NOD32 problem

1

NOD32 problem

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

Stalno mi se javlja kada instaliram NOD 32 neki trojanac, dole desno i ne moze da nestane..stalno kaze obrisi ga, a nemam gde ili posle restarta ce nestati to..stalno treperi i ne mogu da ga se resim..molim vas pomozite kako da ga se resim??

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master uèitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8617
  • Gde živiš: Novi Beograd

Postupi kako se ovde kaze:

http://www.mycity.rs/Ambulanta/Kako-otvoriti-temu-u-Ambulanti.html

i neko ce ti pomoci.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

evo HIJACTHIS...imam nod 32 i stalno mi iskace u donjem desnom uglu neki prozor koji prijavljuje trojana i stalno treperi i nevidljiv postaje..ne znam sta da radim evo log file:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:27:29 AM, on 11/25/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\Samsung\ComSMMgr\ssmmgr.exe
C:\WINDOWS\vsnp2uvc.exe
C:\WINDOWS\tsnp2uvc.exe
C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Documents and Settings\Kvik\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Samsung Common SM] "C:\WINDOWS\Samsung\ComSMMgr\ssmmgr.exe" /autorun
O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
O4 - HKLM\..\Run: [tsnp2uvc] C:\WINDOWS\tsnp2uvc.exe
O4 - HKLM\..\Run: [Home Theater SchSvr] "C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe"
O4 - HKLM\..\Run: [WINCINEMAMGR] "C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [kamsoft] C:\WINDOWS\system32\kamsoft.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Gadwin PrintScreen Pro] C:\Program Files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe /nosplash
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6813 bytes

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Pozdrav.. Ja cu preuzeti tvoj slucaj Wink

Uradi sledece :


1.
Privremeno iskljuci Nod32



2.

Skini ComboFix sa jedne od sledecih adresa na Desktop:
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
http://www.forospyware.com/sUBs/ComboFix.exe
http://subs.geekstogo.com/ComboFix.exe

Startuj ga i ne diraj prozor programa dok skenira.
Sledi uputstva na ekranu. Kada zavrsi pojavice se log (C:\ComboFix.txt) koji ces nam ovde iskopirati.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

ComboFix 08-11-24.01 - Kvik 2008-11-25 9:28:52.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2460 [GMT 1:00]
Running from: c:\documents and settings\Kvik\Desktop\ComboFix.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\abk.bat
C:\autorun.inf
c:\documents and settings\Kvik\Desktop\predmeti\CS111\cs111\4. nedelja\filmovi\Desktop_.ini
C:\ij.bat
c:\windows\system32\gasretyw0.dll
c:\windows\system32\kamsoft.exe
D:\abk.bat
D:\Autorun.inf
D:\ij.bat

.
((((((((((((((((((((((((( Files Created from 2008-10-25 to 2008-11-25 )))))))))))))))))))))))))))))))
.

2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\Yahoo!
2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\CCleaner
2008-11-24 18:50 . 2008-11-24 18:50 410,976 --a------ c:\windows\system32\deploytk.dll
2008-11-24 18:40 . 2008-03-03 14:25 5,702 --ah----- c:\windows\nod32restoretemdono.reg
2008-11-24 18:40 . 2008-03-03 18:21 568 --ah----- c:\windows\nod32fixtemdono.reg
2008-11-24 18:40 . 2008-11-24 18:40 268 --ah----- C:\sqmdata01.sqm
2008-11-24 18:40 . 2008-11-24 18:40 244 --ah----- C:\sqmnoopt01.sqm
2008-11-24 15:49 . 2008-11-24 15:49 <DIR> d-------- c:\program files\ESET
2008-11-24 14:33 . 2008-11-24 14:33 <DIR> d-------- c:\documents and settings\All Users\Application Data\ESET
2008-11-23 11:34 . 2008-11-23 11:34 <DIR> d---s---- c:\documents and settings\Kvik\UserData
2008-11-23 11:19 . 2008-11-23 11:19 <DIR> d-------- c:\documents and settings\Kvik\.netbeans-registration
2008-11-23 11:18 . 2008-11-23 11:19 <DIR> d-------- c:\program files\glassfish-v2ur2
2008-11-23 11:16 . 2008-11-23 11:19 <DIR> d-------- c:\program files\NetBeans 6.1
2008-11-23 11:15 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\Kvik\.nbi
2008-11-23 11:13 . 2002-02-24 20:30 260,096 --------- c:\windows\system32\RICHTX32.OCX
2008-11-23 11:13 . 2000-05-22 00:00 140,488 --------- c:\windows\system32\COMDLG32.OCX
2008-11-23 11:12 . 2008-11-23 11:12 <DIR> d-------- c:\program files\Sybase
2008-11-23 11:12 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\All Users\Application Data\PowerDesigner 12
2008-11-23 11:02 . 2008-11-23 11:02 <DIR> d-------- c:\program files\Bonjour
2008-11-23 10:57 . 2008-11-23 10:57 <DIR> d-------- c:\program files\Common Files\Macrovision Shared
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Logitech
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\All Users\Application Data\LogiShrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Logitech
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Common Files\Logishrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-11-23 10:55 . 2007-11-15 10:06 301,656 --a------ c:\windows\system32\BtCoreIf.dll
2008-11-23 10:55 . 2007-11-15 10:07 170,512 --a------ c:\windows\system32\kemutb.dll
2008-11-23 10:55 . 2007-11-15 10:07 141,840 --a------ c:\windows\system32\KemUtil.dll
2008-11-23 10:55 . 2007-11-15 10:07 117,264 --a------ c:\windows\system32\KemWnd.dll
2008-11-23 10:55 . 2007-11-15 10:07 76,304 --a------ c:\windows\system32\KemXML.dll
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2008-11-22 19:46 . 2008-11-22 19:46 <DIR> d-------- c:\documents and settings\Kvik\Application Data\2K Sports
2008-11-22 19:37 . 2008-11-22 19:45 <DIR> d-------- c:\program files\NBA 2K9
2008-11-22 19:24 . 2008-11-22 19:32 <DIR> d-------- c:\program files\nba
2008-11-22 15:48 . 2008-11-22 18:45 <DIR> d-------- c:\documents and settings\Kvik\Contacts
2008-11-22 14:44 . 2008-11-22 14:44 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Media Player Classic
2008-11-22 14:37 . 2008-11-25 09:22 <DIR> d-------- c:\documents and settings\Kvik\Application Data\skypePM
2008-11-22 14:37 . 2008-11-22 14:37 56 --ah----- c:\windows\system32\ezsidmv.dat
2008-11-22 14:11 . 2004-08-04 02:07 221,184 --a------ c:\windows\system32\wmpns.dll
2008-11-22 14:08 . 2008-11-22 14:08 268 --ah----- C:\sqmdata00.sqm
2008-11-22 14:08 . 2008-11-22 14:08 244 --ah----- C:\sqmnoopt00.sqm
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\MSBuild
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\Microsoft Works
2008-11-22 14:07 . 2006-10-26 19:56 32,592 --a------ c:\windows\system32\msonpmon.dll
2008-11-22 14:04 . 2008-11-22 14:04 <DIR> d-------- c:\windows\SHELLNEW
2008-11-22 14:04 . 2008-11-22 14:07 <DIR> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2008-11-22 14:03 . 2008-11-22 14:03 <DIR> dr-h----- C:\MSOCache
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\K-Lite Codec Pack
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\Gadwin Systems
2008-11-22 14:00 . 2008-11-22 14:00 107,888 --a------ c:\windows\system32\CmdLineExt.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-25 08:23 --------- d-----w c:\documents and settings\Kvik\Application Data\Skype
2008-11-25 08:22 85,504 --sh--r c:\windows\system32\gasretyw1.dll
2008-11-24 17:50 --------- d-----w c:\program files\Java
2008-11-23 22:47 --------- d-----w c:\documents and settings\Kvik\Application Data\LimeWire
2008-11-23 10:12 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-23 10:01 --------- d-----w c:\program files\Common Files\Adobe
2008-11-22 14:44 --------- d-----w c:\documents and settings\All Users\Application Data\InterVideo
2008-11-22 12:38 --------- d-----w c:\program files\Winamp
2008-11-22 12:36 --------- d-----w c:\program files\VideoLAN
2008-11-22 12:36 --------- d-----w c:\documents and settings\Kvik\Application Data\vlc
2008-11-22 12:35 --------- d-----w c:\program files\Sun
2008-11-22 12:35 --------- d-----w c:\program files\Skype
2008-11-22 12:35 --------- d-----w c:\program files\LimeWire
2008-11-22 12:35 --------- d-----w c:\program files\Common Files\Skype
2008-11-22 12:35 --------- d-----w c:\documents and settings\All Users\Application Data\Skype
2008-11-22 12:34 --------- d-----w c:\program files\Common Files\Java
2008-11-22 12:32 --------- d-----w c:\program files\MSN Messenger
2008-11-22 12:27 --------- d-----w c:\program files\DAEMON Tools Lite
2008-11-22 12:24 717,296 ----a-w c:\windows\system32\drivers\sptd.sys
2008-11-22 12:24 --------- d-----w c:\documents and settings\Kvik\Application Data\DAEMON Tools
2008-11-22 12:23 --------- d-----w c:\documents and settings\All Users\Application Data\CyberLink
2008-11-22 12:22 --------- d-----w c:\program files\CyberLink
2008-11-22 12:21 --------- d-----w c:\program files\InterVideo
2008-11-22 12:21 --------- d-----w c:\program files\Common Files\InterVideo
2008-11-22 12:21 --------- d-----w c:\documents and settings\Kvik\Application Data\Intervideo
2008-11-22 12:19 --------- d-----w c:\program files\MSI
2008-11-22 12:19 --------- d-----w c:\program files\Common Files\SNP2UVC
2008-11-22 12:19 --------- d-----w c:\documents and settings\Kvik\Application Data\InstallShield
2008-11-22 12:17 --------- d-----w c:\program files\Samsung ML-2010 Series
2008-11-22 12:17 --------- d-----w c:\program files\Common Files\InstallShield
2008-11-22 12:13 --------- d-----w c:\program files\My Company Name
2008-11-22 12:04 315,392 ----a-w c:\windows\HideWin.exe
2008-11-22 12:04 --------- d-----w c:\program files\Realtek
2008-11-22 11:59 --------- d-----w c:\program files\microsoft frontpage
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-04-01 486856]
"MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2008-08-12 21741864]
"Gadwin PrintScreen Pro"="c:\program files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe" [2008-09-05 516096]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-25 13529088]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-25 86016]
"Samsung Common SM"="c:\windows\Samsung\ComSMMgr\ssmmgr.exe" [2005-07-03 372736]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2007-05-15 675840]
"tsnp2uvc"="c:\windows\tsnp2uvc.exe" [2007-04-24 237568]
"Home Theater SchSvr"="c:\program files\Common Files\InterVideo\SchSvr\SchSvr.exe" [2004-09-29 106496]
"WINCINEMAMGR"="c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe" [2004-09-29 192512]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-24 136600]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2007-05-14 35328]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2008-08-18 1447168]
"RTHDCPL"="RTHDCPL.EXE" [2008-05-16 c:\windows\RTHDCPL.exe]
"nwiz"="nwiz.exe" [2008-06-25 c:\windows\system32\nwiz.exe]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-09-21 c:\windows\KHALMNPR.Exe]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-11-23 784912]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2007-11-15 10:10 72208 c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Java\\jre1.6.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.6.0_03\\bin\\java.exe"=
"c:\\Program Files\\MSI\\MyGuard Live\\MyGuard Live.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 epfwtdir;epfwtdir;c:\windows\system32\DRIVERS\epfwtdir.sys [2008-08-18 34312]
R3 Cap713x;Cap713x Video Capture;c:\windows\system32\DRIVERS\Cap713x.sys [2008-11-22 751104]
R3 L1e;Miniport Driver for Atheros AR8121/AR8113 PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\l1e51x86.sys [2008-11-22 36864]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe /s c:\windows\nod32fixtemdono.reg [2004-08-04 3584]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8cc6ce82-b88f-11dd-89b1-00221591a466}]
\Shell\AutoRun\command - F:\abk.bat
\Shell\explore\Command - F:\abk.bat
\Shell\open\Command - F:\abk.bat

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eb4118a0-b896-11dd-bab8-806d6172696f}]
\Shell\AutoRun\command - F:\abk.bat
\Shell\explore\Command - F:\abk.bat
\Shell\open\Command - F:\abk.bat

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fed40b85-b890-11dd-89b2-00221591a466}]
\Shell\AutoRun\command - F:\abk.bat
\Shell\explore\Command - F:\abk.bat
\Shell\open\Command - F:\abk.bat

*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.
.
------- Supplementary Scan -------
.
FireFox -: Profile - c:\documents and settings\Kvik\Application Data\Mozilla\Firefox\Profiles\zqvlkfz7.default\
FF -: plugin - c:\program files\Java\jre6\bin\new_plugin\npdeploytk.dll
FF -: plugin - c:\program files\Java\jre6\bin\new_plugin\npjp2.dll
FF -: plugin - c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF -: plugin - c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
FF -: plugin - c:\program files\Mozilla Firefox\plugins\npdeploytk.dll
FF -: plugin - c:\program files\Yahoo!\Common\npyaxmpb.dll
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, gmer.net
Rootkit scan 2008-11-25 09:29:31
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(768-)
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
.
Completion time: 2008-11-25 9:30:01
ComboFix-quarantined-files.txt 2008-11-25 08:29:58

Pre-Run: 47,373,795,328 bytes free
Post-Run: 47,393,177,600 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

224





-Nisam upalio nod 32, da upalim??

Dopuna: 25 Nov 2008 9:40

Diarno uspeo sam..ne javlja se nisa:))..jel mozes da mi objasnis sta je to u stvari bilo??? Hvala ti puno, puno..

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Jos nismo zavrsili. Zarazio si se preko nekog USB uredjaja koji ti vidis kao drive F.
Moramo pocistiti ostatak malware-a i srediti USB.
Zato, uradi sledece korake:

1.

Otvoriti Notepad i iskopirati sledeci tekst:

File::
c:\windows\system32\gasretyw1.dll

Registry::
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fed40b85-b890-11dd-89b2-00221591a466}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eb4118a0-b896-11dd-bab8-806d6172696f}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8cc6ce82-b88f-11dd-89b1-00221591a466}]


Snimiti na Desktop fajl iz Notepada kao "CFScript"




Prevuci snimljeni skript/tekst na ComboFix ikonicu kao na slici.
Postaviti u sledecoj poruci log koji bude bio napravljen na kraju ciscenja/skeniranja.


2.

Skini sledeci program - http://amf.mycity.rs/personal/bobby/USB_blocker/usb_blocker.exe
- startuj ga i odaberi opciju Auto block
- ubaci USB stick u komp i sacekaj koji sekund (recimo 5-10 sekundi)
- program je sada uradio analizu sticka (vidi se u donjem delu programa, u logu)
- gore levo klikni duplo na slovo koje oznacava particiju, tj. tvoj USB stick
- dole kraj sata ce se pojaviti poruka da smes da izvadis USB stick iz kompa
- ne gasi program, vec ubaci sledeci USB stick i za njega isto sacekaj par sekundi, i tako redom za sve stickove, MP3 plejere, mobilni
- zapamti kojim redom su ubacivani stickovi

Kada sve to zavrsis, log u donjem delu programa ce sadrzati sve podatke koji su meni potrebni da bih video koji stick je zarazen.
Klikni desnim dugmetom misa na log/izvestaj i odaberi Save log.
Automatski ce se otvoriti Notepad i u njemu izvestaj.
Iskopiraj mi taj izvestaj ovde na forum.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

ovo je resenje prvog zadatka:

ComboFix 08-11-24.01 - Kvik 2008-11-25 23:30:15.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1714 [GMT 1:00]
Running from: c:\documents and settings\Kvik\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Kvik\Desktop\CFScript.txt
* Created a new restore point
* Resident AV is active


FILE ::
c:\windows\system32\gasretyw1.dll
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\gasretyw1.dll

.
((((((((((((((((((((((((( Files Created from 2008-10-25 to 2008-11-25 )))))))))))))))))))))))))))))))
.

2008-11-25 09:56 . 2008-11-25 09:56 <DIR> d-------- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\Yahoo!
2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\CCleaner
2008-11-24 18:50 . 2008-11-24 18:50 410,976 --a------ c:\windows\system32\deploytk.dll
2008-11-24 18:40 . 2008-03-03 14:25 5,702 --ah----- c:\windows\nod32restoretemdono.reg
2008-11-24 18:40 . 2008-03-03 18:21 568 --ah----- c:\windows\nod32fixtemdono.reg
2008-11-24 18:40 . 2008-11-24 18:40 268 --ah----- C:\sqmdata01.sqm
2008-11-24 18:40 . 2008-11-24 18:40 244 --ah----- C:\sqmnoopt01.sqm
2008-11-24 15:49 . 2008-11-24 15:49 <DIR> d-------- c:\program files\ESET
2008-11-24 14:33 . 2008-11-24 14:33 <DIR> d-------- c:\documents and settings\All Users\Application Data\ESET
2008-11-23 11:34 . 2008-11-23 11:34 <DIR> d---s---- c:\documents and settings\Kvik\UserData
2008-11-23 11:19 . 2008-11-23 11:19 <DIR> d-------- c:\documents and settings\Kvik\.netbeans-registration
2008-11-23 11:18 . 2008-11-23 11:19 <DIR> d-------- c:\program files\glassfish-v2ur2
2008-11-23 11:16 . 2008-11-23 11:19 <DIR> d-------- c:\program files\NetBeans 6.1
2008-11-23 11:15 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\Kvik\.nbi
2008-11-23 11:13 . 2002-02-24 20:30 260,096 --------- c:\windows\system32\RICHTX32.OCX
2008-11-23 11:13 . 2000-05-22 00:00 140,488 --------- c:\windows\system32\COMDLG32.OCX
2008-11-23 11:12 . 2008-11-23 11:12 <DIR> d-------- c:\program files\Sybase
2008-11-23 11:12 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\All Users\Application Data\PowerDesigner 12
2008-11-23 11:02 . 2008-11-23 11:02 <DIR> d-------- c:\program files\Bonjour
2008-11-23 10:57 . 2008-11-23 10:57 <DIR> d-------- c:\program files\Common Files\Macrovision Shared
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Logitech
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\All Users\Application Data\LogiShrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Logitech
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Common Files\Logishrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-11-23 10:55 . 2007-11-15 10:06 301,656 --a------ c:\windows\system32\BtCoreIf.dll
2008-11-23 10:55 . 2007-11-15 10:07 170,512 --a------ c:\windows\system32\kemutb.dll
2008-11-23 10:55 . 2007-11-15 10:07 141,840 --a------ c:\windows\system32\KemUtil.dll
2008-11-23 10:55 . 2007-11-15 10:07 117,264 --a------ c:\windows\system32\KemWnd.dll
2008-11-23 10:55 . 2007-11-15 10:07 76,304 --a------ c:\windows\system32\KemXML.dll
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2008-11-22 19:46 . 2008-11-22 19:46 <DIR> d-------- c:\documents and settings\Kvik\Application Data\2K Sports
2008-11-22 19:37 . 2008-11-22 19:45 <DIR> d-------- c:\program files\NBA 2K9
2008-11-22 19:24 . 2008-11-22 19:32 <DIR> d-------- c:\program files\nba
2008-11-22 15:48 . 2008-11-22 18:45 <DIR> d-------- c:\documents and settings\Kvik\Contacts
2008-11-22 14:44 . 2008-11-22 14:44 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Media Player Classic
2008-11-22 14:37 . 2008-11-25 16:01 <DIR> d-------- c:\documents and settings\Kvik\Application Data\skypePM
2008-11-22 14:37 . 2008-11-22 14:37 56 --ah----- c:\windows\system32\ezsidmv.dat
2008-11-22 14:11 . 2004-08-04 02:07 221,184 --a------ c:\windows\system32\wmpns.dll
2008-11-22 14:08 . 2008-11-22 14:08 268 --ah----- C:\sqmdata00.sqm
2008-11-22 14:08 . 2008-11-22 14:08 244 --ah----- C:\sqmnoopt00.sqm
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\MSBuild
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\Microsoft Works
2008-11-22 14:07 . 2006-10-26 19:56 32,592 --a------ c:\windows\system32\msonpmon.dll
2008-11-22 14:04 . 2008-11-22 14:04 <DIR> d-------- c:\windows\SHELLNEW
2008-11-22 14:04 . 2008-11-22 14:07 <DIR> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2008-11-22 14:03 . 2008-11-22 14:03 <DIR> dr-h----- C:\MSOCache
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\K-Lite Codec Pack
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\Gadwin Systems
2008-11-22 14:00 . 2008-11-22 14:00 107,888 --a------ c:\windows\system32\CmdLineExt.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-25 22:22 --------- d-----w c:\documents and settings\Kvik\Application Data\Skype
2008-11-24 17:50 --------- d-----w c:\program files\Java
2008-11-23 22:47 --------- d-----w c:\documents and settings\Kvik\Application Data\LimeWire
2008-11-23 10:12 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-23 10:01 --------- d-----w c:\program files\Common Files\Adobe
2008-11-22 14:44 --------- d-----w c:\documents and settings\All Users\Application Data\InterVideo
2008-11-22 12:38 --------- d-----w c:\program files\Winamp
2008-11-22 12:36 --------- d-----w c:\program files\VideoLAN
2008-11-22 12:36 --------- d-----w c:\documents and settings\Kvik\Application Data\vlc
2008-11-22 12:35 --------- d-----w c:\program files\Sun
2008-11-22 12:35 --------- d-----w c:\program files\Skype
2008-11-22 12:35 --------- d-----w c:\program files\LimeWire
2008-11-22 12:35 --------- d-----w c:\program files\Common Files\Skype
2008-11-22 12:35 --------- d-----w c:\documents and settings\All Users\Application Data\Skype
2008-11-22 12:34 --------- d-----w c:\program files\Common Files\Java
2008-11-22 12:32 --------- d-----w c:\program files\MSN Messenger
2008-11-22 12:27 --------- d-----w c:\program files\DAEMON Tools Lite
2008-11-22 12:24 717,296 ----a-w c:\windows\system32\drivers\sptd.sys
2008-11-22 12:24 --------- d-----w c:\documents and settings\Kvik\Application Data\DAEMON Tools
2008-11-22 12:23 --------- d-----w c:\documents and settings\All Users\Application Data\CyberLink
2008-11-22 12:22 --------- d-----w c:\program files\CyberLink
2008-11-22 12:21 --------- d-----w c:\program files\InterVideo
2008-11-22 12:21 --------- d-----w c:\program files\Common Files\InterVideo
2008-11-22 12:21 --------- d-----w c:\documents and settings\Kvik\Application Data\Intervideo
2008-11-22 12:19 --------- d-----w c:\program files\MSI
2008-11-22 12:19 --------- d-----w c:\program files\Common Files\SNP2UVC
2008-11-22 12:19 --------- d-----w c:\documents and settings\Kvik\Application Data\InstallShield
2008-11-22 12:17 --------- d-----w c:\program files\Samsung ML-2010 Series
2008-11-22 12:17 --------- d-----w c:\program files\Common Files\InstallShield
2008-11-22 12:13 --------- d-----w c:\program files\My Company Name
2008-11-22 12:04 315,392 ----a-w c:\windows\HideWin.exe
2008-11-22 12:04 --------- d-----w c:\program files\Realtek
2008-11-22 11:59 --------- d-----w c:\program files\microsoft frontpage
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-04-01 486856]
"MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2008-08-12 21741864]
"Gadwin PrintScreen Pro"="c:\program files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe" [2008-09-05 516096]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-25 13529088]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-25 86016]
"Samsung Common SM"="c:\windows\Samsung\ComSMMgr\ssmmgr.exe" [2005-07-03 372736]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2007-05-15 675840]
"tsnp2uvc"="c:\windows\tsnp2uvc.exe" [2007-04-24 237568]
"Home Theater SchSvr"="c:\program files\Common Files\InterVideo\SchSvr\SchSvr.exe" [2004-09-29 106496]
"WINCINEMAMGR"="c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe" [2004-09-29 192512]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-24 136600]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2007-05-14 35328]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2008-08-18 1447168]
"RTHDCPL"="RTHDCPL.EXE" [2008-05-16 c:\windows\RTHDCPL.exe]
"nwiz"="nwiz.exe" [2008-06-25 c:\windows\system32\nwiz.exe]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-09-21 c:\windows\KHALMNPR.Exe]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-11-23 784912]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2007-11-15 10:10 72208 c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Java\\jre1.6.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.6.0_03\\bin\\java.exe"=
"c:\\Program Files\\MSI\\MyGuard Live\\MyGuard Live.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 epfwtdir;epfwtdir;c:\windows\system32\DRIVERS\epfwtdir.sys [2008-08-18 34312]
R3 Cap713x;Cap713x Video Capture;c:\windows\system32\DRIVERS\Cap713x.sys [2008-11-22 751104]
R3 L1e;Miniport Driver for Atheros AR8121/AR8113 PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\l1e51x86.sys [2008-11-22 36864]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe /s c:\windows\nod32fixtemdono.reg [2004-08-04 3584]

*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, gmer.net
Rootkit scan 2008-11-25 23:31:54
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(768-)
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
.
Completion time: 2008-11-25 23:32:15
ComboFix-quarantined-files.txt 2008-11-25 22:32:14
ComboFix2.txt 2008-11-25 08:30:01

Pre-Run: 47,611,314,176 bytes free
Post-Run: 47,595,851,776 bytes free

191

Dopuna: 25 Nov 2008 23:40

a evo i za usb..u ovom prvom mi se nalazi ta instalacija nodA, a na ovom drugom su mi instalacije za komp..eto..


USB_blocker by bobby

Started at 11/25/2008 11:34:28 PM

Scanning for connected USB Mass storage...
========================================
========================================
Scanning for other storage...
========================================
C: 2a99b7d3-b891-11dd-b533-806d6172696f
D: 2a99b7d4-b891-11dd-b533-806d6172696f
========================================

Scanning fixed storage for autorun.inf files...
========================================
========================================



New device connected at 11/25/2008 11:34:46 PM

Scanning for connected USB Mass storage...
========================================
F: fed40b85-b890-11dd-89b2-00221591a466
========================================

Scanning USB mass storage for autorun.inf and desktop.ini files...
========================================
Sanitizing Shell Menu...
No key for GUID: fed40b85-b890-11dd-89b2-00221591a466
========================================


New device connected at 11/25/2008 11:35:52 PM

Scanning for connected USB Mass storage...
========================================
F: 8cc6ce82-b88f-11dd-89b1-00221591a466
========================================

Scanning USB mass storage for autorun.inf and desktop.ini files...
========================================

autorun.inf found on F:
File F:\autorun.inf renamed successfully
Sanitizing Shell Menu...
No key for GUID: 8cc6ce82-b88f-11dd-89b1-00221591a466
========================================

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

OK... Ovde vise nema malware-a i ostaje nam samo da proverimo nesto i obrisemo Combofix.

1.
Prikljuci USB uredjaj koji tvoj Komp vidi kao drive F.

Otvori Notepad u njegovom meniju izaberi File pa Open Zatim u liniju za unos texta pod imenom File name

upisi sledece F:\abk.bat i klikni open
.

Iskopiraj ovde sadrzaj koji ti se otvori;


2.

Klikni START a zatim RUN
U liniju za unos teksta ukucaj Combofix /u i klikni OK





Saèekaj da se proces deinstalacije završi

Gornja procedura æe:
Obrisati sledeæe:
ComboFix i njegove file-ove i foldere
VundoFix Backups folder, ako postoji
C:\Deckard folder, ako postoji
C:\OtMoveIt folder, ako postoji

Resetovati podešavanja sata na kompjuteru
Sakriti ekstenzije file-ova, ako je potrebno
Sakriti sistemske/skrivene file-ove/foldere, ako je potrebno
Resetovati System Restore


Zatim ukoliko to vec nisi uradio, ukljuci NOD32.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

MZ   ÿÿ ¸ @ 8 º ´ Í!¸LÍ!This program cannot be run in DOS mode.

$ † ªSçNùSçNùSçNùSçOùÙæNùèùPçNùèùRçNùèùRçNùèAùVçNùèùŽçNùè.ùWçNùèùRçNùRichSçNù °13ôP]OôP]OôP]OôP\OÃP]O–ONOóP]OòsVO÷P]O3V[OõP]ORichôP]O PE L ¼:I à    p   à  ° @     €        P
 z 0 pN .text €   € à.data €  €  ` à.rdata     ` à.rsrc    œ @ À.reloc F 0 Q ¬ @ À D%Kä“'ÊsÁJÕâ“ç]ç]ÿ Úvì¶;£2ÜGÏšµÝ¡=©µ¡0Ùx  ÝgÛ¸¡dxÈSÍâàQ©Š[FÆGe9tz™°ä( ÀðÔ+Q²†ݾÍ¿:X€îÓÙ8ÝæÕ¾EWq›@¢§É½\ƒLDºevðzëÇGO¾ç(–øÓf›¿!åÜøÿ% ƒsj̍Ôuœày˜¢09·òäy"ÌO7 QmX/y|ÎÅ•³£´-D¯pä*éW! WóK!c¡ð/pz°vÒÀ)™›WÔô×?g=øsì’n”†»>R2uŽ@-[Ö+ȆôðDÈÊv+öE×À—Œ ’4ÆÕf†þ„èC¨ºQæU
b™4sÞvñBcÄŠÿûÑûmçºW7cç±uÝ
=
¡‹*TÊk…1xy=”nÜì–ßü1XcëuñR|ô=K>·®ƒäcò‹Žxrið0™uçˆé¹@>ÓÌ—.\Kˆ.ÞÁæ !•äKŒ[òf–fø¢²¾í#‡–Ïð ŒÝ†i‰Û\ø— Ìÿ1z%a,†;ÐãEg=ü±2À7³ï{ôþós·F‰t ~‘éF†õºô›ÕF=ÐÝà éc%2cBxåܧïÆün†6 ÷ªø'ýסfÖ̪Mô!H(Óï¥l= ™«º/µ%ò5«µÇ^Ýõéjï,ƒ›"AÔ)Ê‹ü`ò±ÅCŽ•¡.‹ÐòÆ)·û>!=€(YI\i;ÒùPMßõY½ñbyu[Œm¬iæŽ?rœÄÕœ~o–#èIˆÖ]q+z*³JØʳD{2¦» Â\ÕýÀvŠj£ö$<FCÿZ¡ê½_¬ìBÌ(‚ºJ%Ìeî’•{šütkÝÞ˜$fãFoŸ¿â{†øŽš†koÜ“‚°#²©"͉žLR8”F}üšÙ~›ê—7Êô€WâTàkŠ‘©&~ßé<µÃ“é%Ø´‹ ©ÒÁƒE£Ä‚n¦&h0—Šú…_~|Ì/³æi40¦Ú48èÐBëÊ¿/î–`!Ÿ
HºGé©eøŸÓH‘OŒÌ—•ÿü.Ѓ|eáã åÇ„YŸÿN°¸Àúæ%hÚ‘[<)ÎH7‰©÷$©…}ÎĦ@gïÞQpÖ Ä~gU~²òûÂ0cZK°¼¿úv,yMZ7×-â!4q>ê
0ã{Q‡´Öë„Áï*,Æ. '‰ŸUžaV¥ÐN!î6<åÕàöÀ&Q…b¥íŽøåùm5
qq: àe0Õ ÇR׃bÔ\yv¸ø˜Fä<-A:
°FIŽ¬ßÑ~>t@ËØÖ•ê %{nßÚ²Ô·%ãAôļ)‡Ê׊SÛæì6_Õ ð=œk,áÀ n¼µú{ºX;Ö£¦+¾½>CJóLrßú#
Q‡®è1bø”ÓʌӾŸô!™œBæ3ŠP§š€I\Ç„/.]—¨lèt¨¸ª_¹÷>®ïKEuÛÔ¶ h”Å4‘Unß~üç:«™W뫾˜'´Hh’rÇÄag)3ªò²(§²M¹k¤-;[…n»Iã¾ýƤޱø=Æék¯ ´ÝG½YÇ`(}1YX•q5% $Xi ¾ø°þÔaM’–^S'–D¤JÖÆpº•þjcW€©Ü
C?™ˆÅ4¤Õ"G²ë .zZÉÅɪó‡h‚4òu %¢° aŽC†¨v!FÁ×ädipø¨GznÓV{’xÖ6¶±Œ(27{׳†Vӝ
¯={DVkdvrÅB½"7KP(=(=óòõj DM†éæe+âBS)qü©œ¤`ÿ²aÈtúñ$éy8ŒÓ7pšNÀ¼1jm«ª89ðRé
\&‚¦üÑÁÏ¢‚?:žà• å u>;-a…õ<ìiœï¼ &Ø·Ïx²(:–ÔVôf·8È“êÚít38GÌÔKÅTþOòBiSÙvA8©he0Ú±ƒ
}ró”Ë_σ
â[fõñæœôsÒ÷kQJ™¹Ž„‰Õ|؆³š®Ö`ŒXˆLVwú¿0æ&¯b!rIájŸb£5¾¬äb´†æ‹â¹]`j›ÞÚÜw½.Ÿá™­
j~b¾,©(ã=ññì¾+BËåìòž¤sŒ]}ÈôøΚަ¶³ÒyNÚâq†jþþÜKÓ’VÙÃÉâ/cÇ»`
Ø:À&ÛÉì Y©¬:w*ïåóïº}íîÒïðX‰ˆNª;‡åªæ8±¶ð’MÊi-·èùqÄ÷{Ž!ú/X8%#Y
µ<÷xð«!º)=G´Ú÷Œ ‘«r÷µk¼tó¸×öf¥Ë…š¶´~ ÍäÍZh®¡R´o,Ö¾%ðÈ$ï¹QÏTY~Ë™¡Hʉ3™&¾A 9ò~•{ 1V‘»Ýâ-St'áÍç1Aæ' †ñâä¬ò†ÿcåô§¨'mgSytré– Uî’SË÷^¦¤0«îiÉïô±co+ÓŠ¶ñ x¯„NOdÔ9
C~Püρ[›c;Éâ;yàZcÛ‚÷;¦Í4Y¹ë¯I˜þ³ê‡²Þ˜›:'ü&×ÈjÂûpt–rE „µÎåºAÖ¿ù И‰f‡q “2yÝ–É£_Û¤M™í€¤…tpQ¬µß™P@áX…ÿ5n¦;0DêÞz$ð–ÿ+«Ý®tnv^p+bÊhnê»JW‚f
 ùÁçX®ËR«—ùÃÿ*çÓ >®¿\ßzŠ1š¾ÊEe·:K7èÕd{Aw=~ÿû÷cb­Œ &ÃÇ숍ˆÂÁ#ÒÿGëëU½•1wé ³ºÓõ¼…ܵÍ?AÏÉ›²“·×|dÁ8X£ñK‘½ ®ix™^ ‚0ý¤V‚i/ÝqƒôÞ€¹mj“Ú&“A¥;ä?ü ´Ò|RغXÒ9ÖÒ ´vSsšN ÕÂ]ø–ä15œ— àûâƒßÄ%L°)3‰«z æ®qÎz|湞7
æøŸÊŸ ¯|à˜9tî•Ï
—’Db—Á„
Ýÿás)Ê
î‘ÓøÐÖt†ÃGÙŽ—èeM•aª‚$óƒÆ%¤ˆbÒ÷>oPùjé†ÁAþå ¶§áC5Ói‚õà ¼”©³*=…zïÁ†–Ç\µ Ež}Hµb~à*% êã;ó>†N·¹VD(¼ùîÁɼ@ÖÜ=0Ôj dI1@¡Ö^þƒ¼×‘²öû¡F;äÖZ®£±íƒ K¾Èá¸Utsø³‰¯4’Êi™ÌÊÛõK·¶BëB¯Qþ禇üšFÅÜ£8süÝн,à`ßüÌ
&Z¡1ŒedÌñ¬Ê¼-y˜­õùAÙ4™Û6‹¸ûÝeËRäb΍îLe­„Bîñý‰ ƒ©Ê‘ÂÉÒî&\t”Å§PþdÍÛŽãrq)rçˆ[Ñ}?ƹ‹æýÀ¯gìt!Q‘'Pð9‰ÎŽ§¥qÆO%ý¹þó(ÂYþ…›F:lXn”æÍV[´ ؁–°×XÁ'œ°€?NÚµ¦ˆû\Æv…Ë?ã~¶W…B+á.•;üb7JÿÒŒäsÒ®TÄ“˜ åû¸
ÌÑ)zH` Ž6Ö5 ¤g­‡h˜þ§p¤
ÒMgô"âÚ‰0â°ÅȆ3ŽÝt¹Jÿ|™g˜
ÝüË
áÈà˜GïyqÄþj5VÄ›Ÿé«*ŒÝû÷Ï»Ñ-’©“ü
›+k"UŸÚ—u5$2ôxÃÙØýÊßüd>¥D) 41¨åd~A­«E4|rGŒû5Oû`[F£æÍñâÊ»†§XºÙ‡~DmòÿF?©“’ÈÚ=‡nʶ2s›I\Ò ¨ñ‹}ÁÅšŠ
ã43rmæìðrÔ%Óg˜Å@® Ûó#×B²Ñ-Ú îWéKžXW^òÁˆaI-_¤Aé¿ò=„‘Ý9Z¯n[³Ê-¼k ¡ä«ÉÄ1iâÝäæB‚}ö\ÿLäbš"&À •„Y^|”ig˹~:pÊÉÃw*¦¢ê~ô¶f”Ùf± <“ˆð™aå±@/YžfÞ•ÒÉ
¨QèyŒ« —°Éu« ZVCD8ÉEÜê“ÌBsûŒPsñföª²·!úûµãùÙ¯›ýGöà+i˜ÉÕu8Ooq
@[È–SëÕ@Š7'­Ÿ¿Îs˜Ë'KUo\ëfN QVƒÄh ÿÃdVV‹L$ƒÄ WW‹L$ƒÄ éÿv SVë/ë)¾Af0^[ ž–RH÷ŠFúèhxÆ<B¡Nb|Vu,¾hØôœ±Vûžg,þ˜ÅšÓȤ‰ëϦ¿@Ò uÖÙ¢+«Ü¬:²–n¤¾Y7%Ðd܏„ i‰
S­¹ô ç’¿vàï{ø±b' y.»ìi5&Ý£EëC¾Zñ7yGçmíJaË®Yãå鳚_”SÿÔð–âóù]Þ˜•÷1%Äýh{m‘…›n¨ø˜î~¤ª¿.ÄÏ·*Km|‡Ç(ðPrÏ0©ä¼mt}=åñˆÍÒI¬'I¥i)³Ö-ÔŽ¯²Ñ<¤•[~0/S{ÆÅžhû¡™uá# ¸¡y2vùyª±ªË;ÊÇãªÓ /ïÅÑiw”¥«i, Œ…}VNLÞÅ"‰ÙÔ¹‚_\ ¶å ŒdÅÝjÙÅ$D<\UÆH±:H¨q¯é±8¯õëJ2¼÷œ©r{¡ê¥|Müøbw–¢÷yøM‚oT¢f†÷d‚õ‰l &dªøžˆò ;ÌU´Ëo —7ì­ÿ^Š1cEÍ 0ÿÐŽ± "|Ž-]Û£è–&ÅäŠUâ§I6%vŠHK´Á"þŸè,ÛŸvý£§£°¢&.9ßýÌ­·
&“ß ö›é¹™*ÊjØmQ9ýÕbf4]™jß_ìD)œáDóæC‡H±BaŠEÙ]3¿NÖùËÿâÑlRª%‚W6 >SmMo ¢ø×uËœGƮˣW3C6ÖIXgã1,ž ˆ|cC 2+iÒ„<–Ö¥Ô]Oêywh" …š«"
-’¹qèö3ú…LgôkÔ™<qÔÒ“|éXZ,ƒÐŽÖ¹]„ }4Vì¹yõxDÅ.ŠÁ«Ò1pV¡a
ÌôÆz¢1èÌÇ^™ÝXèpì¥i•œ [Ÿ"ÎíèŽÎQ
ž‚¬Žø
ÜV˜œ°«çè ¯¹l¾á$=6
¿¨[èEõö>(&»(U_S³„X:7A7Äöcý<<Ô´U‹€LÂ⣪6Þ”ñ€ÿM)ÀFcë4Se fŠi‘?}/Ñ’ŸÕ?ÜÁˆÄs5r1—à ¼ü%iy°"ˆõ±¿1Òø#Ϲ§(êù)(”¬/hi;¬½72 Þö³¥NB;yJgvëý÷sOy‰òÒtu@¶ç‹·eÿ+lڏð€ôa¦…À$æ ‡õˆáΚ{áb_ZÏsš#¿ÒŠ†…óÇ=¡Æ‹›Lõxéiú&#kT*bP°¨s8›)¥ôrô‡›Á/YO_³â{õ­vï^;r
|Pè
t•¹7St8&üÈwd™®Â
G»ªŒJÁ 79
øIYΰ+.l)Üi´SQ;-TÑÄ„"ÓS>㍽ÎÕ½Š¼[Ê÷¦Æu6³›©)xÄÒÈ jƒÇ´áüæѐ¿Ïê$!šzoÈ”uÓ  paëtÛrƒsÀÚuÝzÚ-Ƹ‡tHxBä;Cú"BÆʦÝ𠬵Øút`Y¶92[¹EÃN¿ß0•^ßþŠŠÀ÷Nô¤zÞ»Éè—ÌYgË#z¤–=YÝ5ì_Ý1¢ôHŸh„[<h% ¨ZTð¯å0ÀôúConfusedþ;ÁÆŽÒ 1‡¶bW´ÿêWhÒ¸ÿz;9SS:uÝƱ²ÍIVJ kä3³ç$%%õ(A¿¯¬A‘¸¶Wãùå]§¹[fèë_ ]ŒßMQÙºûNžS¥Ÿð‘ÎÀÕ”Ž-«32ëK–9$úügÄ^?¦©*qÐ,dDÓ‰>Ù#Íqc¦x÷{¼ˆˆ“Dü>¡¶Ãr¢o˜.p®R=òF…ÀÝn8[õÖ<PçJY\\lšC¾¾˜ôž}ëBïÙ7f‘! –b@7ÙÀDÅjºiWïÖr5´B£bí‰sz"è]w™„PiSV%Í¢µ&(ð# FEy­«°³¨uò­ö<™+hüL$üÈ„¿nØå¹ó®O»S ÔíS“ÂÓ§EÖ¸ëœÜ„Ä”2Mû#7R&ué¿&·Mi¿eÓ¥Q¨1“EæS\g`uî)€ XóýPš¶¥2%5LŸŽ=M`bpcé8?l·|—@% ‰ ¤»hžT„V~YÑ–©Êž˜“ÕrMl¦wrä; x“ã4ù™@†~:n
ûÍso{Í Ÿh^‰Ýjœû¦âA¢4uJ°Ì]gC?i¾H7SF¤³žd™ýú»üžÏ
$âšÆ2£€ÛX»-aP-*wÿY=:˜ìVÇð <ýa1ªUãø5ìx°·áLN°»">Lj £¼·²Lb©;+÷&&ÃÍlŠ%ׄJr ^ m
~˜”›9×al½£G1³ âñ…ùµ¬Võ@%ƒÏÝR!ò+‘yfplcŸ<äöy3s‹åZm‹%‰ •¦³¨f‰‚€;ï7
X`,Ÿ!ëÃ!L”I/÷„Òiñ!4Õ—Z‰ÞýÍ•ã›vÄùYÉ‘r_zîd'â¡ŒË4su^æþöx-½ØÆŸœA
mJܘ Ã@^ÜqZQ+6¾ ï»Ð–2–°Â@Œ¸RsÂ¥oz¦®‡ƒ y+s æï:«í°S Ç=ï4€¢cgkpñ¦‰\8ô¥½¢Š—T«±ô!ùp%­ÚÅÜ3æ­ ;‹ð_ùþ°¼í\¶ì;Q§èÃ$jœ¤žÊOZ4|ðV 4¾Üd‚º~Ú“4NZHí¬$@Ö–÷µ½‰ƒDuç\ÀsÃóLËÅÈOÉ%eSa]`ôÕK§Ã|\2Þo¥R‹Ç6ž‡Ûð4— Ó0ó„ÐåŸËmVxËåø]×CkÎŒrÀÛ­”¾q¹ÉŠ°puÖˆõgIëa‹˜…_î[‘Í‘†“á
þˆcr`Ñ.†Kّ߬j]ÝpoÅ¡W¯Ígov­hœÛÑ• çOÜútP&Y‚*"3Ý · TbïwÎm7X¯YÉ[‰o0L\!¬ÞP©d´XØÉö÷°P̯'%
—0½P}P6Ý÷ž¦á9ÔZjÊ|{Ôp¨ <?éýiÕö„7à3N§<{á÷š_V®Äú­†6Ágñ*0c£À^ÀÆŒï
ÿšxã›.‰ÑÉzîÇ Ì,Sò>ó‡þôñ¸¤´’!3Á5?DâsÜ‘‹{¿¢Ê\8ˆVÅB-ÊIÎN½P‘…PŠúŽVÎwʃ(J7Óºôø#"G6"ºk-`£”!¶Z{§Ég8ËØêâ6mÊQºZUîŠþlÄù³Ž!+4½%ìèn¾¶ҐáÅÕ#ó±È=Z?Þw  iùŠóÿü5Û÷7s1È<\ª’ƒàüýé›OŸåžIðrKºV%ÜŒ½öÏ‚A©…CâL!]´@Æ~Ö¶èÙ=©[»¬Uܦ>W¦zëËhÀ]Ý«WPnµ#Khΰ×j”ðýZúD×µA`GMrb¸Šì|‚ŽÙçTcɇ{fzQWtªä…v|»¦éF
Ñ•
Œca Ž¤þ¢ˆnՏ0815c4†}‹/€–È»‚XÏ”"RØ/m¹Ó˜•Öš€"P”Jù}LÇ!Óú’¿ý¬r=i®DZ1fîIÍá¤+Éä¦l 6
#;ø•
[爾%Óƒ¸^aº '3½>û‘í3u.óLC_$’%åÚá%À£p^ñ¹ÃfO÷ñŸÞÊ%‰ãfÊÆ¥ ððY]ýUjhš­i(Hù#äT’¾~f¿1[g“cð;(ÊÿÄ5øcWWcëk4ƒ¸SÛ4`F-·
ù‡êÓÛKS¼î{©•ëó
®v’ºøKç >xsÃÖ4ŸFEÊ
Ï£`Ӝʑ¸/QÞYD{˜½ ø`plÆ¥€î,Aü¿ÂþSª¿7÷ÒWv݇N=žÇfƒÒD{@£ð %©©P³Kd…¾o&Ò$bä}¨üëÅ/n¸ïRÆü -®¾‰ Hùœ
yè„J žüJ´­ux!œejqÚ
ös ¦ÝésÔí?)’UÝFÅ@'P"žêÞÞòh‚#ÃíyþWÛ¼šBuL\¸ãagÙ>½rÒÚȦ’<CK¨¢‹Ä+R5>¶óA†
ú@æä…à˜`ˆ¯bÊih7²úµ}ñ˜Ž4÷°ö®j´<µQbÅ Í 4¦êʁÈ|(%MHIV膓ù X3éÑ7´OµˆøNþ´
?à"æ¸$èdƵ|'–[uùÜ™‘ÐdUšç–Xb6{ÿH ƒ± ¿µ(@RâÏtQOÌ'3òîNÍлd[OU¼uØ…#ý¸£‡IŒð˜ôÂ.”ì<#÷mt0Ü'“²žòÑ®Ÿ,æ¢@Þ%Àp|¢àÝ:­¤ ns€£(¸Æ¨K‚^‚åÉò<;…?Nç}Ù€¼]+´ÓZExM¥pèu€›§nqœ`E%û=“AÞFBíYäˆåBƒÅÛÐb zKT/å`:Ö0©ºÐ¯.ДyŠ‰[^ôºêQ½(ë*îÅóòµ–˜cò“Ý:µŠŠý+é'´õøùÎå¤m\¯$•XÅCFà*g ñ‚"ºôöΏöUTY¹£a=å9Úa0®GÉ$pâ•‹Ïo6#}Wâãn6 ®0÷¨°s/¡º>Ì8ÇP¾× Á­<2$ÂÛçÿ1@‹-EÌOè^xúó”ƒ
ãý_´Þ.«,õ+„šmz·ë|Çȧá¬=žo›¾²ž“'÷Ó[—©vFÀ…gR)ã•Ëm['á.J@ø‡Ø&Ó0b—É YË’°‘‰³oÀ—=^j9Þûp²5Oz¬·7:ì)ݪ¯Ã” ÞyÀ*Ž¿”.ÿK|4¹mÄÜÖò°‡ß‰|´ŒÄÎÒõ"WœC{*œâ"ÙmóeŒtöTp‡áÙœDÍ,?Åf¦Ó†ÃG=7¾5ÕíìòÙ¬¤§É̝)¸Eâ§ñé‰Õ{¡G¶€€lñnM6]1p•ú%J¾øzeÜ>–rþ´Ž¢ô0›j@µ#ÕkY¢r5óŽRw½F¹Ä D]Õ?_¬g+IJí¹›Ø¥KÒf|óYNA%Ù’÷GL‚—=·²&X jä†Éž<n¦Èc?iÉêtÝ*„7õ-“ò&}·5â¬Ñ•å7ó¨þx‰’š
¥™¨vè¥Upe’›æ„ÐâE´1Jß‚îJãŽ⟾M§ù4=[4”r9z:$ÉfO¿ßXO31±áUFWÍZAýÔ›¨Û?¤Ù¿ ÷©ÍûtÌ1ßYý*³žuA¹ßÏ$oÝô’›šÓiXè|êX#ÅŸ Xxwˆ‰‹§?ÏÕÃqn`–;:¡—›,`8Á à M ”à ÜèžWŽýàpÒì1~
û\Ù<{Ç®e“Láª,–¸;TÏãËv›©‡Ô$! {pÒx¬óºKT6Ÿ};mi{™H[ yÂt¼ÞV”ŒËd ú˜š´B>
oÄfZŒR5ñÇÛÏJǶø5hózµ6Áü•¥ÈªäcÆUÈzüÛÈ _æê –Ö©RrÐ8¸gsÙÛйù{?e‚|!¡rG¨|ïð¨°üc)ÎûR¹'e¶ÛßbVôéôñÕ±“w)û#‰Ô–;¥ÇPþ8_F1¥÷뇶Ւð"•_ˆâ w_šæز³ˆ‘öxF­EràÈõ{í·QIÞÆ2ˆ÷¨lAøoPÙ×{?uwʼnmé"­Ý}}Þn×­l‡À$Ú<Šàù> H¨˜y«LŸŽ8¥ ªÈ
ÕÚ&ûšãMfn3ü’°>Q¤›ø7ëÏhR^¤‹aJ} 8ô¡žÁë¥zŸ\(‡HòjšN돝±4j²QD;˜WÖ-–«©ŒLÌEleÞIèo ãUe‰Ndy • Ëë9œ!¼•Iy Ví %q_P…§Þ'1îyö‡I¨-3w¿ýsò"e…ª‹â Î[ʼnƒÇàÃwfË×Ü7(1¡
þY-pýÚ68ôE7²ÿC,¡íN›ÅêE‹o¹Úv„óÊ°·ҙׄ"f¯Cˆ¡öË‹Uì‘?RH
]PÕ'At¯q6¯ž£8¡V‚¾JDdÆ
Ua’AiÞXrðƒ!aH“'Ž~ àtÞ¼-µu?…)X o›ñòµõJ¶…q›ÐC ü&·kj%ìöÓZOÏÓòâ9<ô•É'+jf67NÁJÝ{ô/ÉZ)L!ë§ÛÓŠ3¨¦³7C!ðœ>œN ®×Ѷz6¿®ãžJ6(·Ø’•2'oCîüÖ7ÃBì8_ûºýcÍ_?Ÿ«´RøE 1<ÄÜå/ÛŸÂz-4‰D¤ŸÖ ·Á‡`f‹UYg›"Ähé/…Ø/¦dIE/p’ì-^Â~™Ö¨ôæÊ2Þw«°‡A…ú½Narf µž„âKÞÎÛÝÊá²ëŒS ™¹/Íüþ82’*"/'Kd/ˆííÊ9{;Y
÷dÄÄ
SUöaaËŽnøfÓ‹• 'Õ ¯‘ÒÖ¯Mõ_G»?ëÌ¥syÿàý<‡$î ¡Z¯K;דT^µ3 2‡ŸVÕn&¶%$è*k&n¯zpya„Ãù¢9Ùø„®«c"gv}›Ç¥†\Át<:€F™—™z_œ¡’üv>mw+1k|j¦+Ï›ö°æym’¦7|7>ËÙ#^"_ åÁ±ž¶˜?45^=ž Æ0,&³nß²øUjžºæ¨›#ÃI¿eÄKB
á>ÒûMôX\±'ÚfD¦E±nŠø44³V—XÊvaÉRvÃ5Dþz‰0õe
îµÑxe>Lρ„²=Ä#­Å\¯æ S»¹·¨÷Üóa“YJågPÞF¬ñ¸LÆz‘õ7ô‹Ð§¸Q­Õð8£¥\lE–’R$Ý'~ ÁúXjgf¬
©m¸æYsèuȯ¶ {öÊQ?¿E†ðËE½ÉrÉíUQ³€äáUZn*ˆ2Õ5`€F満ۘ†•A÷ìLè<žpùQAÝ%òîB¯AP=ƒ,Íu9‰DŠn-SÊÀùˆ/ùÿÞÇLÆþ—4}yþ 0¼wS3—éc‹Z½Ó® —ΉÏbÚæpŠLå§"ý!»dZtëÎ IýÉ1ÂÓNÒ ¡‚"E-÷×k©{ú51GMȀ̂]]ÞUw¼Ä§]ts†áúsGVŸ€Þ¼Á±LB\‡'=¼3Œ¼ólWv<Ueú< èòKÅñ’HXÄŠ/“7Ø¡“8˜òœÆ¥r`Üõ7wá¡2÷Ø]÷¿’
m’N¶>ÆWôÅ2/ëyÄÛ ÅîO»²¨²)"Kû÷±ŸÑê}´a€›„bö4æ©0ƒKý¹Ã˜‹&En?’ ¹ ß4XÑ©Wa#ö€~iä‰6ì9[É(*ÔÒÉ íZ=—fxw%F/
â­W¯Ò±F ‹÷Evéã×ö)C¯êm¼!¹÷|ã3}õ0Ç ×ÏÒ¬TÒ/œgGš¨ýÕ:\ áùVä¥ù}ÅH`j)^ –á,ê<ŒË_¬Økeš¿ÈÊ[ï³ÒÆíxÞ4ÆÎت_$Ïä\'’Ÿ³ ­éI?Q@V¹³mIÿ‹^þã :~îïß
¸sd8v»?×{"û‰­ÌO•Õ˜¥ªÁt2‡Û+Œ°Ñçó­Æ±q±Î˜Õ¦ÆY!¶.ÞIH!œ(Lœq©SRühØUXZß ºRÆÛ|ö¯½hæHé[ìygòîKëè9a߈ºBÞY;íM
[ÅWñðÅ[dó²·nE,ÀÓ‚èþðõΡvˆôd(0{Õ=6 ª&Ü6¡A+œ¾æSurprisedÙóÌ’áÒ×ÍØ(Ì×Õ‹&hÿ­
4@;7û¢±À²äû&wa8á’–h<ÜZÌ»¾Svì„OÛãbäâ8ô/‰Í”†§Xr»aç2óŽ*î¹/‹Ž ¾ótÁq¡‚ÁDÕëT4†>r(”÷ôìÏmË»€YNz}ÿKsþw|©qγr.Bø
9N!–·ÛXŠ6&—Š‚å™ÁÍåO ±HÁ
ã¦ñÅ+Hìz7S±æú,,™0R®Ð¦õ NÑml¯õk¢×-ú¯lž'‚ׂ“!-¾-×v–è`W"N'¢¤Û9¬šo¸ "Šå/ûsx‹¨Úd…@ê³2ýñŸØ!ãÂ׎°ZŠ ¾'“¥DÕVÚtFš.ª‡7iDòDõœø-Òq_ÿKżüðŠ_ü8ÿ^/­>F®HŠ-:–OwAo|ø/ý3ö|¿®Áo/%”>€Æ¸ëÃF(Å+±vˆrµñôQà]i!å.Œ‚8¶S¼nJ–l\qXÃí,O­U$ßtz¸q×èBÚÅŒïïÝÐuÿØg¥Ýî ÙýÒºÅå˜ÿòùEzÜì1áïÞ©¶ÁÊŠôï¤ÆêybÝø$ň×üyžÅ¢¨£ë«<«úm‚ºÄ•¶ÕÊÕŸN±î‚×gÖ»„MƒŠ)%Š{‘˜eê;ŸÔ¡i?;Žt5_1ô˜h7‚õDnId5Ìg6ÿ@3–¤o „o,ldE >þ*JÇï-²ƒ9t
|²0,ê>ÉQ0;‰Ù g, :6íà])ŸÓ.+cn gs¡r:¸6߆W+&ø¿¨>X¸ÝYÆ'rÁ$-XòÊZç•÷l“A_ûí}nôI¬H^Œ•RÀ\TœñâgØôw0eßLaÒ¾À _¨ìn¥Ž4¤î íR¾ÜÙ©GÓîÂoqU®ÙíÂçQZ„znhÕ”’v§iÙÍ ö†io"±ø6{žœyÂ!6HI]~Ac2ÊXB†ÜÙÈPÏç‰êùÞK/†dOˆÖ".MWQÄ‚–úrà3(ah èW@×"ÓòˆZ8Ûž¥ ÈEo„z_°÷R.f¹qvA*ô¹„c˜HmQvŒô:îˆRR‚ZëTS¾é¹fA4[Ý„åÕA¥ÖzÌ _ÚHÑÁ‰I†IÙñÙZŽ»Oß ßRÕõÕI»¹-+vZÓöRí‰Reö¹ ÓôPìeœ”fºSNö ³IºRídô\[f»íÙPîŒ÷ÆdAº<R²’®±sògKŠ\Xaf)üøi—é”ðHÖ/Ÿ'ØE[µUj_ÎeÙ=þšÚ"ÛÜf$¯õñÞhÓÛVŽù;®S 3v8R[ß”®ÂŠR@Û;ÙA n!ÛVSÞœ–ÞIÙöÓ”Ž†NÙÛ¡R
¯7ÓÉçÒŽÁ „kS%wé)à ìRŽáyû¤,ÉÞn÷T¦ &Ÿg@ÃÙÛVV6Z¡ž¹ñŠ—~,‘; Të•‹RÓ–aŽ‘;ÑÁ‰œ–kvù ñw ¼4Óèc.kvùÛIÛ9©”®†JÙ:ÚwZ
±;
ò[wé)àÙ1©œ–dRyûì6eT^Ö í…RìŸ5-rVÏÛVŽñ;®Rå R@{9©@‰;T Œºœ–cvùÚœ–Ó,–eÜg?¸{@½LLÌfe»0
'Þ‚wÝ`PV¡7}•™¤K\Å3V™OÐ#=$©q\ªÝò’kÈÿ^¦úrYsEÖE¦#7þãÏ a(Éò'`äµAEÇ/×ÙÏ|ôîZ– [ i5hC­ožŸƒ.¤Zé߆o(Ò‡BÇȤ4¡¢&^}xüýG6Û¨¦¼ãÚë(‹¤0¶ÿ=_ñôØrûb©ë)ܺ§*“ˆ/¬ÿÞ˜°^³£Í§Å~¿<b5p3ô=LåÌs¢¶³Ø7…–¶ÞîV®÷,ë#?Ì€Š`ò%uÁGÜAg]a²ý§Ã Aìý‹HdÒVeí8×
zý ¼o÷è}p÷¿ãàq¯s ÕJ¬ÆZ¶M…L^qÄ“
z¢æ|"`”üšR=œ&0–“œÏHbsJ§Á–t´M EÖ¹24¤—)QKj¯îµº!×ǝɮÔýi(¦.¤Wúf÷Þ1/â ;œ³—ì#„r¤ŽŒ} ð<­¯Ô¡ü˜ýx™ŽÜ
Ž¾‡é´âªD"ï9<»Uút9¬þÙT÷—j|CúÌ?íÓ‹Æ
r$‘8¼œÝ’öVŽmsÞ
2”sv:çË_28AC)Ût¹pz–7  ~yA¤A<%Íu´âoV©ÆÃ}(Ÿ|îž ‚õzó•¬2Å(¬†Ò¦‚û<Ô!ºrÿDÝ
o×1JºZ^ü:d›¼W¤´:9ÚÈ\Ü‘vĺ{e;â ±“×¬¾-Fin¡$íÈs?Ã_}.á<1M,Á»m,­~ñRZ 0S¸;¯G:¬pJÊ~²à™+0¿ÝbN-¦ á-ÿ‚VÏö¨‚øß3â DøTHLûj‰8ì”°ŒÄûçâÌS‚ÄÞÿý‹ ºÑrx—«6w¨%¶NƒÌj¶'¿èdh91c ‹žgÆô•%AJÀBòhP<óuï®'¦I‘¦0␠d–Â(C³°†˜_þ@<n³:ím †ü*Š½Êõwá\&Ë&¸¯yet)ù,V¥ÛËÏ&:Ë'O;O!µîÇí®{gÇå§}\zÕC!mCðïêoï@Ø:YæbÏy_˜Ó–»Wñ6V¼ IþWt›Ìf©©¡1Åç0ô&â
„/£»r~:¯°ò-%5Q“´­=ô„-3B™kí¶‡y ªƒxÂó~_‘6-îY›×S#Séà'_µ¾â—?ˆÀk(^âǶ‰äüDBtºp’Ä‚xl“B@ò
"9YŒ›÷´¼z«õ7ÛÏkCÞÚ7ZÌ‚ô/o_þôÐ!×ïB ¿P¿ÌJ:7Ÿß4ŠsÏ&ÒÚïA»M”véíw8iXJ6º¯Õ»
ºœæ{¦ËcË Ôkµf¹il8´ ðàì.ÈùNáS–£©R¼^Ivhµã2úKæ‰ZC±Ÿ8&!!×Ç_Xvjs-ê´³ùÝSî7÷òDl.‘cšA0ÐxÏ4’nÓDÅ
Îrü¬ä¨KƒæNêY`‰ZJ!&s7»
Hä*ÉÖHmJ^Ô«41•ü ó¡Õîý%E„Aq‘bQ¾=éy³í¹®q
@ÚÄ~
¹¥#D“šQo´îQ§¦­ÉeÃLb3ôë‚
~Š8ßI)Ô‘qȹkŸw‰"Õƒ÷쵧êTY‚Bó‹tm’.1ZÓ $ºåÝz†ø°5%—îlč$†c¨R¹G‹Ð¡-„ @Tþ!á­E÷-c]È™¦ü×׺– õ:¸ *ÙV`]xM~vx鬶òÃU=XûôÛ†ƒö¬J2íè}я —p¦^ÎY—á®{ÍMÛ0ì !e‹+oœ*Ä¥·ÉüÓþh› ¶G+¦¬mREKª…äq༃Õ"[T ÁÑ’#`Ô¹[?ëörށ,¤}¼Zß[“ö»qÉ)ZlCùr,y˜-k­7Ü¡ÄÖúßÿu‘ŒCH³ªycRA¶šñì͐ç/1PÎ/Ž1mÊÄh áòƒ«Ÿ(µJºfìéPŸˆOÕ>'jPÆ 9‹e?w¢Ú­Õ£¥‹Trï&á…Ÿ[€ •p__²«þuì&ô<\/Û%ŠFz@Àyùª®È‰•4ÊW°Rýö®x•EáO4` aÓE˜r5s³Щ갎篰Mo܃Kn¾‘,U®»ËsöÓjn X<¨#–WGÞÌŽæ´ú¡E“0Û$Žnòä¤%bCÝ\~ v A©3À.µû½Äã\ãDû™Wš´–9SºÉØIðàwd.dMµ9’dTÔÈŸóò±’é<è1„jТ SurprisedYÙmt‡­M¾L {Ñë'±ŠÂï#)ù%UÈ—SŒg²‰§©ÇÞ¥GüñDb*+ã`B‚7žu!ÒÔ¬ÀÈÆŸç8ù>‚vݸ¬K|Wåbr”ºhIÏY‡æø=½—Øë06÷!jÕí_tˆ•´§Ãï²]øQx68ðlS
šŠ.(нÍÆ×lýD ˜r!ª¶¨XI­æsèK¥‡fUÜ&ƒ÷Å;¹.dÖ÷AÍ-{¢ë[’A†‘Åà¼Ïü¿[^v2Iýlh`œ ¦›;&ܲÚÜ
äyû@–~6·Œ´iV«â€õAº”|Qí3Ò1Å?q,óVË)ˆ¯ág£NœÚíºË
ŒQ '+L>^Êjtqi¢¨<ØçÚõFñL,åïzG„Š°~#¡î‘ðqøa/
º!‚×ÜËvâî •Ó›¼öN°[š ëú–ÓAVòËÇÁvKÓS°¾wk©ù•ìÐÁ)ÑY˜ÃAÖõѼpCpÞÀaúëM¨(=˜ŒøTTgsÙ3þ«Îà…]`Ñ»½¶*:¨iÄ„ÏŠ©le%È¥…ºJ†fžFiµªW—=¦¦ÂbÌJÄ m¡¸AufíÑãML#ŒÐ^dqvµˆŒZÒ.=•Ý”|„ƒ8¶¹B’S"ŠÙõÙ Ô E½¬ž ûØtá7¾ß6 Òd%,z‰möòé:­è7RuH#¨¬><K]Pt^Å7‚õë$uè~Y}"Žv ː)ÌՏáed±åáKUWýÕ­zZ^¨qºwsøQsÎØ]Ú€(\SûºV¾lw˜_…ŠÖþÒÀ “r6‚ˆdhh.:z¢QÕøÖ2ºz´'ùo (þ‰°‡˜³{)BÀÉÔ7°$ã¯Ô<"O"Tœuù皱ƟV^Kß±ÁrýxjIˆÇ«ë©û ^ X1­X†SSþcÔÿ؆…R³ê"raÔA›µ&„Ø¢y÷•HÛx}%a8ÜãbAz¼Ü™xüyÞ»ÇûߦF»ˆb¸deæ݉-V›ÜÕç‡ã-¼»®ÊO1mÙ„p»çØJ¥Û%4ˆøÎëØx§ðPG#L1éqê,a¥Ôïʼnî+ôÔH6üsìm#„yGs|y#Äד°óÒð½!9œçÕ`/ö»ò-dM0¤"BÚm ‚Œ \yßìãèô–u•Q
ç’&›ÏW…Ž´ß¯jX*âÄoò\hëðX^j·&™Â=H<r¾^fQÉ껈´hÏ‹FDó)–Sì ™YÏ­?m¹y«ŠÆ™ÂÒŽ+Â6.³ý ö­»>™Ô-GcÁ ó핺áæìŸ>ÖÇô1y
£@º».òoð%“P+ǁbdøág¢$$›/n1Ð{äÎ¥±Â’/„æ…˜'¡BŽ ¸¶4Û3Ÿ ]Cò¨ƒ±õñ<á1Ÿõc;ùºwÌÂ%A ̶G?¢cM–Euˆà6Ç'ÇŒ{áéKÑ´aœ1$Ω ª 
ÝrƒtÇ矅¿>„À|R % Íü»žÃƒXÃU£?¹ÆI¨¿QL äR]§d”¿[O®Kô*š/ =C–œÿ;Ì©÷Ú¡Ü‹Žäx`P™«ÿ¦°–Áú…ĆóC«Ûab_Ëèî¿þÅ& @º ZÊŒ F«j¤ëgÆWÞ©ÐÈ+%Ó4*Í’<Œ¡¶™!‰ t§í½Pû0i'ìöùPëFN¾Z™¥¬k2©g8“@.T–û<iÇ"ó1‘–ððÃ)¾ÁD•É'F :¾â{õåUˆÓ0UŒÜfÚ¿Š3‚ÐyLÚwCûîwÒØfŸ#ó%,³ÑŠÒرœ»{¯êUbR?·b} ­Ì òkµ€z¦0”d×U—‚‚?~ÂNã!ཇÂhPQ¬HãŸLˆÂÔ`D
Ii·ð0·qw,*‡„GÛÉî1©kÒ—ïE|χC·uYèó¶²N™–æ0¶u N•Ïá¼2§¾¾=sKB¤>¬ÐÙzíþïOÉ$û­hÛÎŽš.—¥¯%PÕA>Aæ;ótPr86TÈcAψ’›ÙºÅ{k•S1­L¾
W^vT:¡dd|jÆ¨;‘÷Ja*<pÉ"Ÿ’TsOHRëkî4äv´§Fìä3Å7tî
×2‘¿d‡¯³rüÚE\Y:¥í‘1N±,~ëÙ9%Q| —žE äD#Ьm¤tÞ’·¢2c/ðiؾ/NÅÖ3!L6”n‹ÍëMC]þ;¡á{ñ õÞ´šž5î_š˜-$ÀoGq¨Ô»HrÏXã¿À²Ü¸í¥öÊþàMKû fw‰}P:¦Jìýä‡ÛZQ 1…J~Pœ—å•WQQ¯­ö®rëÔ)ÿ¿Ù­¨KÛœKA9ŸWðD!©LÍ2„ºÚýgH”™à.·¥“ŦMn—óÅM:‘¯@mL ·¤O{H²¸o‹~‹OüQ0ÿ2$06Y'LTÔƒæýþd·'2|ª.òZ¡¨$oɦKR¿#R”Äj{yý¡v59Ša¡_úD!VgWrô‰?_·˜ÆÅP—©†‘‚݇A/ò“æbô³s°
Û-£úÜQ >¿D±ð`;†ø‡´¹NŸ…`GWj:_ë1ãÄ3îˆË·LC”ÞÓ!*=Qb„/mgN®ŽóÛÜx-6™’ì –#,§:ÑŠµKrö²xØÐIÇ‹#Uvè’4d¸Ýÿ•d!òÉöÑéí(WÉ•ÃµÈïú"\;¾Šeûò76»ãH%ÊäÔ’1ÇY¾­EÚG¢ŠÎ^Ǭ#)%a•ß'}Nj¯&Fˆ5åÛÑ´¿hï‰ÜnɉÒ<ì¬Ê&ÛtóÚe°.eO<”{3îö¥ BêÚv¦}œð¿ÚeàÅ«RLŤȡöE¦4!ÛMQ+Z±œö‡ò³T0Š„ýVƒÕ£ƒú ^ØØÂÒOäyoò…3¢Wfx0$Lô°­‹"óI¥¨áGCÏ(wiºŸQ7‹#ŸŒqGrM”Ñ–A+Ó3EØ-䦵a¾ÒwíR¢4ðÌÞнÈ›y+N“O¨"Ù=l„N€Û–Ãà4)èH(J«U «ª•7û¢§«¥¡ÜŒ.
·! «  +£šHÆÈ3œðEµJ—Ä……‚˜Ë¬ÎËnB¨¡ÜoW)Qût°mñ,&M•²p$®ÄCì¦^:’4u9>Û‹Î÷j5}Dvb´ù›0àõ*¾CâÜu{ÑAËuuoÿ‹÷Ûð5gõ_¥–”«h’EFvŠ_’}ÃèÁ«®²R„çX´ó î´ƒ#’
,*³ÖG„E*8(ǵ‘jø‘ä*¸©wƒ¡ ¬(ªž]2(Óõ·ÚNý}t—rjŸ*^j<m_܍2P-Eq抟\ÈU<­t­°ˆò¤Š×¸ÈLÏ|¤ïôq¾K”Y¢÷€M
¼¿øai¾º@L>¹Ø `ÍC¶ªsJ[¸ËÔBYR„Ï…j¨PÉ»€½Lè.!#0Jfš,æ+?ŽÅø!¤Ê±¹úî<¬Ž+ü‹×©Ê­I¹üjpÒ=9Ûâ;·æÚe÷”†lw!¤Ó»N À( @(ª„¬¦‰³urImœjJV·“ª÷oN õ^ ˆhÚ Ë\AÞ®µ{ßÿo&å!ï1FÏîŸ!×k
ˆ½iÁ<PSìÝßÌ4«ºcëà˜”Ï<’¶ëki¢Î™rÊ´¼pGµ›üf0Ž‡…RKˆ²¸¦p¹ÜTpœ“½HÂá*”±¤•$y¤z
ðª$ZT&£xˆR‚†fOf£`V)É*¯þ(¢§?š ‹½þÓ8¨Ã•”ë6zd:“ýEh4jãFþDp{»Hþ {“zrıgÉ(¸)Šå5p`$S?^;›ÖD¢Fá`£´=yþ»‚ôýc”<.GÒK¬A¶†D]|ï™U(þ5Å×7ð÷`ka
”­1!¬J™;±2bNÓ»xLu|ã<]ÊIœÏìTª
KÑ
Ña p§–Îu‚Þ`oÎkB\JÉA\õ üïÅþùÂäÌq]óÆq Ï—!õý°¾~nà´â‚cìKÙkk:{ôÒœ8†ó„Ž
ƒ–Èâ½U­¨HxGäíځ–·ÀiWdí6Ç—ñ‘Q¦‰¸Ñ•€Ö¾ãÄièÉ¥ ˜)¿jT o?,ÎPÍ#µPëY{ÚíßÃiw3y§J^ॗD$AÖ
..-ó²L Fã”÷Ä8WÓühÛž@T·ý»œV!™4JSÝʺþ©Y¹Ky\_í¼z]©d2Ñ€þ¤dÿÙV(ƒòð V†ßÍk:z–Ü493ƒü®™+'/dz;’§FYÞ$SadõM{·Éèu¿E-»mA£ åíRj…êÂs‡³_wc˜O”¢Ó¶Ü·`·2÷ô¾²¬A²V8š§j¤ô4ú Ÿ©œ{*Û*_! šü¯­ÅD 1 §ZŒwàßùYW¢4¤>LˆÌ×<Bx$,ÊçÜì¤e7Êï»_Ò‰i*Ì€ß`W¼˜cQØOÇóÑB½Áô]ˆ))KSi¯ZGX
­6EXhUBÜ×+2OŒ|­|…D ±
˜ÄñÓ7!«¾‘&“®í#í’S/SHß~4åeIˆßv
‰)¼(G.Í6KëãÁ®´ÙŒVΓÝxÓHDã´#¼¬ÈÐCöQåÈ×F8-ûJTÍ.ƒŽCîQ¢¨5ËG-‡‘¯åÚ¾‹Î¹ÁùŒ÷~™´0èÔOàQÕä%ÕÛ¡ÑÊPIç(r?Òã¦fWëÔ¢7*Ø´nX{XI(¥I®v¹Iÿãk6º|šU>rÅ`—?‚ê}öýÑ»QÕõrA üÀQÙwº
ç£66¿«•Œéõ9’·þø¦Möráç[dñý;Ÿ”ø\¼ WH%ûC¡Rá8Aòq§FÐ ‰XcoÊ ¡ÂøàÝyÀgÔò—y¾ üäD û `v­Ä–÷IË%bÙqüª¶}==[\´/"…¨bÉT%ܳ·ß†ß4„µØS«Æ«J]éþuâËmŽ#ãèò7î
"/Pq&Ñ1fÈZ8šÏ£NÄF—¨êñÆè g3%¡¿Te›ë‹Åc’ÞªŸsáÑr¾§ÓU("«d©Û«VÏ8´aŠÜvœ
W“N)ëÁåÎÈàÇŒe*Fö9”jo?p
ˆ•¶×âa­t“™#_mÁEzö ü3„‡Y~¥st=ãçsŽz‰¤¿c7tKVØ _aÊiÉæÚ“ÿ‰¹>Ôâ]çå>,2+Á@‡:n¯¾b‡‡KÊ<1ÃhrÕ,NZ¥5ÁUimëu¦±i^C!}FÞe²*Ëãx¸k[6«W“#aéNàۏÕ^q œ³ô!¢y9."´ñ%g/“`y)Ñ-06N¥i
‰¬[^ÛkJ¬q‹¸ÅG:ég¿:¯’å¦Ðiڐ썊0Õ!“ŽHIØ:bÐÄ¡–xçZ@ ¿T•c_h0\ªa©Ä½¯PkšÚ†ëô´à‰<=_d‰!ɨ
ïFI…K½œÙeleÙ‹Ë=—·–4ãFš€Juœç€Äx³)"›¹u%ecp|ÇòÐÒWÆk»MZo8ÃæÏöÓE>â¸fre÷Òüu"IÎÉ;I{~íÏÌuüc‘'½M5¾ ;:#ÄÉ@µ(È`ušD‰A®D Kî&ßï‘ÔPxޏ°×zzÃ11 ¸ùxÞ¤XûUn¥ûËHðm7‚14ÍÁÞÖ§Ã}Ô!»¥{ ¿)(}«F»Å¦C0£é¨—ûö8g‹È!¬¶ª B85<z~šPJW¹É9Qº«~¡,P%w3†.WV5ôðÇ;b€Šð€SéE%–>¿².ÃnaüQ_tª5e€›Iœµ˜O†w®©<zCòb™~r(x?€18/ˆVÏ4–ü¤›ƒ·â 8¶¡<ºrð  )¬åø£vÑèZ­ÇøÕÛ¹–~<ay+ó"'ŠrÖ¦èÄp(¾=m§"žYµŠÖ¯È³FÖKˆü÷ûˆªýS‹žC0ð?iµ—™B1p¢¶ Ø`ߊuÛY
EËdÌ‘…ÏÊ é¶ô@£„Bz¥îx͘Cl Â@#2¼ù­ûA[ù„§¤éÀp8†à…Q.Œ´¸0”*ï-£'H`mŠt™’bÔ4—Nÿóá£ZœÄ»Q”cSVho` ëǬMæ ¼å`§¥*¦!9Ó»¨hæpgªpÓPŒyϵW;9µ¿6ö£ŸáÕÞTüõÖ÷Ê·RÍ¡L÷—|›J}hâòr³oäâcÛÞ̪§¹màBr
‰s»³ŸÀE<05ÿWXþ”bæ%‰gÇñ°F!Nö‘C±ÓóP„›0ÿ‡=‚÷ ¯³žþ¨ÅÉÁŠ,ß;$vׄ:áùXz3¸vµÖHïæóBzë-o=Qâ,Ü?ÇþŽ³~’FšÝ³s!à÷1ÎƳ\ÿ6a¶E$é4ëhowæH)Cò¥É@ÀžSú' ø½ÈLOÞ ÿ<N(¨@j ‘¨»ú9^„ˆ\LšS`ƒþSü¤[\]ä¾)LÚÊ7e-<f>ã3HšÚÔ óéÛ!E¤%P—YÌõçÈh/ҍ߸˴bädµtóò.ØÃY¿Ý4æÉ¢ÕêâqN²—[7c!}fnù|zE&Jo*ºUƒ2#°† :h‡\ò}v+_ˆIkrüsøþ€ðÖê1OBWÿˆ§Ô÷@}²*F}/»ë<é¦Éù¾ª¾ØÚVïz,ŽÜë$c3Ù"œ;¼^v±Þ›ñš¯mð‘{†–ngU—ÌÙ:åÝd¾é“wº_ÖšÀÜÿ(ÿprHÛfZj2/Ë|kã%_¼á¡Öh¤ÒO$MÇH Ü°½ÿíÛ—.¹0pÝ÷D™†¯ÙFt/ÌŠ5VwkLœ–_YL|Ä$¿Žv¿U”õÜêä—ÜA
P&2ýs…pNb¶S¹(ï ²×ÖzZ#¿Ð‘ñd'þŸM›ÂH:{PÀ|Wh«]-ŽÖ‹6üfHNbZŽ¥a$G©X.–ÐS«
ÏA–°ŠzˆŸS5O,ZÄŸúkY笫Zž$©ÿ›~#ÆPïê$¢ÌÏD¡ÏG0Ú&|6ːÔÓRazzd‰¾ÉƒBCva‘,Íytœ
WJþˆ"Íe‚ìê6y4›‡+9~‘ÐN…œËÂ0ª‚Äj7Ԑ^ +êB¬@@™eåqà·TI
‘þÖBêð×y°n’ùF ø~U€ZŽY×âœ6½ÇBò¯gT–”"ÞÆÑçõ‡]´lH¤Ã
uÖ]¼]õ”zV¨$}x=€a‡÷"¯QGG1žæG`œm
Šr‡ÙYLF¶D,vkb‚ˆPgó->Y„ˆ]v'Gñ³Å}ã1.Õ? @¶¾¶J/=Ôu´Ë þÙÑä×t˜lúÇ‚¿)ð5°®Ï´|Ïpáï'yB·€q·©Ñ ªr²{¹ežOb.=¢øÝ‚+ÕþÅâûÔ¦§ˆ+ÓþÝ!+¾€ `à'™yNžÝŸ™³ 
X°Î³«ç ¾¦Ô3w˜É•ôønzy0)* ñ>8|jö·“´nä÷/Àñ¬&Å!+›p£Û'›26»Pó”á]? „E‚@iÒÉ@›ì©×¡L_-²@³AÊø—©“ôΤþõóO‹í»Ä*‹ìs2Ä 7À®®Ð8ˆ)Ç#zÕŠÁ¨Ÿs¤‰­Ë_ðŒ “ÀYŒ$­.-™Ý.®Éñ|6h­’]HŒëSurprisedº!ÉAgb(Yç|¿0Q<x_â|j¥©“=ö<è¢*ÂV¸ÿÁbìÍ 9°€á¦CËÝŸë#dì»~±¡¡Ô&ïè`Ì“³ð€;Q„Ö"<(E»[NR13!h4šeëiy±tÛ4M›“܃ÂQ„ ÑñâóW4H·¡ +]æÖAT9@Ÿ“d!]í|~èãÑ9—8(iµBe<n7&;ß 81]M¬îÕå0U¿
£MÀá».àPê°hT0isäô ÐõÍö»V“•yƒÝ†”§KbëyÔè ÔdÙ`Ô™BÁN%pɆ>%Ÿ¬‰"ùV$D-_²’u;dˆs% ¥gNÂ>SŒ';w¿fS¶â92È0ùù;H³ø† éÞ1_ð÷ŽWpãƦš›¸ÊS8U¢óñ~”=þT*‹N¦bÐO­S°¿Kê=@c²¹Ã%Ã‹çŒ*lé»IoãZižGËvoB*‚9‹tY Öì•¡`¦(ÍFOFNlè«%”L˜ÆPû("a Õ~µ‰T–?î¤+|\X X­IΩàºEÔþs+†÷{®2Àõ0É
\ œ¯ ŽF{L;°-H
 Ü?- ´ŒÒôo¤B=ŽMSþ3$P(Uʽhk–Åà&¥²vOí|¡“s­i ÷?Àfj‚ØksK%,¹©ÙLM"› •äHg`ÍþX=/%»
H–²\„n\£GY_í óU¿ªì9žêâìÍÖa1¦ï•_é?éèôi#jŠ!P±ŒJ—é ýïMh¡\!$FÚ=[V1ÊÇ7ë~»+1µ
žÒRÖ͉ŢÌK”F“ë"líƒN øü`36|Ñôˆ9­`(òÈÿÌàý½Ízù@ãpô®p\.;ë0öÈÌ÷Í-ŒØÎòòg«©ž ¢2…ì³R Y×=¶wÿœsPJ/“Êæ.f®|ÚM±/ÎÂX6*õú¨9Ou|†S Í{ŒÝ/¬zˆöìs35­ç#¾÷[yáSmåR³5×&ƒ.V Ç6Ää×ç­?°¬;Ô°_K[B nÞïDlo®ç†/LF»Zß( ´òû¢dW©Ò÷u¢0 ^6^ +VöŽ†nÙEÅ7m`ÜÿÈݤ‘´ÚjFí»rÉSÚc˘ûEa#…êX®Ð;Bóè°ÅE’I¨åð” µ÷bW‘$ ñ|îŠ_)p\3°;-Ó [¦7ÿ\ —ÝF/ˆP†´|k—&ð=tÿJÕvÀ*‹5ª–Õ‚ÂØF™êÔÁÖ ÓD~ùLÊÈͼ.Sõò»"ó
“pü«ƒb<ýÇÎ9Äb—àEL%|b4ƒ¹¦’ú­uiRÇ)oÂ4wSšÀ“‹œÝ¬h«"¼…r+NFÐq‚¢)ÏÜL_íGþ¯rÞ!¾õ¥'_ˆŸ²¾áÎä´¨S¬Ž/Ì¥¿Št$m˜ÕNóóú*UšÈ:ýÉjŸãµŠ2_ç‹dÒa ê5Ù‘à¦a‰$:/úš@<ÖêòªYµZ9¹QWÅiëŸø¸PÔŠöi añý쎔ž5GÍaàïUŸºkñ ¡¨“á{Fš¢„°Ó Æu@yûšÔjec@F¯". –»@ ùþ¹¾­k뢧ÜRJÉEÕIÛ “ðñÉø½2R}”÷ñRþk£pS’zSpTÞIYчNXñÕ±’á؆?A_U*ƒÌʸèê{’}CÅAGVµ ŸäÔÕ¡EHs@¯¾Š’r·j¼¤ L€}–w[ìÈ-¾Á‚ÑÿHÿ>¿¸äëü"‘ÏsÍXNe½0üWõ«t5)Ÿ5{KyÓ÷ï­ $h|«Kì}ìœ.#³ÆDó·´:’½âÕ&9÷xI»=£K3CäÏ[h—y"F^ý‰·ÍOYHOúA0-’bbI¦ÌþY®1Ê‹ñ|¯ÍüàÍ“âçwBô>ý΁rªÇ*¡?" Piñ2,‡®ë©¡ÁºË•&³}¯×ò8Ö07Zƒ†Ùúú‚ v‘TT§‰FøÚQ.Σ›õlѯ²ºÍ1t]tÚò8³=>læ䓈ªIåY£QÖu ÆR@ 6l#¿ªøzIìÓ&Å>ñ1ájøÙRv[½‘ s‘ÁHEÞPa:^;eZ°W²”ÎRòåÚ+2xsZÓËÖ/©™ÀìŒVÇí‹TÓLOLjûñˆ´æ8ôéõáHQVãû~^d
4N—&3¡LüñëÉÀ}1@ã=×üʘ¿¸±¨ ‰À³šê%^
Ávªöé‹®9ªãP6°<¶¼‰w{£~bôÔ þê3ñâ䙩Î7U5¿­Þ Ö¾›œÜ”··º2,Êäú\RB”eÇõ$Æ5cK†¤GYè~S©Qfwxø¿õ뎒ÂëF\{ìˆé,²9ŽŒøܽ.ò?Ò¤,Xw˜ÿ Ñ<™·
âšX?ó’²gblgªë×MÒ°Á–•®œÛ ŒªÆ-bZ¹aöêKÎWk¡b†À–õtÄ‚lì-ŸÏ5!-Þ?q ’ÅÉçÕÆ‹!MM-cÁ«pšGVY×íÝö W(NU+’´x.ˆBÎ64r>4³›‡ßdÁˆÕ9ð¯óÅ­Ï(RÐ!ÌÓ¾àü•~lPÊ[üä-=˜uáYR—wßSˇÆE ½Ük­Þ–™ð¼
EÝ6d• ¸SÆùÁ£ÏS¢®G˜î¾­ÈÚ…5Q,ÛÈ `©€Ù,Wü%”à$ð5ÙIŠ!´ÁpI‘®iGNÆ!áõu° ïR z•Ø6A¢Gqg™=£F¿d†hI)²JQϸ±/ŒºŸôæs\L§ün Æ-ÃàobwkØÎ;/Ð!^ùñ×’ò 7‘ÊÓ}•-‰Î¹~Û7)Sþ‘¦éVT0†]c Á!ÙUòbVZð§Àüå7åGÏÿ
ºÇ{…*äý©‚¼á@/A+F>÷\ײCCÛXáÁj+¨ð
z¼U"c´¹Â•m¨…©¿’˜·úSïšì€u/oô ä'–—†6“åq]ˆUŸq1hyp2¿£‹ µ9¥ž0l¦øÈrw#ÂŒÓ# —ñG¼jüÔÕ´·¡Ã]„Τ/½wä¡Çå?,Q<{/”âé¸ácì ,Q9JƧ—û+2ò¯˜ âl@±i³ lÌêÊ>§4<.l ¤?:¶’@é! ÔLþÑ>ŸI:NìZ{ŸÓ¹ (h¸ÀåbBl?:MfqôqZó=¥#hÔ D~}lCÎÖ_~Ɂ#Æ:m
Ç•dzw¯Š£Å3©´Ë€ )úÚY\Kiz%7e¨¤|³?ù“Ëi§’mcV#Þ%ijiê†Ó"
æï»hpÿß8 Ö£:‘ÇĹeO#“ÍÿïP¼.ýǧhõ7 ƒg-Tjþ^¹ëø<§¹·fXh’Û” I¹–@ïS»Á½Z
¶Oë+8¹Î;¹²?¤Cè$}õÌyuiª>É.@x–¢i$¾~°¾)iPï›J“WØ£1ö/s Aúù³sD^qóW:*xñD2 K÷H‘tM>â>s"NjëûƒÞøÿ±T„úTaÃBŸÚö?“Ñ6Þ6¾,«ªä$®¾Uå¸}–}mà®ä.Ò9JÖx–MÐ'×óþõ,ÏrBÎs`Ûï/]ÿ.xÐmˆ÷“zœ[T¤àvßOæVóPom8LÂoÜ,, cØ%Xb5ú|“yG‡".euËšf¿›çÓóåÙ° ÅšÏ0ÝKá=-‹„’K]ZRB›]i𥢵ÿñXqBÞAjÂÍexCÀ®Ðc$.ÉšÝ/b¤y¦  ˜ôøSs¼mg™ Ê}{"Uâ2e‘f:b> ²ÑÙ(ý˜Ó ‚nê@|àUØ©ÞïsËàŠ&b¾,>ëÔ6 6ØéJ!¼ætp«AÿÈ«H5ù¾8võÑå§&D@FaàQv¶O¾ gL F 5³ÜJHót¢vÇàû×¥Dm‹ UîàëA¹æC_wt¡Ðìá÷³ñÚìÓîØ¿žr8ÿ¬ã©ð÷‹â`Š­/üÔX §NÒ¼_f¤u¸o¡‡2·a8<„.n–JªÁÉþ¨i£¸#èW¾t¯Õ­üÂ$öö„IÅ‚˜ÀmŸ?å–!ÖŸæÉ|,å²\!ºIÏfyk¾‹ tBϝI_LäÆ5ƒ?šîļRD€gÍ׃a£eŠÉŸ Z<U‹.dù$Ñ6ûÒê#êÌnÏ®zš›^Û$·M2:îÝՐ)jNó{`ylË„È6reÐl!QWâÖÔ.–Ÿ×¯'¾ 0[\F0€Zz~ÍTœ‡žáƒ !ѯ¢·pm k> áåR‰u¸ vrù犐Ú9ÍßÑfÏöý..ŒôãâÈy×´ŠÌ[6ÿâájÛÕ™´ë©%ß#“±Ø<ÝFh$Û ž¼²Sͯ¹pØÍp¯bq‘—ü!/’8ÄÔ#8ÿÝ,„èvP´…EìÁ¦½í
 ôèAp¬ûÄ(¨,æTê_Ùr±\ë%ø„x GaþÏCv\# ¾˜~'Ëx·J&“mÓp쏎h-HÎТ3„OÂ_¼|ý5ªWq"¨;!qáÖ, ÀM&^²i¿Kø&B•‰Útï—¨­Óþ~¹[˜nêªàΖzmÉ
Ï£~£­ay­ÇDå`ݍä°kÅ¢R°âœ¤“}*͍ÂúðÙ é·¿²‚®±ÒJЄ+ú@BïCZŽ­ø)îðErž~ˆQ!áiR }w¾à¡ÊÝpUKŽ‰9ÐNM–oÓx@~aªÌõ§Ø1®lmYðÊÌ-4k$Å…ÆŒhAS=°Ü XbëêÏL¾‡8ŸqÀÁƒT
ç(UÄAb
é£-IöÊ\C¯.tA‚嬅š~Ã47vj/Þ(S0ÇõÞ»-©ä퀰a°×KWéÅq´
]*)ã
|B…Û§¶€ÿK+¼y?MÀ“É$.Wl4:F'³‹o;®côf3TNk \ìÁv¤ ô0¡:YªÛ¨áØi¾qª‚(žLÊ8tïú²¯ßÓÂà­gCt?éÓH÷»rúQþ6 ®©µH9CømËáÎÏ(bmzén
`CïK/êð³¢w]gduÒûCÖ‡CÝé¹Ë™ÏÕ„yFj­s®G–i¢­ôáTn)8£9ˆT©<T¤;h¯ÿJ ®ØŽÑxìZªL¾ôhüâüT4ŽSž:Í /{;´?sœÖÒ1TہÌZ·¿²Óºè6òP_àø}ÆvÚR4D~—)ùâY<|¨î“áu&wôì £Ûq'鵄ü¥ß¤{uú•õg sc¼þºÌGå”.þ­ïK•z/6„.M;î§~Ä+øoc\Ãêov„ªÙâG—3’ÎVc;dï-cûA 'èøc4ú*^,êýdM¨"f® TvãbéC ak/—J¦¼³ÈãFºßGCÈš@®º2Uºè·ïØ:4°Ϙ‡5#YìµIƲs B“]±/·ÔDè|™½âxŸ_H`R½ãþR/ì¢Jä_º«¤Y£è}dfóT]iìTt;ùŽá/£Ô„ÉBÔv~;{`Õ9Ò» 
GÿðÓèd„šø8‡1fy÷–ZÆ%2sï¯Ú«fÓãÆL\â­IP4y)KÕ àÝ¿û}õ˜õ›c›¿¦|AyŸ YÝ„­?Z¬5q-søÀšÐòÁ׍äéÜ µP`.² EŒ ‚ñ§x¢'㯗öÅ ÂgðÑ—4÷degâ×j†ÌýE"ÿ¤Ë-ULÙÆ£)/ÚŸ#CÃY^jh!‡¹æ¼Û©|¶µÉäwo5ãF—»`bª±J èpGÁ^8_iWdƒÛ—v÷®nŒ:»àÁw:å9Äqa¬‘<ACˆ„™~À†ÿ¨xŒÅƒ›ì©J6Úåí™{Ä)'çàI鞦§Ò‚5 »J8¬ÐÃzܺ.¾)òy»vüÑaZ*¡Zþ–fˆïm¦Z1óS}<oSü¦‘€ã^öت¤A’pŶúEb+ñI½¨¹|dbYwI}
œxÞ’wô]Äè|ý…ÞŠÏ5Wös•$°ƒ•sX%@g¡cÒä\è7͆ŸÙàüáÝ1tALq§Ëùÿ¹ËöT’[ùƒçÜJnl"É^ád®(ß–
¡Zõì'Ï^¸Oh6µvÀ;œõT
mÝt{¹âŠ¯«!
©þ©®}¬æNiJùT2î-,³²X¯5·‘<L ,V>+2Uùõ¡¶º —ž´6€Í ^ŽŽVA÷ës«ÚG8dÜ®ZõØrÌ®oz‘CËÎ êä0IpFçý­wOôÑFµL( kocd'ÛM>yÞ·¡
ü½Ôºø äµ£Œ÷¿›ÿôÒ=#üxZgš“¾2Æ1Ô­îBŒC\ä˜ÓN”ðÞÔµž‚°õõæ%$6[ys-¢OÆêf“–á ¡â‰Í%u[Ƒ–@ØFÌ3‚îDAÏ¿I
ºIþ`wD‹¾9'‚H3ï“RežyÁÒŨ¯­%Zéè©œÊh®aÂï9]Š«s–VºVoYÿ:äta½ͧ©`',ÖÞ –gpre$%< €^™àqïSŽ#¾ÈËwå^½V¢$v´:)h{±¢×`ïíÛ%êŒvòXÄÅEí’waoá:
¾iÆþ'°ŽÕ ªÂvÔLsØØùFèÏUJš+"òùtvJ—
iFDPÀÿåÐ|}Ø´cÞùKd˜Àë~ló„ú0Z„¤í•5£r¡ÖLKè'Ù*bãcž¡†â.ƒÍý˜ÐHÀ5ºån”I¬ªbÁrZ‰R⥸N¯›eÇ0—
Ò¯Û¢ü֏E$‘”‚–dÚò»OÌÃn3®T%œüÁmõ1¹@¨k7z¤Z2z9}µ—£‹
ú½ŒCî4¦:Y'E]o±‹…ÐVS÷*³ÃÕ»Aì/q‹.pjmë~½±Î^V–&ùètãù‚zôFdÝ;±Èw=ø[Ó’f`bz3˜pe€=8wL^ä
~-oéá&Uß)Út¢1_SŠÁö#ª« AžV šÝ³»;`$1Óùtÿ] / ]£l’AÜu›Cµ¶*P3ñ—Nœ%ÿ©úF<¤+}#hh¶Áaš¿|Â
÷ôø=¢)6oCÐwYàⵌ–†ÑLJéÉ°H4Gkt\
q¼™ ܈Y$¼%_™»¨•Iæô,
ó}„Š-”(šG:R˜ÔG{÷¨* #t1\€TíÒùR^î”èÀ—Ž䨍sK*X•@V1¢kè3À†@/ÉÚ£y:‹5ôçJÚŸÄzo·<Ð! FèiHœòM|×ñ+LèóÓÛ~™ún¯«˜êâéÄçX¶ºKìãDÉ<ž“™Š˜eõ¹À3N¬I˜
|ô¦#%×vq­ƒ
¢cEm˜Ï8èï@®A,rìLôo-›ÁCuY/Ø›É(ÉE—1þ¦ƒ‰|E¢¡ XpžÉzÛ#­]Ÿ;-äU‚³E#ú´ *oÊÏÌ#`žgDsÑçƒÈ;§Ýô›9@«êHÿ;nyُŸ¿Ù±Ôxùïk%!¶²SXU)õWüFÉ/*cüÝR§*Ó'ípâc¾XJ‡Eê’Ý>ƒd¿1ýP"¨œ4ñ ²Ø³aÐI›#\Ç¡S£f« úÇõ- íðg*`©¹n=LÈ„I1Q×D ídµ{n¦ã³¤ ~üÕÖ]ZYJcÖ‰d©ÿBOjAUˆã`® œÝ4y‚ÆÑ2äÑ# <*úäFKõ´ &6 §ß’‡#ìÏXô—Ï›'+sÆ_!bþô€²eG¬ù‰ëTKÊ”Íïïax’ÁÜU:5ø!ã,G 4 |w"œg;ü±NçP½.ús†ëà9 çœ¿4c´æ\†mqý)5ÅÿPM›ªCiǯ\ °ñ žeaE± e½*Á,À cH8=šüþcŸ $°ï§š›ÃõW®’”nz‰R':§E·×m¿á =à‹yÉbŒ†£¸»1âk5øº7*d(Me0Œ–5#KíøëÆôÁót{‰NEÔÓ.Ô|“BãóxÐ*H‘ñÝ1ÀUek.ðÍo•J
³áxÎMµ¸èË,qã¢1wå}56»7ÖËfêzí¾lÕ>”Ð ¾gÄz¾{¡Õ‚£ß !^&ÀtBYŸxp>¶«Ý$ìÂ|ÃôþP/º”ŽFY³Äyø©ò—D+Ê6caýÕŸt4ÕOÓa²É9˜Qäw³ð‚­ê¹Û.T7ÍrNnli„ ²¸ª"èÓIÙ&è÷\<‡’ŠW&‰ÀŽÅ§þ¡dB7Ûymò¢›%A2Ñ\à(v¿ÇE©^âsÀý˜©ûœ·ç;RDÚHJyg€–¾É·8ôàV×"õÍXM”è–d3‡ÌŸÒ½ú¶qX3èwi¯m§:NÝmí& ‡ŒÝA¾+øÑÊ–µiã#¨U§FVŒF}Œ§åºÞ„6ðñ#-.+ÂËdBaæ’u È¬ß»Æ~V?ùMu¼k£K[Ùbú<”™ÛMÏ8ö{æ×ì±vÿ3Â5i´\RS{ˆ´òÆï‘•ì0_:;ÏÁ`SnüžŠ
›Ô½¬ÔKÐ(
êJq!‰a¯X(åsÇŠ¦fUYß̇÷¤ê½.CëAâ¿!{Z^’ Ë„Æÿ§ÒÿžÒè=!6IÜ7|c{úš›gÀ±¹äX U÷@}6–4î;{_­³æ[ö?/©D‹ÓM‚Ò—[<ó÷¼ô}Á ï-ßžVü#lh'
s]?Í™:‘ÔѦîÜ„ãñZ‡JÃH ,4u·(kb™äÀbK¹/Q4kÀGÛ™† 2æ–,™Ê)™›ë ÅW¹q5qdA{PMo¶¤ö'§ÌÍ’¥ØГƒ
2hÔ,˜T…Tp'¢Œo馮'ØM!]ó왚)‹¼Ð^*Ãîwɝ®hŒ¿Á‰û¦ÇE Däst(Ê=¹F¨ÂΊ£²¾'ögo?ç1Aš3õ?<Ùúyõ·»#êZ5Y ùʪ;˜òÍR7éû…Ö‡1¿u¢oÖY¤ ³wÒ RZñF'|¤/ªßÎøàöm—( ²TC«¨‚zJG»­é}ñĈ/þ'7eÆ-“HeÈÉcç•£=ÌB¸kçáV €MÞ1_hkþB‚=xµ<ضìÛöìzí9‰PP¸Ý†‹Wê 
6§E•+ 2òžžÓ*ߧ­hGpÑû
µ
•9iF{VLïàSÐr´ÓDcX»n!ôZéêj·Ü“ǸÈv"ËT;ˆ¡5žäCu`“®La:%Œö‚üûDºMU­róˆ4JKT«­úÙ"]‘µDb^ØåVרŠs)È96Uëóî·²†õ#TÃyº¸¸]“±ùhŠ¦ÎÅÜo(úijAåÎnĨÛ~ÂDÀܹáö¿I”Úâ&Å_”‚ †]iC<?–j~¨ÿ’ –ö%’D"þÌ4§ïÚP{0‡žþš(ó4‘ó1dsf:}坴“µ4äw¢½ÆŒ¯ÒŒ\”‘ t*Ñ¡Þi¢À8 4¦ ¤“
Ç1ÞF—Vw>Í)•%2Ú.ÝLâ†éÖñ“†¥EȏèAÙV„{ìÐ?ì–=Nê+‡Ë›¤ÂM'š´ø'}É_Ájêþç  €›£(¾vm̆õ‘ªÀðôl Þ«%èçUòø¾Ìç\=à±Ä?m„2\‘äv‘™F4¡‚‘ùÙƒ‚“®íÏi‚ðìâ¢3žm!§!Ýáì|*Ïà5È1éà¯ø7Bgœ0‚ÿ¶™Öîª.e˜u+K2©·g†u¾ø<âü¯Þªß
sÿ%,ZNZ‡Á·’°¡~¬J ß9"ñ# ³ÂÇÕ¦•¿ê y¦øhËÒ{ë•tk§JY÷²S)…?jŽ‰„oc†‹¹¥2Ë`K]ƒVq‚)Ì3aIðÉù×RèL<vjóé[9h‰Žèn“»­x„Å^ùø]àâìxol¾ Lx¾#’t%@­¢˜ÁÙè
”xZ
³È.¹”ožÍ%MÚDy¡;¬U•k³õ˜;o ÷ ¹Þþ@]„›–Fxª¦è-ë!xa׻ዌ#î¡I_æœÆ^ÇŠÁûÕíJá©oFlwî'øº׬U¼ªã=ÉcG,Ñ

´^úQ$ÂìÁÄ(tÄâŒË€Æ¯ÇÙS˜r´éÇ¥¬hmÊ\Þ3ÊJû†4áôÒ…Çãô˜à~h ŠQ<Š÷p¼íë.ñ‹Ï˜»hýMS×èxŽ£ì|(,²½74

¸#…¬ "SÉ?WÉ¿¡ýV0lØòÏö…}]ʹ¨¡Ü4åwa/Š~-Âî ³  ÕÛù¬þb6à`ô Ój´øÆ›.j]꣫ rØZ¯U7ïhm|!sèüÈÕ»i?ϳBžRo?Ì€{/f
'¿Ö&GªŠV˜ê HˆŠ,” ˜(–VîëUZöÕ…xçC†æÐúO"•í|A@Š¬d›BRyAA ¢Y"ã¦úwy:cWðW¾¦OE»{úÏ(šR}Êj¯‰^øÂþÁªùÉÕ ‹kÉ΃ݰíµ+þ?ë£Ö5¾%}Ú¨ú´&‘䉁¿5¯çLö Ǧï]0åLD¶+ò7†jBR{ESèt)žBÙ¯N6¾ü#‡Fa5´¹“”>BNç¤YÎ,¼0ÈöÚ6sBØaâ~bèO…C=˜Ýæ9—tÎKÕàCg»ù LÔJ%‡Z¨ÿ\;â¬GäïÆk<ØqõLF§Z1θÐè"¯†Í²+`ÓÀ05ƒÈø¹ Ü0Of2®×GÇYíÖªæLð±þo
Y·¾ëÎfÊ Ôȹ:3 ÇÛŸšƒÅÿ¹B®‘B)h÷éû=ª÷k
õM#ÜÂ=‹—_ã3KËW业Qäk*]}á Uoæ³røˆí­ä
^
™]_žöJÅsN÷/<Sž-u–‚P74hÂò|ÇùZñ ¾šQp\tåò"I¸Ë“×½
&âòí/‚Hµ-”ûÒaǾŠgÜÕ»úšMk
¦éi ]((€$:{Ä̏[‚¤cd­—3ðAù´üQÕ.33Ÿ­ŽÍk÷gûyªÅ«ÎÜ* È  Dþ¸½RÃÊe°B9äÛ)œ,ͤ ÿ¤ú^òTÛ¼ùĬW·UÖ9æ
+|5d6W4¤¬‘$ø3nÆ3É^.ÙG´p¬››ÌßË‘8[Keó;Mø‚w—~
¥›×oâ`ò¬ &[|‚/²—¢ùرCpà ÜЍÁdé Ù¿•MM”[3rÏ€tã`ܸ‹¯YL¤r±jÊ Q«ô¶kû2öbd+¹U®wˁƒØ/ÙÂÈäÒÑz8$ œmCº¨âìøGÙerŽüΙ(ì´|OlÍÓ¡XdÙÍûý˜ÎûæúP‰Z²ŽÁô_©Y\ó>9;:¸ó@JçЕ õÓâç¶ø ‘Ûu¥ŸÌ\¦Ïsœ<_+¡Ïs5{E¦ƒ%h/ÌÁuVs/Ç›ÆÍÀ¿auRàü×ÂàÕ¦&˜‚³*
2iÚƒZìñ$Éβg/½£E§±I±¦ü ”•ëFºvË-ZÖó+üšÄÀ$sÑÚn=²Ðì•ý5
¯àá6gx²ì·F˜ÄGm²G[Néãøµ3x7@”?{A´6 “Ës¨íøyCA¥ÌXMT(‹4j=¹¯ÔŠ PÝBŠø6`u
ú8qx ÊYó¢W:¯ÁÀF1Ü!Èäd".ÉŽt«Ê\š²¨‹é~ÁìÃû׍/vI†PGIæ²t7_oêù¹Âñ½^ân‘H=#wὁ^¤= G-Õ‘—”êñ“ÀÕíc©†wQƒ‚MÙdùšY¾8 S}Èè4ÅîÇéçR» RØÀóàÑü‘yŠE‡¢¸b_ñ(x®³UúÍý¿ì
DuãZåvZb¨‹°é“]ýÂvwùQYý :Æ;†æFRãìç ãRW¿áfl_¤ìž ça„BÔ[üÔ$(;.¢]²ªÀàþeʹhÙ,•ŽI4‰.Jœ¢’ ðŒGRaÀ7@TÏž n‹ØK…»R Ù»aÆ]ÓóÍkGÙ:#ýQ"^€î)}ȹ~+xUÕž¥ÏRWå““ãE4—”‘(,d,•OÇUNœ¼¸ˆÊËI|©ZÓš¤RÒ×Érà­6H*ÈnAºåŒR(Ș'é¨QÝn÷üsÊnóÍßjๆÅ%±B%sÍ/\ÉT?ï«dR¬L¸êð
~*9o«èþI\½lÃrïlÝçãj‰¼Aû>Ø®¿æ™ÌQ8Ž‘úK9‘«V pÿü)Í+Ì8qiÊ0°6µ”©5ü….¯S9¦2ž¡Cø| –‰gSô[ À׳ï¢Hµwp<´Øò 'ÊòÍl+Bª- 
P/b r5
ìlaÛÂH%ޢΟڐÁ«c øøqTÿë¶äŒŠ,oTòh`‹¦»þõ‡¬™iÇ´ÀÐÃtÚÁå…ÞWK ®uÂòÔ_¦K(ŒPàŽ ÃÞ^Ò<C»‚£l?s’ ªn 1]7ÈÀtÖ̍!ýâôªô-„¿‹å<A¹ºP4ÂQyÖ)]Nðt‡tG²gÁ ‚E„Füж²¹7F(ÃQÏQÕ賲ʙ§ÉBgèª0¨ö‘ue¿è+`ù$–á*P ³Ü3Hé»Id&„XÀâ\÷¾Q¤ÚÕ1ÌC‰fö‘·N¹É¡Æ%X.ÿÄ1;§…ìï66J¨[gg ³f ÒÛqŒ ½ÃÀ‡ÂŒ’pº^{ÕØg}dÒ^˜ÉÊ1 盀¼ê+©„d_@üµž“EŸæjŒÁ;®TßLQßÖ”žT4 z•©ž» ¥v; ŽœIß7 ñEFÕÓÓ–CŽY”@†IÙÉÑÁ‰ÜŽUóàO5:¶›0Zî¡©UP´Å̏‹~ XNvä¸
‰’7ò¢„lÂÏÇ‹7¬ãAþÉ6ƒ9ï7Óñ¨µIñ¶ÈA∭/!*<˜ƒ³i{~^jÌSI7g þ7À‘¯í”ûa~îk¶ê ž®lâ[w(ÿn“aîé ’8þ ¯õfå “»¦ ⠽Οœ­]¼tI?#rÑíyûE™ÌW™Ækñ@… °ËÍö² ÎÔ¨qÊJñ
dŸ#âx?¥X|
ªlÅ‘ö?^ì?8MÝ#*G¨²É™¯ÆÍ|Xhìk?ô¬sf»ÒGÞN UÛœ–ÛÑÅ…”RUåRGS©GÙÛå¤~h”D»RžVü{ÛHÓÃN÷D è¦-
[eRLŽÉ;Z†I½›B
÷ª{©GT4R–^!ÖFÛfÙ©œ–ÛVŽÑ;®WÝ4] ß'`u$„ej7ý¶–V!ÛÑÅ…”RUåRGS©GV6¤~h”–N!×D»RSeR÷»îƒA¹d÷ÑÏôSíÛÜ»[¤JÒ÷j­-òþlM;•ã.y– ·v(µÛï÷Š` OhÇÀªê6ÑÚ…rá·&#

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Udji na taj USB i obrisi fajl abk.bat. To bi bilo sve.

Ko je trenutno na forumu
 

Ukupno su 1294 korisnika na forumu :: 37 registrovanih, 8 sakrivenih i 1249 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: aleksmajstor, aramis s, Atomski èoban, Bluper, bobomicek, bojank, Boris Bosiljèiæ, cinoeye, comi_pfc, dekan.m, Demostant, Denaya, Dr.Strangelove, flash12, FOX, GenZee, goxin, ILGromovnik, Ivica1102, ivica976, Joja, Karla, milenko crazy north, Milometer, milutin134, Mixelotti, Mlav, nemkea71, nenad81, Oscar2, procesor, slonic_tonic, Srki94, Stoilkovic, YU-UKI, zdrebac, 1107