Provera loga

Provera loga

offline
  • Pridružio: 27 Apr 2009
  • Poruke: 30

Napisano: 01 Jun 2009 13:48

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:34:39, on 1.6.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\tsnp2std.exe
C:\WINDOWS\vsnp2std.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe
C:\Program Files\VoipStunt.com\VoipStunt\VoipStunt.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
C:\WINDOWS\system32\wscntfy.exe
D:\PROGRA~1\MICROS~1\Office12\OUTLOOK.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = shoutcast.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com/fwlink/?LinkId=54896
R3 - URLSearchHook: SHOUTcast Toolbar Search Class - {14f0d511-36a2-41ca-ae01-ba4f87282c97} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~1\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: SHOUTcast Loader - {ccec60fc-2608-4e58-9659-3ffc159e8ea9} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O3 - Toolbar: SHOUTcast Radio Toolbar - {0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [tsnp2std] C:\WINDOWS\tsnp2std.exe
O4 - HKLM\..\Run: [snp2std] C:\WINDOWS\vsnp2std.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [BtTray] "C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe"
O4 - HKCU\..\Run: [VoipStunt] "C:\Program Files\VoipStunt.com\VoipStunt\VoipStunt.exe" -nosplash -minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &SHOUTcast Search - C:\Documents and Settings\All Users\Application Data\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra 'Tools' menuitem: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~1\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Background Intelligent Transfer Service (BITS) - Unknown owner - C:\WINDOWS\
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: ESET HTTP Server (ehttpsrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: mbamservice - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Automatic Updates (wuauserv) - Unknown owner - C:\WINDOWS\

--
End of file - 11505 bytes





Molim vas nadjite mi resenje !

Dopuna: 01 Jun 2009 13:50

E da zeza me net nesto verovatno zbog ovoga

Dopuna: 01 Jun 2009 13:51

"Net mi je jako usporen pa ako mozete vidite da li imam neki malware"

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Zbog cega te zeza net..? ja ovde ne vidiim prisustvo aktivnog malware-a

Ajmo jos jednu proveru

Preuzmi program RootRepeal na Desktop.

Raspakuj RootRepeal.zip u neki folder.
Dvoklikom pokreni RootRepeal.exe.
Pređi na Report karticu (klikom na Report taster, dole, desno).
Klikni Scan taster.
U prozoru koji se otvori (Select Scan), obeleži kućice ispred svih stavki i klikni OK.
U narednom prozoru (Select Drives) obeleži kućicu ispred sistemskog diska (obično C:\) i klikni OK.
Po završetku procesa, klikni Save Report i sačuvaj izveštaj o skeniranju.


Iskopiraj sadržaj tog izveštaja u iduću poruku.

offline
  • Pridružio: 27 Apr 2009
  • Poruke: 30

ROOTREPEAL (c) AD, 2007-2008
==================================================
Scan Time: 2009/06/01 14:42
Program Version: Version 1.2.3.0
Windows Version: Windows XP SP2
==================================================

Drivers
-------------------
Name:
Image Path:
Address: 0xBA6E3000 Size: 98304 File Visible: No
Status: -

Name:
Image Path:
Address: 0x00000000 Size: 0 File Visible: No
Status: -

Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xB5F4C000 Size: 98304 File Visible: No
Status: -

Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xBADCE000 Size: 8192 File Visible: No
Status: -

Name: giveio.sys
Image Path: giveio.sys
Address: 0xBAE71000 Size: 1664 File Visible: No
Status: -

Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xB4E22000 Size: 45056 File Visible: No
Status: -

Name: speedfan.sys
Image Path: speedfan.sys
Address: 0xBADB0000 Size: 5248 File Visible: No
Status: -

Hidden/Locked Files
-------------------
Path: C:\Documents and Settings\Djordje\Application Data\SecuROM\UserData\ЃϵϳЅЂϿϽϯІχϯπρϴϱЄϱЃϵϳЅ
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Application Data\SecuROM\UserData\ЃϵϳЅЂϿϽϯІχϯπρЂϻϵЉЃϵϳЅ
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Temporary Internet Files\Content.IE5\4HEJO9U7\InboxLight[5].aspx
Status: Allocation size mismatch (API: 20480, Raw: 32768-)

Path: C:\Documents and Settings\Djordje\Local Settings\Temporary Internet Files\Content.IE5\4HEJO9U7\InboxLight[6].aspx
Status: Allocation size mismatch (API: 16384, Raw: 24576)

Path: C:\Documents and Settings\Djordje\Local Settings\Temporary Internet Files\Content.IE5\4HEJO9U7\InboxLight[7].aspx
Status: Allocation size mismatch (API: 12288, Raw: 16384)

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\Logs\Dfsr00005.log
Status: Size mismatch (API: 525647, Raw: 525033)

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\alexa432@hotmail.com\DFSR\Staging\CS{F0D176E8-2022-DB5B-6364-E0A5768971D9}\01\10-{F0D176E8-2022-DB5B-6364-E0A5768971D9}-v1-{3754E89C-EC75-4311-AFFE-E4839007585A}-v10-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\alexa432@hotmail.com\DFSR\Staging\CS{F0D176E8-2022-DB5B-6364-E0A5768971D9}\93\93-{DE79992A-CB09-4AB1-B798-E35AB3E0D2FD}-v93-{DE79992A-CB09-4AB1-B798-E35AB3E0D2FD}-v93-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\56\156-{3754E89C-EC75-4311-AFFE-E4839007585A}-v156-{3754E89C-EC75-4311-AFFE-E4839007585A}-v156-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\01\201-{3754E89C-EC75-4311-AFFE-E4839007585A}-v201-{3754E89C-EC75-4311-AFFE-E4839007585A}-v201-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\01\54-{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}-v1-{3754E89C-EC75-4311-AFFE-E4839007585A}-v54-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\02\202-{3754E89C-EC75-4311-AFFE-E4839007585A}-v202-{3754E89C-EC75-4311-AFFE-E4839007585A}-v202-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\04\204-{3754E89C-EC75-4311-AFFE-E4839007585A}-v204-{3754E89C-EC75-4311-AFFE-E4839007585A}-v204-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\10\210-{3754E89C-EC75-4311-AFFE-E4839007585A}-v210-{3754E89C-EC75-4311-AFFE-E4839007585A}-v210-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\11\211-{3754E89C-EC75-4311-AFFE-E4839007585A}-v211-{3754E89C-EC75-4311-AFFE-E4839007585A}-v211-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\12\112-{3754E89C-EC75-4311-AFFE-E4839007585A}-v112-{3754E89C-EC75-4311-AFFE-E4839007585A}-v112-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\14\214-{3754E89C-EC75-4311-AFFE-E4839007585A}-v214-{3754E89C-EC75-4311-AFFE-E4839007585A}-v214-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\15\115-{3754E89C-EC75-4311-AFFE-E4839007585A}-v115-{3754E89C-EC75-4311-AFFE-E4839007585A}-v115-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\15\215-{3754E89C-EC75-4311-AFFE-E4839007585A}-v215-{3754E89C-EC75-4311-AFFE-E4839007585A}-v215-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\17\217-{3754E89C-EC75-4311-AFFE-E4839007585A}-v217-{3754E89C-EC75-4311-AFFE-E4839007585A}-v217-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\21\221-{3754E89C-EC75-4311-AFFE-E4839007585A}-v221-{3754E89C-EC75-4311-AFFE-E4839007585A}-v221-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\25\225-{3754E89C-EC75-4311-AFFE-E4839007585A}-v225-{3754E89C-EC75-4311-AFFE-E4839007585A}-v225-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\26\226-{3754E89C-EC75-4311-AFFE-E4839007585A}-v226-{3754E89C-EC75-4311-AFFE-E4839007585A}-v226-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\28\228-{3754E89C-EC75-4311-AFFE-E4839007585A}-v228-{3754E89C-EC75-4311-AFFE-E4839007585A}-v228-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\29\229-{3754E89C-EC75-4311-AFFE-E4839007585A}-v229-{3754E89C-EC75-4311-AFFE-E4839007585A}-v229-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\32\232-{3754E89C-EC75-4311-AFFE-E4839007585A}-v232-{3754E89C-EC75-4311-AFFE-E4839007585A}-v232-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\39\139-{3754E89C-EC75-4311-AFFE-E4839007585A}-v139-{3754E89C-EC75-4311-AFFE-E4839007585A}-v139-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\41\141-{3754E89C-EC75-4311-AFFE-E4839007585A}-v141-{3754E89C-EC75-4311-AFFE-E4839007585A}-v141-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\42\142-{3754E89C-EC75-4311-AFFE-E4839007585A}-v142-{3754E89C-EC75-4311-AFFE-E4839007585A}-v142-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\45\145-{3754E89C-EC75-4311-AFFE-E4839007585A}-v145-{3754E89C-EC75-4311-AFFE-E4839007585A}-v145-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\49\149-{3754E89C-EC75-4311-AFFE-E4839007585A}-v149-{3754E89C-EC75-4311-AFFE-E4839007585A}-v149-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\51\151-{3754E89C-EC75-4311-AFFE-E4839007585A}-v151-{3754E89C-EC75-4311-AFFE-E4839007585A}-v151-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\53\153-{3754E89C-EC75-4311-AFFE-E4839007585A}-v153-{3754E89C-EC75-4311-AFFE-E4839007585A}-v153-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\55\155-{3754E89C-EC75-4311-AFFE-E4839007585A}-v155-{3754E89C-EC75-4311-AFFE-E4839007585A}-v155-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\55\55-{3754E89C-EC75-4311-AFFE-E4839007585A}-v55-{3754E89C-EC75-4311-AFFE-E4839007585A}-v55-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\57\157-{3754E89C-EC75-4311-AFFE-E4839007585A}-v157-{3754E89C-EC75-4311-AFFE-E4839007585A}-v157-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\57\57-{3754E89C-EC75-4311-AFFE-E4839007585A}-v57-{3754E89C-EC75-4311-AFFE-E4839007585A}-v57-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\58\58-{3754E89C-EC75-4311-AFFE-E4839007585A}-v58-{3754E89C-EC75-4311-AFFE-E4839007585A}-v58-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\59\159-{3754E89C-EC75-4311-AFFE-E4839007585A}-v159-{3754E89C-EC75-4311-AFFE-E4839007585A}-v159-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\59\59-{3754E89C-EC75-4311-AFFE-E4839007585A}-v59-{3754E89C-EC75-4311-AFFE-E4839007585A}-v59-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\60\160-{3754E89C-EC75-4311-AFFE-E4839007585A}-v160-{3754E89C-EC75-4311-AFFE-E4839007585A}-v160-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\61\161-{3754E89C-EC75-4311-AFFE-E4839007585A}-v161-{3754E89C-EC75-4311-AFFE-E4839007585A}-v161-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\62\162-{3754E89C-EC75-4311-AFFE-E4839007585A}-v162-{3754E89C-EC75-4311-AFFE-E4839007585A}-v162-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\62\62-{3754E89C-EC75-4311-AFFE-E4839007585A}-v62-{3754E89C-EC75-4311-AFFE-E4839007585A}-v62-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\63\163-{3754E89C-EC75-4311-AFFE-E4839007585A}-v163-{3754E89C-EC75-4311-AFFE-E4839007585A}-v163-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\63\63-{3754E89C-EC75-4311-AFFE-E4839007585A}-v63-{3754E89C-EC75-4311-AFFE-E4839007585A}-v63-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\64\164-{3754E89C-EC75-4311-AFFE-E4839007585A}-v164-{3754E89C-EC75-4311-AFFE-E4839007585A}-v164-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\64\64-{3754E89C-EC75-4311-AFFE-E4839007585A}-v64-{3754E89C-EC75-4311-AFFE-E4839007585A}-v64-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\65\165-{3754E89C-EC75-4311-AFFE-E4839007585A}-v165-{3754E89C-EC75-4311-AFFE-E4839007585A}-v165-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\65\65-{3754E89C-EC75-4311-AFFE-E4839007585A}-v65-{3754E89C-EC75-4311-AFFE-E4839007585A}-v65-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\66\166-{3754E89C-EC75-4311-AFFE-E4839007585A}-v166-{3754E89C-EC75-4311-AFFE-E4839007585A}-v166-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\68\168-{3754E89C-EC75-4311-AFFE-E4839007585A}-v168-{3754E89C-EC75-4311-AFFE-E4839007585A}-v168-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\69\169-{3754E89C-EC75-4311-AFFE-E4839007585A}-v169-{3754E89C-EC75-4311-AFFE-E4839007585A}-v169-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\74\174-{3754E89C-EC75-4311-AFFE-E4839007585A}-v174-{3754E89C-EC75-4311-AFFE-E4839007585A}-v174-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\75\175-{3754E89C-EC75-4311-AFFE-E4839007585A}-v175-{3754E89C-EC75-4311-AFFE-E4839007585A}-v175-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\77\177-{3754E89C-EC75-4311-AFFE-E4839007585A}-v177-{3754E89C-EC75-4311-AFFE-E4839007585A}-v177-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\78\178-{3754E89C-EC75-4311-AFFE-E4839007585A}-v178-{3754E89C-EC75-4311-AFFE-E4839007585A}-v178-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\85\185-{3754E89C-EC75-4311-AFFE-E4839007585A}-v185-{3754E89C-EC75-4311-AFFE-E4839007585A}-v185-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\86\186-{3754E89C-EC75-4311-AFFE-E4839007585A}-v186-{3754E89C-EC75-4311-AFFE-E4839007585A}-v186-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\88\188-{3754E89C-EC75-4311-AFFE-E4839007585A}-v188-{3754E89C-EC75-4311-AFFE-E4839007585A}-v188-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\91\191-{3754E89C-EC75-4311-AFFE-E4839007585A}-v191-{3754E89C-EC75-4311-AFFE-E4839007585A}-v191-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\96\96-{3754E89C-EC75-4311-AFFE-E4839007585A}-v96-{3754E89C-EC75-4311-AFFE-E4839007585A}-v96-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\97\197-{3754E89C-EC75-4311-AFFE-E4839007585A}-v197-{3754E89C-EC75-4311-AFFE-E4839007585A}-v197-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\98\198-{3754E89C-EC75-4311-AFFE-E4839007585A}-v198-{3754E89C-EC75-4311-AFFE-E4839007585A}-v198-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\radisic.andrija@gmail.com\DFSR\Staging\CS{A4BDD601-CE8A-2059-EE78-A4DFDDE84CEC}\01\417-{A4BDD601-CE8A-2059-EE78-A4DFDDE84CEC}-v1-{3754E89C-EC75-4311-AFFE-E4839007585A}-v417-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\37\37-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v37-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v37-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\01\10-{D4395B16-A877-BDDF-B693-DFFD088F4FFE}-v1-{73E90A39-3687-4814-A658-5D5089A1DC22}-v10-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\14\18-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v14-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v18-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\15\19-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v15-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v19-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\16\33-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v16-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v33-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\17\17-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v17-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v17-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\18\24-{73E90A39-3687-4814-A658-5D5089A1DC22}-v18-{73E90A39-3687-4814-A658-5D5089A1DC22}-v24-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\20\20-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v20-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v20-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\21\21-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v21-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v21-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\22\22-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v22-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v22-Partial.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\22\28-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v22-{73E90A39-3687-4814-A658-5D5089A1DC22}-v28-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\23\23-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v23-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v23-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\24\24-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v24-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v24-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\25\25-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v25-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v25-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\26\26-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v26-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v26-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\27\27-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v27-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v27-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\28\28-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v28-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v28-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\29\29-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v29-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v29-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\30\30-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v30-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v30-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.coSSDT
-------------------
#: 019 Function Name: NtAssignProcessToJobObject
Status: Hooked by "<unknown>" at address 0x8a053630

#: 025 Function Name: NtClose
Status: Hooked by "a347bus.sys" at address 0xba78d028

#: 041 Function Name: NtCreateKey
Status: Hooked by "a347bus.sys" at address 0xba78cfe0

#: 045 Function Name: NtCreatePagingFile
Status: Hooked by "a347bus.sys" at address 0xba780b00

#: 050 Function Name: NtCreateSection
Status: Hooked by "C:\WINDOWS\system32\drivers\mbam.sys" at address 0xb5394fe0

#: 071 Function Name: NtEnumerateKey
Status: Hooked by "a347bus.sys" at address 0xba7815dc

#: 073 Function Name: NtEnumerateValueKey
Status: Hooked by "a347bus.sys" at address 0xba78d120

#: 116 Function Name: NtOpenFile
Status: Hooked by "a347bus.sys" at address 0xba780b40

#: 119 Function Name: NtOpenKey
Status: Hooked by "a347bus.sys" at address 0xba78cfa4

#: 122 Function Name: NtOpenProcess
Status: Hooked by "<unknown>" at address 0x8a052a60

#: 128 Function Name: NtOpenThread
Status: Hooked by "<unknown>" at address 0x8a052e80

#: 160 Function Name: NtQueryKey
Status: Hooked by "a347bus.sys" at address 0xba7815fc

#: 177 Function Name: NtQueryValueKey
Status: Hooked by "a347bus.sys" at address 0xba78d076

#: 241 Function Name: NtSetSystemPowerState
Status: Hooked by "a347bus.sys" at address 0xba78c550

#: 253 Function Name: NtSuspendProcess
Status: Hooked by "<unknown>" at address 0x8a053460

#: 254 Function Name: NtSuspendThread
Status: Hooked by "<unknown>" at address 0x8a053280

#: 257 Function Name: NtTerminateProcess
Status: Hooked by "<unknown>" at address 0x8a052c90

#: 258 Function Name: NtTerminateThread
Status: Hooked by "<unknown>" at address 0x8a0530b0

Stealth Objects
-------------------
Object: Hidden Code [ETHREAD: 0x8a610da8]
Process: System Address: 0x8a051790 Size: -

Object: Hidden Code [Driver: Ntfs, IRP_MJ_READ]
Process: System Address: 0x8ac125a0 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CREATE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CREATE_NAMED_PIPE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CLOSE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_READ]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_WRITE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_EA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_EA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_VOLUME_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_VOLUME_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_DIRECTORY_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_FILE_SYSTEM_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SHUTDOWN]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_LOCK_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CLEANUP]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CREATE_MAILSLOT]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_SECURITY]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_SECURITY]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_POWER]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_DEVICE_CHANGE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_QUOTA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_QUOTA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_PNP]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CREATE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CREATE_NAMED_PIPE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CLOSE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_READ]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_WRITE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_EA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_EA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_VOLUME_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_VOLUME_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_DIRECTORY_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_FILE_SYSTEM_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SHUTDOWN]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_LOCK_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CLEANUP]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CREATE_MAILSLOT]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_SECURITY]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_SECURITY]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_POWER]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_DEVICE_CHANGE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_QUOTA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_QUOTA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_PNP]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CREATE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CREATE_NAMED_PIPE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CLOSE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_READ]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_WRITE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_EA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_EA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_VOLUME_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_VOLUME_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_DIRECTORY_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_FILE_SYSTEM_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SHUTDOWN]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_LOCK_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CLEANUP]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CREATE_MAILSLOT]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_SECURITY]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_SECURITY]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_POWER]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_DEVICE_CHANGE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_QUOTA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_QUOTA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_PNP]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: Rdbss, IRP_MJ_READ]
Process: System Address: 0x8aa9e6a0 Size: -

Object: Hidden Code [Driver: Srv, IRP_MJ_READ]
Process: System Address: 0x8a7b2718 Size: -

Object: Hidden Code [Driver: MRxSmb, IRP_MJ_READ]
Process: System Address: 0x8aa824c8 Size: -

Object: Hidden Code [Driver: Npfsࠅఐ卆浩, IRP_MJ_READ]
Process: System Address: 0x8aa7ac50 Size: -

Object: Hidden Code [Driver: Msfs؅ఆ剒敬徼, IRP_MJ_READ]
Process: System Address: 0x8a89cc40 Size: -

Object: Hidden Code [Driver: Fs_Rec, IRP_MJ_READ]
Process: System Address: 0x8a7c4460 Size: -

Object: Hidden Code [Driver: Cdfsȅ౨瑎晦܂Èੈ, IRP_MJ_READ]
Process: System Address: 0x8aa88a48 Size: -



Evo skenirao sam sve diskove! Pozz

Ko je trenutno na forumu
 

Ukupno su 1050 korisnika na forumu :: 55 registrovanih, 9 sakrivenih i 986 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: A.R.Chafee.Jr., arsa, Ben Roj, brundo65, dankisha, darkangel, Dimitrise93, djboj, Djokislav, Doca, DonRumataEstorski, Dorcolac, dragoljub11987, DragoslavS, Fog of War, Frunze, Georgius, glada, ikan, kinez88, kljift, Krusarac, kunktator, kybonacci, ljuba, lord sir giga, LUDI, Luka Blažević, M1los, Marko.anticc, marsovac 2, mercedesamg, milenko crazy north, nebkv, nemkea71, Neretva, Parker, Romibrat, savaskytec, Shinobi, slonic_tonic, Smajser, Srky Boy, Steeeefan, Stoilkovic, theNedjeljko, tmanda323, uruk, VanHelsing, Vatreni Zmaj, VJ, Vlad000, Volkhov-M, zixmix, zlaya011