Provera loga

Provera loga

offline
  • Pridružio: 27 Apr 2009
  • Poruke: 30

Napisano: 01 Jun 2009 13:48

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:34:39, on 1.6.2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\tsnp2std.exe
C:\WINDOWS\vsnp2std.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe
C:\Program Files\VoipStunt.com\VoipStunt\VoipStunt.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WinFast\WFDTV\WFWIZ.exe
C:\Program Files\Microsoft ActiveSync\Wcescomm.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
C:\WINDOWS\system32\wscntfy.exe
D:\PROGRA~1\MICROS~1\Office12\OUTLOOK.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = shoutcast.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = go.microsoft.com/fwlink/?LinkId=54896
R3 - URLSearchHook: SHOUTcast Toolbar Search Class - {14f0d511-36a2-41ca-ae01-ba4f87282c97} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: EWPBrowseObject Class - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~1\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: SHOUTcast Loader - {ccec60fc-2608-4e58-9659-3ffc159e8ea9} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O3 - Toolbar: SHOUTcast Radio Toolbar - {0457331d-8ca6-4f97-9c26-6a9ef2b2dba8} - C:\Program Files\SHOUTcast Radio Toolbar\shoutcasttb.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [tsnp2std] C:\WINDOWS\tsnp2std.exe
O4 - HKLM\..\Run: [snp2std] C:\WINDOWS\vsnp2std.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [BtTray] "C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe"
O4 - HKCU\..\Run: [VoipStunt] "C:\Program Files\VoipStunt.com\VoipStunt\VoipStunt.exe" -nosplash -minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\Wcescomm.exe"
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &SHOUTcast Search - C:\Documents and Settings\All Users\Application Data\SHOUTcast Radio Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra 'Tools' menuitem: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - nvidia.com/content/DriverDownload/srl/2.0.0.1/sysreqlab2.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~1\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Background Intelligent Transfer Service (BITS) - Unknown owner - C:\WINDOWS\
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - IVT Corporation - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: ESET HTTP Server (ehttpsrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: mbamservice - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared files\RichVideo.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: Automatic Updates (wuauserv) - Unknown owner - C:\WINDOWS\

--
End of file - 11505 bytes





Molim vas nadjite mi resenje !

Dopuna: 01 Jun 2009 13:50

E da zeza me net nesto verovatno zbog ovoga

Dopuna: 01 Jun 2009 13:51

"Net mi je jako usporen pa ako mozete vidite da li imam neki malware"

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Zbog cega te zeza net..? ja ovde ne vidiim prisustvo aktivnog malware-a

Ajmo jos jednu proveru

Preuzmi program RootRepeal na Desktop.

Raspakuj RootRepeal.zip u neki folder.
Dvoklikom pokreni RootRepeal.exe.
Pređi na Report karticu (klikom na Report taster, dole, desno).
Klikni Scan taster.
U prozoru koji se otvori (Select Scan), obeleži kućice ispred svih stavki i klikni OK.
U narednom prozoru (Select Drives) obeleži kućicu ispred sistemskog diska (obično C:\) i klikni OK.
Po završetku procesa, klikni Save Report i sačuvaj izveštaj o skeniranju.


Iskopiraj sadržaj tog izveštaja u iduću poruku.

offline
  • Pridružio: 27 Apr 2009
  • Poruke: 30

ROOTREPEAL (c) AD, 2007-2008
==================================================
Scan Time: 2009/06/01 14:42
Program Version: Version 1.2.3.0
Windows Version: Windows XP SP2
==================================================

Drivers
-------------------
Name:
Image Path:
Address: 0xBA6E3000 Size: 98304 File Visible: No
Status: -

Name:
Image Path:
Address: 0x00000000 Size: 0 File Visible: No
Status: -

Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xB5F4C000 Size: 98304 File Visible: No
Status: -

Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xBADCE000 Size: 8192 File Visible: No
Status: -

Name: giveio.sys
Image Path: giveio.sys
Address: 0xBAE71000 Size: 1664 File Visible: No
Status: -

Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xB4E22000 Size: 45056 File Visible: No
Status: -

Name: speedfan.sys
Image Path: speedfan.sys
Address: 0xBADB0000 Size: 5248 File Visible: No
Status: -

Hidden/Locked Files
-------------------
Path: C:\Documents and Settings\Djordje\Application Data\SecuROM\UserData\ЃϵϳЅЂϿϽϯІχϯπρϴϱЄϱЃϵϳЅ
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Application Data\SecuROM\UserData\ЃϵϳЅЂϿϽϯІχϯπρЂϻϵЉЃϵϳЅ
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Temporary Internet Files\Content.IE5\4HEJO9U7\InboxLight[5].aspx
Status: Allocation size mismatch (API: 20480, Raw: 32768-)

Path: C:\Documents and Settings\Djordje\Local Settings\Temporary Internet Files\Content.IE5\4HEJO9U7\InboxLight[6].aspx
Status: Allocation size mismatch (API: 16384, Raw: 24576)

Path: C:\Documents and Settings\Djordje\Local Settings\Temporary Internet Files\Content.IE5\4HEJO9U7\InboxLight[7].aspx
Status: Allocation size mismatch (API: 12288, Raw: 16384)

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\Logs\Dfsr00005.log
Status: Size mismatch (API: 525647, Raw: 525033)

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\alexa432@hotmail.com\DFSR\Staging\CS{F0D176E8-2022-DB5B-6364-E0A5768971D9}\01\10-{F0D176E8-2022-DB5B-6364-E0A5768971D9}-v1-{3754E89C-EC75-4311-AFFE-E4839007585A}-v10-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\alexa432@hotmail.com\DFSR\Staging\CS{F0D176E8-2022-DB5B-6364-E0A5768971D9}\93\93-{DE79992A-CB09-4AB1-B798-E35AB3E0D2FD}-v93-{DE79992A-CB09-4AB1-B798-E35AB3E0D2FD}-v93-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\56\156-{3754E89C-EC75-4311-AFFE-E4839007585A}-v156-{3754E89C-EC75-4311-AFFE-E4839007585A}-v156-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\01\201-{3754E89C-EC75-4311-AFFE-E4839007585A}-v201-{3754E89C-EC75-4311-AFFE-E4839007585A}-v201-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\01\54-{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}-v1-{3754E89C-EC75-4311-AFFE-E4839007585A}-v54-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\02\202-{3754E89C-EC75-4311-AFFE-E4839007585A}-v202-{3754E89C-EC75-4311-AFFE-E4839007585A}-v202-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\04\204-{3754E89C-EC75-4311-AFFE-E4839007585A}-v204-{3754E89C-EC75-4311-AFFE-E4839007585A}-v204-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\10\210-{3754E89C-EC75-4311-AFFE-E4839007585A}-v210-{3754E89C-EC75-4311-AFFE-E4839007585A}-v210-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\11\211-{3754E89C-EC75-4311-AFFE-E4839007585A}-v211-{3754E89C-EC75-4311-AFFE-E4839007585A}-v211-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\12\112-{3754E89C-EC75-4311-AFFE-E4839007585A}-v112-{3754E89C-EC75-4311-AFFE-E4839007585A}-v112-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\14\214-{3754E89C-EC75-4311-AFFE-E4839007585A}-v214-{3754E89C-EC75-4311-AFFE-E4839007585A}-v214-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\15\115-{3754E89C-EC75-4311-AFFE-E4839007585A}-v115-{3754E89C-EC75-4311-AFFE-E4839007585A}-v115-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\15\215-{3754E89C-EC75-4311-AFFE-E4839007585A}-v215-{3754E89C-EC75-4311-AFFE-E4839007585A}-v215-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\17\217-{3754E89C-EC75-4311-AFFE-E4839007585A}-v217-{3754E89C-EC75-4311-AFFE-E4839007585A}-v217-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\21\221-{3754E89C-EC75-4311-AFFE-E4839007585A}-v221-{3754E89C-EC75-4311-AFFE-E4839007585A}-v221-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\25\225-{3754E89C-EC75-4311-AFFE-E4839007585A}-v225-{3754E89C-EC75-4311-AFFE-E4839007585A}-v225-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\26\226-{3754E89C-EC75-4311-AFFE-E4839007585A}-v226-{3754E89C-EC75-4311-AFFE-E4839007585A}-v226-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\28\228-{3754E89C-EC75-4311-AFFE-E4839007585A}-v228-{3754E89C-EC75-4311-AFFE-E4839007585A}-v228-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\29\229-{3754E89C-EC75-4311-AFFE-E4839007585A}-v229-{3754E89C-EC75-4311-AFFE-E4839007585A}-v229-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\32\232-{3754E89C-EC75-4311-AFFE-E4839007585A}-v232-{3754E89C-EC75-4311-AFFE-E4839007585A}-v232-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\39\139-{3754E89C-EC75-4311-AFFE-E4839007585A}-v139-{3754E89C-EC75-4311-AFFE-E4839007585A}-v139-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\41\141-{3754E89C-EC75-4311-AFFE-E4839007585A}-v141-{3754E89C-EC75-4311-AFFE-E4839007585A}-v141-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\42\142-{3754E89C-EC75-4311-AFFE-E4839007585A}-v142-{3754E89C-EC75-4311-AFFE-E4839007585A}-v142-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\45\145-{3754E89C-EC75-4311-AFFE-E4839007585A}-v145-{3754E89C-EC75-4311-AFFE-E4839007585A}-v145-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\49\149-{3754E89C-EC75-4311-AFFE-E4839007585A}-v149-{3754E89C-EC75-4311-AFFE-E4839007585A}-v149-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\51\151-{3754E89C-EC75-4311-AFFE-E4839007585A}-v151-{3754E89C-EC75-4311-AFFE-E4839007585A}-v151-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\53\153-{3754E89C-EC75-4311-AFFE-E4839007585A}-v153-{3754E89C-EC75-4311-AFFE-E4839007585A}-v153-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\55\155-{3754E89C-EC75-4311-AFFE-E4839007585A}-v155-{3754E89C-EC75-4311-AFFE-E4839007585A}-v155-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\55\55-{3754E89C-EC75-4311-AFFE-E4839007585A}-v55-{3754E89C-EC75-4311-AFFE-E4839007585A}-v55-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\57\157-{3754E89C-EC75-4311-AFFE-E4839007585A}-v157-{3754E89C-EC75-4311-AFFE-E4839007585A}-v157-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\57\57-{3754E89C-EC75-4311-AFFE-E4839007585A}-v57-{3754E89C-EC75-4311-AFFE-E4839007585A}-v57-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\58\58-{3754E89C-EC75-4311-AFFE-E4839007585A}-v58-{3754E89C-EC75-4311-AFFE-E4839007585A}-v58-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\59\159-{3754E89C-EC75-4311-AFFE-E4839007585A}-v159-{3754E89C-EC75-4311-AFFE-E4839007585A}-v159-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\59\59-{3754E89C-EC75-4311-AFFE-E4839007585A}-v59-{3754E89C-EC75-4311-AFFE-E4839007585A}-v59-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\60\160-{3754E89C-EC75-4311-AFFE-E4839007585A}-v160-{3754E89C-EC75-4311-AFFE-E4839007585A}-v160-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\61\161-{3754E89C-EC75-4311-AFFE-E4839007585A}-v161-{3754E89C-EC75-4311-AFFE-E4839007585A}-v161-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\62\162-{3754E89C-EC75-4311-AFFE-E4839007585A}-v162-{3754E89C-EC75-4311-AFFE-E4839007585A}-v162-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\62\62-{3754E89C-EC75-4311-AFFE-E4839007585A}-v62-{3754E89C-EC75-4311-AFFE-E4839007585A}-v62-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\63\163-{3754E89C-EC75-4311-AFFE-E4839007585A}-v163-{3754E89C-EC75-4311-AFFE-E4839007585A}-v163-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\63\63-{3754E89C-EC75-4311-AFFE-E4839007585A}-v63-{3754E89C-EC75-4311-AFFE-E4839007585A}-v63-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\64\164-{3754E89C-EC75-4311-AFFE-E4839007585A}-v164-{3754E89C-EC75-4311-AFFE-E4839007585A}-v164-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\64\64-{3754E89C-EC75-4311-AFFE-E4839007585A}-v64-{3754E89C-EC75-4311-AFFE-E4839007585A}-v64-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\65\165-{3754E89C-EC75-4311-AFFE-E4839007585A}-v165-{3754E89C-EC75-4311-AFFE-E4839007585A}-v165-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\65\65-{3754E89C-EC75-4311-AFFE-E4839007585A}-v65-{3754E89C-EC75-4311-AFFE-E4839007585A}-v65-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\66\166-{3754E89C-EC75-4311-AFFE-E4839007585A}-v166-{3754E89C-EC75-4311-AFFE-E4839007585A}-v166-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\68\168-{3754E89C-EC75-4311-AFFE-E4839007585A}-v168-{3754E89C-EC75-4311-AFFE-E4839007585A}-v168-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\69\169-{3754E89C-EC75-4311-AFFE-E4839007585A}-v169-{3754E89C-EC75-4311-AFFE-E4839007585A}-v169-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\74\174-{3754E89C-EC75-4311-AFFE-E4839007585A}-v174-{3754E89C-EC75-4311-AFFE-E4839007585A}-v174-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\75\175-{3754E89C-EC75-4311-AFFE-E4839007585A}-v175-{3754E89C-EC75-4311-AFFE-E4839007585A}-v175-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\77\177-{3754E89C-EC75-4311-AFFE-E4839007585A}-v177-{3754E89C-EC75-4311-AFFE-E4839007585A}-v177-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\78\178-{3754E89C-EC75-4311-AFFE-E4839007585A}-v178-{3754E89C-EC75-4311-AFFE-E4839007585A}-v178-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\85\185-{3754E89C-EC75-4311-AFFE-E4839007585A}-v185-{3754E89C-EC75-4311-AFFE-E4839007585A}-v185-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\86\186-{3754E89C-EC75-4311-AFFE-E4839007585A}-v186-{3754E89C-EC75-4311-AFFE-E4839007585A}-v186-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\88\188-{3754E89C-EC75-4311-AFFE-E4839007585A}-v188-{3754E89C-EC75-4311-AFFE-E4839007585A}-v188-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\91\191-{3754E89C-EC75-4311-AFFE-E4839007585A}-v191-{3754E89C-EC75-4311-AFFE-E4839007585A}-v191-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\96\96-{3754E89C-EC75-4311-AFFE-E4839007585A}-v96-{3754E89C-EC75-4311-AFFE-E4839007585A}-v96-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\97\197-{3754E89C-EC75-4311-AFFE-E4839007585A}-v197-{3754E89C-EC75-4311-AFFE-E4839007585A}-v197-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\bonjovi1415@hotmail.com\DFSR\Staging\CS{B63F0DE9-C7D2-661C-62E3-6CA3BD888A22}\98\198-{3754E89C-EC75-4311-AFFE-E4839007585A}-v198-{3754E89C-EC75-4311-AFFE-E4839007585A}-v198-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\djordjesl@hotmail.com\SharingMetadata\radisic.andrija@gmail.com\DFSR\Staging\CS{A4BDD601-CE8A-2059-EE78-A4DFDDE84CEC}\01\417-{A4BDD601-CE8A-2059-EE78-A4DFDDE84CEC}-v1-{3754E89C-EC75-4311-AFFE-E4839007585A}-v417-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\37\37-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v37-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v37-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\01\10-{D4395B16-A877-BDDF-B693-DFFD088F4FFE}-v1-{73E90A39-3687-4814-A658-5D5089A1DC22}-v10-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\14\18-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v14-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v18-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\15\19-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v15-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v19-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\16\33-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v16-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v33-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\17\17-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v17-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v17-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\18\24-{73E90A39-3687-4814-A658-5D5089A1DC22}-v18-{73E90A39-3687-4814-A658-5D5089A1DC22}-v24-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\20\20-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v20-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v20-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\21\21-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v21-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v21-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\22\22-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v22-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v22-Partial.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\22\28-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v22-{73E90A39-3687-4814-A658-5D5089A1DC22}-v28-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\23\23-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v23-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v23-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\24\24-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v24-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v24-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\25\25-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v25-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v25-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\26\26-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v26-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v26-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\27\27-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v27-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v27-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\28\28-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v28-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v28-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\29\29-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v29-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v29-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.com\SharingMetadata\vesnarudan@hotmail.com\DFSR\Staging\CS{D4395B16-A877-BDDF-B693-DFFD088F4FFE}\30\30-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v30-{E4E1A45E-A064-4A11-8D1A-149F75B044EE}-v30-Downloaded.frx
Status: Locked to the Windows API!

Path: C:\Documents and Settings\Djordje\Local Settings\Application Data\Microsoft\Messenger\slovicana@hotmail.coSSDT
-------------------
#: 019 Function Name: NtAssignProcessToJobObject
Status: Hooked by "<unknown>" at address 0x8a053630

#: 025 Function Name: NtClose
Status: Hooked by "a347bus.sys" at address 0xba78d028

#: 041 Function Name: NtCreateKey
Status: Hooked by "a347bus.sys" at address 0xba78cfe0

#: 045 Function Name: NtCreatePagingFile
Status: Hooked by "a347bus.sys" at address 0xba780b00

#: 050 Function Name: NtCreateSection
Status: Hooked by "C:\WINDOWS\system32\drivers\mbam.sys" at address 0xb5394fe0

#: 071 Function Name: NtEnumerateKey
Status: Hooked by "a347bus.sys" at address 0xba7815dc

#: 073 Function Name: NtEnumerateValueKey
Status: Hooked by "a347bus.sys" at address 0xba78d120

#: 116 Function Name: NtOpenFile
Status: Hooked by "a347bus.sys" at address 0xba780b40

#: 119 Function Name: NtOpenKey
Status: Hooked by "a347bus.sys" at address 0xba78cfa4

#: 122 Function Name: NtOpenProcess
Status: Hooked by "<unknown>" at address 0x8a052a60

#: 128 Function Name: NtOpenThread
Status: Hooked by "<unknown>" at address 0x8a052e80

#: 160 Function Name: NtQueryKey
Status: Hooked by "a347bus.sys" at address 0xba7815fc

#: 177 Function Name: NtQueryValueKey
Status: Hooked by "a347bus.sys" at address 0xba78d076

#: 241 Function Name: NtSetSystemPowerState
Status: Hooked by "a347bus.sys" at address 0xba78c550

#: 253 Function Name: NtSuspendProcess
Status: Hooked by "<unknown>" at address 0x8a053460

#: 254 Function Name: NtSuspendThread
Status: Hooked by "<unknown>" at address 0x8a053280

#: 257 Function Name: NtTerminateProcess
Status: Hooked by "<unknown>" at address 0x8a052c90

#: 258 Function Name: NtTerminateThread
Status: Hooked by "<unknown>" at address 0x8a0530b0

Stealth Objects
-------------------
Object: Hidden Code [ETHREAD: 0x8a610da8]
Process: System Address: 0x8a051790 Size: -

Object: Hidden Code [Driver: Ntfs, IRP_MJ_READ]
Process: System Address: 0x8ac125a0 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CREATE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CREATE_NAMED_PIPE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CLOSE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_READ]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_WRITE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_EA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_EA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_VOLUME_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_VOLUME_INFORMATION]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_DIRECTORY_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_FILE_SYSTEM_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SHUTDOWN]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_LOCK_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CLEANUP]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_CREATE_MAILSLOT]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_SECURITY]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_SECURITY]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_POWER]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_DEVICE_CHANGE]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_QUERY_QUOTA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_SET_QUOTA]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: a347scsi, IRP_MJ_PNP]
Process: System Address: 0x8a777ba8 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CREATE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CREATE_NAMED_PIPE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CLOSE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_READ]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_WRITE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_EA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_EA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_VOLUME_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_VOLUME_INFORMATION]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_DIRECTORY_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_FILE_SYSTEM_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SHUTDOWN]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_LOCK_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CLEANUP]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_CREATE_MAILSLOT]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_SECURITY]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_SECURITY]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_POWER]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_DEVICE_CHANGE]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_QUERY_QUOTA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_SET_QUOTA]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: Cdrom, IRP_MJ_PNP]
Process: System Address: 0x8a6a1850 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CREATE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CREATE_NAMED_PIPE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CLOSE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_READ]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_WRITE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_EA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_EA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_FLUSH_BUFFERS]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_VOLUME_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_VOLUME_INFORMATION]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_DIRECTORY_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_FILE_SYSTEM_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_DEVICE_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_INTERNAL_DEVICE_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SHUTDOWN]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_LOCK_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CLEANUP]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_CREATE_MAILSLOT]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_SECURITY]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_SECURITY]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_POWER]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SYSTEM_CONTROL]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_DEVICE_CHANGE]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_QUERY_QUOTA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_SET_QUOTA]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: atapi, IRP_MJ_PNP]
Process: System Address: 0x8a677690 Size: -

Object: Hidden Code [Driver: Rdbss, IRP_MJ_READ]
Process: System Address: 0x8aa9e6a0 Size: -

Object: Hidden Code [Driver: Srv, IRP_MJ_READ]
Process: System Address: 0x8a7b2718 Size: -

Object: Hidden Code [Driver: MRxSmb, IRP_MJ_READ]
Process: System Address: 0x8aa824c8 Size: -

Object: Hidden Code [Driver: Npfsࠅఐ卆浩, IRP_MJ_READ]
Process: System Address: 0x8aa7ac50 Size: -

Object: Hidden Code [Driver: Msfs؅ఆ剒敬徼, IRP_MJ_READ]
Process: System Address: 0x8a89cc40 Size: -

Object: Hidden Code [Driver: Fs_Rec, IRP_MJ_READ]
Process: System Address: 0x8a7c4460 Size: -

Object: Hidden Code [Driver: Cdfsȅ౨瑎晦܂Èੈ, IRP_MJ_READ]
Process: System Address: 0x8aa88a48 Size: -



Evo skenirao sam sve diskove! Pozz

Ko je trenutno na forumu
 

Ukupno su 751 korisnika na forumu :: 33 registrovanih, 5 sakrivenih i 713 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: AK - 230, babaroga, Bogoslov, Brankoni, cenejac111, dankisha, dragon986, goxin, Haryy, havoc995, Hoegaarden, ibssa, Insan, kuntalo, Leonardo, madza, MB120mm, mercedesamg, Panonsky, pein, perko91, powSrb, Rakenica, rodoljub, samsung, ss10, tmanda323, Vlada78, vlvl, vrlenija, wolverined4, xJeremijAx, 223223