8.GetSHEnable :
TAdvancedSystemCareService8.GetSHEnable 1
TAdvancedSystemCareService8.GetSHEnable = 0
TAdvancedSystemCareService8.GetSHEnable ASHSTime:
TAdvancedSystemCareService8.GetSHEnable ALastScan:
TAdvancedSystemCareService8.GetSHEnable IsDeepDateOn: False
TAdvancedSystemCareService8.GetSHEnable IsDeepDateOn: file not Exists!
ASCService.Log
TAdvancedSystemCareService8.ServiceCreate
TAdvancedSystemCareService8.ServiceCreate 1
ActiveBoost.db
TAdvancedSystemCareService8.ServiceCreate 2
TAdvancedSystemCareService8.ServiceCreate 3
TAdvancedSystemCareService8.ServiceCreate 4
not do ProcessList.Resume
TAdvancedSystemCareService8.Timer_AdvanceScanTimer 1
AutoCare.exe
TAdvancedSystemCareService8.StartProcessCurrUserForUAC 1
TAdvancedSystemCareService8.StartProcessCurrUserForUAC 2
TAdvancedSystemCareService8.StartProcessSystemForUACWinLogon
TAdvancedSystemCareService8.Timer_AutoSweepTimer 1
AutoSweep.exe
TAdvancedSystemCareService8.StartProcessCurrUserForUAC 2 Failed nRet:
TAdvancedSystemCareService8.Timer_CheckUpdateTimer
AutoUpdate.exe
Reminder.exe
TAdvancedSystemCareService8.Timer_CheckUpdateTimer WaitForSingleObject
TAdvancedSystemCareService8.Timer_CheckUseASCTimer
register.exe
TAdvancedSystemCareService8.Timer_DisplayTimer 1
Display.exe
TAdvancedSystemCareService8.Timer_DisplayTimer DisplayCheckTime:
AscService.ini
AutoCare.exe /autoidle
****************** TAdvancedSystemCareService8.RunPPUninstaller
****************** TAdvancedSystemCareService8.RunPPUninstaller Protect not Exists!
****************** TAdvancedSystemCareService8.RunPPUninstaller:
PPUninstaller.exe
Timer_IsLogin.Enabled
Timer_CheckUpdate.Interval=
Timer_CheckUseASC.Interval=
TAdvancedSystemCareService8.Timer_MonitorDiskTimer 1
MonitorDisk.exe
TAdvancedSystemCareService8.StartProcessSystemForUACEx 1
TAdvancedSystemCareService8.StartProcessSystemForUACEx 2
TAdvancedSystemCareService8.Timer_SecurityHoleScanTimer 1
TAdvancedSystemCareService8.GetSpecialFolder_ForService:
Portable Network Graphics
66006666
jThis "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)yThe "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corruptedUThis "Portable Network Graphics" image is invalid because it has missing image parts.[Could not decompress the image because it contains invalid compressed data.
The file being readed is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corruped, try obtaining it again.nThis "Portable Network Graphics" image is not supported or it might be invalid.
This "Portable Network Graphics" image is not supported because either it's width or height exceeds the maximum size, which is 65535 pixels length.
There is no such palette entry.dThis "Portable Network Graphics" image contains an unknown critical part which could not be decoded.pThis "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.cThis "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.-The chunks must be compatible to be assigned.OThis operation is not valid because the current image contains no valid header.4The new size provided for image resizing is invalid.
8.0.0.22
8.0.0.0
%original file name%.exe_1108_rwx_12001000_0005F000:
//!"#$%&'()/*/// ,-/.
RWj%Sj
|Bj%Sj
SSLv2 part of OpenSSL 1.0.2e 3 Dec 2015
s->session->master_key_length >= 0 && s->session->master_key_length <= (int)sizeof(s->session->master_key)
c->iv_len <= (int)sizeof(s->session->key_arg)
s->s2->key_material_length <= sizeof s->s2->key_material
GOST signature length is %d
SSLv3 part of OpenSSL 1.0.2e 3 Dec 2015
TLSv1 part of OpenSSL 1.0.2e 3 Dec 2015
key expansion
client write key
server write key
%s:%d: rec->data != rec->input
DTLSv1 part of OpenSSL 1.0.2e 3 Dec 2015
((long)msg_hdr->msg_len) > 0
invalid state reached %s:%d
s->d1->w_msg_hdr.msg_len DTLS1_HM_HEADER_LENGTH == (unsigned int)s->init_num
s->d1->w_msg_hdr.msg_len ((s->version==DTLS1_BAD_VER)?3:DTLS1_CCS_HEADER_LENGTH) == (unsigned int)s->init_num
s->init_num == (int)s->d1->w_msg_hdr.msg_len DTLS1_HM_HEADER_LENGTH
retransmit: message %d non-existant
OpenSSL 1.0.2e 3 Dec 2015
ALL:!EXPORT:!aNULL:!eNULL:!SSLv2
.\ssl\ssl_cert.c
%s/%s
%-23s %s Kx=%-8s Au=%-4s Enc=%-9s Mac=%-4s%s
EXPORT56
EXPORT40
EXPORT
export
SSLv3 read certificate verify B
SSLv3 read certificate verify A
SSLv3 read client key exchange B
SSLv3 read client key exchange A
SSLv3 read client certificate B
SSLv3 read client certificate A
SSLv3 write certificate request B
SSLv3 write certificate request A
SSLv3 write key exchange B
SSLv3 write key exchange A
SSLv3 write certificate B
SSLv3 write certificate A
SSLv2 X509 read server certificate
SSLv2 write request certificate D
SSLv2 write request certificate C
SSLv2 write request certificate B
SSLv2 write request certificate A
SSLv2 read client master key B
SSLv2 read client master key A
SSLv3 write certificate verify B
SSLv3 write certificate verify A
SSLv3 write client key exchange B
SSLv3 write client key exchange A
SSLv3 write client certificate D
SSLv3 write client certificate C
SSLv3 write client certificate B
SSLv3 write client certificate A
SSLv3 read server certificate request B
SSLv3 read server certificate request A
SSLv3 read server key exchange B
SSLv3 read server key exchange A
SSLv3 read server certificate B
SSLv3 read server certificate A
SSLv2 X509 read client certificate
SSLv2 write client certificate D
SSLv2 write client certificate C
SSLv2 write client certificate B
SSLv2 write client certificate A
SSLv2 write client master key B
SSLv2 write client master key A
2SSH_B
2SSH_A
bad certificate hash value
bad certificate status response
certificate unobtainable
unsupported extension
export restriction
certificate unknown
certificate expired
certificate revoked
unsupported certificate
bad certificate
no certificate
os.length <= (int)sizeof(ret->session_id)
%ld (%s)
Compression: %d (%s)
Compression: %d
Key-Arg :
Master-Key:
Cipher : %s
Protocol : %s
PrivateKey
cert
Certificate
wrong number of key bits
wrong certificate type
unsupported status type
unsupported ssl version
unsupported protocol
unsupported elliptic curve
unsupported digest type
unsupported compression algorithm
unsupported cipher
unknown pkey type
unknown key exchange type
unknown cmd name
unknown certificate type
unable to find public key parameters
unable to extract public key
unable to decode ecdh certs
unable to decode dh certs
tried to use unsupported cipher
tls peer did not respond with certificate list
tls illegal exporter label
tls client cert req with anon cipher
tlsv1 unsupported extension
tlsv1 certificate unobtainable
tlsv1 bad certificate status response
tlsv1 bad certificate hash value
tlsv1 alert export restriction
sslv3 alert unsupported certificate
sslv3 alert no certificate
sslv3 alert certificate unknown
sslv3 alert certificate revoked
sslv3 alert certificate expired
sslv3 alert bad certificate
signature for non signing certificate
reuse cert type not zero
reuse cert length not zero
public key not rsa
public key is not rsa
public key encrypt error
peer error unsupported certificate type
peer error no certificate
peer error certificate
peer did not return a certificate
null ssl method passed
no publickey
no private key assigned
no privatekey
Peer haven't sent GOST certificate, required for selected ciphersuite
no client cert received
no client cert method
no ciphers passed
no certificate specified
no certificate set
no certificate returned
no certificate assigned
no certificates returned
missing tmp rsa pkey
missing tmp rsa key
missing tmp ecdh key
missing tmp dh key
missing rsa signing cert
missing rsa encrypting cert
missing rsa certificate
missing export tmp rsa key
missing export tmp dh key
missing ecdsa signing cert
missing ecdh cert
missing dsa signing cert
missing dh rsa cert
missing dh key
missing dh dsa cert
krb5 server rd_req (keytab perms?)
key arg too long
invalid ticket keys length
invalid null cmd name
http request
https proxy request
error generating tmp rsa key
ecc cert should have sha1 signature
ecc cert should have rsa signature
ecc cert not for signing
ecc cert not for key agreement
dh key too small
cert length mismatch
cert cb error
certificate verify failed
bad ecc cert
bad dh pub key value
bad dh pub key length
tls1_setup_key_block
tls1_export_keying_material
tls1_cert_verify_mac
ssl_verify_cert_chain
SSL_use_RSAPrivateKey_file
SSL_use_RSAPrivateKey_ASN1
SSL_use_RSAPrivateKey
SSL_use_PrivateKey_file
SSL_use_PrivateKey_ASN1
SSL_use_PrivateKey
SSL_use_certificate_file
SSL_use_certificate_ASN1
SSL_use_certificate
SSL_SET_PKEY
SSL_SET_CERT
ssl_sess_cert_new
ssl_get_sign_pkey
ssl_get_server_send_pkey
SSL_GET_SERVER_SEND_CERT
SSL_GET_SERVER_CERT_INDEX
SSL_CTX_use_RSAPrivateKey_file
SSL_CTX_use_RSAPrivateKey_ASN1
SSL_CTX_use_RSAPrivateKey
SSL_CTX_use_PrivateKey_file
SSL_CTX_use_PrivateKey_ASN1
SSL_CTX_use_PrivateKey
SSL_CTX_use_certificate_file
SSL_CTX_use_certificate_chain_file
SSL_CTX_use_certificate_ASN1
SSL_CTX_use_certificate
SSL_CTX_set_client_cert_engine
SSL_CTX_check_private_key
SSL_CONF_cmd
ssl_check_srvr_ecc_cert_and_alg
SSL_check_private_key
ssl_cert_new
SSL_CERT_INSTANTIATE
ssl_cert_inst
ssl_cert_dup
ssl_build_cert_chain
SSL_add_file_cert_subjects_to_stack
SSL_add_dir_cert_subjects_to_stack
SSL_ADD_CERT_TO_BUF
ssl_add_cert_chain
ssl3_setup_key_block
ssl3_send_server_key_exchange
ssl3_send_server_certificate
ssl3_send_client_key_exchange
ssl3_send_client_certificate
ssl3_send_certificate_request
ssl3_output_cert_chain
ssl3_get_server_certificate
ssl3_get_key_exchange
ssl3_get_client_key_exchange
ssl3_get_client_certificate
ssl3_get_cert_verify
ssl3_get_cert_status
ssl3_get_certificate_request
SSL3_GENERATE_KEY_BLOCK
ssl3_check_cert_and_algorithm
SSL3_ADD_CERT_TO_BUF
ssl2_set_certificate
ssl2_generate_key_material
REQUEST_CERTIFICATE
GET_SERVER_STATIC_DH_KEY
GET_CLIENT_MASTER_KEY
dtls1_send_server_key_exchange
dtls1_send_server_certificate
dtls1_send_client_key_exchange
dtls1_send_client_certificate
dtls1_send_certificate_request
dtls1_output_cert_chain
DTLS1_ADD_CERT_TO_BUF
CLIENT_MASTER_KEY
CLIENT_CERTIFICATE
Please contact the application's support team for more information.
- Attempt to initialize the CRT more than once.
- CRT not initialized
- floating point support not loaded
GetProcessWindowStation
USER32.DLL
C:\OpenSSL\Temp\openssl-1.0.2e-x32\out32dll\ssleay32.pdb
zcÁ
c:\%original file name%.exe
GetConsoleOutputCP
GetCPInfo
?6%*=!,<!,@
.text
`.rdata
@.data
.rsrc
@.reloc
mscoree.dll
KERNEL32.DLL
Wizard.exe_2240:
.text
`.itext
`.data
.idata
.reloc
B.rsrc
comctl32.dll
Uh.XB
Password
MaxKeySize
FormKeyDown
Uh.jC
1.2.1
inflate 1.2.1 Copyright 1995-2003 Mark Adler
.AUi|
LRap
!$'*-147
"$') -02469;=?
"$&( -/1468:
!$&(*-/135
!#&(*,.1
!"#%&'(* ,-/01345689:;=>?@
!"#$&'(* ,-.01245678:;<>?
!"#$&'() ,-.012346789;<=
"#$%'()*,-./12345789:<
!#$%&()* -./02345689:
!#$%&')* ,./01245679
!"$%&'(* ,-/0123567
!"#%&'(* ,-.012346
!"#$&'() ,-./1234
!"#$%'()*,-./023
!"#$%'()* ,./01
"#$%&()* ,-/0
!#$%&')* ,-.
!"$%&'(* ,-
!"#%&'()*,
!"#$&'()*
!"#$%'()
rtl120.bpl
@System@@IntfAddRef$qqrx45System@ÞlphiInterface$t17System@IInterface%
@System@@IntfCast$qqrr45System@ÞlphiInterface$t17System@IInterface%x45System@ÞlphiInterface$t17System@IInterface%rx5_GUID
@System@@IntfCopy$qqrr45System@ÞlphiInterface$t17System@IInterface%x45System@ÞlphiInterface$t17System@IInterface%
@System@@IntfClear$qqrr45System@ÞlphiInterface$t17System@IInterface%
@System@@LStrFromUStr$qqrr27System@%AnsiStringT$us$i0$%x20System@UnicodeStringus
@System@@LStrFromString$qqrr27System@%AnsiStringT$us$i0$%rx28System@%SmallString$iuc$255%us
@System@@EnsureAnsiString$qqrr27System@%AnsiStringT$us$i0$%us
@System@@StartExe$qqrp23System@PackageInfoTablep17System@TLibModule
@System@@PStrCpy$qqrp28System@%SmallString$iuc$255%t1
kernel32.dll
madExcept_.bpl
@Madexcept@RegisterExceptionHandler$qqrpqqrx50System@ÞlphiInterface$t22Madexcept@IMEException%ro$v19Madexcept@TSyncType22Madexcept@TExceptPhase
user32.dll
msimg32.dll
gdi32.dll
version.dll
WinExec
GetWindowsDirectoryW
advapi32.dll
madBasic_.bpl
madDisAsm_.bpl
shell32.dll
ShellExecuteW
ole32.dll
@Sysutils@StringReplace$qqrx20System@UnicodeStringt1t149System@%Set$t21Sysutils@Sysutils__15$iuc$0$iuc$1%
@Math@SetExceptionMask$qqrx46System@%Set$t18Math@TFPUException$iuc$0$iuc$5%
vcl120.bpl
@Forms@TApplication@GetExeName$qqrv
@Forms@TCustomForm@Resizing$qqr18Forms@TWindowState
@Forms@TCustomForm@WantChildKey$qqrp17Controls@TControlr17Messages@TMessage
@Forms@TCustomForm@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Classes@TComponent@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Variants@@VarFromDisp$qqrr8TVarDatax36System@ÞlphiInterface$t9IDispatch%
@Variants@@VarFromIntf$qqrr8TVarDatax45System@ÞlphiInterface$t17System@IInterface%
@Registry@TRegistry@KeyExists$qqrx20System@UnicodeString
@Registry@TRegistry@OpenKey$qqrx20System@UnicodeStringo
@Registry@TRegistry@SetRootKey$qqrp6HKEY__
@Registry@TRegistry@CloseKey$qqrv
@Inifiles@TIniFile@DeleteKey$qqrx20System@UnicodeStringt1
@Inifiles@TMemIniFile@DeleteKey$qqrx20System@UnicodeStringt1
@Controls@TWinControl@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Controls@TControl@MouseUp$qqr21Controls@TMouseButton46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%ii
@Controls@TControl@MouseMove$qqr46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%ii
@Controls@TControl@MouseDown$qqr21Controls@TMouseButton46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%ii
@Controls@TControl@IsShowHintStored$qqrv
@Controls@TControl@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Controls@TControl@SetAnchors$qqr48System@%Set$t20Controls@TAnchorKind$iuc$0$iuc$3%
@Stdctrls@TCustomLabel@Notification$qqrp18Classes@TComponent18Classes@TOperation
webres.dll
WebUIResourceEnum
WebUIResourceData
WebUIResourceRegister
? ?$?(?,?0?4?8?~?
9(9,90949
6 6$6(6,6064686<6@6}7
7!8%8)8-848
1 1$1(1,1014181<1@1
VVV.madshi.net
n.NbE
o_D%s
H%%xa11
PWebRes
uSendBugReport
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
ImageNormal.Data
diTXtXML:com.adobe.xmp
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:590E9EA43AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:590E9EA33AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>v
ImageDown.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:596CECA83AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:596CECA73AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
ImageOver.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:596CECA03AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:596CEC9F3AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
ImageDisabled.Data
ImageOption.Left
ImageOption.Top
ImageOption.Right
ImageOption.Bottom
SubCaptionFont.Charset
SubCaptionFont.Color
SubCaptionFont.Height
SubCaptionFont.Name
SubCaptionFont.Style
SubCaptionDataFont.Charset
SubCaptionDataFont.Color
SubCaptionDataFont.Height
SubCaptionDataFont.Name
SubCaptionDataFont.Style
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:593624613AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:590E9EA73AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>RCB
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:599D73373AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:599D73363AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>HC
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:596CECA43AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:596CECA33AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6" xmpMM:DocumentID="xmp.did:D66DF6153AD211E391A6C06DA1384528" xmpMM:InstanceID="xmp.iid:D66DF6143AD211E391A6C06DA1384528" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:4082617FC63AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6" xmpMM:DocumentID="xmp.did:533B70B13AC611E3A5B8FC7C03384BBE" xmpMM:InstanceID="xmp.iid:533B70B03AC611E3A5B8FC7C03384BBE" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:82E52CEAC53AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6" xmpMM:DocumentID="xmp.did:52F602403AC611E3A5B8FC7C03384BBE" xmpMM:InstanceID="xmp.iid:52F6023F3AC611E3A5B8FC7C03384BBE" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:82E52CEAC53AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6" xmpMM:DocumentID="xmp.did:533B70B93AC611E3A5B8FC7C03384BBE" xmpMM:InstanceID="xmp.iid:533B70B83AC611E3A5B8FC7C03384BBE" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:82E52CEAC53AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
Picture.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:D0DE3D753ADE11E3BA7BD6B86A1CDF5F" xmpMM:InstanceID="xmp.iid:D0DE3D743ADE11E3BA7BD6B86A1CDF5F" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:943BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:D0DE3D793ADE11E3BA7BD6B86A1CDF5F" xmpMM:InstanceID="xmp.iid:D0DE3D783ADE11E3BA7BD6B86A1CDF5F" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:943BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:AC24750B3ADE11E39B08C6FFCE95506A" xmpMM:InstanceID="xmp.iid:AC24750A3ADE11E39B08C6FFCE95506A" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:943BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:AC4A26053ADE11E39B08C6FFCE95506A" xmpMM:InstanceID="xmp.iid:AC4A26043ADE11E39B08C6FFCE95506A" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:943BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:09A1469A381911E48033A026F8F7E2BA" xmpMM:InstanceID="xmp.iid:09A14699381911E48033A026F8F7E2BA" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6CAA8FC30D38E411A7EFEBE323871E64" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
"3%xe
w)URlG
|.esF=R
#\ -z}
%s~N_
n.Lt(
.BJ[3Cm%
.AXOh
.BN6J@
3.Wb~
.zr8Z
^.Xpen
.DL_6
X.Rz#YP
.RS6&
%q.LpeQ
^%X\j[
%SRzj
8M.BQ
(N1.rEV30
X^%C.Y
H2jD.RjU
.bFiHz
M.bqT
.rfRj;2
.gH'0
-oHG}
N\weB
hf4%c@
g.xhTS
Constraints.MaxWidth
Constraints.MinWidth
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:BA4CF9AD080011E4A07681763BCF607E" xmpMM:InstanceID="xmp.iid:BA4CF9AC080011E4A07681763BCF607E" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9C64C924FD07E411B0FAA0A29C76F148" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:CEE053A60B0311E4A3528CE0280C2F53" xmpMM:InstanceID="xmp.iid:CEE053A50B0311E4A3528CE0280C2F53" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:87DAB908030BE411BF58B395A2839BCB" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:CEE053AA0B0311E4A3528CE0280C2F53" xmpMM:InstanceID="xmp.iid:CEE053A90B0311E4A3528CE0280C2F53" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:87DAB908030BE411BF58B395A2839BCB" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>D
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:D98A22CD071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:D98A22CC071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>n
r-.Ap
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:DA821AFF071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:DA821AFE071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:D9ECB69C071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:D9ECB69B071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:DB29A812071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:DB29A811071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>1
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:D9AFFAD3071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:D98A22D0071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:DAB64B1C071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:DAB64B1B071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:D9ECB6A0071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:D9ECB69F071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>'q`9
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779" xmpMM:DocumentID="xmp.did:DB4E2084071811E489A8E09B328D8494" xmpMM:InstanceID="xmp.iid:DB29A815071811E489A8E09B328D8494" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:0FC569B61807E411A679E9E5FD36C4D9" stRef:documentID="xmp.did:6563E6F58BEBE311A863DBE479DF4779"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498" xmpMM:DocumentID="xmp.did:957062161DF711E4B421CA7E81C29F2C" xmpMM:InstanceID="xmp.iid:957062151DF711E4B421CA7E81C29F2C" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:64C3207BEB1DE411BB1E800E14E0AD8F" stRef:documentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>x
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498" xmpMM:DocumentID="xmp.did:974EC6041DF711E4B421CA7E81C29F2C" xmpMM:InstanceID="xmp.iid:9727404A1DF711E4B421CA7E81C29F2C" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:64C3207BEB1DE411BB1E800E14E0AD8F" stRef:documentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498" xmpMM:DocumentID="xmp.did:967AF8321DF711E4B421CA7E81C29F2C" xmpMM:InstanceID="xmp.iid:967AF8311DF711E4B421CA7E81C29F2C" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:64C3207BEB1DE411BB1E800E14E0AD8F" stRef:documentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498" xmpMM:DocumentID="xmp.did:97C09C541DF711E4B421CA7E81C29F2C" xmpMM:InstanceID="xmp.iid:97C09C531DF711E4B421CA7E81C29F2C" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:64C3207BEB1DE411BB1E800E14E0AD8F" stRef:documentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
3222888
ImageSelected.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6" xmpMM:DocumentID="xmp.did:8924AAECD01B11E288808AE976E0FC62" xmpMM:InstanceID="xmp.iid:8924AAEBD01B11E288808AE976E0FC62" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:1B7536ABE1CFE2119D0D8CACF2C584B6" stRef:documentID="xmp.did:DAD17D0237B6E2119DFAE87BB17705D6"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:3A2A6ED631CC11E4BAA3C88F201303DA" xmpMM:InstanceID="xmp.iid:3A2A6ED531CC11E4BAA3C88F201303DA" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:662BC89BCB31E41190BFC207298B8423" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
.nQ:a
%U7yM
Sqt.ubs
%XC(u
:.usC
l4/`.hu8
&JZ.je/
L.NKD
HtR.Ki(
O3<%3X
.Xz6z
{.qZz
6`P70.LC
.pjz5
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:821B5B91395A11E4B900DB2A1B10C30F" xmpMM:InstanceID="xmp.iid:821B5B90395A11E4B900DB2A1B10C30F" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:755449685A39E411AA00865D3B27FBA4" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>{
.Welcome to the Advanced SystemCare 8 tutorial!
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498" xmpMM:DocumentID="xmp.did:35E9B19A067F11E4899CE408FFD0AB2E" xmpMM:InstanceID="xmp.iid:35E9B199067F11E4899CE408FFD0AB2E" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:458D53AD7E06E41181EEC44D6A1F2F36" stRef:documentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>2M
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498" xmpMM:DocumentID="xmp.did:36B67A71067F11E4899CE408FFD0AB2E" xmpMM:InstanceID="xmp.iid:36B67A70067F11E4899CE408FFD0AB2E" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:458D53AD7E06E41181EEC44D6A1F2F36" stRef:documentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>[
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498" xmpMM:DocumentID="xmp.did:37A4394D067F11E4899CE408FFD0AB2E" xmpMM:InstanceID="xmp.iid:37A4394C067F11E4899CE408FFD0AB2E" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:458D53AD7E06E41181EEC44D6A1F2F36" stRef:documentID="xmp.did:D8480CDF77E4E311BE4182F2E4A52498"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:BA4CF9B1080011E4A07681763BCF607E" xmpMM:InstanceID="xmp.iid:BA4CF9B0080011E4A07681763BCF607E" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:9C64C924FD07E411B0FAA0A29C76F148" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>z
Constraints.MaxHeight
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:584531323AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:584531313AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>\
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:E955187AFDFFE211A550B4C51326025A" xmpMM:DocumentID="xmp.did:5845312E3AD211E3972DA48969B4DBFB" xmpMM:InstanceID="xmp.iid:5845312D3AD211E3972DA48969B4DBFB" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:903BC3E2CA3AE311B0C5BE0AE214DE3F" stRef:documentID="xmp.did:E955187AFDFFE211A550B4C51326025A"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
Items.Strings
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:06FB9825381911E48033A026F8F7E2BA" xmpMM:InstanceID="xmp.iid:06FB9824381911E48033A026F8F7E2BA" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6CAA8FC30D38E411A7EFEBE323871E64" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>iN
sj.jB
%F/':
?%Fo_
.Ju*e
%sQC3
~w.zO
X{.Jc
@97.NA
9.jBV
CUb.%fS1
hUn
C'%d,
^%d[k
Øe_
Fn.RO
.HQ;!
FY.ld
K%FWG
.aC%z:
e_fY%x4
%s9j`
CRtK
L.aB3
*;u%X
%Ub0J
.a.zW
ra.iV
3j0%xD
ßg3Mn
,%s/8
M]W4%f
*.Bg,
s>Q<\l#%C
U.BWS
%c'.2
.IZGN
;8D.ETl
M(%u>
-Y}<i
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:09A146A2381911E48033A026F8F7E2BA" xmpMM:InstanceID="xmp.iid:09A146A1381911E48033A026F8F7E2BA" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6CAA8FC30D38E411A7EFEBE323871E64" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
LW.ýb
].Vnq%W9
C}'s.Cq$
?{\%U
%Fo(qq
.zA(=
3.MLAI
90%dss
5.Bj('J6
.qL%D
3>%uthh
O:\jv
!.mcYp
5%u4;)
$cmD[8
%uZR[g
lò8s
)~.AF
.cs=Dvww{
M-6.Bw
k%cR*
..LIz
m.qZf,
%uU.,,\
5%uTr
rs%CoL
Xu0%u
v0F.voT^
IR.SC
m{.FT'
(w.aY
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148" xmpMM:DocumentID="xmp.did:06FB9821381911E48033A026F8F7E2BA" xmpMM:InstanceID="xmp.iid:06FB9820381911E48033A026F8F7E2BA" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:6CAA8FC30D38E411A7EFEBE323871E64" stRef:documentID="xmp.did:803906B4DC07E411B0FAA0A29C76F148"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
%u#H0N
%5u=
O%F;Z=x)>!
%fT];
Q?%u/j0
TF.cr5
9.VFN
.IBR;
|.Fuw
j:.OP#
L=Z
F]{.kx
E-Yn}Y{Y
.a$.aw
#.PO1
L`F%x
s.wB\
[\W.eM
cZ6`.WA
U-9}$%
%dXQ|8(
<C
zYH.ynA.kZ
L.HR@e
OnKeyDown
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:47B909DF2CD7E2119AA5854AA1806F9C" xmpMM:DocumentID="xmp.did:E83692BC1E1511E48DE9AF21E2E12CEF" xmpMM:InstanceID="xmp.iid:E83692BB1E1511E48DE9AF21E2E12CEF" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:550540AD151EE411BB1E800E14E0AD8F" stRef:documentID="xmp.did:47B909DF2CD7E2119AA5854AA1806F9C"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>T
.jwGc#
rT%F;I
P[.sf
.zd(tf
.SR/2uY
.Kyt1
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:47B909DF2CD7E2119AA5854AA1806F9C" xmpMM:DocumentID="xmp.did:E7C7548A1E1511E48DE9AF21E2E12CEF" xmpMM:InstanceID="xmp.iid:E7C754891E1511E48DE9AF21E2E12CEF" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:550540AD151EE411BB1E800E14E0AD8F" stRef:documentID="xmp.did:47B909DF2CD7E2119AA5854AA1806F9C"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>q
8.nA$%Sw
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.0-c060 61.134777, 2010/02/12-17:32:00 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:47B909DF2CD7E2119AA5854AA1806F9C" xmpMM:DocumentID="xmp.did:E83692B81E1511E48DE9AF21E2E12CEF" xmpMM:InstanceID="xmp.iid:E83692B71E1511E48DE9AF21E2E12CEF" xmp:CreatorTool="Adobe Photoshop CS5 Windows"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:550540AD151EE411BB1E800E14E0AD8F" stRef:documentID="xmp.did:47B909DF2CD7E2119AA5854AA1806F9C"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
.lQ7T:
iobitfeedback@gmail.com
MailAsSmtpServer
MailAsSmtpClient
UploadViaHttp
SmtpServer
SmtpPort
SmtpAccount
SmtpPassword
HttpServer
HttpPort
HttpAccount
HttpPassword
bugreport.txt
screenshot.png
ExceptMsg
FrozenMsg
BitFaultMsg
send bug report
save bug report
print bug report
show bug report
ASCv8 Wizard BugReport
please find the bug report attached
Sending bug report...
PrepAttMsg
MxLookMsg
ConnMsg
AuthMsg
SendMailMsg
FieldMsg
SendAttMsg
SendFinalMsg
SendFailMsg
Sorry, sending the bug report didn't work.
madExcept.HandleContactForm
madExcept.HandleScreenshotForm
attach a screenshot to the bug report
<supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"/>
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/>
version="1.0.0.0"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
publicKeyToken="6595b64144ccf1df"
<ms_asmv3:requestedExecutionLevel level="requireAdministrator" uiAccess="false">
</ms_asmv3:requestedExecutionLevel>
supports
importNode
1.2.3
PNG, ShareImageData.RefCount <= 0
homepage.exe
\IObit\Advanced SystemCare V8\Main.ini
\*.lng
.Caption
.Items[
].Caption
.Hint
.Columns[
TReportTab
TReportContent
%systemroot%
%d.%d.%d.%d
taskMgr.dll
cmd.exe
detaillog.ldt
.bak1
yyyy-mm-dd hh:nn:ss.zzz
SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
\Main.ini
mstask.exe
Userenv.dll
AutoUpdate.log
explorer.exe
OFCommon.dll
Invalid ZStream operation!
Invalid key size
5 passes)
Database\Cus.dbd
hXXp://VVV.iobit.com/
LeftBottom_Logo_URL
RightTop_MoreContext_IObitOnline_URL
hXXp://VVV.iobit.com/support.html
RightTop_MoreContext_TechnicalSupport_URL
RightBottom_CheckUpdates_IsShow
TrayContextMenu_CheckUpdates_IsShow
RightTopMoreContext_CheckUpdates_IsShow
hXXp://download.iobit.com/news/asc4newspro.dat
NewsCenter_ProGetNews_URL
hXXp://download.iobit.com/news/asc4newsfree.dat
NewsCenter_FreeGetNews_URL
hXXp://VVV.iobit.com/ascpro7register.php
Purchase_URL
hXXp://VVV.iobit.com/asc7trialregister.php
PurchaseTrail_URL
AutoUpdate_Checkupdate_ProGetIni_URL
AutoUpdate_Checkupdate_ProExpGetIni_URL
AutoUpdate_Checkupdate_FreeGetIni_URL
AutoUpdate_Checkupdate_FOGetIni_URL
AutoUpdate_Checkupdate_FOExpGetIni_URL
AutoUpdate_Checkupdate_TrailGetIni_URL
AutoUpdate_Checkupdate_TrailExpGetIni_URL
ASC.exe
Wizard.ini
Lang.dat
\IObit\Advanced SystemCare V8\AntivirusConfig.ini
HomepageProtect.ini
TProtectChrome
ASCTray.exe
Nfeatures.exe
ProTip.exe
UpgradeTip.exe
QuickSettings.exe
Monitor.exe
iexplore.exe
ProductStatistics.dll
hXXp://VVV.iobit.com/appgoto.php?name=asc&ver=
Config\Installer.ini
Config\ActionCenter.ini
Config\Patch.ini
Config\BigUpgrade.ini
Config\Common.ini
KeyManualName:
KeySilentName:
KeyOverloadName:
WizardKeyManual:
WizardKeySilent:
WizardKeyOverload:
skin/public.rcc
Reinforce.exe
IObit\Advanced SystemCare V8\AntivirusConfig.ini
SendBugReportNew.exe
screenshots.png
/AntRun /Addr "%s" /Subject "%s" /app "%s"
Borland.Sprig
Portable Network Graphics
OThis operation is not valid because the current image contains no valid header.4The new size provided for image resizing is invalid.
Unable to open archive %s
Extracting %s
%s failed CRC check
%s not found in archive
No decryption algorithm foundDThe archive was created with a different version of ZLBArchive (v%d)$No password given for encrypted file)"%s" DOMImplementation already registered;Property or Method "%s" is not supported by DOM Vendor "%s"
Node cannot be null Microsoft MSXML is not installedjThis "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)yThe "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corruptedUThis "Portable Network Graphics" image is invalid because it has missing image parts.
The file being readed is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corruped, try obtaining it again.nThis "Portable Network Graphics" image is not supported or it might be invalid.
This "Portable Network Graphics" image is not supported because either it's width or height exceeds the maximum size, which is 65535 pixels length.
There is no such palette entry.dThis "Portable Network Graphics" image contains an unknown critical part which could not be decoded.pThis "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.cThis "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.-The chunks must be compatible to be assigned.8This "Portable Network Graphics" image contains no data.
8.0.0.508
8.0.0.0
AutoCare.exe_3888:
.text
`.itext
`.data
.idata
.rdata
@.reloc
B.rsrc
OnKeyDown
OnKeyPress
OnKeyUp
comctl32.dll
EditOnKeyPress
TEnumerator<Types.PPoint>
TEnumerable<Types.PPoint>
:TStack<Types.PPoint>.:1
TStack<Types.PPoint>.TEnumerator
TStack<Types.PPoint>
user32.dll
Uh2%D
Uh.LD
EIdCanNotBindPortInRange
EIdInvalidPortRange
TIdSocketListWindows
TIdStackWindowsU
EIdIPVersionUnsupported$
ftpTransfer
ftpReady
ftpAborted
ClientPortMin0
ClientPortMax
Port
EIdPortRequiredp
EIdTCPConnectionError
EIdObjectTypeNotSupported
Port8
"EIdTransparentProxyUDPNotSupported
TIdTCPClientCustom
TIdTCPClientCustom@
IdTCPClient
TIdTCPClient
BoundPort8
%EIdSocksUDPNotSupportedBySOCKSVersion
saUsernamePassword
Password0
BoundPort0
DefaultPort
TIdTCPConnection
IdTCPConnection
IdHTTPHeaderInfo
ProxyPassword8
ProxyPort
Password
sslvrfFailIfNoPeerCert
TPasswordEvent
Password
Certificate
RootCertFile
CertFile
KeyFile
OnGetPassword
EIdOSSLLoadingRootCertError
EIdOSSLLoadingCertError
EIdOSSLLoadingKeyError
TIdHTTPOption
IdHTTP
TIdHTTPOptions
TIdHTTPProtocolVersion
TIdHTTPOnRedirectEvent
TIdHTTPOnHeadersAvailable
TIdHTTPResponse
TIdHTTPRequest
TIdHTTPProtocol
TIdCustomHTTP
TIdHTTP
TIdHTTPP'H
HTTPOptions`"H
EIdHTTPProtocolException
THttpTaskInfo0
TADL_HTTP_Thread
THttpTaskH_H
THttpManager
MaxKeySize
Uh.TK
SQL error or missing database
An internal logic error in SQLite
Operation terminated by sqlite3_interrupt()
Uses OS features not supported on host
2nd parameter to sqlite3_bind out of range
sqlite3_step() has another row ready
sqlite3_step() has finished executing
ESQLiteException
TSQLiteDatabase
TSQLiteTable
EWebBrokerExceptionU
select * from origin_bound_certs
delete from downloads_url_chains
,TEnumerator<TPair<System.Integer,PLsvGroup>>
,TEnumerable<TPair<System.Integer,PLsvGroup>>
0TDictionary<System.Integer,PLsvGroup>.TItemArray
!IEqualityComparer<System.Integer>
5TDictionary<System.Integer,PLsvGroup>.TPairEnumerator
%TDictionary<System.Integer,PLsvGroup>
/TEnumerator<TPair<System.string,System.string>>|>O
/TEnumerable<TPair<System.string,System.string>>
.TDictionary<System.string,System.string>.TItem
3TDictionary<System.string,System.string>.TItemArray
IEqualityComparer<System.string>
8TDictionary<System.string,System.string>.TPairEnumerator
(TDictionary<System.string,System.string>
1.2.1
inflate 1.2.1 Copyright 1995-2003 Mark Adler
.AUi|
LRap
!$'*-147
"$') -02469;=?
"$&( -/1468:
!$&(*-/135
!#&(*,.1
!"#%&'(* ,-/01345689:;=>?@
!"#$&'(* ,-.01245678:;<>?
!"#$&'() ,-.012346789;<=
"#$%'()*,-./12345789:<
!#$%&()* -./02345689:
!#$%&')* ,./01245679
!"$%&'(* ,-/0123567
!"#%&'(* ,-.012346
!"#$&'() ,-./1234
!"#$%'()*,-./023
!"#$%'()* ,./01
"#$%&()* ,-/0
!#$%&')* ,-.
!"$%&'(* ,-
!"#%&'()*,
!"#$&'()*
!"#$%'()
?456789:;<=
!"#$%&'()* ,-./0123
rtl120.bpl
@System@@IntfAddRef$qqrx45System@ÞlphiInterface$t17System@IInterface%
@System@@IntfCast$qqrr45System@ÞlphiInterface$t17System@IInterface%x45System@ÞlphiInterface$t17System@IInterface%rx5_GUID
@System@@IntfCopy$qqrr45System@ÞlphiInterface$t17System@IInterface%x45System@ÞlphiInterface$t17System@IInterface%
@System@@IntfClear$qqrr45System@ÞlphiInterface$t17System@IInterface%
@System@@LStrFromUStr$qqrr27System@%AnsiStringT$us$i0$%x20System@UnicodeStringus
@System@@LStrFromString$qqrr27System@%AnsiStringT$us$i0$%rx28System@%SmallString$iuc$255%us
@System@@EnsureAnsiString$qqrr27System@%AnsiStringT$us$i0$%us
@System@@InternalLStrFromUStr$qqrr27System@%AnsiStringT$us$i0$%x20System@UnicodeStringus
@System@@InitResStringImports$qqrv
@System@@StartExe$qqrp23System@PackageInfoTablep17System@TLibModule
@System@@PStrCpy$qqrp28System@%SmallString$iuc$255%t1
kernel32.dll
madExcept_.bpl
@Madexcept@UnregisterExceptActionHandler$qqrynpqqr23Madexcept@TExceptActionx50System@ÞlphiInterface$t22Madexcept@IMEException%ro$v
@Madexcept@RegisterExceptActionHandler$qqrynpqqr23Madexcept@TExceptActionx50System@ÞlphiInterface$t22Madexcept@IMEException%ro$v19Madexcept@TSyncType
@Madexcept@UnregisterExceptionHandler$qqrynpqqrx50System@ÞlphiInterface$t22Madexcept@IMEException%ro$v
@Madexcept@RegisterExceptionHandler$qqrynpqqrx50System@ÞlphiInterface$t22Madexcept@IMEException%ro$v19Madexcept@TSyncType22Madexcept@TExceptPhase
@Madexcept@RegisterExceptionHandler$qqrpqqrx50System@ÞlphiInterface$t22Madexcept@IMEException%ro$v19Madexcept@TSyncType22Madexcept@TExceptPhase
EnumWindows
msimg32.dll
gdi32.dll
SetViewportOrgEx
GetViewportOrgEx
version.dll
mpr.dll
GetWindowsDirectoryW
GetProcessHeap
advapi32.dll
madBasic_.bpl
madDisAsm_.bpl
shell32.dll
ShellExecuteExW
ShellExecuteW
SHFileOperationW
URLMON.DLL
URLDownloadToFileW
ole32.dll
wininet.dll
FindNextUrlCacheEntryW
FindFirstUrlCacheEntryW
DeleteUrlCacheEntryW
vcl120.bpl
@Forms@TApplication@GetExeName$qqrv
@Forms@TCustomForm@Resizing$qqr18Forms@TWindowState
@Forms@TCustomForm@WantChildKey$qqrp17Controls@TControlr17Messages@TMessage
@Forms@TCustomForm@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Forms@KeysToShiftState$qqrus
@Classes@TComponent@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Sysutils@TEncoding@GetString$qqrx25System@%DynamicArray$tuc%ii
@Sysutils@TEncoding@GetBytes$qqrx20System@UnicodeStringiir25System@%DynamicArray$tuc%i
@Sysutils@TEncoding@GetBytes$qqrx24System@%DynamicArray$tb%iir25System@%DynamicArray$tuc%i
@Sysutils@TEncoding@GetByteCount$qqrx24System@%DynamicArray$tb%ii
@Sysutils@Supports$qqrx45System@ÞlphiInterface$t17System@IInterface%rx5_GUIDpv
@Sysutils@StringReplace$qqrx20System@UnicodeStringt1t149System@%Set$t21Sysutils@Sysutils__15$iuc$0$iuc$1%
@Sysutils@StrPLCopy$qqrpcx27System@%AnsiStringT$us$i0$%ui
@Rtlconsts@_SListIndexError
@Variants@@VarFromDisp$qqrr8TVarDatax36System@ÞlphiInterface$t9IDispatch%
@Variants@@VarFromIntf$qqrr8TVarDatax45System@ÞlphiInterface$t17System@IInterface%
@Graphics@TBitmap@GetSupportsPartialTransparency$qqrv
@Graphics@TCanvas@RequiredState$qqr50System@%Set$t22Graphics@TCanvasStates$iuc$0$iuc$3%
@Graphics@TFont@SetStyle$qqrx47System@%Set$t19Graphics@TFontStyle$iuc$0$iuc$3%
@Registry@TRegistry@KeyExists$qqrx20System@UnicodeString
@Registry@TRegistry@HasSubKeys$qqrv
@Registry@TRegistry@GetKeyNames$qqrp16Classes@TStrings
@Registry@TRegistry@GetKeyInfo$qqrr20Registry@TRegKeyInfo
@Registry@TRegistry@DeleteKey$qqrx20System@UnicodeString
@Registry@TRegistry@OpenKeyReadOnly$qqrx20System@UnicodeString
@Registry@TRegistry@OpenKey$qqrx20System@UnicodeStringo
@Registry@TRegistry@SetRootKey$qqrp6HKEY__
@Registry@TRegistry@CloseKey$qqrv
@Inifiles@TIniFile@DeleteKey$qqrx20System@UnicodeStringt1
@Inifiles@TMemIniFile@DeleteKey$qqrx20System@UnicodeStringt1
@Controls@TWinControl@SetBevelEdges$qqrx47System@%Set$t19Controls@TBevelEdge$iuc$0$iuc$3%
@Controls@TWinControl@WMKeyDown$qqrr15Messages@TWMKey
@Controls@TWinControl@IsControlMouseMsg$qqrr17Messages@TWMMouse
@Controls@TWinControl@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Controls@TControl@MouseUp$qqr21Controls@TMouseButton46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%ii
@Controls@TControl@MouseMove$qqr46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%ii
@Controls@TControl@DoMouseDown$qqrr17Messages@TWMMouse21Controls@TMouseButton46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%
@Controls@TControl@MouseDown$qqr21Controls@TMouseButton46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%ii
@Controls@TControl@DoMouseWheelUp$qqr46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%rx12Types@TPoint
@Controls@TControl@DoMouseWheelDown$qqr46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%rx12Types@TPoint
@Controls@TControl@DoMouseWheel$qqr46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%irx12Types@TPoint
@Controls@TControl@IsShowHintStored$qqrv
@Controls@TControl@SetHelpKeyword$qqrx20System@UnicodeString
@Controls@TControl@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Controls@TControl@SetAnchors$qqr48System@%Set$t20Controls@TAnchorKind$iuc$0$iuc$3%
@$xp$23Controls@TKeyPressEvent
@$xp$18Controls@TKeyEvent
@Comctrls@TListGroup@SetState$qqr52System@%Set$t24Comctrls@TListGroupState$iuc$0$iuc$8%
@Comctrls@TCustomListView@MouseUp$qqr21Controls@TMouseButton46System@%Set$t18Classes@Classes__1$iuc$0$iuc$6%ii
@Comctrls@TCustomListView@DrawItem$qqrp18Comctrls@TListItemrx11Types@TRect47System@%Set$t18Windows@Windows__1$iuc$0$iuc$12%
@Comctrls@TCustomListView@CustomDrawSubItem$qqrp18Comctrls@TListItemi48System@%Set$t20Comctrls@Comctrls__9$iuc$0$iuc$8%Comctrls@TCustomDrawStage
@Comctrls@TCustomListView@CustomDrawItem$qqrp18Comctrls@TListItem48System@%Set$t20Comctrls@Comctrls__9$iuc$0$iuc$8%Comctrls@TCustomDrawStage
@Comctrls@TCustomListView@OwnerDataStateChange$qqrii47System@%Set$t19Comctrls@TItemState$iuc$0$iuc$5%t3
@Comctrls@TCustomListView@OwnerDataFetch$qqrp18Comctrls@TListItem50System@%Set$t22Comctrls@TItemRequests$iuc$0$iuc$4%
@Comctrls@TCustomListView@ColumnsShowing$qqrv
@Comctrls@TCustomListView@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Stdctrls@TCustomLabel@Notification$qqrp18Classes@TComponent18Classes@TOperation
datastate.dll
@Generics_collections@_sUnbalancedOperation
cabinet.dll
sqlite3.dll
sqlite3_bind_parameter_index
sqlite3_bind_null
sqlite3_bind_int64
sqlite3_bind_int
sqlite3_bind_double
sqlite3_bind_text
sqlite3_bind_blob
sqlite3_reset
sqlite3_finalize
sqlite3_column_int64
sqlite3_column_type
sqlite3_column_text
sqlite3_column_double
sqlite3_column_bytes
sqlite3_column_blob
sqlite3_step
sqlite3_column_decltype
sqlite3_column_name
sqlite3_column_count
sqlite3_prepare_v2
sqlite3_free
sqlite3_errcode
sqlite3_errmsg
sqlite3_close
sqlite3_open
Scan.dll
Advapi32.dll
Kernel32.dll
4 4$4(4,4044484<4@4\4|4
<"<'<4<?<
<&=*=.=2=6=:=
9-9A9U9i9}9
= =$=(=,=0=4=8=<=@=`=
:":*:2:8:
7 7:7?7\7
8%9S9
4$515;5@5
8Ÿ9q9
3 4%4X4]4
3"3&3*3.323
0 010@0[0
=->5>\>{>
VVV.madshi.net
.csxL
b/%cK
i.RI"
-}.tY
j.aTc
.ocvG
H%%xa11
IdStackWindows
IdTCPServer
IdCustomTCPServer
0IdHTTPHeaderInfo
?HTTPApp
>WebConst
uSendBugReport
uHttpDownloader
fuScanExport
SQLiteTable3
SQLite3
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
Picture.Data
*CdBIÿ
2Y%0X
.SUeN
Operation
vsReport
GroupFont.Charset
GroupFont.Color
GroupFont.Height
GroupFont.Name
GroupFont.Style
HeaderFont.Charset
HeaderFont.Color
HeaderFont.Height
HeaderFont.Name
HeaderFont.Style
AllSkinVertScroll.AutoArrow
AllSkinVertScroll.AutoHide
AllSkinHorzScroll.AutoArrow
AllSkinHorzScroll.AutoHide
AllSkinItem.ItemLeftOffset
"AllSkinItem.ItemCheckBoxLeftOffset
AllSkinItem.ItemHeight
AllSkinItem.ItemDrawStepColor
AllSkinItem.ItemHoverColor
AllSkinItem.ItemPic_BgCrossMode
AllSkinGroup.GroupClickExpand
AllSkinGroup.GroupLeftOffSet
$AllSkinGroup.GroupCheckboxLeftOffset
AllSkinGroup.GroupLineHeight
AllSkinGroup.GroupLineStartColor
AllSkinGroup.GroupLineEndColor
AllSkinGroup.GroupFont.Charset
AllSkinGroup.GroupFont.Color
AllSkinGroup.GroupFont.Height
AllSkinGroup.GroupFont.Name
AllSkinGroup.GroupFont.Style
AllSkinHeader.HeaderFont.Charset
AllSkinHeader.HeaderFont.Color
AllSkinHeader.HeaderFont.Height
AllSkinHeader.HeaderFont.Name
AllSkinHeader.HeaderFont.Style
AllSkinHeader.GradientColorStart
AllSkinHeader.GradientColorStop
clSilver!AllSkinHeader.HeaderDividingColor
Registry Key
AutoHotkeys
iobitfeedback@gmail.com
MailAsSmtpServer
MailAsSmtpClient
UploadViaHttp
SmtpServer
SmtpPort
SmtpAccount
SmtpPassword
HttpServer
HttpPort
HttpAccount
HttpPassword
bugreport.txt
screenshot.png
ExceptMsg
FrozenMsg
BitFaultMsg
send bug report
save bug report
print bug report
show bug report
ASCv8 AutoCare bug report
please find the bug report attached
Sending bug report...
PrepAttMsg
MxLookMsg
ConnMsg
AuthMsg
SendMailMsg
FieldMsg
SendAttMsg
SendFinalMsg
SendFailMsg
Sorry, sending the bug report didn't work.
madExcept.HandleContactForm
madExcept.HandleScreenshotForm
attach a screenshot to the bug report
version="1.0.0.0"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
publicKeyToken="6595b64144ccf1df"
<ms_asmv3:requestedExecutionLevel level="requireAdministrator" uiAccess="false">
</ms_asmv3:requestedExecutionLevel>
PSAPI.dll
1.2.3
PNG, ShareImageData.RefCount <= 0
e:\works\asc_v9\publiclibrary\RdScrollBar.pas
e:\works\asc_v9\publiclibrary\RdListView.pas
uxtheme.dll
%d,%d,%d,%d:%s
LV\Edit\: You Must set SubItems.Count = ColumnCount-1
LV\CBox\: You Must set SubItems.Count = ColumnCount-1
%d,%d,%d,$%x,%d,%s
Windows NT
Windows 2000
Windows XP
Windows 2003 Server
Windows Vista
Windows 7
Windows
%systemroot%
rundll32.exe
Windows 8
supports
importNode
wintrust.dll
pkgmgr.exe
TInstallTask.Install_Vista_Win7: TInstallTask.Install_Vista_Win7:
/ip /norestart /m:"%s" /s:"%s"
Install_CabExecute:
\pkgmgr.exe
TInstallTask.SynShellExecute: TInstallTask.SynShellExecute:
TInstallTask.SynShellExecute Sh.lpParameters:
TInstallTask.SynShellExecute: exit pkgmgr.exe
---FindMainWindowSendMessage
**** HandleList.count:
pkgMgr.exe
KillTask pkgMgr.exe
TInstallTask.CabExecute: TInstallTask.CabExecute:
msiexec
wuredist.xml
TInstallManager.Msg -> Resume
FTaskList.Count:
C:\Builds\TP\indysockets\lib\System\IdStreamVCL.pas
C:\Builds\TP\indysockets\lib\System\IdGlobal.pas
%s, %.2d %s %.4d %s %s
WS2_32.DLL
getservbyport
WSAAsyncGetServByPort
WSAJoinLeaf
MSWSOCK.DLL
WSARecvMsg
WSASendMsg
Wship6.dll
Fwpuclnt.dll
127.0.0.1
C:\Builds\TP\indysockets\lib\System\IdStack.pas
C:\Builds\TP\indysockets\lib\Core\IdIOHandler.pas
0.0.0.1
0.0.0.0
C:\Builds\TP\indysockets\lib\Core\IdIOHandlerStack.pas
ISO_646.irv:1991
ISO_646.basic:1983
ISO_646.irv:1983
csISO16Portuguese
csISO84Portuguese2
windows-936
csShiftJIS
ISO-8859-1-Windows-3.0-Latin-1
csWindows30Latin1
ISO-8859-1-Windows-3.1-Latin-1
csWindows31Latin1
ISO-8859-2-Windows-Latin-2
csWindows31Latin2
ISO-8859-9-Windows-Latin-5
csWindows31Latin5
csMicrosoftPublishing
Windows-31J
csWindows31J
windows-1250
windows-1251
windows-1252
windows-1253
windows-1254
windows-1255
windows-1256
windows-1257
windows-1258
HTTPS
TIdEncoder3to4.Encode: Calculated length exceeded (expected
C:\Builds\TP\indysockets\lib\Protocols\IdCoder3to4.pas
TIdEncoder3to4.Encode: Calculated length not met (expected
CommentURL
C:\Builds\TP\indysockets\lib\Protocols\IdZLibCompressorBase.pas
Mozilla/3.0 (compatible; Indy Library)
%d%s%d
C:\Builds\TP\indysockets\lib\Protocols\IdSSLOpenSSLHeaders.pas
libeay32.dll
ssleay32.dll
libssl32.dll
SSL_CTX_use_PrivateKey_file
SSL_CTX_use_PrivateKey
SSL_CTX_use_certificate
SSL_CTX_use_certificate_file
SSL_get_peer_certificate
SSL_CTX_set_default_passwd_cb
SSL_CTX_set_default_passwd_cb_userdata
SSL_CTX_check_private_key
X509_STORE_CTX_get_current_cert
DES_set_key
RSA_generate_key
RSA_check_key
i2d_PrivateKey_bio
X509_set_pubkey
X509_REQ_set_pubkey
PEM_write_bio_PKCS8PrivateKey
PEM_read_bio_PrivateKey
EVP_PKEY_type
EVP_PKEY_new
EVP_PKEY_free
EVP_PKEY_assign
C:\Builds\TP\indysockets\lib\Protocols\IdSSLOpenSSL.pas
C:\Builds\TP\indysockets\lib\Protocols\IdHTTP.pas
https
HTTP/1.0 200 OK
HTTP/
OutTimerCheck OutTimerCheck->WM_DOERROR_MSG:
THttpTask THttpTask.OnWorkEndEvent:->FOnTaskWork
THttpTask THttpTask.OnWorkEndEvent:->FOnEnd
THttpTask THttpTask.OnWorkEndEvent:->FOnError
c:\Flag.txt
THttpManager.CheckDownload -> THttpManager.CheckDownload: FMaxDownCount:
THttpManager.Delete -> Except:
THttpManager.OnEventTimer->
************************************ THttpManager.OnEventTimer -> Exception:
THttpManager.StartNext THttpManager.StartNext:
TADL_HTTP_Thread.Execute:
TADL_HTTP_Thread.Execute1:
TADL_HTTP_Thread.Execute2:
TADL_HTTP_Thread.Execute: Excption
TADL_HTTP_Thread.Stop
hXXp://VVV.w3.org/2001/XMLSchema
%s="%s"
hXXp://VVV.w3.org/2000/xmlns/
%s%s%s: %d%s%s
hXXp://VVV.w3.org/2001/XMLSchema-instance
TSecurityHoleScan.Destroying
TSecurityHoleScan.Destroyed
Execute TSecurityHoleScan.Execute1
ExecuteTSecurityHoleScan.Execute2
ExecuteTSecurityHoleScan.Execute3
Execute TSecurityHoleScan.Execute4
Execute TSecurityHoleScan.Execute5
FSearchResult FSearchResult.Count:
2483139
2660649
2855265
2866337
Remove AURL is NULLRemove AURL is NULL! :
Remove AURL Ext not is ExeRemove AURL Ext not is Exe! URL:
Remove DownloadContents.Count is 0Remove DownloadContents.Count is 0 ! Tilte:
Remove Ext not is Exe,cba,msi,msu Remove Ext not is Exe,cba,msi,msu ! Tilte:
DownloadURL
SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages
SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages\
LoadPackageKBs is 64 Open Failed! SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages
LoadPackageKBs key not Exists: SOFTWARE\Microsoft\Windows\CurrentVersion\Component Based Servicing\Packages
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall
TUpdateHoleDataManager.LoadUninstallKBs succ1
TUpdateHoleDataManager.LoadUninstallKBs Count=0
wuredist.cab
hXXp://update.microsoft.com/redist/wuredist.cab
downloadUrl
wuaueng.dll
Windows Update Agent Update
Windows Update Agent Update(%s)
\IObit\Advanced SystemCare V8\Main.ini
\IObit\Advanced SystemCare V8\Ignore.ini
TSecurityHoleBusiness.Create 1
TSecurityHoleBusiness.Create 2
TSecurityHoleBusiness.Create 3
TSecurityHoleBusiness.Create 4
TSecurityHoleBusiness.Create 5
TSecurityHoleBusiness.Destroy
TSecurityHoleBusiness.DoRepair:
TSecurityHoleBusiness.DoRepair RepairCount =0
[Security Holes]: %d security holes fixed
function TSecurityHoleBusiness.DoRepair ExceptError
function TSecurityHoleBusiness.DoRepair End1
function TSecurityHoleBusiness.DoRepair End2
sh.dat
loginstalled
%s,%s,%s
Update\Update.ini
logInstalled
TSecurityHoleBusiness.Repair begin
TSecurityHoleBusiness.Repair DoRepair
TSecurityHoleBusiness.Repair End
SecurityHoleScan.log
TSecurityHoleBusiness.SetStop1
TSecurityHoleBusiness.SetStop2
TSecurityHoleBusiness.SetStop3
TSecurityHoleBusiness.SetStop4
TSecurityHoleBusiness.SetStop5
TSecurityHoleBusiness.SetStop5111111111111111
TSecurityHoleBusiness.SetStop52222222222222222
TSecurityHoleBusiness.SetStop5333333333333333
TSecurityHoleBusiness.SetStop5444444444444444
TSecurityHoleBusiness.SetStop6
Flag.dat
Update\Update.Ini
[Shortcut Clean]: %d problems detected
\Microsoft\Windows\
All Users\Microsoft\Windows\
windows\system32\config
Chrome
VVV.v9.com
\Software\Microsoft\Windows\CurrentVersion
madExceptWizard_.bpl
Invalid key size
5 passes)
Invalid ZStream operation!
Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
{A520A1A4-1780-4FF6-BD18-167343C5AF16}
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_CURRENT_CONFIG
Database\PriTemp.dbd
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Advanced SystemCare 8_is1
%commonappdata%
%Documents%
%AppData%\Mozilla\Firefox
profiles.ini
Mozilla\Firefox\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes
HKEY_LOCAL_MACHINE\SOFTWARE
Mozilla\Firefox
\profiles.ini
\prefs.js
%ProgramFiles%\Opera\opera.exe
%ProgramFiles%\Opera\launcher.exe
%AppData%\Opera
%localappdata%\Opera
%ProgramFiles%\Opera Next\launcher.exe
%AppData%\Opera Software\Opera Next
%localappdata%\Opera Software\Opera Next
Shell32.dll
\Opera
\Opera Software\Opera Stable
\Opera Software\Opera Next
wininit.ini
HKEY_PERFORMANCE_DATA
HKEY_DYN_DATA
Unknown SQLite Error Code "
Failed to open database "%s" : %s
Failed to open database "%s" : unknown error
Error [%d]: %s.
"%s": %s
Error executing SQL
Could not prepare SQL statement
Error executing SQL statement
select [sql] from sqlite_master where [type] = 'table' and lower(name) = '
SQLite is Busy
IE_TYPEDURLS
OPERA_INTERNETCACHE
OPERA_HISTORY
OPERA_COOKIEFILES
FF_SAVEPASSWORDS
GC_SAVEPASSWORDS
OPERA_SAVEPASSWORDS
SAFARI_SAVEPASSWORDS
OPERA_WEBICON
OPERA_NEXT_INTERNETCACHE
OPERA_NEXT_HISTORY
OPERA_NEXT_DOWNLOADHISTORY
OPERA_NEXT_COOKIES
OPERA_NEXT_SAVEDPSD
OPERA_NEXT_TYPEDURLS
OPERA_NEXT_COMPACTDATEBASES
OPERA_NEXT_SESSION
OPERA_STD_INTERNETCACHE
OPERA_STD_HISTORY
OPERA_STD_DOWNLOADHISTORY
OPERA_STD_COOKIES
OPERA_STD_SAVEDPSD
OPERA_STD_TYPEDURLS
OPERA_STD_COMPACTDATEBASES
OPERA_STD_SESSION
TD_SAVEPASSWORDS
IG_SAVEPASSWORDS
ImPrivacy.dll
FfSweep.dll
PFilterkey.dbd
Priv.dbd
RZPriv.dbd
P_FileKey
P_RegKey
FireFox.exe
Opera.exe
\Google\Chrome\User Data\Default
chrome.exe
Google\Chrome\User Data\Default\History
urls
delete from urls where (last_visit_time <=
Google\Chrome\User Data\Default\Shortcuts
DESKTOP.INI
RzPriv.dbd
firefox.exe
OperaInternetCache
opera.exe
FireFox Cookie:
ScanChromeCk
Google Chrome Cookie:
IEUrl
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\TypedURLs
\Software\Microsoft\Internet Explorer\TypedURLs
container.dat
%userprofile%\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore
*.xml
index.dat
IEAutoFillPassFromHistory
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\IntelliForms
\places.sqlite
\history.dat
\downloads.rdf
\downloads.sqlite
\cookies.txt
\cookies.sqlite
\formhistory.dat
\formhistory.sqlite
\Opera Software\Opera Stable\Cache
\Opera\Opera\opcache
\Opera\Opera\cache
\Opera\Opera\temporary_downloads
OperaHistory
\profile\global.dat
\profile\opera.dir
\profile\download.dat
\profile\vlink4.dat
\profile\sessions\autosave.win
\global_history.dat
\opera.dir
\download.dat
\vlink4.dat
\typed_history.xml
\sessions\autosave.win
\search_field_history.dat
\Opera\Opera\vps\
\Opera\Opera\icons
OperaCookieFiles
\profile\cookies4.dat
\cookies4.dat
\Opera\Opera\pstorage
psindex.dat
Google\Chrome\User Data\Default\Cache
Google\Chrome\User Data\Default\Media Cache
Google\Chrome\User Data\Default\
*.tmp
Google\Chrome\User Data\Default\Local Storage
*.*-journal
Google\Chrome\User Data\Default\Application Cache
Google\Chrome\User Data\Default\databases
Google\Chrome\User Data\Default\Sync Data
Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash
Google\Chrome\User Data
Google\Chrome\User Data\Default\Extension Rules
Google\Chrome\User Data\Default\GPUCache\
Google\Chrome\User Data\Safe Browsing Cookies-journal
Google\Chrome\User Data\Profile
Google\Chrome\User Data\Default
Google\Chrome\User Data\Default\Archived History
select * from urls where (last_visit_time <=
Google\Chrome\User Data\Default\Cookies
Google\Chrome\User Data\Default\Origin Bound Certs
Google\Chrome\User Data\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\
*.sol
\Origin Bound Certs
\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys
VVV.veoh.com\veohwebplayer.sol
VVV.veoh.com\settings.sol
flashplayer\sys\settings.sol
\sessionstore.js
\sessionstore.bak
\sessionCheckpoints.json
FFSavePasswords
\signons.sqlite
\logins.json
GCSavePasswords
Google\Chrome\User Data\Default\Login Data
\Login Data
OperaSavePasswords
Opera_SAVEPASSWORDS
Opera\Opera\wand.dat
Apple Computer\Safari\Cookies\Cookies.plist
Apple Computer\Safari\Cookies\Cookies.binarycookies
*.localstorage
\StorageTracker.db
*.idx
\persistent.txt
OperaNextHistory
OperaNextDownloadHistory
OperaNextCookieFiles
host_key
OperaNext Cookie:
Opera Cookie:
Databases.db
Opera Software\Opera Next\Local Storage
OperaStdHistory
OperaStdDownloadHistory
OperaStdCookieFiles
Opera Software\Opera Stable\Local Storage
OperaStdTypedUrls
OperaStdCompactDatebases
\session.json
\session.bak
TDSavePasswords
sessionstore.bak*
IGSavePasswords
OperaNextCompactDatebases
OperaNextTypedUrls
places.sqlite
cookies.sqlite
\Google\Chrome\User Data\Default\History
RepairChromeDown
\Google\Chrome\User Data\Default\Cookies
RepairChromeCk
delete from origin_bound_certs where (origin COLLATE NOCASE not in
\Google\Chrome\User Data\Default\Web Data
RepairChromeFill
\Web Data
*.sqlite
Web Data
delete from cookies where (host_key COLLATE NOCASE not in
RegKey
FileKey
Opera -
Opera Next -
Privacy.db
AppReplace.ini
winapp1.ini
AppAdd.ini
winapp2.ini
Ignore.ini
Ext.dbd
ExtIni.key
Opera
windows
%d items
Saved Passwords
[Privacy Fix]: %d problems fixed
Compact Firefox Databases
Compact Google Chrome Databases
Website Icons
IEUrl=Typed URLs
IEAutoFillPassFromHistory=Auto Fill Password
FFSavePasswords=Saved Passwords
GCSavePasswords=Saved Passwords
OperaHistory=History
OperaCookieFiles=Cookies
OperaInternetCache=Internet Cache
FF=Mozilla Firefox
Opera=Opera
GC=Google Chrome
windows=Windows
OperaSavePasswords=Saved Passwords
SafariSavePasswords=Saved Passwords
Website Icons=Website Icons
OperaStdHistory=History
OperaStdDownloadHistory=Download History
OperaStdCookieFiles=Cookies
OperaStdTypedUrls=Typed URLs
OperaStdCompactDatebases=Compact Datebases
OperaNextHistory=History
OperaNextDownloadHistory=Download History
OperaNextCookieFiles=Cookies
OperaNextTypedUrls=Typed URLs
OperaNextCompactDatebases=Compact Datebases
Typed URLs
Auto Fill Password
SafariSavePasswords
Opera - Website Icons
CHK_FIREFOX
CHK_OPERA
CHK_OPERA_NEXT
IOBIT.COM
AutoSweep.ini
BrowserSweep.ini
Main.ini
Config.ini
Mozilla Firefox
Google Chrome
Windows
OperaNext
Opera Next
Mozilla Thunderbird
Windows 8 Apps
sss
%s items, %s
(%s items, %s)
[Apps Clean]: %d problems fixed
JFilterkey.dbd
Junk.dbd
RZJunk.dbd
SDJunk.dbd
J_FileKey
J_RegKey
0_WindowsLogFiles
WindowsUpdate.log
WindowsTempFiles
%windir%\memory.dmp
%windir%\MiniDump\*.dmp
*.dmp
%appdata%\Microsoft\Windows\Recent\AutomaticDestinations
S-%u-
:\*.*
desktop.ini
cmd.exe
RzJunk.dbd
junkfile.db
FileReplace.ini
winsys1.ini
FileAdd.ini
winsys2.ini
WindowsLogFiles
WindowsErrorReporting
WindowSizeLocationCache
[Junkfiles Fix]: %d problems fixed
DTSM_WINDOWSIZELOCATIONCACHE
WindowsMetroCache
WindowsAutoupdateCache
WindowsAutoupdateDatabase
WindowsFontCache
WindowsRecycleBin=Recycle Bin
WindowsTempFiles=Windows Temp Files
WindowsLogFiles=Windows Log Files
WindowsErrorReporting=Windows Error Reporting
WindowSizeLocationCache=Window Size/Location Cache
WindowsMetroCache=WinMetro Cache
WindowsAutoupdateCache=Windows Autoupdate Cache
WindowsFontCache=Windows Font Cache
DTSM_TRAYNOTIFICATIONSCACHE=WARNING about "Tray Notifications Cache" System tray cache will be reset, you need to restart the explorer.exe process.
DTSM_WINDOWSIZELOCATIONCACHE=WARNING about "Window Size/Location Cache" This will reset any saved Windows Explorer location and view settings.
WIN_WINDOWSLOGFILES
WIN_ERRORREPORTING
[Windows Clean]: %d problems fixed
Windows 3.x
Windows 95
Windows 98/Me
Windows Nt 4.0
Windows Server 2003
*.exe,*.txt,*.ocx,*.sys,*.cpl,*.cmd,*.ser,*.bin,*.com,*.bat,*.vxd
MalwareIgnore.ini
%STARTMENU%
%startmenu%
%STARTUP%
%startup%
%SYSDIR%
%sysdir%
%COMMONFILES%
%commonfiles%
%USERROOT%
%userroot%
ÚS%
Ús%
ÞSKTOP%
Þsktop%
úVORITES%
úvorites%
%WINDOWS%
%windows%
%SYSTEM%
%system%
%COMMON_PROGRAMS%
%common_programs%
%COMMON_STARTMENU%
%common_startmenu%
%COMMON_DESKTOP%
%common_desktop%
%COMMON_FAVORITES%
%common_favorites%
%COMMON_DATAPATH%
%common_datapath%
ÚTAPATH%
Útapath%
%SYSTEMDRIVE%
%systemdrive%
ÞSKTOPDIRECTORY%
Þsktopdirectory%
%COMMON_DESKTOPDIRECTORY%
%common_desktopdirectory%
%START_MENU%
%start_menu%
%START_MENUALL%
%start_menuall%
%START_PROGRAMSALL%
%start_programsall%
%START_PROGRAMS%
%start_programs%
%SYSTEMDISKROOT%
%systemdiskroot%
%USERPROFILE%
%userprofile%
%DOWNLOADEDPROGRAMFILES%
%downloadedprogramfiles%
%USERDOCUMENTS%
%userdocuments%
%COOKIE%
%USERROOT%\Documents\Settings
%USERROOT%\Local Settings
%USERROOT%\Local Settings\Application Data
%USERROOT%\Local Settings\Temporary Internet Files:REC2
%WINDIR%\Web
%WINDIR%\Microsoft.NET\Framework:REC2
%SYSDIR%\MsDts
%SYSDIR%\Com
%SYSDIR%\Inf
%SYSDIR%\oobe
%SYSDIR%\wins
%SYSDIR%\Wbem
%SYSDIR%\Config
%SYSDIR%\service
%SYSDIR%\ShellExt
%SYSDIR%\Drivers
%SYSDIR%\Drivers\etc
%SYSDIR%\KazaaBackupFiles
%SYSDIR%\Config\SystemProfile
%SYSDIR%\Config\SystemProfile\Application Data
%SYSDIR%\Config\Systemprofile\Start Menu\Programs\Startup
%ROOTDRIVE%\$Recycle.Bin:REC3
%USERROOT%\Local Settings\Application Data\Microsoft\Internet Explorer
%APPDATA%\Microsoft\Windows
%COMMONFILES%\System
%COMMONFILES%\Plugin
%COMMONFILES%\Companion Wizard
%COMMONFILES%\Microsoft Shared
%COMMONFILES%\Microsoft Shared\HTMLView
%COMMONFILES%\Microsoft Shared\MSInfo
%COMMONFILES%\Microsoft Shared\System
%COMMONFILES%\Microsoft Shared\Web Folders
%PROGRAMFILES%\Windows NT
%PROGRAMFILES%\Windows Media Player
%PROGRAMFILES%\Mozilla Firefox
%PROGRAMFILES%\Mozilla Firefox\Components
%PROGRAMFILES%\Mozilla Firefox\Plugins
%APPDATA%\Mozilla\Firefox\Profiles\main
ÞSKTOP%:REC3
%STARTUP%:REC9
Signature.db
Signature_Add.db
Signature.ign
MD5.db
MD5.ign
FileInfo.db
FileInfo.ign
Guid.db
Guid.ign
BHO.db
BHO.ign
reg.db
reg.ign
]: %d
%s (%d item)
%s (%d items)
TrackingCookie.db
TrackingCookie.ign
folder.db
folder.ign
File.db
File.ign
\Software\Microsoft\Windows\CurrentVersion\App Paths\
%SystemRoot%
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\
\IObit\Advanced SystemCare V4\Ignore.ini
\IObit\Advanced SystemCare V4\Main.ini
{999e3352-ccaa-4dc6-be6a-99ebbf91b523}
hkey_local_machine\system\currentcontrolset\control\productoptions
hkey_local_machine\system\currentcontrolset\services\licenseinfosuites
hkey_local_machine\system\setup
{c9c05a42-d571-4b3c-8f11-d6d6a81c90eb}
{de54081f-08ed-44ae-ae80-13deaa19a44a}
{4d0f7eca-cdc8-407f-9111-e713a3694d48}
{2fc8f894-3409-4f69-bfd8-9a489511b40c}
{39375e83-642c-46ce-9b74-510f42381710}
{dd5f89ee-9c85-4d42-b366-919387500641}
{957191f2-f78b-41c6-87d6-87d562930ea9}
\microsoft sql
{8a0934ab-9231-4054-8955-6c491edb6047}
explorer.exe
{32be5ed2-5c86-480f-a914-0ff8885a1b3f}
{4cb63e62-c611-11d0-83aa-000092900184}
{4cb63e61-c611-11d0-83aa-000092900184}
headerfooter.headerfooter
search.customwordbreaker
{640f2578-c31b-4ff3-9891-042fa87bc781}
{2a9fc36d-364d-4234-8c61-89b815492e9c}
rarsfx0\intiupdater.exe
{37651a5f-5423-4134-9fcf-c279abc26e82}
{c2ef276a-4d20-44e9-b9d2-29f129eb826b}
{6B75345B-AA36-438A-BBE6-4078B4C6984D}
{6D84BC07-7979-4E59-9589-17E1E5A8FF55}
{BE65189A-4770-47A0-9B7B-68827DB1C317}
Empty Registry Key
HKEY_CLASSES_ROOT\CLSID\
[HKEY_CLASSES_ROOT\CLSID\
HKEY_CLASSES_ROOT\Interface\
[HKEY_CLASSES_ROOT\Interface\
HKEY_CLASSES_ROOT\TypeLib\
[HKEY_CLASSES_ROOT\TypeLib\
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\
\Software\Microsoft\Windows\Help\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Help\
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Help\]
\Software\Microsoft\Windows\Html Help\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Html Help\
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Html Help\]
\Software\Microsoft\Windows\CurrentVersion\Installer\Folders\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Folders\
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Folders\]
\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU]
\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32
\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\ComDlg32\
\Software\Microsoft\Windows\ShellNoRoam\MUICache\
HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\
[HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache\]
\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache\
HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache\
[HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache\]
\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\
\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDlls]
HKEY_CURRENT_USER\Software\
[HKEY_CURRENT_USER\Software\
HKEY_LOCAL_MACHINE\Software\
[HKEY_LOCAL_MACHINE\Software\
\Software\Microsoft\Windows\CurrentVersion\Uninstall\
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\
\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32\
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32\]
HKEY_CLASSES_ROOT\
[HKEY_CLASSES_ROOT\
\Software\Microsoft\Windows NT\CurrentVersion\Fonts
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Fonts
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Fonts]
\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\
\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\
\AppEvents\Schemes\Apps\.Default
\AppEvents\Schemes\Apps\.Default\
HKEY_CURRENT_USER\AppEvents\Schemes\Apps\.Default\
[HKEY_CURRENT_USER\AppEvents\Schemes\Apps\.Default\
\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
rundll32.exe
rundll.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
\Software\Microsoft\Windows\CurrentVersion\Run-
\Software\Microsoft\Windows\CurrentVersion\RunOnce
\Software\Microsoft\Windows\CurrentVersion\RunOnce-
\Software\Microsoft\Windows\CurrentVersion\RunOnceEx
\Software\Microsoft\Windows\CurrentVersion\RunOnceEx-
\Software\Microsoft\Windows\CurrentVersion\RunServices
\Software\Microsoft\Windows\CurrentVersion\RunServicesOnce
\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu\Programs\
[Registry Scan]: %d Problems Detected
\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\
HKEY_CLASSES_ROOT\Applications\
[HKEY_CLASSES_ROOT\Applications\
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
SOFTWARE\MICROSOFT\WINDOWS\SHELLNOROAM\MUICACHE
\WINDOWS\HELP
\WINDOWS\HTML HELP
\APPEVENTS\SCHEMES\APPS\.DEFAULT
\WINDOWS\CURRENTVERSION\RUN
%SYSTEMROOT%
%SystemDrive%
.DEFAULT
ASCTray.exe
\Main.ini
\Ignore.ini
Database\Def.dbd
Problems fixed: %s
Junk files cleaned: %s
\IObit\Advanced SystemCare V8\HealthLevel.ini
Report
************* MyJunkScanner.ScanCount:
************* MyPrivacyScanner.ScanCount:
AutoCare_2|%s|%s|%s|%s|%s|%s
{1F3DF753-587A-47F7-84DD-34CED16D8174}-ASCv8
display.exe
OFCommon.dll
fun_IsEnableUse OFCommon.dll not Exists!:
TestUpdate.ini
\AntivirusConfig.ini
Windows Registry Editor Version 5.00
ASC.exe
\*.lng
SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update
AutoCare_1|%d|%s|%s|%s|%s|%s|%s
SendBugReportNew.exe
screenshots.png
/AntRun /Addr "%s" /Subject "%s" /app "%s"
ProcessRestart.ini
ReProcess.exe
Portable Network Graphics
Borland.Sprig
Open SSL Support DLL Delphi and C Builder interface
hXXp://VVV.indyproject.org/
1993 - 2004
Unable to open archive %s
Extracting %s
%s failed CRC check
%s not found in archive
No decryption algorithm foundDThe archive was created with a different version of ZLBArchive (v%d)$No password given for encrypted file=Error decoding URL style (%%XX) encoded string at position ÑInvalid URL encoded character (%s) at position %d
Error creating SSL context. Could not load root certificate.
Could not load certificate.#Could not load key, check password.
SSL status: "%s"
Transparent proxy cannot bind. UDP Not supported by this proxy.$Buffer terminator must be specified.!Buffer start position is invalid.
Reply Code is not valid: %s
Reply Code already exists: %s
Unknown Protocol(Request method requires HTTP version 1.1DThis authentication method is already registered with class name %s.KUnsupported hash algorithm. This implementation supports only MD5 encoding.$Error accepting connection with SSL.
Command not supported.
Address type not supported."%d: Circular links are not allowed
File "%s" not found
Object type not supported.
No encoding specified.)UDP is not support in this SOCKS version.
Request rejected or failed.5Request rejected because SOCKS server cannot connect.QRequest rejected because the client program and identd report different user-ids.
Stack already created.1Only one TIdAntiFreeze can exist per application.&Cannot change IPVersion when connected$Can not bind in port range (%d - %d)
Connection Closed Gracefully.;Could not bind socket. Address and port are already in use.
Invalid Port Range (%d - %d)
%s is not a valid service.
%s is not a valid IPv6 address:The requested IPVersion / Address family is not supported.
Socket is not connected..Cannot send or receive after socket is closed.#Too many references, cannot splice.
Operation would block.
Operation now in progress.
Operation already in progress.
Socket operation on non-socket.
Protocol not supported.
Socket type not supported."Operation not supported on socket.
Protocol family not supported.0Address family not supported by protocol family.
CRefresh is only supported if the FileName or XML properties are set
Line4Failed attempting to retrieve time zone information.-Error on call to Winsock2 library function %s&Error on loading Winsock2 library (%s)
Resolving hostname %s.
Connecting to %s.
Socket Error # %d
oThe "Portable Network Graphics" could not be created because invalid image type parameters have being provided.)"%s" DOMImplementation already registered
No matching DOM Vendor: "%s"<Selected DOM Vendor does not support this property or method;Property or Method "%s" is not supported by DOM Vendor "%s"
Node "%s" not found
IDOMNode required.Attributes are not supported on this node type
Invalid node type Mismatched paramaters to RegisterChildNodes Element does not contain a single text node4DOM Implementation does not support IDOMParseOptions
jThis "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)yThe "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corruptedUThis "Portable Network Graphics" image is invalid because it has missing image parts.[Could not decompress the image because it contains invalid compressed data.
The file being readed is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corruped, try obtaining it again.nThis "Portable Network Graphics" image is not supported or it might be invalid.
This "Portable Network Graphics" image is not supported because either it's width or height exceeds the maximum size, which is 65535 pixels length.
There is no such palette entry.dThis "Portable Network Graphics" image contains an unknown critical part which could not be decoded.pThis "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.cThis "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.-The chunks must be compatible to be assigned.]The program tried to add a existent critical chunk to the current image which is not allowed.IIt's not allowed to add a new chunk because the current image is invalid.OThis operation is not valid because the current image contains no valid header.4The new size provided for image resizing is invalid.
8.0.0.31
8.0.0.0
DiskDefrag.exe_2448:
.text
`.itext
`.data
.idata
.reloc
B.rsrc
rtl120.bpl
@System@@StartExe$qqrp23System@PackageInfoTablep17System@TLibModule
kernel32.dll
WinExec
GetWindowsDirectoryW
advapi32.dll
vcl120.bpl
@Forms@TCustomForm@Resizing$qqr18Forms@TWindowState
@Forms@TCustomForm@WantChildKey$qqrp17Controls@TControlr17Messages@TMessage
@Forms@TCustomForm@Notification$qqrp18Classes@TComponent18Classes@TOperation
@Sysutils@StringReplace$qqrx20System@UnicodeStringt1t149System@%Set$t21Sysutils@Sysutils__15$iuc$0$iuc$1%
@Registry@TRegistry@KeyExists$qqrx20System@UnicodeString
@Registry@TRegistry@OpenKey$qqrx20System@UnicodeStringo
@Registry@TRegistry@SetRootKey$qqrp6HKEY__
@Registry@TRegistry@CloseKey$qqrv
shell32.dll
ShellExecuteW
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
PSAPI.dll
c:\windows\
explorer.exe
ASCTray.exe
{f38bf404-1d43-42f2-9305-67de0b28fc23}
{d65231b0-b2f1-4857-a4ce-a8e7c6ea7d27}
{1ac14e77-02e7-4e5d-b744-2eb1ae5198b7}
{7c5a40ef-a0fb-4bfc-874a-c0f2e0b9fa8e}
{6d809377-6af0-444b-8957-a3773f02200e}
\Software\Microsoft\Windows\CurrentVersion\Explorer\TrayNotify
\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\TrayNotify
SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
\IOBit\Advanced SystemCare V8\Main.ini
\ASCTray.exe
1.0.0.8
2005-2014
DiskDefrag.exe
1.0.0.0
iobitdownloader_monster.exe_1784_rwx_675A6000_00003000:
.Qg<-Qg
*Rg`.Rg|)RgL Rg
wuauclt.exe_1564:
.text
`.data
.rsrc
@.reloc
wuauclt.pdb
GetProcessHeap
KERNEL32.dll
_wcmdln
_amsg_exit
msvcrt.dll
ntdll.dll
ole32.dll
RegCloseKey
RegOpenKeyExW
RegCreateKeyExW
ADVAPI32.dll
USER32.dll
OLEAUT32.dll
SHLWAPI.dll
zcÁ
version="6.0.0.0"
name="Microsoft.Windows.windowsupdate.wuauclt"
<windowsSettings>
<dpiAware xmlns="hXXp://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
</windowsSettings>
name="Microsoft.Windows.Common-Controls"
publicKeyToken="6595b64144ccf1df"
<requestedExecutionLevel
wuaueng.dll
Error: 0xx. wuauclt handler: failed to spawn COM server
Error: 0xx. wuauclt handler: failed to load wuaueng
/ReportNow
/ShowWindowsUpdate
/CloseWindowsUpdate
wuauclt.exe failed to get proc address for UI export object with error %#lx
Failed to load %s with error %X
wucltui.dll
wucltux.dll
call RunAUClientUI on wucltui.dll/wucltux.dll
Ntdll.dll
WuSqm %ls session datapoint (id:%d) is incremented with dword %d.
wuauclt.exe is exiting with code 0xX
wuauclt.exe launched with command line %s
kernel32.dll
WUWeb
Report
7.6.7600.256
Global\WindowsUpdateTracingMutex
WindowsUpdate.log
SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Trace
Windows
shell32.dll
%s: %s [
%s: %s
%s\%s
= Module: %s
= Module: <failed with %d>
= Process: %s
= Process: <failed with %d>
=========== Logging initialized (build: %s, tz: %s) ===========
wups2.dll
wups.dll
Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Setup\ServiceStartup\
%hs %ls page "%ls", hr=%X
Microsoft.WindowsUpdate
wupdmgr.exe
Failed to cocreate IShellWindows, error = 0xlX
Failed to obtain window doc for window %d, error = 0xlX
Failed to obtain folder view for window %d, error = 0xlX
Failed to obtain folder IPersist for window %d, error = 0xlX
Window %d is NOT a WU window
Done enumerating windows
Quit for window %d failed: 0xlX
Window %d is a WU window. Attempting to close
Failed to obtain class ID for window %d, error = 0xlX
Got NULL disp interface for window %d
Got %d instead of VT_DISPATCH for window %d
Failed to obtain IWebBrowserApp for window %d, error = 0xlX
Failed to enumerate window %d, error = 0xlX
Found %d explorer windows
Closing WU explorer windows
Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\VolatileData
WUAppNotificationWindows
SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\RebootRequired
SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\RebootRequired\Mandatory
SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\PostRebootReporting
SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Services\Pending\
%chdhd
hd-hd-hd%chd:hd:hd:hd
%WinDir%
Windows Update
7.6.7600.256 (winmain_wtr_wsus3sp2(oobla).120602-1459)
wuauclt.exe
Windows
Operating System
iexplore.exe_2568:
%?9-*09,*19}*09
.text
`.data
.rsrc
msvcrt.dll
KERNEL32.dll
NTDLL.DLL
USER32.dll
SHLWAPI.dll
SHDOCVW.dll
Software\Microsoft\Windows\CurrentVersion\Explorer\BrowseNewProcess
IE-X-X
rsabase.dll
System\CurrentControlSet\Control\Windows
dw15 -x -s %u
watson.microsoft.com
IEWatsonURL
%s -h %u
iedw.exe
Iexplore.XPExceptionFilter
jscript.DLL
mshtml.dll
mlang.dll
urlmon.dll
wininet.dll
shdocvw.DLL
browseui.DLL
comctl32.DLL
IEXPLORE.EXE
iexplore.pdb
ADVAPI32.dll
MsgWaitForMultipleObjects
IExplorer.EXE
IIIIIB(II<.Fg
7?_____ZZSSH%
)z.UUUUUUUU
,....Qym
````2```
{.QLQIIIKGKGKGKGKGKG
;33;33;0
8888880
8887080
browseui.dll
shdocvw.dll
6.00.2900.5512 (xpsp.080413-2105)
Windows
Operating System
6.00.2900.5512
LiveUpdate.exe_2964:
.text
`.itext
`.data
.idata
.edata
@.tls
.rdata
@.reloc
B.rsrc
Windows
;!199{199
;0!8&2{199
Windows 95
Windows 95 OSR-2
Windows 98
Windows 98 SE
Windows ME
Windows 9x New
Windows NT 3
Windows NT 4
Windows 2000
Windows XP
Windows 2003
Windows Vista
Windows 2008
Windows 7
Windows 2008 R2
Windows NT New
user.exe
TMsgHandlers
madToolsMsgHandlerWindow
madToolsMsgHandlerMutex
cmovÌ
setÌ
pop %seg
push %seg
VVV.madshi.net
.data
.jdbg
madExcept.HandleContactForm
madExcept.HandleScreenshotForm
eaSendBugReport
eaSaveBugReport
eaPrintBugReport
eaSendBugReport2
eaSaveBugReport2
eaPrintBugReport2
eaShowBugReport
.madExcept
The import table is invalid.
UhK%C
%exceptMsg%
%bugReport%
Úte%
Útetime%
%userappdata%
%commonappdata%
MailAsSmtpServer
MailAsSmtpClient
UploadViaHttp
SmtpServer
SmtpPort
SmtpAccount
SmtpPassword
HttpServer
HttpPort
HttpAccount
HttpPassword
bugreport.txt
screenshot.png
ExceptMsg
FrozenMsg
BitFaultMsg
send bug report
save bug report
print bug report
show bug report
continue bug report
restart bug report
close bug report
bug report
please find the bug report attached
Sending bug report...
PrepAttMsg
MxLookMsg
ConnMsg
AuthMsg
SendMailMsg
FieldMsg
SendAttMsg
SendFinalMsg
SendFailMsg
Sorry, sending the bug report didn't work.
TDABugReportCallback
TDABugReportCallbackOO
screenShot.bmp
VVV.google.de
SMTP:
Tcpip\Parameters
VxD\MSTCP
A.ROOT-SERVERS.NET
K.ROOT-SERVERS.NET
VVV.madshi.net_multipart_boundary
LOGIN
tnhd%D
AUTH LOGIN
http=
HTTP/1.1
*.txt
TSendBugReportExRec
BugReport
screenShot.png
<tr><td><button onClick="history.back();" style="height:19.5pt;">
<button onClick="document.getElementById('bugReport').style.visibility='visible';this.style.visibility='hidden';" style="height:19.5pt;">
<textarea id="bugReport" readonly cols="80" rows="20" style="width:100%;height:100%;
Software\Microsoft\Windows
operating system
GetThreadReport
GetCpuRegisters
kernel32.dll
user32.dll
internal error. please notify bug@madshi.net
HardWareKey
ENoMonitorSupportException
.uvCOu
$*@@@*$@@@$ *@@* $@@($*)@-$*@@$-*@@$*-@@(*$)@-*$@@*-$@@*$-@@-* $@-$ *@* $-@$ *-@$ -*@*- $@($ *)(* $)
EVariantBadIndexError
ssShift
htKeyword
EInvalidOperation
Uh.FG
EInvalidGraphicOperation
ssHorizontal
OnKeyDown
OnKeyPress
OnKeyUp
TCustomButton.TButtonStyle
Proportional
ssHotTrack
TWindowState
poProportional
TWMKey
KeyPreview
WindowStateL%L
AutoHotkeys
AutoHotkeysP#L
TKeyEvent
TKeyPressEvent
HelpKeyword<
msShiftSelect
vsReport
TComboBoxExEnumerator
Password
OnExecuteHIP
Uh.CQ
Uh.SR
comctl32.dll
PasswordChar
MsgHandlel
EIdCanNotBindPortInRange
EIdInvalidPortRanged
TIdSocketListWindows
TIdStackWindowsU
EIdIPVersionUnsupportedd
-2147483648
TIcsMsgMap
wsoTcpNoDelay
Port
LocalPort
SocksPort
SocksPassword
255.255.255.255
0.0.0.1
EHttpContentCodingException
THttpContentCoding
THttpCCodIdentity
THttpCCodStar
THttpContCodItem
THttpContCodHandler
TNTLM_Msg2_Info
EHttpException
THttpRequest
httpABORT
httpGET
httpPOST
httpPUT
httpHEAD
httpCLOSE
OverbyteIcsHttpProt
THttpAuthType
httpAuthNone
httpAuthBasic
httpAuthNtlm
httpAuthDigest
THttpBeforeAuthEvent
THttpRequestDone
THttpCliOption
httpoNoBasicAuth
httpoNoNTLMAuth
httpoBandwidthControl
httpoEnableContentCoding
httpoUseQuality
httpoNoDigestAuth
THttpCliOptions
THttpCli
OverbyteIcsHttpProtD
ProxyPort
ProxyPassword
.hxHX
HTTP/1.0 200
HTTP/1.1 200
HTTP/1.0 200
HTTP/1.1 200
HTTP/1.1 200 OK
HTTP/1.0 200 OK
TMyHttpCli
TMyHttpCli,
"OverbyteIcsMultipartHttpDownloader
:TMultipartHttpDownloader.:1
TMultipartHttpDownloader
TMultipartHttpDownloaderX
EIdPortRequired
EIdTCPConnectionError
EIdObjectTypeNotSupported
ftpTransfer
ftpReady
ftpAborted
Portl
ClientPortMin
ClientPortMax
"EIdTransparentProxyUDPNotSupported
TIdTCPClientCustom
IdTCPClient
TIdTCPClient
BoundPortl
%EIdSocksUDPNotSupportedBySOCKSVersion
saUsernamePassword
BoundPort
DefaultPort
TIdTCPConnection
IdTCPConnection
sslvrfFailIfNoPeerCert
AMsg
TCallbackExEvent
TPasswordEvent
TPasswordEventEx
VPassword
Certificate
RootCertFile
CertFile
KeyFile8
OnGetPasswordl
OnGetPasswordEx
EIdOSSLLoadingRootCertError
EIdOSSLLoadingCertErrorH
EIdOSSLLoadingKeyError
ptUptWeb
lblWebDownLoad
btnUptWeb
btnWebCancel$
ptWebHis,
btnWebCancelHis4
btnUptWebHis8
lblWebHisWhatsNewD
lblWebHisTitleH
lblWebHisDescL
btnUptWebClick
6666666666666666
1.2.3
deflate 1.2.3 Copyright 1995-2005 Jean-loup Gailly
inflate 1.2.3 Copyright 1995-2005 Mark Adler
?456789:;<=
!"#$%&'()* ,-./0123
<4,$?7/'
(3-!0,1'8"5.*2$
#!V!W!"!&!r%!%#%%%'%)%c%e%g%C%<!"%$%&%(%*% %-%/%1%3%5%7%9%;$=%?%A%D%F%H%J%K%L%M%N%O%R%U%X%[%^%_%`%a%b%d%f%h%i%j%k%l%m%o%s% !,!
P%S%V%Y%\%
.AUi|
LRap
!$'*-147
"$') -02469;=?
"$&( -/1468:
!$&(*-/135
!#&(*,.1
!"#%&'(* ,-/01345689:;=>?@
!"#$&'(* ,-.01245678:;<>?
!"#$&'() ,-.012346789;<=
"#$%'()*,-./12345789:<
!#$%&()* -./02345689:
!#$%&')* ,./01245679
!"$%&'(* ,-/0123567
!"#%&'(* ,-.012346
!"#$&'() ,-./1234
!"#$%'()*,-./023
!"#$%'()* ,./01
"#$%&()* ,-/0
!#$%&')* ,-.
!"$%&'(* ,-
!"#%&'()*,
!"#$&'()*
!"#$%'()
oleaut32.dll
advapi32.dll
RegOpenKeyExW
RegCloseKey
GetKeyboardType
UnhookWindowsHookEx
SetWindowsHookExW
MsgWaitForMultipleObjectsEx
MsgWaitForMultipleObjects
MapVirtualKeyW
LoadKeyboardLayoutW
GetKeyboardState
GetKeyboardLayoutNameW
GetKeyboardLayoutList
GetKeyboardLayout
GetKeyState
GetKeyNameTextW
EnumWindows
EnumThreadWindows
EnumChildWindows
ActivateKeyboardLayout
msimg32.dll
gdi32.dll
SetViewportOrgEx
GetViewportOrgEx
version.dll
WinExec
GetWindowsDirectoryA
GetWindowsDirectoryW
GetCPInfo
CreatePipe
ReportEventW
RegQueryInfoKeyW
RegOpenKeyExA
RegFlushKey
RegEnumKeyA
RegEnumKeyExW
RegDeleteKeyW
RegCreateKeyExA
RegCreateKeyExW
wsock32.dll
shell32.dll
ShellExecuteExA
ShellExecuteA
ShellExecuteW
ole32.dll
wininet.dll
comdlg32.dll
winspool.drv
Kernel32.dll
userenv.dll
wtsapi32.dll
LiveUpdate.exe
0)1<1?3]3{3
7 7$7(7,7:7
"0=0_0|0
3 3$3(3,3034383<3
; ; ;8;=;
5 5$5(5,50545
5#585(6<6
7 7$7(7,7074787<7@7
?!?%?)?-?1?5?
2"2&2*2.222
6l6n6{6
5 5$5(5,5054585<5@5\5|5
2)3-31353<3
3(4,4044484|4
2'2 2/23272;2
7 7$7(7,7@7
33474;4@4
8%9-91989
;$<(<,<0<
<.=2=6=:=@=
3 3$3<3[3
5%6X6g7
4L4P4Z4
9%9u9
9-9x9}9
0#111>1_1
6 6$6(6,6064686<6@6
>'>.>@>@?
5 6$6!8?8
: :$:(:,:0:4:8:<:
; ;$;(;,;0;\;|;
< <$<(<,<0<4<8<<<@<`<
5"5&565_5~5
8!838\8|8
:#:*:<:{:
< <?<^<}<
5 5]5
4(474[4`4}4
2(2-222~2
3?3j3
383D3O3\3a3m3x3
3$3(3,303
< <$<(<,<0<
2 2$2(2,202
VVV.madshi.net9
%6XZg]
VkV%cXk\4k
(.fSOX
|S9.JVaO
%U`p,u$O
D.qOZ
FTp1z\kz';
0õfg
/t.It
0B.ONu
~.EdfT
.wle]
333333333333333333
33333833
3333339
3333333333333338
:*"*"$3338
3333333
33333333
33333333333
3333333333338
33338?383
333333333333
:*3:"$3338
333333333333333
H%%xa11
KWindows
UrlMon
OverbyteIcsMultipartHttpDownloader
&OverbyteIcsUrl
0OverbyteIcsHttpProt
OverbyteIcsHttpContCod
'OverbyteIcsNtlmMsgs
IdHTTP
IdStackWindows
IdTCPServer
IdCustomTCPServer
0IdHTTPHeaderInfo
aHttpDownload
IdHttpPost
Font.Charset
Font.Color
Font.Height
Font.Name
Font.Style
Picture.Data
"iTXtXML:com.adobe.xmp
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:7DA971C760E211E4AB03958CB52937B2" xmpMM:DocumentID="xmp.did:7DA971C860E211E4AB03958CB52937B2"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7DA971C560E211E4AB03958CB52937B2" stRef:documentID="xmp.did:7DA971C660E211E4AB03958CB52937B2"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>u
{id%S
!iTXtXML:com.adobe.xmp
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CC (Windows)" xmpMM:InstanceID="xmp.iid:756C2FD902B411E59FE9CC2365F4AB57" xmpMM:DocumentID="xmp.did:756C2FDA02B411E59FE9CC2365F4AB57"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:756C2FD702B411E59FE9CC2365F4AB57" stRef:documentID="xmp.did:756C2FD802B411E59FE9CC2365F4AB57"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
ImageNormal.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:71BBD56160E211E4ABEF8CA9901B3DBA" xmpMM:DocumentID="xmp.did:71BBD56260E211E4ABEF8CA9901B3DBA"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:71BBD55F60E211E4ABEF8CA9901B3DBA" stRef:documentID="xmp.did:71BBD56060E211E4ABEF8CA9901B3DBA"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
ImageDown.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:760798EB60E211E48E9698998688FC9E" xmpMM:DocumentID="xmp.did:760798EC60E211E48E9698998688FC9E"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:760798E960E211E48E9698998688FC9E" stRef:documentID="xmp.did:760798EA60E211E48E9698998688FC9E"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>7X1
ImageOver.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:73C1E62760E211E48ED9E50D7C9AC3BB" xmpMM:DocumentID="xmp.did:73C1E62860E211E48ED9E50D7C9AC3BB"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:73C1E62560E211E48ED9E50D7C9AC3BB" stRef:documentID="xmp.did:73C1E62660E211E48ED9E50D7C9AC3BB"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
ImageOption.Left
ImageOption.Top
ImageOption.Right
ImageOption.Bottom
SubCaptionFont.Charset
SubCaptionFont.Color
SubCaptionFont.Height
SubCaptionFont.Name
SubCaptionFont.Style
SubCaptionDataFont.Charset
SubCaptionDataFont.Color
SubCaptionDataFont.Height
SubCaptionDataFont.Name
SubCaptionDataFont.Style
ptWebHis
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:7B26DC2E60E211E4B127F19F8B2698CD" xmpMM:DocumentID="xmp.did:7B26DC2F60E211E4B127F19F8B2698CD"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7B26DC2C60E211E4B127F19F8B2698CD" stRef:documentID="xmp.did:7B26DC2D60E211E4B127F19F8B2698CD"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>Y
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:772939C960E211E48B06AD5F18EF89D8" xmpMM:DocumentID="xmp.did:772939CA60E211E48B06AD5F18EF89D8"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:772939C760E211E48B06AD5F18EF89D8" stRef:documentID="xmp.did:772939C860E211E48B06AD5F18EF89D8"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:79D725C460E211E4B7E095F1955A280C" xmpMM:DocumentID="xmp.did:79D725C560E211E4B7E095F1955A280C"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:79D725C260E211E4B7E095F1955A280C" stRef:documentID="xmp.did:79D725C360E211E4B7E095F1955A280C"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
ImageDisabled.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)" xmpMM:InstanceID="xmp.iid:7876F45C60E211E4939CA245FFB0200D" xmpMM:DocumentID="xmp.did:7876F45D60E211E4939CA245FFB0200D"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7876F45A60E211E4939CA245FFB0200D" stRef:documentID="xmp.did:7876F45B60E211E4939CA245FFB0200D"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>_=}c
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CC (Windows)" xmpMM:InstanceID="xmp.iid:4BB995D7029F11E5B42BFA3C16E0DAA9" xmpMM:DocumentID="xmp.did:4BB995D8029F11E5B42BFA3C16E0DAA9"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:4BB995D5029F11E5B42BFA3C16E0DAA9" stRef:documentID="xmp.did:4BB995D6029F11E5B42BFA3C16E0DAA9"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
btnWebCancelHis
btnUptWebHis
qiTXtXML:com.adobe.xmp
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:57f26361-1dca-914b-8891-484c0004317c" xmpMM:DocumentID="xmp.did:4C113F6002A411E5910AAC499B571912" xmpMM:InstanceID="xmp.iid:4C113F5F02A411E5910AAC499B571912" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:8d2bc6ed-f6f3-d445-8f94-7235ba04f0bb" stRef:documentID="xmp.did:1d5f35d7-222d-594b-a8ab-40a82ea150a0"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:57f26361-1dca-914b-8891-484c0004317c" xmpMM:DocumentID="xmp.did:4C113F5C02A411E5910AAC499B571912" xmpMM:InstanceID="xmp.iid:4C113F5B02A411E5910AAC499B571912" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:8d2bc6ed-f6f3-d445-8f94-7235ba04f0bb" stRef:documentID="xmp.did:1d5f35d7-222d-594b-a8ab-40a82ea150a0"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
lblWebHisWhatsNew
lblWebHisTitle
lblWebHisDesc
Constraints.MaxWidth
Constraints.MinWidth
iiTXtXML:com.adobe.xmp
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:61473D4D02BE11E5A403A38C055D91BD" xmpMM:InstanceID="xmp.iid:61473D4C02BE11E5A403A38C055D91BD" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7f2cecfe-647b-1044-9a9d-b0d9460b9f96" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:61473D4902BE11E5A403A38C055D91BD" xmpMM:InstanceID="xmp.iid:61473D4802BE11E5A403A38C055D91BD" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7f2cecfe-647b-1044-9a9d-b0d9460b9f96" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>0*y
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:6111115102BE11E5A403A38C055D91BD" xmpMM:InstanceID="xmp.iid:6111115002BE11E5A403A38C055D91BD" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7f2cecfe-647b-1044-9a9d-b0d9460b9f96" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>3
.UmA-
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:6111115502BE11E5A403A38C055D91BD" xmpMM:InstanceID="xmp.iid:6111115402BE11E5A403A38C055D91BD" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:7f2cecfe-647b-1044-9a9d-b0d9460b9f96" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
ICW%C
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CC (Windows)" xmpMM:InstanceID="xmp.iid:BA524F21037311E5889BE790993CF2A1" xmpMM:DocumentID="xmp.did:BA524F22037311E5889BE790993CF2A1"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:BA524F1F037311E5889BE790993CF2A1" stRef:documentID="xmp.did:BA524F20037311E5889BE790993CF2A1"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmp:CreatorTool="Adobe Photoshop CC (Windows)" xmpMM:InstanceID="xmp.iid:BF8FA225037311E58C45B3EEA3538192" xmpMM:DocumentID="xmp.did:BF8FA226037311E58C45B3EEA3538192"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:BF8FA223037311E58C45B3EEA3538192" stRef:documentID="xmp.did:BF8FA224037311E58C45B3EEA3538192"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
V-G}u
Lines.Strings
Background.Data
VScrollBar.Left
VScrollBar.Top
VScrollBar.Width
VScrollBar.Height
!VScrollBar.AllSkinImage.AutoArrow
VScrollBar.AllSkinImage.AutoSize
VScrollBar.AllSkinImage.AutoHide
$VScrollBar.AllSkinImage.BtnLeft.Data
fiTXtXML:com.adobe.xmp
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838" xmpMM:DocumentID="xmp.did:59D488EB58E211E4831D82B41BB52CAA" xmpMM:InstanceID="xmp.iid:59D488EA58E211E4831D82B41BB52CAA" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:B7FFE82FC858E4119C8DBD4043211E39" stRef:documentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
'VScrollBar.AllSkinImage.BtnLeftHot.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838" xmpMM:DocumentID="xmp.did:5A0CFE0958E211E4831D82B41BB52CAA" xmpMM:InstanceID="xmp.iid:59D488EE58E211E4831D82B41BB52CAA" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:B7FFE82FC858E4119C8DBD4043211E39" stRef:documentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>P_
%VScrollBar.AllSkinImage.BtnRight.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838" xmpMM:DocumentID="xmp.did:58CF9BF058E211E4831D82B41BB52CAA" xmpMM:InstanceID="xmp.iid:58CF9BEF58E211E4831D82B41BB52CAA" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:B7FFE82FC858E4119C8DBD4043211E39" stRef:documentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
(VScrollBar.AllSkinImage.BtnRightHot.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.3-c011 66.145661, 2012/02/06-14:56:27 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838" xmpMM:DocumentID="xmp.did:58CF9BF458E211E4831D82B41BB52CAA" xmpMM:InstanceID="xmp.iid:58CF9BF358E211E4831D82B41BB52CAA" xmp:CreatorTool="Adobe Photoshop CS6 (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:B7FFE82FC858E4119C8DBD4043211E39" stRef:documentID="xmp.did:7CD37AC0D955E4119DEAE8AB59D7F838"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>G
%VScrollBar.AllSkinImage.ScrollBg.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:0A3B051002BB11E5B4A4C08CDD869E44" xmpMM:InstanceID="xmp.iid:0A3B050F02BB11E5B4A4C08CDD869E44" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:c8aab7ae-6f4c-b544-bd6c-c2b1eae90267" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
%VScrollBar.AllSkinImage.TrackTop.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:0A3B051402BB11E5B4A4C08CDD869E44" xmpMM:InstanceID="xmp.iid:0A3B051302BB11E5B4A4C08CDD869E44" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:c8aab7ae-6f4c-b544-bd6c-c2b1eae90267" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
(VScrollBar.AllSkinImage.TrackTopHot.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:0A3B051802BB11E5B4A4C08CDD869E44" xmpMM:InstanceID="xmp.iid:0A3B051702BB11E5B4A4C08CDD869E44" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:c8aab7ae-6f4c-b544-bd6c-c2b1eae90267" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>20%
(VScrollBar.AllSkinImage.TrackCenter.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:0A7799C402BB11E5B4A4C08CDD869E44" xmpMM:InstanceID="xmp.iid:0A7799C302BB11E5B4A4C08CDD869E44" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:c8aab7ae-6f4c-b544-bd6c-c2b1eae90267" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>
VScrollBar.AllSkinImage.TrackCenterHot.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:0A7799C802BB11E5B4A4C08CDD869E44" xmpMM:InstanceID="xmp.iid:0A7799C702BB11E5B4A4C08CDD869E44" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:c8aab7ae-6f4c-b544-bd6c-c2b1eae90267" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>t
(VScrollBar.AllSkinImage.TrackBottom.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:0A7799CC02BB11E5B4A4C08CDD869E44" xmpMM:InstanceID="xmp.iid:0A7799CB02BB11E5B4A4C08CDD869E44" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:c8aab7ae-6f4c-b544-bd6c-c2b1eae90267" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>M
VScrollBar.AllSkinImage.TrackBottomHot.Data
" id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.5-c014 79.151481, 2013/03/13-12:09:15 "> <rdf:RDF xmlns:rdf="hXXp://VVV.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="hXXp://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="hXXp://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="hXXp://ns.adobe.com/xap/1.0/" xmpMM:OriginalDocumentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024" xmpMM:DocumentID="xmp.did:0AAA434302BB11E5B4A4C08CDD869E44" xmpMM:InstanceID="xmp.iid:0AAA434202BB11E5B4A4C08CDD869E44" xmp:CreatorTool="Adobe Photoshop CC (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:c8aab7ae-6f4c-b544-bd6c-c2b1eae90267" stRef:documentID="xmp.did:6B863FA440FBE31184A6B4F235EB3024"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>N2
VScrollBar.AutoArrow
VScrollBar.AutoSize
VScrollBar.AutoHide
VScrollBar.Max
VScrollBar.PageSize
VScrollBar.LargeChange
VScrollBar.Caption
VScrollBar.Visible
HScrollBar.Left
HScrollBar.Top
HScrollBar.Width
HScrollBar.Height
HScrollBar.Kind
sbHorizontal!HScrollBar.AllSkinImage.AutoArrow
HScrollBar.AllSkinImage.AutoSize
HScrollBar.AllSkinImage.AutoHide
HScrollBar.AutoArrow
HScrollBar.AutoSize
HScrollBar.AutoHide
HScrollBar.Max
HScrollBar.PageSize
HScrollBar.LargeChange
HScrollBar.Caption
HScrollBar.Visible
btnUptWeb
btnWebCancel
lijian5115@gmail.com
LiveUpdate bug report
attach a screenshot to the bug report
<!-- Windows Vista -->
<supportedOS Id="{e2011457-1546-43c5-a5fe-008deee3d3f0}"/>
<!-- Windows 7 -->
<supportedOS Id="{35138b9a-5d96-4fbd-8e2d-a2440225f93a}"/>
<!-- Windows 8 -->
<supportedOS Id="{4a2f28e3-53b9-4441-ba9c-d69d4a4a6e38}"/>
<!-- Windows 8.1 -->
<supportedOS Id="{1f676c76-80e1-4239-95bb-83d0f6d0da78}"/>
<!-- Windows 10 -->
<supportedOS Id="{8e0f7a12-bfb3-4fe8-b9a5-48fd50a15a9a}"/>
version="1.0.0.0"
name="Microsoft.Windows.Common-Controls"
version="6.0.0.0"
publicKeyToken="6595b64144ccf1df"
<ms_asmv3:requestedExecutionLevel level="requireAdministrator" uiAccess="false">
</ms_asmv3:requestedExecutionLevel>
MSWHEEL_ROLLMSG
MSH_WHEELSUPPORT_MSG
MSH_SCROLL_LINES_MSG
nuser32.dll
TaskDialogIndirect
ntdll.dll
cc3260mt.dll
cc3260.dll
madExceptIde_.bpl
mapi32.dll
IpHlpApi.dll
nidapi32.dll
@System@@StartExe$qqrp23System@PackageInfoTablep17System@TLibModule
setupapi.dll
psapi.dll
%s[%d]
%s_%d
.Owner
SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes
uxtheme.dll
USER32.DLL
DWMAPI.DLL
clWebSnow
clWebFloralWhite
clWebLavenderBlush
clWebOldLace
clWebIvory
clWebCornSilk
clWebBeige
clWebAntiqueWhite
clWebWheat
clWebAliceBlue
clWebGhostWhite
clWebLavender
clWebSeashell
clWebLightYellow
clWebPapayaWhip
clWebNavajoWhite
clWebMoccasin
clWebBurlywood
clWebAzure
clWebMintcream
clWebHoneydew
clWebLinen
clWebLemonChiffon
clWebBlanchedAlmond
clWebBisque
clWebPeachPuff
clWebTan
clWebYellow
clWebDarkOrange
clWebRed
clWebDarkRed
clWebMaroon
clWebIndianRed
clWebSalmon
clWebCoral
clWebGold
clWebTomato
clWebCrimson
clWebBrown
clWebChocolate
clWebSandyBrown
clWebLightSalmon
clWebLightCoral
clWebOrange
clWebOrangeRed
clWebFirebrick
clWebSaddleBrown
clWebSienna
clWebPeru
clWebDarkSalmon
clWebRosyBrown
clWebPaleGoldenrod
clWebLightGoldenrodYellow
clWebOlive
clWebForestGreen
clWebGreenYellow
clWebChartreuse
clWebLightGreen
clWebAquamarine
clWebSeaGreen
clWebGoldenRod
clWebKhaki
clWebOliveDrab
clWebGreen
clWebYellowGreen
clWebLawnGreen
clWebPaleGreen
clWebMediumAquamarine
clWebMediumSeaGreen
clWebDarkGoldenRod
clWebDarkKhaki
clWebDarkOliveGreen
clWebDarkgreen
clWebLimeGreen
clWebLime
clWebSpringGreen
clWebMediumSpringGreen
clWebDarkSeaGreen
clWebLightSeaGreen
clWebPaleTurquoise
clWebLightCyan
clWebLightBlue
clWebLightSkyBlue
clWebCornFlowerBlue
clWebDarkBlue
clWebIndigo
clWebMediumTurquoise
clWebTurquoise
clWebCyan
clWebPowderBlue
clWebSkyBlue
clWebRoyalBlue
clWebMediumBlue
clWebMidnightBlue
clWebDarkTurquoise
clWebCadetBlue
clWebDarkCyan
clWebTeal
clWebDeepskyBlue
clWebDodgerBlue
clWebBlue
clWebNavy
clWebDarkViolet
clWebDarkOrchid
clWebMagenta
clWebDarkMagenta
clWebMediumVioletRed
clWebPaleVioletRed
clWebBlueViolet
clWebMediumOrchid
clWebMediumPurple
clWebPurple
clWebDeepPink
clWebLightPink
clWebViolet
clWebOrchid
clWebPlum
clWebThistle
clWebHotPink
clWebPink
clWebLightSteelBlue
clWebMediumSlateBlue
clWebLightSlateGray
clWebWhite
clWebLightgrey
clWebGray
clWebSteelBlue
clWebSlateBlue
clWebSlateGray
clWebWhiteSmoke
clWebSilver
clWebDimGray
clWebMistyRose
clWebDarkSlateBlue
clWebDarkSlategray
clWebGainsboro
clWebDarkGray
clWebBlack
windows
MAPI32.DLL
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
\SYSTEM\CurrentControlSet\Control\Keyboard Layouts\
crSQLWait
%s (%s)
imm32.dll
RICHED20.DLL
%s%s%s%s%s%s%s%s%s%s
detaillog.ldt
.bak1
yyyy-mm-dd hh:nn:ss.zzz
%systemroot%
Windows NT
Windows 2003 Server
Windows 8
Windows 10
wininit.ini
%d.%d.%d.%d
Advapi32.dll
RegDisableReflectionKey
RegEnableReflectionKey
madExceptWizard_.bpl
[0x%X]%s
explorer.exe
Explorer.EXE
Winlogon.EXE
PSAPI.dll
SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
RegDeleteKeyExW
PNG, ShareImageData.RefCount <= 0
supports
importNode
E:\WorkSpace\IObit_common\RdListView\RdScrollBar.pas
MSFTEDIT.DLL
.Items[
].Caption
.Hint
.Caption
.Columns[
TReportTab
TReportContent
F:\DelphiVcl\Indy 10.5.8\Lib\System\IdStreamVCL.pas
F:\DelphiVcl\Indy 10.5.8\Lib\System\IdGlobal.pas
ISO_646.irv:1991
ISO_646.basic:1983
ISO_646.irv:1983
csISO16Portuguese
csISO84Portuguese2
windows-936
csShiftJIS
windows-874
ISO-8859-1-Windows-3.0-Latin-1
csWindows30Latin1
ISO-8859-1-Windows-3.1-Latin-1
csWindows31Latin1
ISO-8859-2-Windows-Latin-2
csWindows31Latin2
ISO-8859-9-Windows-Latin-5
csWindows31Latin5
csMicrosoftPublishing
Windows-31J
csWindows31J
PTCP154
csPTCP154
windows-1250
windows-1251
windows-1252
windows-1253
windows-1254
windows-1255
windows-1256
windows-1257
windows-1258
WS2_32.DLL
MSWSOCK.DLL
getservbyport
WSAAsyncGetServByPort
WSAJoinLeaf
WSARecvMsg
WSASendMsg
Wship6.dll
Fwpuclnt.dll
127.0.0.1
F:\DelphiVcl\Indy 10.5.8\Lib\System\IdStack.pas
HTTP-EQUIV
()<>@,;:\"./
()<>@,;:\"/[]?=
()<>@,;:\"/[]?={}
*<>#%"{}|\^[]`
*<>#%"{}|\^[]`
HTTPS
\main.ini
system.ini
F:\DelphiVcl\OverbyteIcsV7\Delphi\Vc32\OverbyteIcsWndControl.pas
MsgLow not defined
Msg value out of bound
Msg not registered
TIcsURL (c) 1997-2010 F. Piette V6.04
http:
TIcsBufferHandler.Remove: Invalid Len
TIcsBufferHandler.Remove: nothing to remove
SSLEAY32.DLL
SSL_get_peer_certificate
SSL_get_peer_cert_chain
SSL_CTX_use_certificate_chain_file
SSL_CTX_use_certificate_file
SSL_CTX_set_default_passwd_cb
SSL_CTX_set_default_passwd_cb_userdata
SSL_CTX_use_PrivateKey_file
SSL_CTX_use_PrivateKey
SSL_CTX_get_cert_store
SSL_CTX_set_client_cert_cb
SSL_CTX_get_client_cert_cb
LIBEAY32.DLL
Unsupported OpenSSL version (0x
Supported versions are 0x
d2i_PrivateKey_bio
i2d_PrivateKey_bio
X509_STORE_add_cert
X509_STORE_CTX_get_current_cert
X509_verify_cert
X509_verify_cert_error_string
X509_check_private_key
EVP_PKEY_new
EVP_PKEY_free
EVP_PKEY_assign
EVP_PKEY_size
EVP_PKEY_bits
RSA_generate_key
EC_KEY_print
PEM_write_bio_PrivateKey
PEM_read_bio_PrivateKey
X509_set_pubkey
X509_PKEY_free
i2d_PrivateKey
d2i_PrivateKey
X509_get_pubkey
X509_PUBKEY_free
PKCS7_add_certificate
TSslWSocket (c) 2003-2010 Francois Piette V1.00.5e
Unable to load wsock32.dll -
Winsock startup error wsock32.dll -
ws2_32.dll
Unable to load ws2_32.dll -
0.0.0.0
Cannot change Port if not closed
Cannot change LocalPort if not closed
Winsock Resolve Port: Invalid Port.
Winsock Resolve Port: Invalid Proto.
Winsock Resolve Port: Cannot convert port '
GetPeerPort
F:\DelphiVcl\OverbyteIcsV7\Delphi\Vc32\OverbyteIcsWSocket.pas
setsockopt(IPPROTO_TCP, TCP_NODELAY)
Connect: No Port Specified
Connect (Invalid operation in OnChangeState)
listen: port not assigned
TCustomWSocket.Shutdown
Operation would block
Operation now in progress
Operation already in progress
Socket operation on non-socket
Protocol not supported
Socket type not supported
Operation not supported on socket
Protocol family not supported
Address family not supported by protocol family
WinSock DLL cannot support this application
Can't change socks port if not closed
Listening is not supported thru socks server
TCP is the only protocol supported thru socks server
command not supported
address type not supported
Error reading info file "%s"
Can't read certificate file "
Can't load private key file "
Error reading certificate from BIO
Certificate and private key do not match
Error reading private key from BIO
Private key not assigned
Error writing private key to BIO
Error writing certificate to BIO
%s BIO_ctrl_pending(%s) = %d [%d]
%s BIO_read(%s, 0x%x, %d) = %d [%d]
%s BIO_read(%s, 0x%x, %d) = %d [%d] Data:%s
%s BIO_ctrl(%s, %s, %s, 0x%x) = %d [%d]
%s BIO_ctrl_get_write_guarantee(%s) = %d [%d]
%s BIO_ctrl_get_read_request(%s) = %d [%d]
%s BIO_write(%s, 0x%x, %d) = %d [%d]
%s BIO_write(%s, 0x%x, %d) = %d [%d] Data:%s
%s %d [%d] %s
%s Winsock recv( %d, 0x%x, %d, %d) = %d [%d]
%s my_RealSend (0x%x, %d, %d) = %d [%d]
%s BIO_should_retry(%s) = %d [%d]
TCustomSslWSocket.Do_FD_CLOSE error #
TCustomSslWSocket.Do_FD_READ
SslBio write operation pending:
TCustomSslWSocket.Do_FD_WRITE
TCustomSslWSocket.DoRecv
TCustomSslWSocket.ShutDown
%s TriggerSslShutDownComplete(%d) %d
ICB> Renegotiaton not supported or not allowed. Connection closed delayed
%s PutDataInSslBuffer %s len %d [%d]
%s PutDataInSslBuffer %s [%d] Data:%s
%s SslHandshakeDone(%d) %d. Secure connection with %s, cipher %s, %d secret bits (%d total), session reused=%s
%s PutDataInSendBuffer %s len %d [%d]
%s PutDataInSendBuffer %s [%d] Data:%s
gb2312 csgb2312 gbk cp936 ms936 windows-936
shift_jis ms_kanji csshiftjis
us-ascii ascii us ansi_x3.4-1968 iso-ir-6 ansi_x3.4-1986 iso_646.irv:1991 iso646-us ibm367 cp367 csascii
%s;q=%s
%s, %s;q=%s
%s, %s
IcsNtlmMsgs (c) 2004-2010 F. Piette V6.01
THttpCli (c) 1997-2010 F. Piette V7.08
TSslHttpCli (c) 2008 Francois Piette V1.00.0
%2.2d %s %4.4d %2.2d:%2.2d:%2.2d
application/x-www-form-urlencoded
Mozilla/4.0 (compatible; ICS)
State = httpReady
State = httpNotConnected
State = httpConnected
State = httpDnsLookup
State = httpDnsLookupDone
State = httpWaitingHeader
State = httpWaitingBody
State = httpBodyReceived
State = httpWaitingProxyConnect
State = httpClosing
State = httpAborting
PrepareNTLMAuth end, FStatusCode = %d FProxyAuthNTLMState=%d FAuthNTLMState=%d
Login
https
HTTP/
httpChunkDone, end of document
HTTP/1.0
HTTP/1.1
hXXp://
hXXps://
HTTP component
HTTP component has nothing to post or put
document.htm
Insupported HTTP version
TMultipartHttpDownloader (c) 2007 F. Piette V6.00
GetASyncRequestDone - FMsg_WM_START_MULTI
HeaderEnd Change URL =
F:\DelphiVcl\Indy 10.5.8\Lib\Core\IdIOHandler.pas
F:\DelphiVcl\Indy 10.5.8\Lib\Core\IdIOHandlerStack.pas
F:\DelphiVcl\Indy 10.5.8\Lib\Protocols\IdHeaderCoderIndy.pas
WINDOWS
()[]<>:;.,@\"
TIdEncoder3to4.Encode: Calculated length exceeded (expected
F:\DelphiVcl\Indy 10.5.8\Lib\Protocols\IdCoder3to4.pas
TIdEncoder3to4.Encode: Calculated length not met (expected
secur32.dll
security.dll
libeay32.dll
ssleay32.dll
libssl32.dll
F:\DelphiVcl\Indy 10.5.8\Lib\Protocols\IdSSLOpenSSLHeaders.pas
SSL_CTX_use_certificate
SSL_CTX_check_private_key
i2d_DSAPrivateKey
d2i_DSAPrivateKey
DES_set_key
_ossl_old_des_set_key
RSA_check_key
RSA_generate_key_ex
i2d_RSAPrivateKey
d2i_RSAPrivateKey
i2d_RSAPublicKey
d2i_RSAPublicKey
i2d_NETSCAPE_CERT_SEQUENCE
X509_get_default_cert_file
X509_get_default_cert_file_env
X509_REQ_set_pubkey
PEM_read_bio_RSAPrivateKey
PEM_read_bio_RSAPublicKey
PEM_read_bio_DSAPrivateKey
PEM_read_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_RSAPublicKey
PEM_write_bio_DSAPrivateKey
PEM_write_bio_NETSCAPE_CERT_SEQUENCE
PEM_write_bio_PKCS8PrivateKey
EVP_PKEY_type
F:\DelphiVcl\Indy 10.5.8\Lib\Protocols\IdSSLOpenSSL.pas
URL is Empty!
[DL]incorrect URL or localfile.
[DL]begin DL URL:%s File:%s MD5:%s
[DAL]incorrect URL or localfile.
user confirm URL update.
user confirm web update.
%s not in tip time %d[%s]--%d[%s]
[%d]%s
%s %s %s %s %s "%s" %s "%s" %s
Cur user %s[System:%s]
[srv]Exec run name.
[srv]Exec sys user. not allow in sytem.
(%d/%d) ...
%s is updated. You can enjoy the latest features and improvements now.
testcfg.ini
update.spt
Important Update
ImportantUpdate
New version of %s is available. Please update it now to get the latest features and improvements. It's free of charge.
WebDownLoad
bg.png
ProductUpt.log
ManualUpt.log
LiveUpdateSrvUpt.log
Update begin [T=%d][M=%d][PN=%s][FN=%s][IL=%s][Host=%s:%s] ...
hXXp://update.iobit.com/infofiles/liveupdate/update/update.ini
testupdate.ini
UpdateUrl
His URL is null.
His URL is null 1.
%s is now avaliable. Update to enjoy the latest improvements and features!
WebNewVerHis
HKEY_CLASSES_ROOT
HKEY_CURRENT_USER
HKEY_LOCAL_MACHINE
HKEY_USERS
HKEY_CURRENT_CONFIG
HKEY_DYN_DATA
HKEY_PERFORMANCE_DATA
DownURL
File%d_MD5
File%d_Mode
File%d_Name
File%d_RunFile
File%d_Param
File%d_Size
File%d_URL
File%d_IgnoreVer
RegPath%d
White_%d
Black_%d
Plat local %d not match to %d
OS local %d not match to minVer %d
OS local %d not match to maxVer %d
%USERPROFILE%\AppData\LocalLow\IObit\StartMenu 8\Main.ini
%appdata%\..\locallow\IObit\StartMenu 8\Main.ini
%userprofile%
Setup_URL
_HisUrl
Setup_WebURL_local
Setup_WebURL
checkname%d %s exists,no need DL.
detaillog.iobit
iexplore.exe
IExplore.EXE
timer.db
%Documents%
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LiveUpdate
Language\Arabic.lng
Language\Belarusian.lng
Language\ChineseSimp.lng
Language\ChineseTrad.lng
Language\Czech.lng
Language\Danish.lng
Language\Dinka.lng
Language\Dutch.lng
Language\English.lng
Language\Finnish.lng
Language\Flemish.lng
Language\French.lng
Language\German.lng
Language\Greek.lng
Language\Hebrew.lng
Language\Hungarian.lng
Language\Indonesia.lng
Language\Italian.lng
Language\Japanese.lng
Language\Korean.lng
Language\Latvian.lng
Language\Malayalam.lng
Language\Polish.lng
Language\Portuguese(PT-BR).lng
Portuguese_PT_BR
Language\Portuguese(PT-PT).lng
Portuguese_PT_PT
Language\Romanian.lng
Language\Russian.lng
Language\Serbian (cyrillic).lng
Language\Serbian (latin).lng
Language\Slovak.lng
Language\Slovenian.lng
Language\Spanish.lng
Language\Swedish.lng
Language\Turkish.lng
Language\Ukrainian.lng
Language\Vietnamese.lng
ProductStatistics.dll
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall
Copy failed. %s [%s]
Rename failed. %s [%s]
Copy failed2. %s [%s]
Del bk failed. %s [%s]
DelOnBoot failed. %s [%s]
Portable Network Graphics
Borland.Sprig
Open SSL Support DLL Delphi and C Builder interface
hXXp://VVV.indyproject.org/
1993 - 2009
\IObit\ASCDownloader\Downloader.log
66006666
PORTUGUESE_PT_BR
PORTUGUESE_PT_PT
Vietnamese (Windows)
Western European (Windows)"GetCoding must be overridden in %s
Cyrillic (Windows)
Greek (Windows)
Hebrew (Windows)
Thai (Windows)
Turkish (Windows)
Reply Code is not valid: %s
Reply Code already exists: %s
Arabic (Windows)
Baltic (Windows)
Central European (Windows)
File "%s" not found
Object type not supported.
Transparent proxy cannot bind. UDP Not supported by this proxy.$Buffer terminator must be specified.
QRequest rejected because the client program and identd report different user-ids.
Command not supported.
Address type not supported."%d: Circular links are not allowed"Not enough data in buffer. (%d/%d)
%s Write Alert
Host field is empty)UDP is not support in this SOCKS version.
Error creating SSL context. Could not load root certificate.
Could not load certificate.#Could not load key, check password.
SSL status: "%s"
%s Alert
%s Read AlertDClient policy does not allow credential delegation to target server.bClient policy does not allow credential delegation to target server with NLTM only authentication.1The recipient rejected the renegotiation request.-The required security context does not exist.`The PKU2U protocol encountered an error while attempting to utilize the associated certificates.:The identity of the server computer could not be verified.
Unknown error#SSPI %s returns error #%d(0x%x): %s0SSPI interface has failed to initialise properly
Unknown credentials use!Do AcquireCredentialsHandle first"CompleteAuthToken is not supported$Error accepting connection with SSL.
SEC_E_NO_KERB_KEY5The certificate is not valid for the requested usage.
The smartcard certificate used for authentication has been revoked. Please contact your system administrator. There may be additional information in the event log.
An untrusted certificate authority was detected While processing the smartcard certificate used for authentication. Please contact your system administrator.
The revocation status of the smartcard certificate used for authentication could not be determined. Please contact your system administrator.lThe smartcard certificate used for authentication was not trusted. Please contact your system administrator.hThe smartcard certificate used for authentication has expired. Please contact your system administrator.
The Kerberos subsystem encountered an error. A service for user protocol request was made against a domain controller which does not support service for user.
An attempt was made by this server to make a Kerberos constrained delegation request for a target outside of the server's realm. This is not supported, and indicates a misconfiguration on this server's allowed to delegate to list. Please contact your administrator.
The revocation status of the domain controller certificate used for smartcard authentication could not be determined. There is additional information in the system event log. Please contact your system administrator.
An untrusted certificate authority was detected while processing the domain controller certificate used for authentication. There is additional information in the system event log. Please contact your system administrator.
The domain controller certificate used for smartcard logon has expired. Please contact your system administrator with the contents of your system event log.
The domain controller certificate used for smartcard logon has been revoked. Please contact your system administrator with the contents of your system event log.IA signature operation must be performed before the user can authenticate.AOne or more of the parameters passed to the function was invalid.
]The crypto system or checksum function is invalid because a required function is unavailable.9The number of maximum ticket referrals has been exceeded.KThe local machine must be a Kerberos KDC (domain controller) and it is not.qThe other end of the security negotiation is requires strong crypto but it is not supported on the local machine.5The KDC reply contained more than one principal name.OExpected to find PA data for a hint of what etype to use, but it was not found.
The client certificate does not contain a valid UPN, or does not match the client name in the logon request. Please contact your administrator.-Smartcard logon is required and was not used.!A system shutdown is in progress.'An invalid request was sent to the KDC.DThe KDC was unable to generate a referral for the service requested.:The encryption type requested is not supported by the KDC.QAn unsupported preauthentication mechanism was presented to the Kerberos package.
The requested operation cannot be completed. The computer must be trusted for delegation and the current user account must be configured to allow delegation.7Client's supplied SSPI channel bindings were incorrect.9The received certificate was mapped to multiple accounts.4The context data must be renegotiated with the peer.'The target principal name is incorrect.:There is no LSA mode context associated with this context.8The clocks on the client and server machines are skewed.;The certificate chain was issued by an untrusted authority.7The message received was unexpected or badly formatted.;An unknown error occurred while processing the certificate.%The received certificate has expired.*The specified data could not be encrypted.*The specified data could not be decrypted.YThe client and server cannot communicate, because they do not possess a common algorithm.
The security context could not be established due to a failure in the requested quality of service (e.g. mutual authentication or delegation).dA security context was deleted before the context was completed. This is considered a logon failure.mThe client is trying to negotiate a context and the server requires user-to-user but didn't send a TGT reply.aUnable to accomplish the requested task because the local machine does not have any IP addresses.bThe supplied credential handle does not match the credential associated with the security context.
The logon attempt failed;The credentials supplied to the package were not recognized4No credentials are available in the security packageCThe message or signature supplied for verification has been altered8The message supplied for verification is out of sequence3No authority could be contacted for authentication.UThe function completed successfully, but must be called again to complete the contextEThe function completed successfully, but CompleteToken must be calledtThe function completed successfully, but both CompleteToken and this function must be called to complete the contextsThe logon was completed, but no network authority was available. The logon was made using locally known information-The requested security package does not exist2The context has expired and can no longer be used.DThe supplied message is incomplete. The signature was not verified.lThe credentials supplied were not complete, and could not be verified. The context could not be initialized.1The buffers supplied to a function was too small.
Set Size Exceeded.'Algorithm %s not permitted in FIPS modeKUnsupported hash algorithm. This implementation supports only MD5 encoding.
The handle specified is invalid'The function requested is not supported.The specified target is unknown or unreachable0The Local Security Authority cannot be contacted-The requested security package does not exist6The caller is not the owner of the desired credentialsBThe security package failed to initialize, and cannot be installed-The token supplied to the function is invalid^The security package is not able to marshall the logon buffer, so the logon attempt has failedNThe per-message Quality of Protection is not supported by the security package?The security context does not allow impersonation of the client
Stack already created.1Only one TIdAntiFreeze can exist per application.&Cannot change IPVersion when connected$Can not bind in port range (%d - %d)
Connection Closed Gracefully.;Could not bind socket. Address and port are already in use.
Invalid Port Range (%d - %d)
%s is not a valid service.
%s is not a valid IPv6 address:The requested IPVersion / Address family is not supported.
Socket is not connected..Cannot send or receive after socket is closed.#Too many references, cannot splice.
Operation would block.
Operation now in progress.
Operation already in progress.
Socket operation on non-socket.
Protocol not supported.
Socket type not supported."Operation not supported on socket.
Protocol family not supported.0Address family not supported by protocol family.
Address already in use. Cannot assign requested address./Variant does not reference an automation object7Dispatch methods do not support more than 64 parameters-Error on call to Winsock2 library function %s&Error on loading Winsock2 library (%s)
Resolving hostname %s.
Connecting to %s.
Socket Error # %d
There is no such palette entry.dThis "Portable Network Graphics" image contains an unknown critical part which could not be decoded.pThis "Portable Network Graphics" image is encoded with an unknown compression scheme which could not be decoded.cThis "Portable Network Graphics" image uses an unknown interlace scheme which could not be decoded.-The chunks must be compatible to be assigned.]The program tried to add a existent critical chunk to the current image which is not allowed.IIt's not allowed to add a new chunk because the current image is invalid.OThis operation is not valid because the current image contains no valid header.4The new size provided for image resizing is invalid.oThe "Portable Network Graphics" could not be created because invalid image type parameters have being provided.)"%s" DOMImplementation already registered;Property or Method "%s" is not supported by DOM Vendor "%s"
OLE error %.8x.Method '%s' not supported by automation object
No help found for %s
Failed to Save StreamE%d is an invalid PageIndex value. PageIndex must be between 0 and %d=This control requires version 4.70 or greater of COMCTL32.DLLjThis "Portable Network Graphics" image is not valid because it contains invalid pieces of data (crc error)yThe "Portable Network Graphics" image could not be loaded because one of its main piece of data (ihdr) might be corruptedUThis "Portable Network Graphics" image is invalid because it has missing image parts.[Could not decompress the image because it contains invalid compressed data.
The file being readed is not a valid "Portable Network Graphics" image because it contains an invalid header. This file may be corruped, try obtaining it again.nThis "Portable Network Graphics" image is not supported or it might be invalid.
This "Portable Network Graphics" image is not supported because either it's width or height exceeds the maximum size, which is 65535 pixels length.
UTF-7"PageControl must first be assigned"%s requires Windows Vista or later %s requires themes to be enabled
Button%d
RadioButton%d
Unable to open Search"Unable to find a Table of Contents$No topic-based help system installed(Service failed in custom message(%d): %s
Service installed successfully/Service "%s" failed to install with error: "%s" Service uninstalled successfully1Service "%s" failed to uninstall with error: "%s"
- Dock zone has no controlLError loading dock zone from the stream. Expecting version %d, but found %d.,Multiselect mode must be on for this feature
Error setting %s.Count8Listbox (%s) style must be virtual in order to set Count#No OnGetItem event handler assigned
Value must be between %d and %d
Invalid clipboard format Clipboard does not support Icons
Cannot open clipboard: %s
Text exceeds memo capacity.There is no default printer currently selected/Menu '%s' is already being used by another form
Service failed on %s: %s
%s property out of range
%s on %s@GroupIndex cannot be less than a previous menu item's GroupIndex5Cannot create form. No MDI forms are currently active*A control cannot have itself as its parent
!Cannot change the size of an icon$Unknown picture file extension (.%s)
Unsupported clipboard format
Error creating window class Cannot focus a disabled or invisible window!Control '%s' has no parent window$Parent given is not a parent of '%s'-Cannot terminate an externally created thread,Cannot wait for an externally created thread$No help viewer that supports filters7String index out of range (%d). Must be >= 1 and <= %drHigh surrogate char without a following low surrogate char at index: %d. Check that the string is encoded properlyrLow surrogate char without a preceding high surrogate char at index: %d. Check that the string is encoded properly
''%s'' is not a valid date#''%s'' is not a valid date and time#''%s'' is not a valid integer value
''%s'' is not a valid time
List count out of bounds (%d)
List index out of bounds (%d) Out of memory while expanding memory stream
Error reading %s%s%s: %s
Failed to get data for '%s'
Failed to set data for '%s'
Resource %s not found
%s.Seek not implemented$Operation not allowed on sorted list$%s not in a class registration group
Property %s does not exist
Thread creation error: %s
Thread Error: %s (%d)
%List does not allow duplicates ($0%x)#A component named %s already exists%String list does not allow duplicates
Cannot create file "%s". %s
Cannot open file "%s". %s
Unable to write to %s
Invalid file name - %s
'%s' is an invalid mask at (%d)$''%s'' is not a valid component name
Invalid data type for '%s'
Item not found ($0%x) List capacity out of bounds (%d)
Invalid destination array"Character index out of bounds (%d)
Start index out of bounds (%d)
Invalid count (%d)
Invalid destination index (%d)
Ancestor for '%s' not found
Cannot assign a %s to a %s
Bits index out of range'List is locked during an active ForEach*Can't write to a read-only resource streamECheckSynchronize called from thread $%x, which is NOT the main thread
Class %s not found
A class named %s already exists
Interface not supported
Object lock not owned(Monitor support function not initialized
%s (%s, line %d)
Abstract Error?Access violation at address %p in module '%s'. %s of address %p
System Error. Code: %d.
Invalid variant operation
Invalid NULL variant operation%Invalid variant operation (%s%.8x)
%s5Could not convert variant of type (%s) into type (%s)=Overflow while converting variant of type (%s) into type (%s)
Operation not supported
External exception %x
Invalid pointer operation
Invalid class typecast0Access violation at address %p. %s of address %p
Operation aborted(Exception %s in module %s at %p.
Application Error1Format '%s' invalid or incompatible with argument
No argument for format '%s'"Variant method calls not supported
('%s' is not a valid floating point value
I/O error %d
Integer overflow Invalid floating point operation
btnSuccessClose.Caption=
btnRetry.Caption=
btnFailedClose.Caption=
btnWebCancel.Caption=
btnUptWeb.Caption=
btnProcessCancel.Caption=
btnMinimize.Caption=
btnConfigCancel.Caption=
lblGetUptInfo.Caption=...
btnConfirmCancel.Caption=
btnUptoDateOK.Caption=
btnUpdate.Caption=
btnClose.Hint=
lblUpToDate.Caption=
lblUpdateFailed.Caption=
ImportantUpdate=
WebDownLoad=
lblGetUptInfo.Caption=
UpdateSuccess=%s
lblWebHisTitle.Caption=
btnWebCancelHis.Caption=
btnUptWebHis.Caption=
lblWebHisWhatsNew.Caption=
WebDownLoad=%s
WebNewVerHis=%s
btnClose.Hint=Zav
btnUpdate.Caption=St
btnConfirmCancel.Caption=Storno
btnUptoDateOK.Caption=Ok
lblUpToDate.Caption=Blahop
lblGetUptInfo.Caption=Z
btnConfigCancel.Caption=Storno
btnMinimize.Caption=Minimalizovat
btnProcessCancel.Caption=Storno
btnUptWeb.Caption=Aktualizovat
btnWebCancel.Caption=Pozd
lblUpdateFailed.Caption=Aktualizace se nezda
btnFailedClose.Caption=Zav
btnRetry.Caption=Opakovat
btnSuccessClose.Caption=Ok
UpdateSuccess=%s je aktualizov
WebDownLoad=Nov
verze %s je k dispozici. Aktualizujte nyn
ImportantUpdate=D
btnClose.Hint=Luk
btnUpdate.Caption=Hent
btnConfirmCancel.Caption=Afbryd
btnUptoDateOK.Caption=OK
lblUpToDate.Caption=Tillykke! Du har allerede den nyeste version. Ingen opdatering tilg
lblGetUptInfo.Caption=Henter opdaterings information, vent venligst...
btnConfigCancel.Caption=Afbryd
btnMinimize.Caption=Minimer
btnProcessCancel.Caption=Afbryd
btnUptWeb.Caption=Opdater Nu
btnWebCancel.Caption=Opdater Senere
lblUpdateFailed.Caption=Opdatering mislykkedes! Pr
btnFailedClose.Caption=Luk
btnRetry.Caption=Fors
btnSuccessClose.Caption=OK
UpdateSuccess=%s er opdateret. Du kan nu bruge nyeste funktioner og forbedringer.
WebDownLoad=Ny version af%s er tilg
ImportantUpdate=Vigtig Opdatering
btnClose.Hint=Thi
btnUpdate.Caption=Download
btnConfirmCancel.Caption=Thi
lblUpToDate.Caption=Athi
lblGetUptInfo.Caption=Ak
btnConfigCancel.Caption=Temk
btnMinimize.Caption=T
btnProcessCancel.Caption=Temk
btnUptWeb.Caption=T
btnWebCancel.Caption=T
lblUpdateFailed.Caption=T
btnFailedClose.Caption=Thi
btnRetry.Caption=Ny
UpdateSuccess=%s aci t
WebDownLoad=Version j
t de %s at
ImportantUpdate=K
btnClose.Hint=Sluiten
btnConfirmCancel.Caption=Annuleer
lblUpToDate.Caption=Gefeliciteerd! U heeft al de nieuwste versie. Geen update beschikbaar.
lblGetUptInfo.Caption=Ophalen van update-informatie, even geduld aub...
btnConfigCancel.Caption=Annuleer
btnMinimize.Caption=Verklein
btnProcessCancel.Caption=Annuleer
btnUptWeb.Caption=Update nu
btnWebCancel.Caption=Update Later
lblUpdateFailed.Caption=Update mislukt! Probeer het later opnieuw. Of druk op de Retry-knop om opnieuw te updaten.
btnFailedClose.Caption=Sluiten
btnRetry.Caption=opnieuw proberen
UpdateSuccess=%s is bijgewerkt. Geniet van de nieuwste functies en verbeteringen.
WebDownLoad=Nieuwe versie van %s is beschikbaar. Update nu om de nieuwste functies en verbeteringen te krijgen. Het is gratis.
ImportantUpdate=Belangrijke update
btnClose.Hint=Close
btnConfirmCancel.Caption=Cancel
lblUpToDate.Caption=Congratulations! You already have the latest version. No update is available.
lblGetUptInfo.Caption=Getting update information, please wait...
btnConfigCancel.Caption=Cancel
btnMinimize.Caption=Minimize
btnProcessCancel.Caption=Cancel
btnUptWeb.Caption=Update Now
lblUpdateFailed.Caption=Update failed! Please try again later. Or please click Retry button to update again.
btnFailedClose.Caption=Close
btnRetry.Caption=Retry
lblWebHisTitle.Caption=New version is ready!
btnWebCancelHis.Caption=Update Later
btnUptWebHis.Caption=Update Now
lblWebHisWhatsNew.Caption=What's new
UpdateSuccess=%s is updated. You can enjoy the latest features and improvements now.
WebDownLoad=New version of %s is available. Please update it now to get the latest features and improvements. It's free of charge.
ImportantUpdate=Important Update
WebNewVerHis=%s is now avaliable. Update to enjoy the latest improvements and features!
btnClose.Hint=Sulje
btnUpdate.Caption=Lataa
btnConfirmCancel.Caption=Peruuta
lblUpToDate.Caption=Onnittelut! Sinulla on jo uusin versio. P
lblGetUptInfo.Caption=Haetaan p
btnConfigCancel.Caption=Peruuta
btnMinimize.Caption=Pienenn
btnProcessCancel.Caption=Peruuta
btnUptWeb.Caption=P
btnWebCancel.Caption=P
lblUpdateFailed.Caption=P
btnFailedClose.Caption=Sulje
btnRetry.Caption=Yrit
UpdateSuccess=%s on p
WebDownLoad=Ohjelman %s uusi versio on saatavilla. P
ImportantUpdate=T
btnClose.Hint=Sluit
lblUpToDate.Caption=Gefeliciteerd! U hebt reeds de laatste versie. Geen nieuwe versie beschikbaar.
lblGetUptInfo.Caption=Bijwerk informatie verkrijgen, wachten alstublieft...
btnMinimize.Caption=Minimaliseer
btnUptWeb.Caption=Nu Bijwerken
btnWebCancel.Caption=Later Bijwerken
lblUpdateFailed.Caption=Bijwerken mislukt! Probeer later opnieuw alstublieft. Of klik op de "Opnieuw" toets om opnieuw bij te werken.
btnFailedClose.Caption=Sluit
btnRetry.Caption=Opnieuw
UpdateSuccess=%s is bijgewerkt. U kan nu van de laatste mogelijkheden en verbeteringen genieten.
WebDownLoad=Nieuwe versie van %s is beschikbaar. Nu bijwerken alstublieft om de laatste mogelijkheden en verbeteringen te verkrijgen. Het is gratis.
ImportantUpdate=Belangrijke Update
btnClose.Hint=Fermer
btnUpdate.Caption=T
btnConfirmCancel.Caption=Annuler
lblUpToDate.Caption=F
re version.Aucune mise
lblGetUptInfo.Caption=Obtenir des informations de mise
btnConfigCancel.Caption=Annuler
btnMinimize.Caption=R
btnProcessCancel.Caption=Annuler
btnUptWeb.Caption=Mettre
btnWebCancel.Caption=Mettre
lblUpdateFailed.Caption=Echec de la mise
btnFailedClose.Caption=Femer
btnRetry.Caption=R
UpdateSuccess=%s est mis
jour.Vous pouvez profiter des derni
WebDownLoad=Nouvelle version de %s est disponible. S'il vous plait, mettre
ImportantUpdate=Importante mise
btnClose.Hint=Schlie
btnUpdate.Caption=Herunterladen
btnConfirmCancel.Caption=Abbrechen
btnUptoDateOK.Caption=OK!
lblUpToDate.Caption=Herzlichen Gl
lblGetUptInfo.Caption=Aktualisierungsinformationsabruf, bitte warten...
btnConfigCancel.Caption=Abbrechen
btnMinimize.Caption=Minimieren
btnProcessCancel.Caption=Abbrechen
btnUptWeb.Caption=Jetzt aktualisieren
btnWebCancel.Caption=Sp
lblUpdateFailed.Caption=Aktualisierung gescheitert! Bitte sp
btnFailedClose.Caption=Schlie
btnRetry.Caption=Wiederholen
btnSuccessClose.Caption=OK!
UpdateSuccess=%s wird aktualisiert. Jetzt k
WebDownLoad=Neue Version von %s ist verf
ImportantUpdate=Wichtige Aktualisierung
btnClose.Hint=Bez
btnUpdate.Caption=Let
btnConfirmCancel.Caption=M
lblUpToDate.Caption=Gratul
lblGetUptInfo.Caption=Friss
btnConfigCancel.Caption=M
btnMinimize.Caption=Kis m
btnProcessCancel.Caption=M
btnUptWeb.Caption=Friss
btnWebCancel.Caption=Friss
lblUpdateFailed.Caption=A friss
btnFailedClose.Caption=Bez
UpdateSuccess=%s friss
ImportantUpdate=Fontos friss
btnClose.Hint=Tutup
btnUpdate.Caption=Mengunduh
btnConfirmCancel.Caption=Batal
btnUptoDateOK.Caption=OKE
lblUpToDate.Caption=Selamat! Anda sudah memiliki versi terbaru. Tidak ada pembaruan tersedia.
lblGetUptInfo.Caption=Mendapatkan Informasi pembaruan, silahkan tunggu ...
btnConfigCancel.Caption=batal
btnMinimize.Caption=Minimalkan
btnProcessCancel.Caption=Batal
btnUptWeb.Caption=Perbaru Sekarang
btnWebCancel.Caption=Perbarui Nanti
lblUpdateFailed.Caption=Pembaruan gagal! Silahkan coba lagi nanti. Atau silahkan klik tombol Retry untuk perbarui lagi.
btnFailedClose.Caption=Tutup
btnRetry.Caption=Coba lagi
btnSuccessClose.Caption=OKE
UpdateSuccess=%s diperbarui. Anda dapat menikmati fitur terbaru dan perbaikan sekarang.
WebDownLoad=Versi baru dari %s tersedia. Silahkan perbarui sekarang untuk mendapatkan fitur terbaru dan perbaikan. Ini gratis.
ImportantUpdate=Pembaruan Penting
btnClose.Hint=Chiudi
btnUpdate.Caption=Scarica
btnConfirmCancel.Caption=Annulla
lblUpToDate.Caption=Congratulazioni! Hai gi
lblGetUptInfo.Caption=Sto ricevendo informazioni sull'aggiornamento, attendere prego...
btnConfigCancel.Caption=Annulla
btnMinimize.Caption=Riduci a icona
btnProcessCancel.Caption=Annulla
btnUptWeb.Caption=Aggiorna adesso
btnWebCancel.Caption=Aggiorna in seguito
lblUpdateFailed.Caption=Aggiornamento fallito! Per favore riprova pi
btnFailedClose.Caption=Chiudi
btnRetry.Caption=Riprova
WebDownLoad=Una nuova versione di %s
ImportantUpdate=Aggiornamento importante
WebDownLoad=%s
UpdateSuccess=%s
btnClose.Hint=Aizv
btnUpdate.Caption=Lejupiel
btnConfirmCancel.Caption=Atcelt
btnUptoDateOK.Caption=Labi
lblUpToDate.Caption=Apsveicam! Jums jau ir jaun
lblGetUptInfo.Caption=Sa
btnConfigCancel.Caption=Atcelt
btnMinimize.Caption=Samazin
btnProcessCancel.Caption=Atcelt
btnUptWeb.Caption=Atjaunin
btnWebCancel.Caption=Atjaunin
lblUpdateFailed.Caption=Atjaunin
btnFailedClose.Caption=Aizv
btnRetry.Caption=Turpin
btnSuccessClose.Caption=Labi
UpdateSuccess=%s ir atjaunin
WebDownLoad=Ir pieejami %s no jaun
ImportantUpdate=Svar
btnClose.Hint=Zamknij
btnUpdate.Caption=Pobierz
btnConfirmCancel.Caption=Anuluj
lblUpToDate.Caption=Gratulacje! Masz ju
lblGetUptInfo.Caption=Uzyskiwanie informacji o aktualizacji, prosz
btnConfigCancel.Caption=Anuluj
btnMinimize.Caption=Minimalizuj
btnProcessCancel.Caption=Anuluj
btnUptWeb.Caption=Aktualizuj teraz
btnWebCancel.Caption=Aktualizuj p
lblUpdateFailed.Caption=Aktualizacja nie powiod
btnFailedClose.Caption=Zamknij
btnRetry.Caption=Spr
UpdateSuccess=%s jest zaktualizowany. Mo
WebDownLoad=Nowa wersja %s jest dost
ImportantUpdate=Wa
btnClose.Hint=Fechar
btnUpdate.Caption=Baixar
btnConfirmCancel.Caption=Cancelar
lblUpToDate.Caption=Parab
lblGetUptInfo.Caption=Obtendo informa
btnConfigCancel.Caption=Cancelar
btnMinimize.Caption=Minimizar
btnProcessCancel.Caption=Cancelar
btnUptWeb.Caption=Atualizar Agora
btnWebCancel.Caption=Atualizar Depois
lblUpdateFailed.Caption=Falha na atualiza
btnFailedClose.Caption=Fechar
btnRetry.Caption=Tentar Novamente
UpdateSuccess=%s est
WebDownLoad=Nova vers
o do %s est
ImportantUpdate=Atualiza
o Importante
btnUpdate.Caption=Transferir
lblGetUptInfo.Caption=A obter informa
btnUpdate.Caption=Descarc
btnConfirmCancel.Caption=Anuleaz
lblUpToDate.Caption=Felicit
lblGetUptInfo.Caption=Preiau informa
btnConfigCancel.Caption=Anuleaz
btnMinimize.Caption=Minimizeaz
btnProcessCancel.Caption=Anuleaz
btnUptWeb.Caption=Actualizeaz
btnWebCancel.Caption=Actualizeaz
lblUpdateFailed.Caption=Actualizarea a e
btnRetry.Caption=Re
UpdateSuccess=%s a fost actualizat. Po
WebDownLoad=E disponibil
de %s. Actualizeaz
ImportantUpdate=Actualizare Important
btnClose.Hint=Zatvori
btnUpdate.Caption=Preuzmi
btnConfirmCancel.Caption=Otka
btnUptoDateOK.Caption=U redu
btnConfigCancel.Caption=Otka
btnMinimize.Caption=Umanji
btnProcessCancel.Caption=Otka
btnUptWeb.Caption=A
btnWebCancel.Caption=A
btnFailedClose.Caption=Zatvori
btnRetry.Caption=Ponovi
btnSuccessClose.Caption=U redu
lblUpdateFailed.Caption=A
lblGetUptInfo.Caption=Preuzimanje informacija o a
ImportantUpdate=Va
UpdateSuccess=%s je a
WebDownLoad=Dostupna je nova verzija %s . Besplatno je a
btnUpdate.Caption=Stiahn
btnConfirmCancel.Caption=Zru
lblUpToDate.Caption=Blaho
btnConfigCancel.Caption=Zru
btnMinimize.Caption=Minimalizova
btnProcessCancel.Caption=Zru
btnUptWeb.Caption=Aktualizova
btnWebCancel.Caption=Aktualizova
lblUpdateFailed.Caption=Aktualiz
btnRetry.Caption=Zopakova
UpdateSuccess=%s je aktualizovan
verzia %s je k dispoz
btnClose.Hint=Zapri
btnUpdate.Caption=Prenos
btnConfirmCancel.Caption=Prekli
btnUptoDateOK.Caption=V redu
lblGetUptInfo.Caption=Pridobivanje informacij posodabljanja, prosimo po
btnConfigCancel.Caption=Prekli
btnMinimize.Caption=Pomanj
btnProcessCancel.Caption=Prekli
btnUptWeb.Caption=Posodobi zdaj
btnWebCancel.Caption=Posodobi kasneje
lblUpdateFailed.Caption=Posodobitev ni uspela! Prosimo, poizkusite znova pozneje, ali pa kliknite gumb Ponovi za ponovno posodobitev.
btnFailedClose.Caption=Zapri
UpdateSuccess=%s je posodobljeno. U
WebDownLoad=Nova razli
ica%s je na voljo. Prosimo, uporabite jo in dobili boste najnovej
ImportantUpdate=Pomembna posodobitev
btnClose.Hint=Cerrar
btnUpdate.Caption=Descargar
lblGetUptInfo.Caption=Obteniendo informaci
btnUptWeb.Caption=Actualizar ahora
btnWebCancel.Caption=Actualizar luego
btnFailedClose.Caption=Cerrar
btnRetry.Caption=Reintentar
UpdateSuccess=%s se actualiz
WebDownLoad=Una nueva versi
n de %s est
ImportantUpdate=Actualizaci
n Importante
btnClose.Hint=St
btnUpdate.Caption=H
btnConfirmCancel.Caption=Avbryt
lblUpToDate.Caption=Grattis! Du har redan den senaste versionen. Ingen uppdatering finns.
lblGetUptInfo.Caption=F
btnConfigCancel.Caption=Avbryt
btnMinimize.Caption=Minimera
btnProcessCancel.Caption=Avbryt
btnUptWeb.Caption=Uppdatera nu
btnWebCancel.Caption=Uppdatera senare
lblUpdateFailed.Caption=Uppdatering gick ej! V.g. prova igen senare. Eller v.g. klicka p
btnFailedClose.Caption=St
btnRetry.Caption=F
WebDownLoad=Ny version f
r %s finns. V.g. uppdatera den nu f
ImportantUpdate=Viktig uppdatering
btnClose.Hint=Kapat
btnUptoDateOK.Caption=Tamam
lblUpToDate.Caption=Tebrikler! En son s
lblGetUptInfo.Caption=G
btnMinimize.Caption=K
btnWebCancel.Caption=Sonra G
lblUpdateFailed.Caption=G
btnFailedClose.Caption=Kapat
btnRetry.Caption=Tekrar Dene
btnSuccessClose.Caption=Tamam
UpdateSuccess=%s g
WebDownLoad=%s kullan
btnclose.Hint=
btnupdate.Caption=
btnconfirmcancel.Caption=
btnuptodateok.Caption=OK
lbluptodate.Caption=
lblgetuptinfo.Caption=
btnconfigcancel.Caption=
btnminimize.Caption=
btnprocesscancel.Caption=
btnuptweb.Caption=
btnwebcancel.Caption=
lblupdatefailed.Caption=
btnfailedclose.Caption=
btnretry.Caption=
btnsuccessclose.Caption=OK
Updatesuccess=%s
Webdownload=
Importantupdate=
btnConfirmCancel.Caption=B
lblUpToDate.Caption=Ch
btnConfigCancel.Caption=H
btnMinimize.Caption=Thu nh
btnProcessCancel.Caption=H
btnUptWeb.Caption=C
btnWebCancel.Caption=C
lblUpdateFailed.Caption=C
btnRetry.Caption=Th
a %s. H
ImportantUpdate=C
2.1.5.933
2.0.0.0
Remove it with Ad-Aware
- Click (here) to download and install Ad-Aware Free Antivirus.
- Update the definition files.
- Run a full scan of your computer.
Manual removal*
- Terminate malicious process(es) (How to End a Process With the Task Manager):
LocalLang.exe:2652
ASIns.exe:2428
Display.exe:3856
Install_PintoStartMenu.exe:3376
regsvr32.exe:3196
regsvr32.exe:3204
regsvr32.exe:2264
PluginInstall.exe:2172
asc7-setup-monster.exe:1188
asc7-setup-monster.tmp:1704
ASCUpgrade.exe:2256
ASCUpgrade.exe:2676
sc.exe:3532
sc.exe:3404
Suo12_StartupManager.exe:3364
Suo12_StartupManager.exe:3260
AutoCare.exe:3296
AutoSweep.exe:3560
LiveUpdate.exe:3420
LiveUpdate.exe:2400
Regsvr32.exe:3576
Regsvr32.exe:3536
ACPreScan.exe:2488
verclsid.exe:3364
verclsid.exe:3608
IObitUninstaller.exe:2372
ASCInit.exe:2644
SPSetup.tmp:2712
RealTimeProtector.exe:2832
RealTimeProtector.exe:2336
SPSetup.exe:2344
Homepage.exe:3296
UninstallPromote.exe:3508
UninstallPromote.exe:3268
Uninstaler_SkipUac.exe:3412
PPUninstaller.exe:3428 - Delete the original Trojan file.
- Delete or disinfect the following files created/modified by the Trojan:
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\Um7UdXgzvHWLL7R[1] (120 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsp16.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsi14.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\WmiInspector.dll (4992 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsrC.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsy8.tmp (69460 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsv15.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQNSD2J\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nss13.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\4DQJW9YN\pixl[1].htm (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nst51.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsw57.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsoD.tmp (1 bytes)
%System%\drivers\etc\hosts (182 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQISTQM\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsd55.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\4DQJW9YN\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nso10.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsj56.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\OPQISTQM\Um7UdXgzvHWLL7R[1] (105 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsf53.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsa37.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\WLMVCPYN\validc[1].htm (1 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\System.dll (11 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\INetC.dll (784 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsu11.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsl54.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsn9.tmp\IpConfig.dll (4992 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsg12.tmp (15 bytes)
%Documents and Settings%\%current user%\Local Settings\Temporary Internet Files\Content.IE5\WLMVCPYN\desktop.ini (67 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\nsgE.tmp (6 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\HealthLevel.ini (82 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Advanced SystemCare 8.lnk (1 bytes)
%Documents and Settings%\All Users\Desktop\Advanced SystemCare 8.lnk (1 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced SystemCare 8.lnk (1 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Display_log.txt (312 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\8B684D6F-AA80-453B-BD5F-1A122B58AB7B\ASIns.exe (5442 bytes)
C:\libeay32.dll (6741 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\FF2748B2-525B-4884-84C5-B5112B4BA6D2\iobitdownloader_monster.exe (112 bytes)
C:\ssleay32.dll (1821 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Uninstall Programs.lnk (887 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\MenuRight.dat (1064 bytes)
%Program Files%\IObit\Surfing Protection\Extensions.plist (643 bytes)
%Documents and Settings%\%current user%\AppData\LocalLow\IObit\Advanced SystemCare V8\Main.ini (76 bytes)
%Documents and Settings%\%current user%\Application Data\Apple Computer\Safari\Extensions\Extensions.plist (643 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\AscService.ini (152 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\C0AF5F80AA0D55CA55AD4471DD73D761 (793 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar2.tmp (2712 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab5.tmp (49 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\140B4CDED8ED877CDC65B54BA965BD39 (1 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BF68F4714092295550497DD56F57004 (408 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 (408 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab1.tmp (54 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar6.tmp (2712 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\140B4CDED8ED877CDC65B54BA965BD39 (168 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Tar4.tmp (2712 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\0AE1A896B17983DA2D3F15114E2248F0 (9 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\C0AF5F80AA0D55CA55AD4471DD73D761 (168 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\2BF68F4714092295550497DD56F57004 (18 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Cab3.tmp (54 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 (49 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\67641\asc7-setup-monster.exe (778333 bytes)
%Documents and Settings%\%current user%\Application Data\Microsoft\CryptnetUrlCache\MetaData\0AE1A896B17983DA2D3F15114E2248F0 (184 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-2VET5.tmp\asc7-setup-monster.tmp (7386 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-LD4TQ.tmp (4185 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-8V0AD.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-564HF.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-TVTDN.tmp (2321 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-LL68P.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-EELJV.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-9ST76.tmp (1281 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Inno_English.lng (8 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-7RDJU.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-CPFP7.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Lang.dat (15 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-4U869.tmp (21 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-UIAVO.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OHHF2.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-1VC5V.tmp (4185 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-QEU0V.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-8VS2G.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wlh_amd64\is-V3MAG.tmp (27 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-35BI6.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-L756C.tmp (21 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-SI203.tmp (4 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-H2MA6.tmp (15799 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-TNP35.tmp (4185 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Uninstall Advanced SystemCare.lnk (869 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-NTE2H.tmp (70 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-OBESN.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-PM19I.tmp (5873 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-BPTJM.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-9A6OH.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-21MRR.tmp (3361 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\ASCUpgrade.exe (6722 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-173OJ.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-H5MDV.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-5GDGD.tmp (14022 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-D4029.tmp (1281 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Main.ini (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-6IJU5.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OR7RA.tmp (6960 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-DGD66.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-60H0A.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-V5B6H.tmp (14 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\Cus.dbd (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2KH8C.tmp (601 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\_isetup\_shfoldr.dll (23 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-E4BR8.tmp (5 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-VDE49.tmp (48 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-9LT28.tmp (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2CRSD.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-C646H.tmp (6841 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-N2Q3T.tmp (7971 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-38799.tmp (28 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-1RUOR.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-97U95.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-KVUH1.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ICQ3H.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-4GA92.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-H1CHP.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-FMTCM.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wnet_amd64\is-29GFH.tmp (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OFGPI.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-NH8T4.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-BE4QR.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-QST2E.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-KCNI5.tmp (4545 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\Setup Log 2016-04-05 #001.txt (1677361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S57E0.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-AGKJP.tmp (542 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-UEBNL.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-5SS78.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-63N7P.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7R2F5.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ODIAT.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-4LLVQ.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-6HGGP.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-TK9C3.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-2T95P.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3LJNJ.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-P8ND4.tmp (15278 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-K41CT.tmp (41 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-57G8T.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-RV2JT.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-45L0A.tmp (1281 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Lang.dat (15 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-MAK26.tmp (14022 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-SQP39.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-1014P.tmp (15278 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-NOKOJ.tmp (20 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-LMH65.tmp (7726 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-NOSLK.tmp (16582 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-8UNEM.tmp (9976 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-101DD.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-OTG4M.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S2CS6.tmp (5873 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-JVVER.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-GMCUR.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-IBOJV.tmp (7726 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ULJ42.tmp (39945 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-LRV6D.tmp (7385 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-7B0HB.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-OOI7N.tmp (21387 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-DJTL3.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-POUON.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2FSP1.tmp (43 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-F1TV7.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-69TG2.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Config\is-RD8BN.tmp (896 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-1SJJC.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-C258R.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-5B4PM.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-RF826.tmp (3 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7QDAI.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3THNO.tmp (2321 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\RdZone.dll (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7S5VD.tmp (7433 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-R4RPH.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-NSOEC.tmp (28 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-EILP8.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-QCI0A.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-568IQ.tmp (10815 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-27MBN.tmp (11 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-6OLCA.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-OVP50.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wnet_x86\is-JPN1K.tmp (23 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-J0IUS.tmp (10 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-NRVP8.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-IJ7H5.tmp (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-483FK.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-CJ3OE.tmp (24284 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-RRVND.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-95VOI.tmp (32429 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-67DD1.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-Q7P4I.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-OHAUJ.tmp (28498 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-IJV9N.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-L67LF.tmp (51 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-BLQML.tmp (9 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-5THJB.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-HM90U.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-A851D.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-64KO2.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-C0CD9.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-MUH3V.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-3B3IR.tmp (1425 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Turbo Boost.lnk (862 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-QH5BB.tmp (8657 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-592E1.tmp (10 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Protect.lnk (856 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-T69AK.tmp (6841 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S1KAE.tmp (5873 bytes)
%Program Files%\IObit\Advanced SystemCare 8\unins000.dat (28773 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-6GMRB.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-8U1PP.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-BOH21.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-71428.tmp (2321 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-V9QP4.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-1MMIC.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-GVG5T.tmp (335 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-MENVS.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-O9U9U.tmp (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3E4DA.tmp (7433 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-81RT0.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-443KU.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3AD17.tmp (63 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-VPH9E.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-TF4IM.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-S7ULC.tmp (30 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-QQ4J9.tmp (14988 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-TPDSI.tmp (11518 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-2I8TI.tmp (17627 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-L100D.tmp (32763 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-NFLCM.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-D91LM.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-AQIUD.tmp (5441 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-ROUTB.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-D15TU.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-TIF9E.tmp (9605 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-5I6UU.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\is-E59QG.tmp (601 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-70EJC.tmp (19 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-R8R62.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-20M4N.tmp (12287 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3G2CI.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-CMJE6.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-NCIUF.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-1O8JQ.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-1IS1F.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-8VICO.tmp (5 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wxp_x86\is-RRUAN.tmp (23 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Update\is-BE1QD.tmp (3 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-3OIA2.tmp\Cus.dbd (7 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-ASI2T.tmp (3361 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-8H994.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\win7_amd64\is-Q5RCQ.tmp (27 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-E8277.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-M46AI.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-KK7BC.tmp (61184 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-P3IAG.tmp (40450 bytes)
%Program Files%\IObit\Advanced SystemCare 8\skin\is-LGRRC.tmp (14988 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-61ECD.tmp (8281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-QK4T8.tmp (4185 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\Advanced SystemCare 8\Toolbox.lnk (856 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\win7_x86\is-C2FT2.tmp (24 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-7E3TD.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-S9EKI.tmp (64 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-NSQDB.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-75OHQ.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-SR4JQ.tmp (4185 bytes)
%Program Files%\IObit\Advanced SystemCare 8\unins000.msg (646 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-F0SMF.tmp (10815 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-PJTBR.tmp (4545 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wxp_amd64\is-67EK8.tmp (26 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-URU6B.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-HSGCA.tmp (22350 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-I3JP3.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-02CA2.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-9AVVS.tmp (11518 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-Q2OMR.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-3OL93.tmp (44 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-6RMEB.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-PK35A.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Toolbox_Language\is-PN3AP.tmp (2105 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-5HALP.tmp (11518 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-OSIP9.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Language\is-T1D42.tmp (1281 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LinkImages\is-JRE3O.tmp (1425 bytes)
%Program Files%\IObit\Advanced SystemCare 8\is-7HHBH.tmp (673 bytes)
%Program Files%\IObit\Advanced SystemCare 8\drivers\wlh_x86\is-U7TQV.tmp (24 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\ASCInit.log (1058 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\Startup Manager\mainData.dat (12 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Startup Manager\taskInfo.ini (4 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\License.log (417 bytes)
%WinDir%\WindowsUpdate.log (5150 bytes)
%Program Files%\IObit\LiveUpdate\LiveUpdate.log (570 bytes)
%Program Files%\IObit\Advanced SystemCare 8\LiveUpdate.log (744 bytes)
%Program Files%\IObit\LiveUpdate\Language\Slovak.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Hungarian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Czech.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\ChineseSimp.lng (1 bytes)
%Program Files%\IObit\LiveUpdate\Language\Portuguese(PT-PT).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Malayalam.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Russian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Greek.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Portuguese(PT-BR).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Latvian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\LiveUpdate.exe (21387 bytes)
%Program Files%\IObit\LiveUpdate\Language\Polish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Dinka.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\ProductStatistics.dll (4185 bytes)
%Program Files%\IObit\LiveUpdate\Language\English.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Finnish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Dutch.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Hebrew.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Romanian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Korean.lng (1 bytes)
%Program Files%\IObit\LiveUpdate\Language\Arabic.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Spanish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Vietnamese.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Belarusian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Japanese.lng (1 bytes)
%Program Files%\IObit\LiveUpdate\Language\Flemish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Slovenian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\ChineseTrad.lng (1 bytes)
%Program Files%\IObit\LiveUpdate\Language\Serbian (latin).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Serbian (cyrillic).lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Ukrainian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Italian.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\German.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Indonesia.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\French.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Turkish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Swedish.lng (2 bytes)
%Program Files%\IObit\LiveUpdate\Language\Danish.lng (2 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLBF.tmp (280160 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\Drivers.db.temp (63580 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB19.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Vietnamese.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4E.tmp (392 bytes)
%Program Files%\IObit\IObit Uninstaller\lang.dbd (26 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\German.lng (41 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1A.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Hindi.lng (34 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB24.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\maddisAsm_.bpl (51 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallPromote.exe (11518 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\ChineseTrad.lng (25 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB43.tmp (6984 bytes)
%Program Files%\IObit\IObit Uninstaller\sqlite3.dll (4545 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Hungarian.lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB35.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4C.tmp (24248 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB18.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4D.tmp (16 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Malayalam.lng (34 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Indonesian.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\taskmgr.dll (2105 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4F.tmp (23608 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Portuguese(PT-BR).lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallRote.dbd (1714 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB31.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\vcl120.bpl (14988 bytes)
%Program Files%\IObit\IObit Uninstaller\madbasic_.bpl (673 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB50.tmp (9760 bytes)
%Program Files%\IObit\IObit Uninstaller\IObitUninstaler.exe (61184 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB22.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4B.tmp (17904 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Danish.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Ukrainian.lng (39 bytes)
%Program Files%\IObit\IObit Uninstaller\R3vM4pIiMK (30622 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Bulgarian.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Slovak.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\Uninstall_Mitor.exe (296 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB29.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB4A.tmp (20504 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2F.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB40.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB32.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1F.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1B.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Polish.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Korean.lng (28 bytes)
%Program Files%\IObit\IObit Uninstaller\datastate.dll (601 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB42.tmp (5 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB48.tmp (28864 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Serbian(Cyrillic).lng (36 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Dutch.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallExplorer32_1.dll (3825 bytes)
%Program Files%\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe (262 bytes)
%Program Files%\IObit\IObit Uninstaller\Skin\classic.rcc (1818 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Swedish.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Thai.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1E.tmp (6 bytes)
%Documents and Settings%\All Users\Desktop\IObit Uninstaller.lnk (881 bytes)
%Program Files%\IObit\IObit Uninstaller\Skin\metro.rcc (1750 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Arabic.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3F.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallDisplay.exe (3849 bytes)
%Program Files%\IObit\IObit Uninstaller\PPUninstaller.exe (6374 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Catalan.lng (40 bytes)
%Program Files%\IObit\IObit Uninstaller\pr.dat (16 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB44.tmp (1928 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB26.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB47.tmp (18768 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB23.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB30.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1C.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallMonitor.exe (188 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2A.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Mongolian.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Flemish.lng (40 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3D.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB21.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB1D.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\rtl120.bpl (7433 bytes)
%Program Files%\IObit\IObit Uninstaller\Install_PintoStartMenu.exe (1869 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Belarusian.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\UninstallMenuRight32_1.dll (219 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\French.lng (40 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\Main.ini (94 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Serbian(Latin).lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Slovenian.lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3C.tmp (8 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB27.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB39.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Romanian.lng (40 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB49.tmp (26 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Latvian.lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB20.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB28.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Finnish.lng (37 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Greek.lng (42 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Japanese.lng (27 bytes)
%Program Files%\IObit\IObit Uninstaller\ProductStatistics.dll (4185 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB33.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3A.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB38.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Croatian.lng (38 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\English.lng (36 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB45.tmp (9496 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3E.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2C.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\vclx120.bpl (1281 bytes)
%Program Files%\IObit\IObit Uninstaller\SysRest.dll (76 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB3B.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\ChineseSimp.lng (24 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB25.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\madexcept_.bpl (2105 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2E.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\uninstall_qdb.dbd (5 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB41.tmp (28320 bytes)
%Program Files%\IObit\IObit Uninstaller\SendBugReportNew.exe (3361 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2B.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Spanish.lng (39 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Georgian.lng (38 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB36.tmp (6 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB46.tmp (10216 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB34.tmp (6 bytes)
%Program Files%\IObit\IObit Uninstaller\EULA.rtf (41 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Italian.lng (35 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\IObit Uninstaller\Uninstall IObit Uninstaller.lnk (915 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Russian.lng (38 bytes)
%Documents and Settings%\All Users\Start Menu\Programs\IObit Uninstaller\IObit Uninstaller.lnk (893 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Portuguese(PT-PT).lng (39 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB17.tmp (7 bytes)
%Program Files%\IObit\IObit Uninstaller\webres.dll (6841 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Turkish.lng (39 bytes)
%Program Files%\IObit\IObit Uninstaller\Language\Albanian.lng (40 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB2D.tmp (7 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLBB.tmp (233 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Boottime\path.ini (97 bytes)
%Program Files%\Common Files\IObit\Advanced SystemCare V8\App.bk (227 bytes)
%Documents and Settings%\All Users\Application Data\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}\desktop.ini (63 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\Ignore.ini (355358 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLBA.tmp (300 bytes)
%Program Files%\Common Files\IObit\Advanced SystemCare V8\EApp.bk (160 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V7\Main.Ini (402 bytes)
%Program Files%\IObit\Advanced SystemCare 8\ASCInit.log (10483 bytes)
%Program Files%\IObit\Surfing Protection\is-BBS1E.tmp (3073 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-4JC74.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-SIQDC.tmp (19 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-AIDPO.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-0BQ4A.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\is-1UDOL.tmp (398 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-A3T7D.tmp (42 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-55MUT.tmp (4545 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\is-5KLKR.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-AT1VH.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-6KEQG.tmp (136 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-OR7EH.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-SLBUS.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-2SFV4.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-CBS3B.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-SHBS2.tmp (22 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-PMEI5.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-7O4HG.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\is-2534D.tmp (9605 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-67T1A.tmp (24 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-LF24R.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-DD5SS.tmp (24 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-B9EU5.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-B728R.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-0GOHT.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-R3CBA.tmp (545 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-4OU93.tmp (393 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-JNTKS.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Database\is-7TE6N.tmp (768 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-TRN2E.tmp (5441 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-DSQTL.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-QTTSF.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-9AH8N.tmp (13 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-A1DCT.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-O1R1C.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-VJR48.tmp (14 bytes)
%Program Files%\IObit\Surfing Protection\is-CS8MG.tmp (32233 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-IHAEK.tmp (812 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-AVCTC.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\is-64FBE.tmp (153 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-1F4BI.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-ECKDT.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-4EUPL.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-GMBM5.tmp (7 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-GSCME.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-KB0M8.tmp (768 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-8N5N5.tmp (924 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-B1EVU.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-NJIQL.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-URB1G.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-533N1.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-EPP6S.tmp (206 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-JI15G.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-7TGN1.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\is-2FEGE.tmp (8281 bytes)
%Program Files%\IObit\Surfing Protection\unins000.msg (646 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-3LLD4.tmp (3 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-Q9EOD.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-17Q2O.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-4MH0F.tmp (2 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-RHA8G.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\Database\is-F3O2B.tmp (23 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-7JBR6.tmp (28 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-TVUBO.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-0MSTH.tmp (7385 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-JH346.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\chrome\content\is-U1C7C.tmp (8 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-3J744.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\unins000.dat (11432 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-MECSB.tmp (5 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\is-LC7QD.tmp (4 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp\_isetup\_shfoldr.dll (23 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-SHQ3O.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-9FOCB.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-89AO1.tmp (878 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\is-FT67G.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-AV044.tmp (6 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-A5QP6.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\ascsurfingprotection@iobit.com\is-DJQIH.tmp (843 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-Q7FUJ.tmp (4 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\images\is-KC3SS.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\is-O1QK5.tmp (6 bytes)
%Program Files%\IObit\Surfing Protection\Database\is-JCT5N.tmp (38295 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-LM0T0.tmp (1 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-8KQGV.tmp\Inno_English.lng (5 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-ENHTK.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\Language\is-N24AR.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-KHFH5.tmp (1 bytes)
%Program Files%\IObit\Surfing Protection\BrowerProtect\bbmegnmpleoagolcnjnejdacakedpcgd\2.0.0_0\Plugin\Img\is-8F20B.tmp (1 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\is-LKT62.tmp\SPSetup.tmp (7386 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Wizard.log (1150 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\Homepage Protection\Homepage.log (673 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Install.ini (159 bytes)
%Documents and Settings%\%current user%\LocalLow\IObit\installinfo.ini (82 bytes)
%Documents and Settings%\%current user%\LocalLow\IObit\AC.ini (146 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\BCleanerdb (489 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\IObit Uninstaller\BCleanerdb-journal (532 bytes)
%Documents and Settings%\%current user%\Local Settings\Temp\ZLB52.tmp (28320 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\PPMain.ini (103 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\google.xml (2 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\HomepageProtect.ini (23394 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\bing.xml (2 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\HomepageIgnore.dbd (1 bytes)
%Documents and Settings%\All Users\Application Data\IObit\Advanced SystemCare V8\Homepage Protection\ASCService.log (9449 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\yahoo.xml (1 bytes)
%Documents and Settings%\%current user%\Application Data\IObit\Advanced SystemCare V8\ProgramDeactivator\myAutoDisable.ini (4 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\HomepageWhite.dbd (1 bytes)
%Program Files%\IObit\Advanced SystemCare 8\ASCService.log (21755 bytes)
%Program Files%\IObit\Advanced SystemCare 8\Database\HomepageBlack.dbd (130 bytes) - Delete the following value(s) in the autorun key (How to Work with System Registry):
[HKCU\Software\Microsoft\Windows\CurrentVersion\Run]
"Advanced SystemCare 8" = "%Program Files%\IObit\Advanced SystemCare 8\ASCTray.exe /Auto" - Restore the original content of the HOSTS file (%System%\drivers\etc\hosts):
127.0.0.1 localhost - Reboot the computer.
*Manual removal may cause unexpected system behaviour and should be performed at your own risk.