NOD32 problem

1

NOD32 problem

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

Stalno mi se javlja kada instaliram NOD 32 neki trojanac, dole desno i ne moze da nestane..stalno kaze obrisi ga, a nemam gde ili posle restarta ce nestati to..stalno treperi i ne mogu da ga se resim..molim vas pomozite kako da ga se resim??

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master uèitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8620
  • Gde živiš: Novi Beograd

Postupi kako se ovde kaze:

http://www.mycity.rs/Ambulanta/Kako-otvoriti-temu-u-Ambulanti.html

i neko ce ti pomoci.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

evo HIJACTHIS...imam nod 32 i stalno mi iskace u donjem desnom uglu neki prozor koji prijavljuje trojana i stalno treperi i nevidljiv postaje..ne znam sta da radim evo log file:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:27:29 AM, on 11/25/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\Samsung\ComSMMgr\ssmmgr.exe
C:\WINDOWS\vsnp2uvc.exe
C:\WINDOWS\tsnp2uvc.exe
C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Documents and Settings\Kvik\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Samsung Common SM] "C:\WINDOWS\Samsung\ComSMMgr\ssmmgr.exe" /autorun
O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
O4 - HKLM\..\Run: [tsnp2uvc] C:\WINDOWS\tsnp2uvc.exe
O4 - HKLM\..\Run: [Home Theater SchSvr] "C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe"
O4 - HKLM\..\Run: [WINCINEMAMGR] "C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [kamsoft] C:\WINDOWS\system32\kamsoft.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Gadwin PrintScreen Pro] C:\Program Files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe /nosplash
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6813 bytes

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Pozdrav.. Ja cu preuzeti tvoj slucaj Wink

Uradi sledece :


1.
Privremeno iskljuci Nod32



2.

Skini ComboFix sa jedne od sledecih adresa na Desktop:
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
http://www.forospyware.com/sUBs/ComboFix.exe
http://subs.geekstogo.com/ComboFix.exe

Startuj ga i ne diraj prozor programa dok skenira.
Sledi uputstva na ekranu. Kada zavrsi pojavice se log (C:\ComboFix.txt) koji ces nam ovde iskopirati.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

ComboFix 08-11-24.01 - Kvik 2008-11-25 9:28:52.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2460 [GMT 1:00]
Running from: c:\documents and settings\Kvik\Desktop\ComboFix.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\abk.bat
C:\autorun.inf
c:\documents and settings\Kvik\Desktop\predmeti\CS111\cs111\4. nedelja\filmovi\Desktop_.ini
C:\ij.bat
c:\windows\system32\gasretyw0.dll
c:\windows\system32\kamsoft.exe
D:\abk.bat
D:\Autorun.inf
D:\ij.bat

.
((((((((((((((((((((((((( Files Created from 2008-10-25 to 2008-11-25 )))))))))))))))))))))))))))))))
.

2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\Yahoo!
2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\CCleaner
2008-11-24 18:50 . 2008-11-24 18:50 410,976 --a------ c:\windows\system32\deploytk.dll
2008-11-24 18:40 . 2008-03-03 14:25 5,702 --ah----- c:\windows\nod32restoretemdono.reg
2008-11-24 18:40 . 2008-03-03 18:21 568 --ah----- c:\windows\nod32fixtemdono.reg
2008-11-24 18:40 . 2008-11-24 18:40 268 --ah----- C:\sqmdata01.sqm
2008-11-24 18:40 . 2008-11-24 18:40 244 --ah----- C:\sqmnoopt01.sqm
2008-11-24 15:49 . 2008-11-24 15:49 <DIR> d-------- c:\program files\ESET
2008-11-24 14:33 . 2008-11-24 14:33 <DIR> d-------- c:\documents and settings\All Users\Application Data\ESET
2008-11-23 11:34 . 2008-11-23 11:34 <DIR> d---s---- c:\documents and settings\Kvik\UserData
2008-11-23 11:19 . 2008-11-23 11:19 <DIR> d-------- c:\documents and settings\Kvik\.netbeans-registration
2008-11-23 11:18 . 2008-11-23 11:19 <DIR> d-------- c:\program files\glassfish-v2ur2
2008-11-23 11:16 . 2008-11-23 11:19 <DIR> d-------- c:\program files\NetBeans 6.1
2008-11-23 11:15 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\Kvik\.nbi
2008-11-23 11:13 . 2002-02-24 20:30 260,096 --------- c:\windows\system32\RICHTX32.OCX
2008-11-23 11:13 . 2000-05-22 00:00 140,488 --------- c:\windows\system32\COMDLG32.OCX
2008-11-23 11:12 . 2008-11-23 11:12 <DIR> d-------- c:\program files\Sybase
2008-11-23 11:12 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\All Users\Application Data\PowerDesigner 12
2008-11-23 11:02 . 2008-11-23 11:02 <DIR> d-------- c:\program files\Bonjour
2008-11-23 10:57 . 2008-11-23 10:57 <DIR> d-------- c:\program files\Common Files\Macrovision Shared
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Logitech
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\All Users\Application Data\LogiShrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Logitech
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Common Files\Logishrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-11-23 10:55 . 2007-11-15 10:06 301,656 --a------ c:\windows\system32\BtCoreIf.dll
2008-11-23 10:55 . 2007-11-15 10:07 170,512 --a------ c:\windows\system32\kemutb.dll
2008-11-23 10:55 . 2007-11-15 10:07 141,840 --a------ c:\windows\system32\KemUtil.dll
2008-11-23 10:55 . 2007-11-15 10:07 117,264 --a------ c:\windows\system32\KemWnd.dll
2008-11-23 10:55 . 2007-11-15 10:07 76,304 --a------ c:\windows\system32\KemXML.dll
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2008-11-22 19:46 . 2008-11-22 19:46 <DIR> d-------- c:\documents and settings\Kvik\Application Data\2K Sports
2008-11-22 19:37 . 2008-11-22 19:45 <DIR> d-------- c:\program files\NBA 2K9
2008-11-22 19:24 . 2008-11-22 19:32 <DIR> d-------- c:\program files\nba
2008-11-22 15:48 . 2008-11-22 18:45 <DIR> d-------- c:\documents and settings\Kvik\Contacts
2008-11-22 14:44 . 2008-11-22 14:44 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Media Player Classic
2008-11-22 14:37 . 2008-11-25 09:22 <DIR> d-------- c:\documents and settings\Kvik\Application Data\skypePM
2008-11-22 14:37 . 2008-11-22 14:37 56 --ah----- c:\windows\system32\ezsidmv.dat
2008-11-22 14:11 . 2004-08-04 02:07 221,184 --a------ c:\windows\system32\wmpns.dll
2008-11-22 14:08 . 2008-11-22 14:08 268 --ah----- C:\sqmdata00.sqm
2008-11-22 14:08 . 2008-11-22 14:08 244 --ah----- C:\sqmnoopt00.sqm
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\MSBuild
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\Microsoft Works
2008-11-22 14:07 . 2006-10-26 19:56 32,592 --a------ c:\windows\system32\msonpmon.dll
2008-11-22 14:04 . 2008-11-22 14:04 <DIR> d-------- c:\windows\SHELLNEW
2008-11-22 14:04 . 2008-11-22 14:07 <DIR> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2008-11-22 14:03 . 2008-11-22 14:03 <DIR> dr-h----- C:\MSOCache
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\K-Lite Codec Pack
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\Gadwin Systems
2008-11-22 14:00 . 2008-11-22 14:00 107,888 --a------ c:\windows\system32\CmdLineExt.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-25 08:23 --------- d-----w c:\documents and settings\Kvik\Application Data\Skype
2008-11-25 08:22 85,504 --sh--r c:\windows\system32\gasretyw1.dll
2008-11-24 17:50 --------- d-----w c:\program files\Java
2008-11-23 22:47 --------- d-----w c:\documents and settings\Kvik\Application Data\LimeWire
2008-11-23 10:12 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-23 10:01 --------- d-----w c:\program files\Common Files\Adobe
2008-11-22 14:44 --------- d-----w c:\documents and settings\All Users\Application Data\InterVideo
2008-11-22 12:38 --------- d-----w c:\program files\Winamp
2008-11-22 12:36 --------- d-----w c:\program files\VideoLAN
2008-11-22 12:36 --------- d-----w c:\documents and settings\Kvik\Application Data\vlc
2008-11-22 12:35 --------- d-----w c:\program files\Sun
2008-11-22 12:35 --------- d-----w c:\program files\Skype
2008-11-22 12:35 --------- d-----w c:\program files\LimeWire
2008-11-22 12:35 --------- d-----w c:\program files\Common Files\Skype
2008-11-22 12:35 --------- d-----w c:\documents and settings\All Users\Application Data\Skype
2008-11-22 12:34 --------- d-----w c:\program files\Common Files\Java
2008-11-22 12:32 --------- d-----w c:\program files\MSN Messenger
2008-11-22 12:27 --------- d-----w c:\program files\DAEMON Tools Lite
2008-11-22 12:24 717,296 ----a-w c:\windows\system32\drivers\sptd.sys
2008-11-22 12:24 --------- d-----w c:\documents and settings\Kvik\Application Data\DAEMON Tools
2008-11-22 12:23 --------- d-----w c:\documents and settings\All Users\Application Data\CyberLink
2008-11-22 12:22 --------- d-----w c:\program files\CyberLink
2008-11-22 12:21 --------- d-----w c:\program files\InterVideo
2008-11-22 12:21 --------- d-----w c:\program files\Common Files\InterVideo
2008-11-22 12:21 --------- d-----w c:\documents and settings\Kvik\Application Data\Intervideo
2008-11-22 12:19 --------- d-----w c:\program files\MSI
2008-11-22 12:19 --------- d-----w c:\program files\Common Files\SNP2UVC
2008-11-22 12:19 --------- d-----w c:\documents and settings\Kvik\Application Data\InstallShield
2008-11-22 12:17 --------- d-----w c:\program files\Samsung ML-2010 Series
2008-11-22 12:17 --------- d-----w c:\program files\Common Files\InstallShield
2008-11-22 12:13 --------- d-----w c:\program files\My Company Name
2008-11-22 12:04 315,392 ----a-w c:\windows\HideWin.exe
2008-11-22 12:04 --------- d-----w c:\program files\Realtek
2008-11-22 11:59 --------- d-----w c:\program files\microsoft frontpage
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-04-01 486856]
"MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2008-08-12 21741864]
"Gadwin PrintScreen Pro"="c:\program files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe" [2008-09-05 516096]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-25 13529088]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-25 86016]
"Samsung Common SM"="c:\windows\Samsung\ComSMMgr\ssmmgr.exe" [2005-07-03 372736]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2007-05-15 675840]
"tsnp2uvc"="c:\windows\tsnp2uvc.exe" [2007-04-24 237568]
"Home Theater SchSvr"="c:\program files\Common Files\InterVideo\SchSvr\SchSvr.exe" [2004-09-29 106496]
"WINCINEMAMGR"="c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe" [2004-09-29 192512]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-24 136600]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2007-05-14 35328]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2008-08-18 1447168]
"RTHDCPL"="RTHDCPL.EXE" [2008-05-16 c:\windows\RTHDCPL.exe]
"nwiz"="nwiz.exe" [2008-06-25 c:\windows\system32\nwiz.exe]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-09-21 c:\windows\KHALMNPR.Exe]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-11-23 784912]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2007-11-15 10:10 72208 c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Java\\jre1.6.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.6.0_03\\bin\\java.exe"=
"c:\\Program Files\\MSI\\MyGuard Live\\MyGuard Live.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 epfwtdir;epfwtdir;c:\windows\system32\DRIVERS\epfwtdir.sys [2008-08-18 34312]
R3 Cap713x;Cap713x Video Capture;c:\windows\system32\DRIVERS\Cap713x.sys [2008-11-22 751104]
R3 L1e;Miniport Driver for Atheros AR8121/AR8113 PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\l1e51x86.sys [2008-11-22 36864]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe /s c:\windows\nod32fixtemdono.reg [2004-08-04 3584]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8cc6ce82-b88f-11dd-89b1-00221591a466}]
\Shell\AutoRun\command - F:\abk.bat
\Shell\explore\Command - F:\abk.bat
\Shell\open\Command - F:\abk.bat

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eb4118a0-b896-11dd-bab8-806d6172696f}]
\Shell\AutoRun\command - F:\abk.bat
\Shell\explore\Command - F:\abk.bat
\Shell\open\Command - F:\abk.bat

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fed40b85-b890-11dd-89b2-00221591a466}]
\Shell\AutoRun\command - F:\abk.bat
\Shell\explore\Command - F:\abk.bat
\Shell\open\Command - F:\abk.bat

*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.
.
------- Supplementary Scan -------
.
FireFox -: Profile - c:\documents and settings\Kvik\Application Data\Mozilla\Firefox\Profiles\zqvlkfz7.default\
FF -: plugin - c:\program files\Java\jre6\bin\new_plugin\npdeploytk.dll
FF -: plugin - c:\program files\Java\jre6\bin\new_plugin\npjp2.dll
FF -: plugin - c:\program files\K-Lite Codec Pack\Real\browser\plugins\nppl3260.dll
FF -: plugin - c:\program files\K-Lite Codec Pack\Real\browser\plugins\nprpjplug.dll
FF -: plugin - c:\program files\Mozilla Firefox\plugins\npdeploytk.dll
FF -: plugin - c:\program files\Yahoo!\Common\npyaxmpb.dll
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, gmer.net
Rootkit scan 2008-11-25 09:29:31
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(768-)
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
.
Completion time: 2008-11-25 9:30:01
ComboFix-quarantined-files.txt 2008-11-25 08:29:58

Pre-Run: 47,373,795,328 bytes free
Post-Run: 47,393,177,600 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

224





-Nisam upalio nod 32, da upalim??

Dopuna: 25 Nov 2008 9:40

Diarno uspeo sam..ne javlja se nisa:))..jel mozes da mi objasnis sta je to u stvari bilo??? Hvala ti puno, puno..

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Jos nismo zavrsili. Zarazio si se preko nekog USB uredjaja koji ti vidis kao drive F.
Moramo pocistiti ostatak malware-a i srediti USB.
Zato, uradi sledece korake:

1.

Otvoriti Notepad i iskopirati sledeci tekst:

File::
c:\windows\system32\gasretyw1.dll

Registry::
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fed40b85-b890-11dd-89b2-00221591a466}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{eb4118a0-b896-11dd-bab8-806d6172696f}]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{8cc6ce82-b88f-11dd-89b1-00221591a466}]


Snimiti na Desktop fajl iz Notepada kao "CFScript"




Prevuci snimljeni skript/tekst na ComboFix ikonicu kao na slici.
Postaviti u sledecoj poruci log koji bude bio napravljen na kraju ciscenja/skeniranja.


2.

Skini sledeci program - http://amf.mycity.rs/personal/bobby/USB_blocker/usb_blocker.exe
- startuj ga i odaberi opciju Auto block
- ubaci USB stick u komp i sacekaj koji sekund (recimo 5-10 sekundi)
- program je sada uradio analizu sticka (vidi se u donjem delu programa, u logu)
- gore levo klikni duplo na slovo koje oznacava particiju, tj. tvoj USB stick
- dole kraj sata ce se pojaviti poruka da smes da izvadis USB stick iz kompa
- ne gasi program, vec ubaci sledeci USB stick i za njega isto sacekaj par sekundi, i tako redom za sve stickove, MP3 plejere, mobilni
- zapamti kojim redom su ubacivani stickovi

Kada sve to zavrsis, log u donjem delu programa ce sadrzati sve podatke koji su meni potrebni da bih video koji stick je zarazen.
Klikni desnim dugmetom misa na log/izvestaj i odaberi Save log.
Automatski ce se otvoriti Notepad i u njemu izvestaj.
Iskopiraj mi taj izvestaj ovde na forum.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

ovo je resenje prvog zadatka:

ComboFix 08-11-24.01 - Kvik 2008-11-25 23:30:15.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1714 [GMT 1:00]
Running from: c:\documents and settings\Kvik\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Kvik\Desktop\CFScript.txt
* Created a new restore point
* Resident AV is active


FILE ::
c:\windows\system32\gasretyw1.dll
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\gasretyw1.dll

.
((((((((((((((((((((((((( Files Created from 2008-10-25 to 2008-11-25 )))))))))))))))))))))))))))))))
.

2008-11-25 09:56 . 2008-11-25 09:56 <DIR> d-------- c:\documents and settings\All Users\Application Data\Yahoo! Companion
2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\Yahoo!
2008-11-25 00:33 . 2008-11-25 00:33 <DIR> d-------- c:\program files\CCleaner
2008-11-24 18:50 . 2008-11-24 18:50 410,976 --a------ c:\windows\system32\deploytk.dll
2008-11-24 18:40 . 2008-03-03 14:25 5,702 --ah----- c:\windows\nod32restoretemdono.reg
2008-11-24 18:40 . 2008-03-03 18:21 568 --ah----- c:\windows\nod32fixtemdono.reg
2008-11-24 18:40 . 2008-11-24 18:40 268 --ah----- C:\sqmdata01.sqm
2008-11-24 18:40 . 2008-11-24 18:40 244 --ah----- C:\sqmnoopt01.sqm
2008-11-24 15:49 . 2008-11-24 15:49 <DIR> d-------- c:\program files\ESET
2008-11-24 14:33 . 2008-11-24 14:33 <DIR> d-------- c:\documents and settings\All Users\Application Data\ESET
2008-11-23 11:34 . 2008-11-23 11:34 <DIR> d---s---- c:\documents and settings\Kvik\UserData
2008-11-23 11:19 . 2008-11-23 11:19 <DIR> d-------- c:\documents and settings\Kvik\.netbeans-registration
2008-11-23 11:18 . 2008-11-23 11:19 <DIR> d-------- c:\program files\glassfish-v2ur2
2008-11-23 11:16 . 2008-11-23 11:19 <DIR> d-------- c:\program files\NetBeans 6.1
2008-11-23 11:15 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\Kvik\.nbi
2008-11-23 11:13 . 2002-02-24 20:30 260,096 --------- c:\windows\system32\RICHTX32.OCX
2008-11-23 11:13 . 2000-05-22 00:00 140,488 --------- c:\windows\system32\COMDLG32.OCX
2008-11-23 11:12 . 2008-11-23 11:12 <DIR> d-------- c:\program files\Sybase
2008-11-23 11:12 . 2008-11-23 11:15 <DIR> d-------- c:\documents and settings\All Users\Application Data\PowerDesigner 12
2008-11-23 11:02 . 2008-11-23 11:02 <DIR> d-------- c:\program files\Bonjour
2008-11-23 10:57 . 2008-11-23 10:57 <DIR> d-------- c:\program files\Common Files\Macrovision Shared
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Logitech
2008-11-23 10:56 . 2008-11-23 10:56 <DIR> d-------- c:\documents and settings\All Users\Application Data\LogiShrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Logitech
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\program files\Common Files\Logishrd
2008-11-23 10:55 . 2008-11-23 10:55 <DIR> d-------- c:\documents and settings\All Users\Application Data\Logitech
2008-11-23 10:55 . 2007-11-15 10:06 301,656 --a------ c:\windows\system32\BtCoreIf.dll
2008-11-23 10:55 . 2007-11-15 10:07 170,512 --a------ c:\windows\system32\kemutb.dll
2008-11-23 10:55 . 2007-11-15 10:07 141,840 --a------ c:\windows\system32\KemUtil.dll
2008-11-23 10:55 . 2007-11-15 10:07 117,264 --a------ c:\windows\system32\KemWnd.dll
2008-11-23 10:55 . 2007-11-15 10:07 76,304 --a------ c:\windows\system32\KemXML.dll
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LUsbFilt_01005.Wdf
2008-11-23 10:55 . 2008-11-23 10:55 0 --ah----- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2008-11-22 19:46 . 2008-11-22 19:46 <DIR> d-------- c:\documents and settings\Kvik\Application Data\2K Sports
2008-11-22 19:37 . 2008-11-22 19:45 <DIR> d-------- c:\program files\NBA 2K9
2008-11-22 19:24 . 2008-11-22 19:32 <DIR> d-------- c:\program files\nba
2008-11-22 15:48 . 2008-11-22 18:45 <DIR> d-------- c:\documents and settings\Kvik\Contacts
2008-11-22 14:44 . 2008-11-22 14:44 <DIR> d-------- c:\documents and settings\Kvik\Application Data\Media Player Classic
2008-11-22 14:37 . 2008-11-25 16:01 <DIR> d-------- c:\documents and settings\Kvik\Application Data\skypePM
2008-11-22 14:37 . 2008-11-22 14:37 56 --ah----- c:\windows\system32\ezsidmv.dat
2008-11-22 14:11 . 2004-08-04 02:07 221,184 --a------ c:\windows\system32\wmpns.dll
2008-11-22 14:08 . 2008-11-22 14:08 268 --ah----- C:\sqmdata00.sqm
2008-11-22 14:08 . 2008-11-22 14:08 244 --ah----- C:\sqmnoopt00.sqm
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\MSBuild
2008-11-22 14:07 . 2008-11-22 14:07 <DIR> d-------- c:\program files\Microsoft Works
2008-11-22 14:07 . 2006-10-26 19:56 32,592 --a------ c:\windows\system32\msonpmon.dll
2008-11-22 14:04 . 2008-11-22 14:04 <DIR> d-------- c:\windows\SHELLNEW
2008-11-22 14:04 . 2008-11-22 14:07 <DIR> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2008-11-22 14:03 . 2008-11-22 14:03 <DIR> dr-h----- C:\MSOCache
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\K-Lite Codec Pack
2008-11-22 14:02 . 2008-11-22 14:02 <DIR> d-------- c:\program files\Gadwin Systems
2008-11-22 14:00 . 2008-11-22 14:00 107,888 --a------ c:\windows\system32\CmdLineExt.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-11-25 22:22 --------- d-----w c:\documents and settings\Kvik\Application Data\Skype
2008-11-24 17:50 --------- d-----w c:\program files\Java
2008-11-23 22:47 --------- d-----w c:\documents and settings\Kvik\Application Data\LimeWire
2008-11-23 10:12 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-23 10:01 --------- d-----w c:\program files\Common Files\Adobe
2008-11-22 14:44 --------- d-----w c:\documents and settings\All Users\Application Data\InterVideo
2008-11-22 12:38 --------- d-----w c:\program files\Winamp
2008-11-22 12:36 --------- d-----w c:\program files\VideoLAN
2008-11-22 12:36 --------- d-----w c:\documents and settings\Kvik\Application Data\vlc
2008-11-22 12:35 --------- d-----w c:\program files\Sun
2008-11-22 12:35 --------- d-----w c:\program files\Skype
2008-11-22 12:35 --------- d-----w c:\program files\LimeWire
2008-11-22 12:35 --------- d-----w c:\program files\Common Files\Skype
2008-11-22 12:35 --------- d-----w c:\documents and settings\All Users\Application Data\Skype
2008-11-22 12:34 --------- d-----w c:\program files\Common Files\Java
2008-11-22 12:32 --------- d-----w c:\program files\MSN Messenger
2008-11-22 12:27 --------- d-----w c:\program files\DAEMON Tools Lite
2008-11-22 12:24 717,296 ----a-w c:\windows\system32\drivers\sptd.sys
2008-11-22 12:24 --------- d-----w c:\documents and settings\Kvik\Application Data\DAEMON Tools
2008-11-22 12:23 --------- d-----w c:\documents and settings\All Users\Application Data\CyberLink
2008-11-22 12:22 --------- d-----w c:\program files\CyberLink
2008-11-22 12:21 --------- d-----w c:\program files\InterVideo
2008-11-22 12:21 --------- d-----w c:\program files\Common Files\InterVideo
2008-11-22 12:21 --------- d-----w c:\documents and settings\Kvik\Application Data\Intervideo
2008-11-22 12:19 --------- d-----w c:\program files\MSI
2008-11-22 12:19 --------- d-----w c:\program files\Common Files\SNP2UVC
2008-11-22 12:19 --------- d-----w c:\documents and settings\Kvik\Application Data\InstallShield
2008-11-22 12:17 --------- d-----w c:\program files\Samsung ML-2010 Series
2008-11-22 12:17 --------- d-----w c:\program files\Common Files\InstallShield
2008-11-22 12:13 --------- d-----w c:\program files\My Company Name
2008-11-22 12:04 315,392 ----a-w c:\windows\HideWin.exe
2008-11-22 12:04 --------- d-----w c:\program files\Realtek
2008-11-22 11:59 --------- d-----w c:\program files\microsoft frontpage
2008-10-16 13:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 13:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 13:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 13:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 13:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 13:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 13:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 13:08 34,328 ----a-w c:\windows\system32\wups.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-04-01 486856]
"MsnMsgr"="c:\program files\MSN Messenger\MsnMsgr.Exe" [2007-01-19 5674352]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2008-08-12 21741864]
"Gadwin PrintScreen Pro"="c:\program files\Gadwin Systems\PrintScreenPro\PrintScreenPro.exe" [2008-09-05 516096]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-04 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-06-25 13529088]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-06-25 86016]
"Samsung Common SM"="c:\windows\Samsung\ComSMMgr\ssmmgr.exe" [2005-07-03 372736]
"snp2uvc"="c:\windows\vsnp2uvc.exe" [2007-05-15 675840]
"tsnp2uvc"="c:\windows\tsnp2uvc.exe" [2007-04-24 237568]
"Home Theater SchSvr"="c:\program files\Common Files\InterVideo\SchSvr\SchSvr.exe" [2004-09-29 106496]
"WINCINEMAMGR"="c:\program files\InterVideo\Common\Bin\WinCinemaMgr.exe" [2004-09-29 192512]
"RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 32768]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2008-11-24 136600]
"WinampAgent"="c:\program files\Winamp\winampa.exe" [2007-05-14 35328]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-27 31016]
"egui"="c:\program files\ESET\ESET NOD32 Antivirus\egui.exe" [2008-08-18 1447168]
"RTHDCPL"="RTHDCPL.EXE" [2008-05-16 c:\windows\RTHDCPL.exe]
"nwiz"="nwiz.exe" [2008-06-25 c:\windows\system32\nwiz.exe]
"Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-09-21 c:\windows\KHALMNPR.Exe]

c:\documents and settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Reader 8.0\Reader\reader_sl.exe [2006-10-23 40048]
Adobe Reader Synchronizer.lnk - c:\program files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 734872]
Logitech SetPoint.lnk - c:\program files\Logitech\SetPoint\SetPoint.exe [2008-11-23 784912]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2007-11-15 10:10 72208 c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup]
@=""

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"c:\\Program Files\\MSN Messenger\\livecall.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"c:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\Java\\jre1.6.0_07\\bin\\java.exe"=
"c:\\Program Files\\Java\\jdk1.6.0_03\\bin\\java.exe"=
"c:\\Program Files\\MSI\\MyGuard Live\\MyGuard Live.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R1 epfwtdir;epfwtdir;c:\windows\system32\DRIVERS\epfwtdir.sys [2008-08-18 34312]
R3 Cap713x;Cap713x Video Capture;c:\windows\system32\DRIVERS\Cap713x.sys [2008-11-22 751104]
R3 L1e;Miniport Driver for Atheros AR8121/AR8113 PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\l1e51x86.sys [2008-11-22 36864]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe /s c:\windows\nod32fixtemdono.reg [2004-08-04 3584]

*Newly Created Service* - CATCHME
*Newly Created Service* - PROCEXP90
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, gmer.net
Rootkit scan 2008-11-25 23:31:54
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(768-)
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
c:\program files\common files\logishrd\bluetooth\LBTServ.dll
.
Completion time: 2008-11-25 23:32:15
ComboFix-quarantined-files.txt 2008-11-25 22:32:14
ComboFix2.txt 2008-11-25 08:30:01

Pre-Run: 47,611,314,176 bytes free
Post-Run: 47,595,851,776 bytes free

191

Dopuna: 25 Nov 2008 23:40

a evo i za usb..u ovom prvom mi se nalazi ta instalacija nodA, a na ovom drugom su mi instalacije za komp..eto..


USB_blocker by bobby

Started at 11/25/2008 11:34:28 PM

Scanning for connected USB Mass storage...
========================================
========================================
Scanning for other storage...
========================================
C: 2a99b7d3-b891-11dd-b533-806d6172696f
D: 2a99b7d4-b891-11dd-b533-806d6172696f
========================================

Scanning fixed storage for autorun.inf files...
========================================
========================================



New device connected at 11/25/2008 11:34:46 PM

Scanning for connected USB Mass storage...
========================================
F: fed40b85-b890-11dd-89b2-00221591a466
========================================

Scanning USB mass storage for autorun.inf and desktop.ini files...
========================================
Sanitizing Shell Menu...
No key for GUID: fed40b85-b890-11dd-89b2-00221591a466
========================================


New device connected at 11/25/2008 11:35:52 PM

Scanning for connected USB Mass storage...
========================================
F: 8cc6ce82-b88f-11dd-89b1-00221591a466
========================================

Scanning USB mass storage for autorun.inf and desktop.ini files...
========================================

autorun.inf found on F:
File F:\autorun.inf renamed successfully
Sanitizing Shell Menu...
No key for GUID: 8cc6ce82-b88f-11dd-89b1-00221591a466
========================================

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

OK... Ovde vise nema malware-a i ostaje nam samo da proverimo nesto i obrisemo Combofix.

1.
Prikljuci USB uredjaj koji tvoj Komp vidi kao drive F.

Otvori Notepad u njegovom meniju izaberi File pa Open Zatim u liniju za unos texta pod imenom File name

upisi sledece F:\abk.bat i klikni open
.

Iskopiraj ovde sadrzaj koji ti se otvori;


2.

Klikni START a zatim RUN
U liniju za unos teksta ukucaj Combofix /u i klikni OK





Saèekaj da se proces deinstalacije završi

Gornja procedura æe:
Obrisati sledeæe:
ComboFix i njegove file-ove i foldere
VundoFix Backups folder, ako postoji
C:\Deckard folder, ako postoji
C:\OtMoveIt folder, ako postoji

Resetovati podešavanja sata na kompjuteru
Sakriti ekstenzije file-ova, ako je potrebno
Sakriti sistemske/skrivene file-ove/foldere, ako je potrebno
Resetovati System Restore


Zatim ukoliko to vec nisi uradio, ukljuci NOD32.

offline
  • Pridružio: 26 Avg 2008
  • Poruke: 48

MZ   ÿÿ ¸ @ 8 º ´ Í!¸LÍ!This program cannot be run in DOS mode.

$ † ªSçNùSçNùSçNùSçOùÙæNùèùPçNùèùRçNùèùRçNùèAùVçNùèùŽçNùè.ùWçNùèùRçNùRichSçNù °13ôP]OôP]OôP]OôP\OÃP]O–ONOóP]OòsVO÷P]O3V[OõP]ORichôP]O PE L ¼:I à    p   à  ° @     €        P
 z 0 pN .text €   € à.data €  €  ` à.rdata     ` à.rsrc    œ @ À.reloc F 0 Q ¬ @ À D%Kä“'ÊsÁJÕâ“ç]ç]ÿ Úvì¶;£2ÜGÏšµÝ¡=©µ¡0Ùx  ÝgÛ¸¡dxÈSÍâàQ©Š[FÆGe9tz™°ä( ÀðÔ+Q²†ݾÍ¿:X€îÓÙ8ÝæÕ¾EWq›@¢§É½\ƒLDºevðzëÇGO¾ç(–øÓf›¿!åÜøÿ% ƒsj̍Ôuœày˜¢09·òäy"ÌO7 QmX/y|ÎÅ•³£´-D¯pä*éW! WóK!c¡ð/pz°vÒÀ)™›WÔô×?g=øsì’n”†»>R2uŽ@-[Ö+ȆôðDÈÊv+öE×À—Œ ’4ÆÕf†þ„èC¨ºQæU
b™4sÞvñBcÄŠÿûÑûmçºW7cç±uÝ
=
¡‹*TÊk…1xy=”nÜì–ßü1XcëuñR|ô=K>·®ƒäcò‹Žxrið0™uçˆé¹@>ÓÌ—.\Kˆ.ÞÁæ !•äKŒ[òf–fø¢²¾í#‡–Ïð ŒÝ†i‰Û\ø— Ìÿ1z%a,†;ÐãEg=ü±2À7³ï{ôþós·F‰t ~‘éF†õºô›ÕF=ÐÝà éc%2cBxåܧïÆün†6 ÷ªø'ýסfÖ̪Mô!H(Óï¥l= ™«º/µ%ò5«µÇ^Ýõéjï,ƒ›"AÔ)Ê‹ü`ò±ÅCŽ•¡.‹ÐòÆ)·û>!=€(YI\i;ÒùPMßõY½ñbyu[Œm¬iæŽ?rœÄÕœ~o–#èIˆÖ]q+z*³JØʳD{2¦» Â\ÕýÀvŠj£ö$<FCÿZ¡ê½_¬ìBÌ(‚ºJ%Ìeî’•{šütkÝÞ˜$fãFoŸ¿â{†øŽš†koÜ“‚°#²©"͉žLR8”F}üšÙ~›ê—7Êô€WâTàkŠ‘©&~ßé<µÃ“é%Ø´‹ ©ÒÁƒE£Ä‚n¦&h0—Šú…_~|Ì/³æi40¦Ú48èÐBëÊ¿/î–`!Ÿ
HºGé©eøŸÓH‘OŒÌ—•ÿü.Ѓ|eáã åÇ„YŸÿN°¸Àúæ%hÚ‘[<)ÎH7‰©÷$©…}ÎĦ@gïÞQpÖ Ä~gU~²òûÂ0cZK°¼¿úv,yMZ7×-â!4q>ê
0ã{Q‡´Öë„Áï*,Æ. '‰ŸUžaV¥ÐN!î6<åÕàöÀ&Q…b¥íŽøåùm5
qq: àe0Õ ÇR׃bÔ\yv¸ø˜Fä<-A:
°FIŽ¬ßÑ~>t@ËØÖ•ê %{nßÚ²Ô·%ãAôļ)‡Ê׊SÛæì6_Õ ð=œk,áÀ n¼µú{ºX;Ö£¦+¾½>CJóLrßú#
Q‡®è1bø”ÓʌӾŸô!™œBæ3ŠP§š€I\Ç„/.]—¨lèt¨¸ª_¹÷>®ïKEuÛÔ¶ h”Å4‘Unß~üç:«™W뫾˜'´Hh’rÇÄag)3ªò²(§²M¹k¤-;[…n»Iã¾ýƤޱø=Æék¯ ´ÝG½YÇ`(}1YX•q5% $Xi ¾ø°þÔaM’–^S'–D¤JÖÆpº•þjcW€©Ü
C?™ˆÅ4¤Õ"G²ë .zZÉÅɪó‡h‚4òu %¢° aŽC†¨v!FÁ×ädipø¨GznÓV{’xÖ6¶±Œ(27{׳†Vӝ
¯={DVkdvrÅB½"7KP(=(=óòõj DM†éæe+âBS)qü©œ¤`ÿ²aÈtúñ$éy8ŒÓ7pšNÀ¼1jm«ª89ðRé
\&‚¦üÑÁÏ¢‚?:žà• å u>;-a…õ<ìiœï¼ &Ø·Ïx²(:–ÔVôf·8È“êÚít38GÌÔKÅTþOòBiSÙvA8©he0Ú±ƒ
}ró”Ë_σ
â[fõñæœôsÒ÷kQJ™¹Ž„‰Õ|؆³š®Ö`ŒXˆLVwú¿0æ&¯b!rIájŸb£5¾¬äb´†æ‹â¹]`j›ÞÚÜw½.Ÿá™­
j~b¾,©(ã=ññì¾+BËåìòž¤sŒ]}ÈôøΚަ¶³ÒyNÚâq†jþþÜKÓ’VÙÃÉâ/cÇ»`
Ø:À&ÛÉì Y©¬:w*ïåóïº}íîÒïðX‰ˆNª;‡åªæ8±¶ð’MÊi-·èùqÄ÷{Ž!ú/X8%#Y
µ<÷xð«!º)=G´Ú÷Œ ‘«r÷µk¼tó¸×öf¥Ë…š¶´~ ÍäÍZh®¡R´o,Ö¾%ðÈ$ï¹QÏTY~Ë™¡Hʉ3™&¾A 9ò~•{ 1V‘»Ýâ-St'áÍç1Aæ' †ñâä¬ò†ÿcåô§¨'mgSytré– Uî’SË÷^¦¤0«îiÉïô±co+ÓŠ¶ñ x¯„NOdÔ9
C~Püρ[›c;Éâ;yàZcÛ‚÷;¦Í4Y¹ë¯I˜þ³ê‡²Þ˜›:'ü&×ÈjÂûpt–rE „µÎåºAÖ¿ù И‰f‡q “2yÝ–É£_Û¤M™í€¤…tpQ¬µß™P@áX…ÿ5n¦;0DêÞz$ð–ÿ+«Ý®tnv^p+bÊhnê»JW‚f
 ùÁçX®ËR«—ùÃÿ*çÓ >®¿\ßzŠ1š¾ÊEe·:K7èÕd{Aw=~ÿû÷cb­Œ &ÃÇ숍ˆÂÁ#ÒÿGëëU½•1wé ³ºÓõ¼…ܵÍ?AÏÉ›²“·×|dÁ8X£ñK‘½ ®ix™^ ‚0ý¤V‚i/ÝqƒôÞ€¹mj“Ú&“A¥;ä?ü ´Ò|RغXÒ9ÖÒ ´vSsšN ÕÂ]ø–ä15œ— àûâƒßÄ%L°)3‰«z æ®qÎz|湞7
æøŸÊŸ ¯|à˜9tî•Ï
—’Db—Á„
Ýÿás)Ê
î‘ÓøÐÖt†ÃGÙŽ—èeM•aª‚$óƒÆ%¤ˆbÒ÷>oPùjé†ÁAþå ¶§áC5Ói‚õà ¼”©³*=…zïÁ†–Ç\µ Ež}Hµb~à*% êã;ó>†N·¹VD(¼ùîÁɼ@ÖÜ=0Ôj dI1@¡Ö^þƒ¼×‘²öû¡F;äÖZ®£±íƒ K¾Èá¸Utsø³‰¯4’Êi™ÌÊÛõK·¶BëB¯Qþ禇üšFÅÜ£8süÝн,à`ßüÌ
&Z¡1ŒedÌñ¬Ê¼-y˜­õùAÙ4™Û6‹¸ûÝeËRäb΍îLe­„Bîñý‰ ƒ©Ê‘ÂÉÒî&\t”Å§PþdÍÛŽãrq)rçˆ[Ñ}?ƹ‹æýÀ¯gìt!Q‘'Pð9‰ÎŽ§¥qÆO%ý¹þó(ÂYþ…›F:lXn”æÍV[´ ؁–°×XÁ'œ°€?NÚµ¦ˆû\Æv…Ë?ã~¶W…B+á.•;üb7JÿÒŒäsÒ®TÄ“˜ åû¸
ÌÑ)zH` Ž6Ö5 ¤g­‡h˜þ§p¤
ÒMgô"âÚ‰0â°ÅȆ3ŽÝt¹Jÿ|™g˜
ÝüË
áÈà˜GïyqÄþj5VÄ›Ÿé«*ŒÝû÷Ï»Ñ-’©“ü
›+k"UŸÚ—u5$2ôxÃÙØýÊßüd>¥D) 41¨åd~A­«E4|rGŒû5Oû`[F£æÍñâÊ»†§XºÙ‡~DmòÿF?©“’ÈÚ=‡nʶ2s›I\Ò ¨ñ‹}ÁÅšŠ
ã43rmæìðrÔ%Óg˜Å@® Ûó#×B²Ñ-Ú îWéKžXW^òÁˆaI-_¤Aé¿ò=„‘Ý9Z¯n[³Ê-¼k ¡ä«ÉÄ1iâÝäæB‚}ö\ÿLäbš"&À •„Y^|”ig˹~:pÊÉÃw*¦¢ê~ô¶f”Ùf± <“ˆð™aå±@/YžfÞ•ÒÉ
¨QèyŒ« —°Éu« ZVCD8ÉEÜê“ÌBsûŒPsñföª²·!úûµãùÙ¯›ýGöà+i˜ÉÕu8Ooq
@[È–SëÕ@Š7'­Ÿ¿Îs˜Ë'KUo\ëfN QVƒÄh ÿÃdVV‹L$ƒÄ WW‹L$ƒÄ éÿv SVë/ë)¾Af0^[ ž–RH÷ŠFúèhxÆ<B¡Nb|Vu,¾hØôœ±Vûžg,þ˜ÅšÓȤ‰ëϦ¿@Ò uÖÙ¢+«Ü¬:²–n¤¾Y7%Ðd܏„ i‰
S­¹ô ç’¿vàï{ø±b' y.»ìi5&Ý£EëC¾Zñ7yGçmíJaË®Yãå鳚_”SÿÔð–âóù]Þ˜•÷1%Äýh{m‘…›n¨ø˜î~¤ª¿.ÄÏ·*Km|‡Ç(ðPrÏ0©ä¼mt}=åñˆÍÒI¬'I¥i)³Ö-ÔŽ¯²Ñ<¤•[~0/S{ÆÅžhû¡™uá# ¸¡y2vùyª±ªË;ÊÇãªÓ /ïÅÑiw”¥«i, Œ…}VNLÞÅ"‰ÙÔ¹‚_\ ¶å ŒdÅÝjÙÅ$D<\UÆH±:H¨q¯é±8¯õëJ2¼÷œ©r{¡ê¥|Müøbw–¢÷yøM‚oT¢f†÷d‚õ‰l &dªøžˆò ;ÌU´Ëo —7ì­ÿ^Š1cEÍ 0ÿÐŽ± "|Ž-]Û£è–&ÅäŠUâ§I6%vŠHK´Á"þŸè,ÛŸvý£§£°¢&.9ßýÌ­·
&“ß ö›é¹™*ÊjØmQ9ýÕbf4]™jß_ìD)œáDóæC‡H±BaŠEÙ]3¿NÖùËÿâÑlRª%‚W6 >SmMo ¢ø×uËœGƮˣW3C6ÖIXgã1,ž ˆ|cC 2+iÒ„<–Ö¥Ô]Oêywh" …š«"
-’¹qèö3ú…LgôkÔ™<qÔÒ“|éXZ,ƒÐŽÖ¹]„ }4Vì¹yõxDÅ.ŠÁ«Ò1pV¡a
ÌôÆz¢1èÌÇ^™ÝXèpì¥i•œ [Ÿ"ÎíèŽÎQ
ž‚¬Žø
ÜV˜œ°«çè ¯¹l¾á$=6
¿¨[èEõö>(&»(U_S³„X:7A7Äöcý<<Ô´U‹€LÂ⣪6Þ”ñ€ÿM)ÀFcë4Se fŠi‘?}/Ñ’ŸÕ?ÜÁˆÄs5r1—à ¼ü%iy°"ˆõ±¿1Òø#Ϲ§(êù)(”¬/hi;¬½72 Þö³¥NB;yJgvëý÷sOy‰òÒtu@¶ç‹·eÿ+lڏð€ôa¦…À$æ ‡õˆáΚ{áb_ZÏsš#¿ÒŠ†…óÇ=¡Æ‹›Lõxéiú&#kT*bP°¨s8›)¥ôrô‡›Á/YO_³â{õ­vï^;r
|Pè
t•¹7St8&üÈwd™®Â
G»ªŒJÁ 79
øIYΰ+.l)Üi´SQ;-TÑÄ„"ÓS>㍽ÎÕ½Š¼[Ê÷¦Æu6³›©)xÄÒÈ jƒÇ´áüæѐ¿Ïê$!šzoÈ”uÓ  paëtÛrƒsÀÚuÝzÚ-Ƹ‡tHxBä;Cú"BÆʦÝ𠬵Øút`Y¶92[¹EÃN¿ß0•^ßþŠŠÀ÷Nô¤zÞ»Éè—ÌYgË#z¤–=YÝ5ì_Ý1¢ôHŸh„[<h% ¨ZTð¯å0ÀôúConfusedþ;ÁÆŽÒ 1‡¶bW´ÿêWhÒ¸ÿz;9SS:uÝƱ²ÍIVJ kä3³ç$%%õ(A¿¯¬A‘¸¶Wãùå]§¹[fèë_ ]ŒßMQÙºûNžS¥Ÿð‘ÎÀÕ”Ž-«32ëK–9$úügÄ^?¦©*qÐ,dDÓ‰>Ù#Íqc¦x÷{¼ˆˆ“Dü>¡¶Ãr¢o˜.p®R=òF…ÀÝn8[õÖ<PçJY\\lšC¾¾˜ôž}ëBïÙ7f‘! –b@7ÙÀDÅjºiWïÖr5´B£bí‰sz"è]w™„PiSV%Í¢µ&(ð# FEy­«°³¨uò­ö<™+hüL$üÈ„¿nØå¹ó®O»S ÔíS“ÂÓ§EÖ¸ëœÜ„Ä”2Mû#7R&ué¿&·Mi¿eÓ¥Q¨1“EæS\g`uî)€ XóýPš¶¥2%5LŸŽ=M`bpcé8?l·|—@% ‰ ¤»hžT„V~YÑ–©Êž˜“ÕrMl¦wrä; x“ã4ù™@†~:n
ûÍso{Í Ÿh^‰Ýjœû¦âA¢4uJ°Ì]gC?i¾H7SF¤³žd™ýú»üžÏ
$âšÆ2£€ÛX»-aP-*wÿY=:˜ìVÇð <ýa1ªUãø5ìx°·áLN°»">Lj £¼·²Lb©;+÷&&ÃÍlŠ%ׄJr ^ m
~˜”›9×al½£G1³ âñ…ùµ¬Võ@%ƒÏÝR!ò+‘yfplcŸ<äöy3s‹åZm‹%‰ •¦³¨f‰‚€;ï7
X`,Ÿ!ëÃ!L”I/÷„Òiñ!4Õ—Z‰ÞýÍ•ã›vÄùYÉ‘r_zîd'â¡ŒË4su^æþöx-½ØÆŸœA
mJܘ Ã@^ÜqZQ+6¾ ï»Ð–2–°Â@Œ¸RsÂ¥oz¦®‡ƒ y+s æï:«í°S Ç=ï4€¢cgkpñ¦‰\8ô¥½¢Š—T«±ô!ùp%­ÚÅÜ3æ­ ;‹ð_ùþ°¼í\¶ì;Q§èÃ$jœ¤žÊOZ4|ðV 4¾Üd‚º~Ú“4NZHí¬$@Ö–÷µ½‰ƒDuç\ÀsÃóLËÅÈOÉ%eSa]`ôÕK§Ã|\2Þo¥R‹Ç6ž‡Ûð4— Ó0ó„ÐåŸËmVxËåø]×CkÎŒrÀÛ­”¾q¹ÉŠ°puÖˆõgIëa‹˜…_î[‘Í‘†“á
þˆcr`Ñ.†Kّ߬j]ÝpoÅ¡W¯Ígov­hœÛÑ• çOÜútP&Y‚*"3Ý · TbïwÎm7X¯YÉ[‰o0L\!¬ÞP©d´XØÉö÷°P̯'%
—0½P}P6Ý÷ž¦á9ÔZjÊ|{Ôp¨ <?éýiÕö„7à3N§<{á÷š_V®Äú­†6Ágñ*0c£À^ÀÆŒï
ÿšxã›.‰ÑÉzîÇ Ì,Sò>ó‡þôñ¸¤´’!3Á5?DâsÜ‘‹{¿¢Ê\8ˆVÅB-ÊIÎN½P‘…PŠúŽVÎwʃ(J7Óºôø#"G6"ºk-`£”!¶Z{§Ég8ËØêâ6mÊQºZUîŠþlÄù³Ž!+4½%ìèn¾¶ҐáÅÕ#ó±È=Z?Þw  iùŠóÿü5Û÷7s1È<\ª’ƒàüýé›OŸåžIðrKºV%ÜŒ½öÏ‚A©…CâL!]´@Æ~Ö¶èÙ=©[»¬Uܦ>W¦zëËhÀ]Ý«WPnµ#Khΰ×j”ðýZúD×µA`GMrb¸Šì|‚ŽÙçTcɇ{fzQWtªä…v|»¦éF
Ñ•
Œca Ž¤þ¢ˆnՏ0815c4†}‹/€–È»‚XÏ”"RØ/m¹Ó˜•Öš€"P”Jù}LÇ!Óú’¿ý¬r=i®DZ1fîIÍá¤+Éä¦l 6
#;ø•
[爾%Óƒ¸^aº '3½>û‘í3u.óLC_$’%åÚá%À£p^ñ¹ÃfO÷ñŸÞÊ%‰ãfÊÆ¥ ððY]ýUjhš­i(Hù#äT’¾~f¿1[g“cð;(ÊÿÄ5øcWWcëk4ƒ¸SÛ4`F-·
ù‡êÓÛKS¼î{©•ëó
®v’ºøKç >xsÃÖ4ŸFEÊ
Ï£`Ӝʑ¸/QÞYD{˜½ ø`plÆ¥€î,Aü¿ÂþSª¿7÷ÒWv݇N=žÇfƒÒD{@£ð %©©P³Kd…¾o&Ò$bä}¨üëÅ/n¸ïRÆü -®¾‰ Hùœ
yè„J žüJ´­ux!œejqÚ
ös ¦ÝésÔí?)’UÝFÅ@'P"žêÞÞòh‚#ÃíyþWÛ¼šBuL\¸ãagÙ>½rÒÚȦ’<CK¨¢‹Ä+R5>¶óA†
ú@æä…à˜`ˆ¯bÊih7²úµ}ñ˜Ž4÷°ö®j´<µQbÅ Í 4¦êʁÈ|(%MHIV膓ù X3éÑ7´OµˆøNþ´
?à"æ¸$èdƵ|'–[uùÜ™‘ÐdUšç–Xb6{ÿH ƒ± ¿µ(@RâÏtQOÌ'3òîNÍлd[OU¼uØ…#ý¸£‡IŒð˜ôÂ.”ì<#÷mt0Ü'“²žòÑ®Ÿ,æ¢@Þ%Àp|¢àÝ:­¤ ns€£(¸Æ¨K‚^‚åÉò<;…?Nç}Ù€¼]+´ÓZExM¥pèu€›§nqœ`E%û=“AÞFBíYäˆåBƒÅÛÐb zKT/å`:Ö0©ºÐ¯.ДyŠ‰[^ôºêQ½(ë*îÅóòµ–˜cò“Ý:µŠŠý+é'´õøùÎå¤m\¯$•XÅCFà*g ñ‚"ºôöΏöUTY¹£a=å9Úa0®GÉ$pâ•‹Ïo6#}Wâãn6 ®0÷¨°s/¡º>Ì8ÇP¾× Á­<2$ÂÛçÿ1@‹-EÌOè^xúó”ƒ
ãý_´Þ.«,õ+„šmz·ë|Çȧá¬=žo›¾²ž“'÷Ó[—©vFÀ…gR)ã•Ëm['á.J@ø‡Ø&Ó0b—É YË’°‘‰³oÀ—=^j9Þûp²5Oz¬·7:ì)ݪ¯Ã” ÞyÀ*Ž¿”.ÿK|4¹mÄÜÖò°‡ß‰|´ŒÄÎÒõ"WœC{*œâ"ÙmóeŒtöTp‡áÙœDÍ,?Åf¦Ó†ÃG=7¾5ÕíìòÙ¬¤§É̝)¸Eâ§ñé‰Õ{¡G¶€€lñnM6]1p•ú%J¾øzeÜ>–rþ´Ž¢ô0›j@µ#ÕkY¢r5óŽRw½F¹Ä D]Õ?_¬g+IJí¹›Ø¥KÒf|óYNA%Ù’÷GL‚—=·²&X jä†Éž<n¦Èc?iÉêtÝ*„7õ-“ò&}·5â¬Ñ•å7ó¨þx‰’š
¥™¨vè¥Upe’›æ„ÐâE´1Jß‚îJãŽ⟾M§ù4=[4”r9z:$ÉfO¿ßXO31±áUFWÍZAýÔ›¨Û?¤Ù¿ ÷©ÍûtÌ1ßYý*³žuA¹ßÏ$oÝô’›šÓiXè|êX#ÅŸ Xxwˆ‰‹§?ÏÕÃqn`–;:¡—›,`8Á à M ”à ÜèžWŽýàpÒì1~
û\Ù<{Ç®e“Láª,–¸;TÏãËv›©‡Ô$! {pÒx¬óºKT6Ÿ};mi{™H[ yÂt¼ÞV”ŒËd ú˜š´B>
oÄfZŒR5ñÇÛÏJǶø5hózµ6Áü•¥ÈªäcÆUÈzüÛÈ _æê –Ö©RrÐ8¸gsÙÛйù{?e‚|!¡rG¨|ïð¨°üc)ÎûR¹'e¶ÛßbVôéôñÕ±“w)û#‰Ô–;¥ÇPþ8_F1¥÷뇶Ւð"•_ˆâ w_šæز³ˆ‘öxF­EràÈõ{í·QIÞÆ2ˆ÷¨lAøoPÙ×{?uwʼnmé"­Ý}}Þn×­l‡À$Ú<Šàù> H¨˜y«LŸŽ8¥ ªÈ
ÕÚ&ûšãMfn3ü’°>Q¤›ø7ëÏhR^¤‹aJ} 8ô¡žÁë¥zŸ\(‡HòjšN돝±4j²QD;˜WÖ-–«©ŒLÌEleÞIèo ãUe‰Ndy • Ëë9œ!¼•Iy Ví %q_P…§Þ'1îyö‡I¨-3w¿ýsò"e…ª‹â Î[ʼnƒÇàÃwfË×Ü7(1¡
þY-pýÚ68ôE7²ÿC,¡íN›ÅêE‹o¹Úv„óÊ°·ҙׄ"f¯Cˆ¡öË‹Uì‘?RH
]PÕ'At¯q6¯ž£8¡V‚¾JDdÆ
Ua’AiÞXrðƒ!aH“'Ž~ àtÞ¼-µu?…)X o›ñòµõJ¶…q›ÐC ü&·kj%ìöÓZOÏÓòâ9<ô•É'+jf67NÁJÝ{ô/ÉZ)L!ë§ÛÓŠ3¨¦³7C!ðœ>œN ®×Ѷz6¿®ãžJ6(·Ø’•2'oCîüÖ7ÃBì8_ûºýcÍ_?Ÿ«´RøE 1<ÄÜå/ÛŸÂz-4‰D¤ŸÖ ·Á‡`f‹UYg›"Ähé/…Ø/¦dIE/p’ì-^Â~™Ö¨ôæÊ2Þw«°‡A…ú½Narf µž„âKÞÎÛÝÊá²ëŒS ™¹/Íüþ82’*"/'Kd/ˆííÊ9{;Y
÷dÄÄ
SUöaaËŽnøfÓ‹• 'Õ ¯‘ÒÖ¯Mõ_G»?ëÌ¥syÿàý<‡$î ¡Z¯K;דT^µ3 2‡ŸVÕn&¶%$è*k&n¯zpya„Ãù¢9Ùø„®«c"gv}›Ç¥†\Át<:€F™—™z_œ¡’üv>mw+1k|j¦+Ï›ö°æym’¦7|7>ËÙ#^"_ åÁ±ž¶˜?45^=ž Æ0,&³nß²øUjžºæ¨›#ÃI¿eÄKB
á>ÒûMôX\±'ÚfD¦E±nŠø44³V—XÊvaÉRvÃ5Dþz‰0õe
îµÑxe>Lρ„²=Ä#­Å\¯æ S»¹·¨÷Üóa“YJågPÞF¬ñ¸LÆz‘õ7ô‹Ð§¸Q­Õð8£¥\lE–’R$Ý'~ ÁúXjgf¬
©m¸æYsèuȯ¶ {öÊQ?¿E†ðËE½ÉrÉíUQ³€äáUZn*ˆ2Õ5`€F満ۘ†•A÷ìLè<žpùQAÝ%òîB¯AP=ƒ,Íu9‰DŠn-SÊÀùˆ/ùÿÞÇLÆþ—4}yþ 0¼wS3—éc‹Z½Ó® —ΉÏbÚæpŠLå§"ý!»dZtëÎ IýÉ1ÂÓNÒ ¡‚"E-÷×k©{ú51GMȀ̂]]ÞUw¼Ä§]ts†áúsGVŸ€Þ¼Á±LB\‡'=¼3Œ¼ólWv<Ueú< èòKÅñ’HXÄŠ/“7Ø¡“8˜òœÆ¥r`Üõ7wá¡2÷Ø]÷¿’
m’N¶>ÆWôÅ2/ëyÄÛ ÅîO»²¨²)"Kû÷±ŸÑê}´a€›„bö4æ©0ƒKý¹Ã˜‹&En?’ ¹ ß4XÑ©Wa#ö€~iä‰6ì9[É(*ÔÒÉ íZ=—fxw%F/
â­W¯Ò±F ‹÷Evéã×ö)C¯êm¼!¹÷|ã3}õ0Ç ×ÏÒ¬TÒ/œgGš¨ýÕ:\ áùVä¥ù}ÅH`j)^ –á,ê<ŒË_¬Økeš¿ÈÊ[ï³ÒÆíxÞ4ÆÎت_$Ïä\'’Ÿ³ ­éI?Q@V¹³mIÿ‹^þã :~îïß
¸sd8v»?×{"û‰­ÌO•Õ˜¥ªÁt2‡Û+Œ°Ñçó­Æ±q±Î˜Õ¦ÆY!¶.ÞIH!œ(Lœq©SRühØUXZß ºRÆÛ|ö¯½hæHé[ìygòîKëè9a߈ºBÞY;íM
[ÅWñðÅ[dó²·nE,ÀÓ‚èþðõΡvˆôd(0{Õ=6 ª&Ü6¡A+œ¾æSurprisedÙóÌ’áÒ×ÍØ(Ì×Õ‹&hÿ­
4@;7û¢±À²äû&wa8á’–h<ÜZÌ»¾Svì„OÛãbäâ8ô/‰Í”†§Xr»aç2óŽ*î¹/‹Ž ¾ótÁq¡‚ÁDÕëT4†>r(”÷ôìÏmË»€YNz}ÿKsþw|©qγr.Bø
9N!–·ÛXŠ6&—Š‚å™ÁÍåO ±HÁ
ã¦ñÅ+Hìz7S±æú,,™0R®Ð¦õ NÑml¯õk¢×-ú¯lž'‚ׂ“!-¾-×v–è`W"N'¢¤Û9¬šo¸ "Šå/ûsx‹¨Úd…@ê³2ýñŸØ!ãÂ׎°ZŠ ¾'“¥DÕVÚtFš.ª‡7iDòDõœø-Òq_ÿKżüðŠ_ü8ÿ^/­>F®HŠ-:–OwAo|ø/ý3ö|¿®Áo/%”>€Æ¸ëÃF(Å+±vˆrµñôQà]i!å.Œ‚8¶S¼nJ–l\qXÃí,O­U$ßtz¸q×èBÚÅŒïïÝÐuÿØg¥Ýî ÙýÒºÅå˜ÿòùEzÜì1áïÞ©¶ÁÊŠôï¤ÆêybÝø$ň×üyžÅ¢¨£ë«<«úm‚ºÄ•¶ÕÊÕŸN±î‚×gÖ»„MƒŠ)%Š{‘˜eê;ŸÔ¡i?;Žt5_1ô˜h7‚õDnId5Ìg6ÿ@3–¤o „o,ldE >þ*JÇï-²ƒ9t
|²0,ê>ÉQ0;‰Ù g, :6íà])ŸÓ.+cn gs¡r:¸6߆W+&ø¿¨>X¸ÝYÆ'rÁ$-XòÊZç•÷l“A_ûí}nôI¬H^Œ•RÀ\TœñâgØôw0eßLaÒ¾À _¨ìn¥Ž4¤î íR¾ÜÙ©GÓîÂoqU®ÙíÂçQZ„znhÕ”’v§iÙÍ ö†io"±ø6{žœyÂ!6HI]~Ac2ÊXB†ÜÙÈPÏç‰êùÞK/†dOˆÖ".MWQÄ‚–úrà3(ah èW@×"ÓòˆZ8Ûž¥ ÈEo„z_°÷R.f¹qvA*ô¹„c˜HmQvŒô:îˆRR‚ZëTS¾é¹fA4[Ý„åÕA¥ÖzÌ _ÚHÑÁ‰I†IÙñÙZŽ»Oß ßRÕõÕI»¹-+vZÓöRí‰Reö¹ ÓôPìeœ”fºSNö ³IºRídô\[f»íÙPîŒ÷ÆdAº<R²’®±sògKŠ\Xaf)üøi—é”ðHÖ/Ÿ'ØE[µUj_ÎeÙ=þšÚ"ÛÜf$¯õñÞhÓÛVŽù;®S 3v8R[ß”®ÂŠR@Û;ÙA n!ÛVSÞœ–ÞIÙöÓ”Ž†NÙÛ¡R
¯7ÓÉçÒŽÁ „kS%wé)à ìRŽáyû¤,ÉÞn÷T¦ &Ÿg@ÃÙÛVV6Z¡ž¹ñŠ—~,‘; Të•‹RÓ–aŽ‘;ÑÁ‰œ–kvù ñw ¼4Óèc.kvùÛIÛ9©”®†JÙ:ÚwZ
±;
ò[wé)àÙ1©œ–dRyûì6eT^Ö í…RìŸ5-rVÏÛVŽñ;®Rå R@{9©@‰;T Œºœ–cvùÚœ–Ó,–eÜg?¸{@½LLÌfe»0
'Þ‚wÝ`PV¡7}•™¤K\Å3V™OÐ#=$©q\ªÝò’kÈÿ^¦úrYsEÖE¦#7þãÏ a(Éò'`äµAEÇ/×ÙÏ|ôîZ– [ i5hC­ožŸƒ.¤Zé߆o(Ò‡BÇȤ4¡¢&^}xüýG6Û¨¦¼ãÚë(‹¤0¶ÿ=_ñôØrûb©ë)ܺ§*“ˆ/¬ÿÞ˜°^³£Í§Å~¿<b5p3ô=LåÌs¢¶³Ø7…–¶ÞîV®÷,ë#?Ì€Š`ò%uÁGÜAg]a²ý§Ã Aìý‹HdÒVeí8×
zý ¼o÷è}p÷¿ãàq¯s ÕJ¬ÆZ¶M…L^qÄ“
z¢æ|"`”üšR=œ&0–“œÏHbsJ§Á–t´M EÖ¹24¤—)QKj¯îµº!×ǝɮÔýi(¦.¤Wúf÷Þ1/â ;œ³—ì#„r¤ŽŒ} ð<­¯Ô¡ü˜ýx™ŽÜ
Ž¾‡é´âªD"ï9<»Uút9¬þÙT÷—j|CúÌ?íÓ‹Æ
r$‘8¼œÝ’öVŽmsÞ
2”sv:çË_28AC)Ût¹pz–7  ~yA¤A<%Íu´âoV©ÆÃ}(Ÿ|îž ‚õzó•¬2Å(¬†Ò¦‚û<Ô!ºrÿDÝ
o×1JºZ^ü:d›¼W¤´:9ÚÈ\Ü‘vĺ{e;â ±“×¬¾-Fin¡$íÈs?Ã_}.á<1M,Á»m,­~ñRZ 0S¸;¯G:¬pJÊ~²à™+0¿ÝbN-¦ á-ÿ‚VÏö¨‚øß3â DøTHLûj‰8ì”°ŒÄûçâÌS‚ÄÞÿý‹ ºÑrx—«6w¨%¶NƒÌj¶'¿èdh91c ‹žgÆô•%AJÀBòhP<óuï®'¦I‘¦0␠d–Â(C³°†˜_þ@<n³:ím †ü*Š½Êõwá\&Ë&¸¯yet)ù,V¥ÛËÏ&:Ë'O;O!µîÇí®{gÇå§}\zÕC!mCðïêoï@Ø:YæbÏy_˜Ó–»Wñ6V¼ IþWt›Ìf©©¡1Åç0ô&â
„/£»r~:¯°ò-%5Q“´­=ô„-3B™kí¶‡y ªƒxÂó~_‘6-îY›×S#Séà'_µ¾â—?ˆÀk(^âǶ‰äüDBtºp’Ä‚xl“B@ò
"9YŒ›÷´¼z«õ7ÛÏkCÞÚ7ZÌ‚ô/o_þôÐ!×ïB ¿P¿ÌJ:7Ÿß4ŠsÏ&ÒÚïA»M”véíw8iXJ6º¯Õ»
ºœæ{¦ËcË Ôkµf¹il8´ ðàì.ÈùNáS–£©R¼^Ivhµã2úKæ‰ZC±Ÿ8&!!×Ç_Xvjs-ê´³ùÝSî7÷òDl.‘cšA0ÐxÏ4’nÓDÅ
Îrü¬ä¨KƒæNêY`‰ZJ!&s7»
Hä*ÉÖHmJ^Ô«41•ü ó¡Õîý%E„Aq‘bQ¾=éy³í¹®q
@ÚÄ~
¹¥#D“šQo´îQ§¦­ÉeÃLb3ôë‚
~Š8ßI)Ô‘qȹkŸw‰"Õƒ÷쵧êTY‚Bó‹tm’.1ZÓ $ºåÝz†ø°5%—îlč$†c¨R¹G‹Ð¡-„ @Tþ!á­E÷-c]È™¦ü×׺– õ:¸ *ÙV`]xM~vx鬶òÃU=XûôÛ†ƒö¬J2íè}я —p¦^ÎY—á®{ÍMÛ0ì !e‹+oœ*Ä¥·ÉüÓþh› ¶G+¦¬mREKª…äq༃Õ"[T ÁÑ’#`Ô¹[?ëörށ,¤}¼Zß[“ö»qÉ)ZlCùr,y˜-k­7Ü¡ÄÖúßÿu‘ŒCH³ªycRA¶šñì͐ç/1PÎ/Ž1mÊÄh áòƒ«Ÿ(µJºfìéPŸˆOÕ>'jPÆ 9‹e?w¢Ú­Õ£¥‹Trï&á…Ÿ[€ •p__²«þuì&ô<\/Û%ŠFz@Àyùª®È‰•4ÊW°Rýö®x•EáO4` aÓE˜r5s³Щ갎篰Mo܃Kn¾‘,U®»ËsöÓjn X<¨#–WGÞÌŽæ´ú¡E“0Û$Žnòä¤%bCÝ\~ v A©3À.µû½Äã\ãDû™Wš´–9SºÉØIðàwd.dMµ9’dTÔÈŸóò±’é<è1„jТ SurprisedYÙmt‡­M¾L {Ñë'±ŠÂï#)ù%UÈ—SŒg²‰§©ÇÞ¥GüñDb*+ã`B‚7žu!ÒÔ¬ÀÈÆŸç8ù>‚vݸ¬K|Wåbr”ºhIÏY‡æø=½—Øë06÷!jÕí_tˆ•´§Ãï²]øQx68ðlS
šŠ.(нÍÆ×lýD ˜r!ª¶¨XI­æsèK¥‡fUÜ&ƒ÷Å;¹.dÖ÷AÍ-{¢ë[’A†‘Åà¼Ïü¿[^v2Iýlh`œ ¦›;&ܲÚÜ
äyû@–~6·Œ´iV«â€õAº”|Qí3Ò1Å?q,óVË)ˆ¯ág£NœÚíºË
ŒQ '+L>^Êjtqi¢¨<ØçÚõFñL,åïzG„Š°~#¡î‘ðqøa/
º!‚×ÜËvâî •Ó›¼öN°[š ëú–ÓAVòËÇÁvKÓS°¾wk©ù•ìÐÁ)ÑY˜ÃAÖõѼpCpÞÀaúëM¨(=˜ŒøTTgsÙ3þ«Îà…]`Ñ»½¶*:¨iÄ„ÏŠ©le%È¥…ºJ†fžFiµªW—=¦¦ÂbÌJÄ m¡¸AufíÑãML#ŒÐ^dqvµˆŒZÒ.=•Ý”|„ƒ8¶¹B’S"ŠÙõÙ Ô E½¬ž ûØtá7¾ß6 Òd%,z‰möòé:­è7RuH#¨¬><K]Pt^Å7‚õë$uè~Y}"Žv ː)ÌՏáed±åáKUWýÕ­zZ^¨qºwsøQsÎØ]Ú€(\SûºV¾lw˜_…ŠÖþÒÀ “r6‚ˆdhh.:z¢QÕøÖ2ºz´'ùo (þ‰°‡˜³{)BÀÉÔ7°$ã¯Ô<"O"Tœuù皱ƟV^Kß±ÁrýxjIˆÇ«ë©û ^ X1­X†SSþcÔÿ؆…R³ê"raÔA›µ&„Ø¢y÷•HÛx}%a8ÜãbAz¼Ü™xüyÞ»ÇûߦF»ˆb¸deæ݉-V›ÜÕç‡ã-¼»®ÊO1mÙ„p»çØJ¥Û%4ˆøÎëØx§ðPG#L1éqê,a¥Ôïʼnî+ôÔH6üsìm#„yGs|y#Äד°óÒð½!9œçÕ`/ö»ò-dM0¤"BÚm ‚Œ \yßìãèô–u•Q
ç’&›ÏW…Ž´ß¯jX*âÄoò\hëðX^j·&™Â=H<r¾^fQÉ껈´hÏ‹FDó)–Sì ™YÏ­?m¹y«ŠÆ™ÂÒŽ+Â6.³ý ö­»>™Ô-GcÁ ó핺áæìŸ>ÖÇô1y
£@º».òoð%“P+ǁbdøág¢$$›/n1Ð{äÎ¥±Â’/„æ…˜'¡BŽ ¸¶4Û3Ÿ ]Cò¨ƒ±õñ<á1Ÿõc;ùºwÌÂ%A ̶G?¢cM–Euˆà6Ç'ÇŒ{áéKÑ´aœ1$Ω ª 
ÝrƒtÇ矅¿>„À|R % Íü»žÃƒXÃU£?¹ÆI¨¿QL äR]§d”¿[O®Kô*š/ =C–œÿ;Ì©÷Ú¡Ü‹Žäx`P™«ÿ¦°–Áú…ĆóC«Ûab_Ëèî¿þÅ& @º ZÊŒ F«j¤ëgÆWÞ©ÐÈ+%Ó4*Í’<Œ¡¶™!‰ t§í½Pû0i'ìöùPëFN¾Z™¥¬k2©g8“@.T–û<iÇ"ó1‘–ððÃ)¾ÁD•É'F :¾â{õåUˆÓ0UŒÜfÚ¿Š3‚ÐyLÚwCûîwÒØfŸ#ó%,³ÑŠÒرœ»{¯êUbR?·b} ­Ì òkµ€z¦0”d×U—‚‚?~ÂNã!ཇÂhPQ¬HãŸLˆÂÔ`D
Ii·ð0·qw,*‡„GÛÉî1©kÒ—ïE|χC·uYèó¶²N™–æ0¶u N•Ïá¼2§¾¾=sKB¤>¬ÐÙzíþïOÉ$û­hÛÎŽš.—¥¯%PÕA>Aæ;ótPr86TÈcAψ’›ÙºÅ{k•S1­L¾
W^vT:¡dd|jÆ¨;‘÷Ja*<pÉ"Ÿ’TsOHRëkî4äv´§Fìä3Å7tî
×2‘¿d‡¯³rüÚE\Y:¥í‘1N±,~ëÙ9%Q| —žE äD#Ьm¤tÞ’·¢2c/ðiؾ/NÅÖ3!L6”n‹ÍëMC]þ;¡á{ñ õÞ´šž5î_š˜-$ÀoGq¨Ô»HrÏXã¿À²Ü¸í¥öÊþàMKû fw‰}P:¦Jìýä‡ÛZQ 1…J~Pœ—å•WQQ¯­ö®rëÔ)ÿ¿Ù­¨KÛœKA9ŸWðD!©LÍ2„ºÚýgH”™à.·¥“ŦMn—óÅM:‘¯@mL ·¤O{H²¸o‹~‹OüQ0ÿ2$06Y'LTÔƒæýþd·'2|ª.òZ¡¨$oɦKR¿#R”Äj{yý¡v59Ša¡_úD!VgWrô‰?_·˜ÆÅP—©†‘‚݇A/ò“æbô³s°
Û-£úÜQ >¿D±ð`;†ø‡´¹NŸ…`GWj:_ë1ãÄ3îˆË·LC”ÞÓ!*=Qb„/mgN®ŽóÛÜx-6™’ì –#,§:ÑŠµKrö²xØÐIÇ‹#Uvè’4d¸Ýÿ•d!òÉöÑéí(WÉ•ÃµÈïú"\;¾Šeûò76»ãH%ÊäÔ’1ÇY¾­EÚG¢ŠÎ^Ǭ#)%a•ß'}Nj¯&Fˆ5åÛÑ´¿hï‰ÜnɉÒ<ì¬Ê&ÛtóÚe°.eO<”{3îö¥ BêÚv¦}œð¿ÚeàÅ«RLŤȡöE¦4!ÛMQ+Z±œö‡ò³T0Š„ýVƒÕ£ƒú ^ØØÂÒOäyoò…3¢Wfx0$Lô°­‹"óI¥¨áGCÏ(wiºŸQ7‹#ŸŒqGrM”Ñ–A+Ó3EØ-䦵a¾ÒwíR¢4ðÌÞнÈ›y+N“O¨"Ù=l„N€Û–Ãà4)èH(J«U «ª•7û¢§«¥¡ÜŒ.
·! «  +£šHÆÈ3œðEµJ—Ä……‚˜Ë¬ÎËnB¨¡ÜoW)Qût°mñ,&M•²p$®ÄCì¦^:’4u9>Û‹Î÷j5}Dvb´ù›0àõ*¾CâÜu{ÑAËuuoÿ‹÷Ûð5gõ_¥–”«h’EFvŠ_’}ÃèÁ«®²R„çX´ó î´ƒ#’
,*³ÖG„E*8(ǵ‘jø‘ä*¸©wƒ¡ ¬(ªž]2(Óõ·ÚNý}t—rjŸ*^j<m_܍2P-Eq抟\ÈU<­t­°ˆò¤Š×¸ÈLÏ|¤ïôq¾K”Y¢÷€M
¼¿øai¾º@L>¹Ø `ÍC¶ªsJ[¸ËÔBYR„Ï…j¨PÉ»€½Lè.!#0Jfš,æ+?ŽÅø!¤Ê±¹úî<¬Ž+ü‹×©Ê­I¹üjpÒ=9Ûâ;·æÚe÷”†lw!¤Ó»N À( @(ª„¬¦‰³urImœjJV·“ª÷oN õ^ ˆhÚ Ë\AÞ®µ{ßÿo&å!ï1FÏîŸ!×k
ˆ½iÁ<PSìÝßÌ4«ºcëà˜”Ï<’¶ëki¢Î™rÊ´¼pGµ›üf0Ž‡…RKˆ²¸¦p¹ÜTpœ“½HÂá*”±¤•$y¤z
ðª$ZT&£xˆR‚†fOf£`V)É*¯þ(¢§?š ‹½þÓ8¨Ã•”ë6zd:“ýEh4jãFþDp{»Hþ {“zrıgÉ(¸)Šå5p`$S?^;›ÖD¢Fá`£´=yþ»‚ôýc”<.GÒK¬A¶†D]|ï™U(þ5Å×7ð÷`ka
”­1!¬J™;±2bNÓ»xLu|ã<]ÊIœÏìTª
KÑ
Ña p§–Îu‚Þ`oÎkB\JÉA\õ üïÅþùÂäÌq]óÆq Ï—!õý°¾~nà´â‚cìKÙkk:{ôÒœ8†ó„Ž
ƒ–Èâ½U­¨HxGäíځ–·ÀiWdí6Ç—ñ‘Q¦‰¸Ñ•€Ö¾ãÄièÉ¥ ˜)¿jT o?,ÎPÍ#µPëY{ÚíßÃiw3y§J^ॗD$AÖ
..-ó²L Fã”÷Ä8WÓühÛž@T·ý»œV!™4JSÝʺþ©Y¹Ky\_í¼z]©d2Ñ€þ¤dÿÙV(ƒòð V†ßÍk:z–Ü493ƒü®™+'/dz;’§FYÞ$SadõM{·Éèu¿E-»mA£ åíRj…êÂs‡³_wc˜O”¢Ó¶Ü·`·2÷ô¾²¬A²V8š§j¤ô4ú Ÿ©œ{*Û*_! šü¯­ÅD 1 §ZŒwàßùYW¢4¤>LˆÌ×<Bx$,ÊçÜì¤e7Êï»_Ò‰i*Ì€ß`W¼˜cQØOÇóÑB½Áô]ˆ))KSi¯ZGX
­6EXhUBÜ×+2OŒ|­|…D ±
˜ÄñÓ7!«¾‘&“®í#í’S/SHß~4åeIˆßv
‰)¼(G.Í6KëãÁ®´ÙŒVΓÝxÓHDã´#¼¬ÈÐCöQåÈ×F8-ûJTÍ.ƒŽCîQ¢¨5ËG-‡‘¯åÚ¾‹Î¹ÁùŒ÷~™´0èÔOàQÕä%ÕÛ¡ÑÊPIç(r?Òã¦fWëÔ¢7*Ø´nX{XI(¥I®v¹Iÿãk6º|šU>rÅ`—?‚ê}öýÑ»QÕõrA üÀQÙwº
ç£66¿«•Œéõ9’·þø¦Möráç[dñý;Ÿ”ø\¼ WH%ûC¡Rá8Aòq§FÐ ‰XcoÊ ¡ÂøàÝyÀgÔò—y¾ üäD û `v­Ä–÷IË%bÙqüª¶}==[\´/"…¨bÉT%ܳ·ß†ß4„µØS«Æ«J]éþuâËmŽ#ãèò7î
"/Pq&Ñ1fÈZ8šÏ£NÄF—¨êñÆè g3%¡¿Te›ë‹Åc’ÞªŸsáÑr¾§ÓU("«d©Û«VÏ8´aŠÜvœ
W“N)ëÁåÎÈàÇŒe*Fö9”jo?p
ˆ•¶×âa­t“™#_mÁEzö ü3„‡Y~¥st=ãçsŽz‰¤¿c7tKVØ _aÊiÉæÚ“ÿ‰¹>Ôâ]çå>,2+Á@‡:n¯¾b‡‡KÊ<1ÃhrÕ,NZ¥5ÁUimëu¦±i^C!}FÞe²*Ëãx¸k[6«W“#aéNàۏÕ^q œ³ô!¢y9."´ñ%g/“`y)Ñ-06N¥i
‰¬[^ÛkJ¬q‹¸ÅG:ég¿:¯’å¦Ðiڐ썊0Õ!“ŽHIØ:bÐÄ¡–xçZ@ ¿T•c_h0\ªa©Ä½¯PkšÚ†ëô´à‰<=_d‰!ɨ
ïFI…K½œÙeleÙ‹Ë=—·–4ãFš€Juœç€Äx³)"›¹u%ecp|ÇòÐÒWÆk»MZo8ÃæÏöÓE>â¸fre÷Òüu"IÎÉ;I{~íÏÌuüc‘'½M5¾ ;:#ÄÉ@µ(È`ušD‰A®D Kî&ßï‘ÔPxޏ°×zzÃ11 ¸ùxÞ¤XûUn¥ûËHðm7‚14ÍÁÞÖ§Ã}Ô!»¥{ ¿)(}«F»Å¦C0£é¨—ûö8g‹È!¬¶ª B85<z~šPJW¹É9Qº«~¡,P%w3†.WV5ôðÇ;b€Šð€SéE%–>¿².ÃnaüQ_tª5e€›Iœµ˜O†w®©<zCòb™~r(x?€18/ˆVÏ4–ü¤›ƒ·â 8¶¡<ºrð  )¬åø£vÑèZ­ÇøÕÛ¹–~<ay+ó"'ŠrÖ¦èÄp(¾=m§"žYµŠÖ¯È³FÖKˆü÷ûˆªýS‹žC0ð?iµ—™B1p¢¶ Ø`ߊuÛY
EËdÌ‘…ÏÊ é¶ô@£„Bz¥îx͘Cl Â@#2¼ù­ûA[ù„§¤éÀp8†à…Q.Œ´¸0”*ï-£'H`mŠt™’bÔ4—Nÿóá£ZœÄ»Q”cSVho` ëǬMæ ¼å`§¥*¦!9Ó»¨hæpgªpÓPŒyϵW;9µ¿6ö£ŸáÕÞTüõÖ÷Ê·RÍ¡L÷—|›J}hâòr³oäâcÛÞ̪§¹màBr
‰s»³ŸÀE<05ÿWXþ”bæ%‰gÇñ°F!Nö‘C±ÓóP„›0ÿ‡=‚÷ ¯³žþ¨ÅÉÁŠ,ß;$vׄ:áùXz3¸vµÖHïæóBzë-o=Qâ,Ü?ÇþŽ³~’FšÝ³s!à÷1ÎƳ\ÿ6a¶E$é4ëhowæH)Cò¥É@ÀžSú' ø½ÈLOÞ ÿ<N(¨@j ‘¨»ú9^„ˆ\LšS`ƒþSü¤[\]ä¾)LÚÊ7e-<f>ã3HšÚÔ óéÛ!E¤%P—YÌõçÈh/ҍ߸˴bädµtóò.ØÃY¿Ý4æÉ¢ÕêâqN²—[7c!}fnù|zE&Jo*ºUƒ2#°† :h‡\ò}v+_ˆIkrüsøþ€ðÖê1OBWÿˆ§Ô÷@}²*F}/»ë<é¦Éù¾ª¾ØÚVïz,ŽÜë$c3Ù"œ;¼^v±Þ›ñš¯mð‘{†–ngU—ÌÙ:åÝd¾é“wº_ÖšÀÜÿ(ÿprHÛfZj2/Ë|kã%_¼á¡Öh¤ÒO$MÇH Ü°½ÿíÛ—.¹0pÝ÷D™†¯ÙFt/ÌŠ5VwkLœ–_YL|Ä$¿Žv¿U”õÜêä—ÜA
P&2ýs…pNb¶S¹(ï ²×ÖzZ#¿Ð‘ñd'þŸM›ÂH:{PÀ|Wh«]-ŽÖ‹6üfHNbZŽ¥a$G©X.–ÐS«
ÏA–°ŠzˆŸS5O,ZÄŸúkY笫Zž$©ÿ›~#ÆPïê$¢ÌÏD¡ÏG0Ú&|6ːÔÓRazzd‰¾ÉƒBCva‘,Íytœ
WJþˆ"Íe‚ìê6y4›‡+9~‘ÐN…œËÂ0ª‚Äj7Ԑ^ +êB¬@@™eåqà·TI
‘þÖBêð×y°n’ùF ø~U€ZŽY×âœ6½ÇBò¯gT–”"ÞÆÑçõ‡]´lH¤Ã
uÖ]¼]õ”zV¨$}x=€a‡÷"¯QGG1žæG`œm
Šr‡ÙYLF¶D,vkb‚ˆPgó->Y„ˆ]v'Gñ³Å}ã1.Õ? @¶¾¶J/=Ôu´Ë þÙÑä×t˜lúÇ‚¿)ð5°®Ï´|Ïpáï'yB·€q·©Ñ ªr²{¹ežOb.=¢øÝ‚+ÕþÅâûÔ¦§ˆ+ÓþÝ!+¾€ `à'™yNžÝŸ™³ 
X°Î³«ç ¾¦Ô3w˜É•ôønzy0)* ñ>8|jö·“´nä÷/Àñ¬&Å!+›p£Û'›26»Pó”á]? „E‚@iÒÉ@›ì©×¡L_-²@³AÊø—©“ôΤþõóO‹í»Ä*‹ìs2Ä 7À®®Ð8ˆ)Ç#zÕŠÁ¨Ÿs¤‰­Ë_ðŒ “ÀYŒ$­.-™Ý.®Éñ|6h­’]HŒëSurprisedº!ÉAgb(Yç|¿0Q<x_â|j¥©“=ö<è¢*ÂV¸ÿÁbìÍ 9°€á¦CËÝŸë#dì»~±¡¡Ô&ïè`Ì“³ð€;Q„Ö"<(E»[NR13!h4šeëiy±tÛ4M›“܃ÂQ„ ÑñâóW4H·¡ +]æÖAT9@Ÿ“d!]í|~èãÑ9—8(iµBe<n7&;ß 81]M¬îÕå0U¿
£MÀá».àPê°hT0isäô ÐõÍö»V“•yƒÝ†”§KbëyÔè ÔdÙ`Ô™BÁN%pɆ>%Ÿ¬‰"ùV$D-_²’u;dˆs% ¥gNÂ>SŒ';w¿fS¶â92È0ùù;H³ø† éÞ1_ð÷ŽWpãƦš›¸ÊS8U¢óñ~”=þT*‹N¦bÐO­S°¿Kê=@c²¹Ã%Ã‹çŒ*lé»IoãZižGËvoB*‚9‹tY Öì•¡`¦(ÍFOFNlè«%”L˜ÆPû("a Õ~µ‰T–?î¤+|\X X­IΩàºEÔþs+†÷{®2Àõ0É
\ œ¯ ŽF{L;°-H
 Ü?- ´ŒÒôo¤B=ŽMSþ3$P(Uʽhk–Åà&¥²vOí|¡“s­i ÷?Àfj‚ØksK%,¹©ÙLM"› •äHg`ÍþX=/%»
H–²\„n\£GY_í óU¿ªì9žêâìÍÖa1¦ï•_é?éèôi#jŠ!P±ŒJ—é ýïMh¡\!$FÚ=[V1ÊÇ7ë~»+1µ
žÒRÖ͉ŢÌK”F“ë"líƒN øü`36|Ñôˆ9­`(òÈÿÌàý½Ízù@ãpô®p\.;ë0öÈÌ÷Í-ŒØÎòòg«©ž ¢2…ì³R Y×=¶wÿœsPJ/“Êæ.f®|ÚM±/ÎÂX6*õú¨9Ou|†S Í{ŒÝ/¬zˆöìs35­ç#¾÷[yáSmåR³5×&ƒ.V Ç6Ää×ç­?°¬;Ô°_K[B nÞïDlo®ç†/LF»Zß( ´òû¢dW©Ò÷u¢0 ^6^ +VöŽ†nÙEÅ7m`ÜÿÈݤ‘´ÚjFí»rÉSÚc˘ûEa#…êX®Ð;Bóè°ÅE’I¨åð” µ÷bW‘$ ñ|îŠ_)p\3°;-Ó [¦7ÿ\ —ÝF/ˆP†´|k—&ð=tÿJÕvÀ*‹5ª–Õ‚ÂØF™êÔÁÖ ÓD~ùLÊÈͼ.Sõò»"ó
“pü«ƒb<ýÇÎ9Äb—àEL%|b4ƒ¹¦’ú­uiRÇ)oÂ4wSšÀ“‹œÝ¬h«"¼…r+NFÐq‚¢)ÏÜL_íGþ¯rÞ!¾õ¥'_ˆŸ²¾áÎä´¨S¬Ž/Ì¥¿Št$m˜ÕNóóú*UšÈ:ýÉjŸãµŠ2_ç‹dÒa ê5Ù‘à¦a‰$:/úš@<ÖêòªYµZ9¹QWÅiëŸø¸PÔŠöi añý쎔ž5GÍaàïUŸºkñ ¡¨“á{Fš¢„°Ó Æu@yûšÔjec@F¯". –»@ ùþ¹¾­k뢧ÜRJÉEÕIÛ “ðñÉø½2R}”÷ñRþk£pS’zSpTÞIYчNXñÕ±’á؆?A_U*ƒÌʸèê{’}CÅAGVµ ŸäÔÕ¡EHs@¯¾Š’r·j¼¤ L€}–w[ìÈ-¾Á‚ÑÿHÿ>¿¸äëü"‘ÏsÍXNe½0üWõ«t5)Ÿ5{KyÓ÷ï­ $h|«Kì}ìœ.#³ÆDó·´:’½âÕ&9÷xI»=£K3CäÏ[h—y"F^ý‰·ÍOYHOúA0-’bbI¦ÌþY®1Ê‹ñ|¯ÍüàÍ“âçwBô>ý΁rªÇ*¡?" Piñ2,‡®ë©¡ÁºË•&³}¯×ò8Ö07Zƒ†Ùúú‚ v‘TT§‰FøÚQ.Σ›õlѯ²ºÍ1t]tÚò8³=>læ䓈ªIåY£QÖu ÆR@ 6l#¿ªøzIìÓ&Å>ñ1ájøÙRv[½‘ s‘ÁHEÞPa:^;eZ°W²”ÎRòåÚ+2xsZÓËÖ/©™ÀìŒVÇí‹TÓLOLjûñˆ´æ8ôéõáHQVãû~^d
4N—&3¡LüñëÉÀ}1@ã=×üʘ¿¸±¨ ‰À³šê%^
Ávªöé‹®9ªãP6°<¶¼‰w{£~bôÔ þê3ñâ䙩Î7U5¿­Þ Ö¾›œÜ”··º2,Êäú\RB”eÇõ$Æ5cK†¤GYè~S©Qfwxø¿õ뎒ÂëF\{ìˆé,²9ŽŒøܽ.ò?Ò¤,Xw˜ÿ Ñ<™·
âšX?ó’²gblgªë×MÒ°Á–•®œÛ ŒªÆ-bZ¹aöêKÎWk¡b†À–õtÄ‚lì-ŸÏ5!-Þ?q ’ÅÉçÕÆ‹!MM-cÁ«pšGVY×íÝö W(NU+’´x.ˆBÎ64r>4³›‡ßdÁˆÕ9ð¯óÅ­Ï(RÐ!ÌÓ¾àü•~lPÊ[üä-=˜uáYR—wßSˇÆE ½Ük­Þ–™ð¼
EÝ6d• ¸SÆùÁ£ÏS¢®G˜î¾­ÈÚ…5Q,ÛÈ `©€Ù,Wü%”à$ð5ÙIŠ!´ÁpI‘®iGNÆ!áõu° ïR z•Ø6A¢Gqg™=£F¿d†hI)²JQϸ±/ŒºŸôæs\L§ün Æ-ÃàobwkØÎ;/Ð!^ùñ×’ò 7‘ÊÓ}•-‰Î¹~Û7)Sþ‘¦éVT0†]c Á!ÙUòbVZð§Àüå7åGÏÿ
ºÇ{…*äý©‚¼á@/A+F>÷\ײCCÛXáÁj+¨ð
z¼U"c´¹Â•m¨…©¿’˜·úSïšì€u/oô ä'–—†6“åq]ˆUŸq1hyp2¿£‹ µ9¥ž0l¦øÈrw#ÂŒÓ# —ñG¼jüÔÕ´·¡Ã]„Τ/½wä¡Çå?,Q<{/”âé¸ácì ,Q9JƧ—û+2ò¯˜ âl@±i³ lÌêÊ>§4<.l ¤?:¶’@é! ÔLþÑ>ŸI:NìZ{ŸÓ¹ (h¸ÀåbBl?:MfqôqZó=¥#hÔ D~}lCÎÖ_~Ɂ#Æ:m
Ç•dzw¯Š£Å3©´Ë€ )úÚY\Kiz%7e¨¤|³?ù“Ëi§’mcV#Þ%ijiê†Ó"
æï»hpÿß8 Ö£:‘ÇĹeO#“ÍÿïP¼.ýǧhõ7 ƒg-Tjþ^¹ëø<§¹·fXh’Û” I¹–@ïS»Á½Z
¶Oë+8¹Î;¹²?¤Cè$}õÌyuiª>É.@x–¢i$¾~°¾)iPï›J“WØ£1ö/s Aúù³sD^qóW:*xñD2 K÷H‘tM>â>s"NjëûƒÞøÿ±T„úTaÃBŸÚö?“Ñ6Þ6¾,«ªä$®¾Uå¸}–}mà®ä.Ò9JÖx–MÐ'×óþõ,ÏrBÎs`Ûï/]ÿ.xÐmˆ÷“zœ[T¤àvßOæVóPom8LÂoÜ,, cØ%Xb5ú|“yG‡".euËšf¿›çÓóåÙ° ÅšÏ0ÝKá=-‹„’K]ZRB›]i𥢵ÿñXqBÞAjÂÍexCÀ®Ðc$.ÉšÝ/b¤y¦  ˜ôøSs¼mg™ Ê}{"Uâ2e‘f:b> ²ÑÙ(ý˜Ó ‚nê@|àUØ©ÞïsËàŠ&b¾,>ëÔ6 6ØéJ!¼ætp«AÿÈ«H5ù¾8võÑå§&D@FaàQv¶O¾ gL F 5³ÜJHót¢vÇàû×¥Dm‹ UîàëA¹æC_wt¡Ðìá÷³ñÚìÓîØ¿žr8ÿ¬ã©ð÷‹â`Š­/üÔX §NÒ¼_f¤u¸o¡‡2·a8<„.n–JªÁÉþ¨i£¸#èW¾t¯Õ­üÂ$öö„IÅ‚˜ÀmŸ?å–!ÖŸæÉ|,å²\!ºIÏfyk¾‹ tBϝI_LäÆ5ƒ?šîļRD€gÍ׃a£eŠÉŸ Z<U‹.dù$Ñ6ûÒê#êÌnÏ®zš›^Û$·M2:îÝՐ)jNó{`ylË„È6reÐl!QWâÖÔ.–Ÿ×¯'¾ 0[\F0€Zz~ÍTœ‡žáƒ !ѯ¢·pm k> áåR‰u¸ vrù犐Ú9ÍßÑfÏöý..ŒôãâÈy×´ŠÌ[6ÿâájÛÕ™´ë©%ß#“±Ø<ÝFh$Û ž¼²Sͯ¹pØÍp¯bq‘—ü!/’8ÄÔ#8ÿÝ,„èvP´…EìÁ¦½í
 ôèAp¬ûÄ(¨,æTê_Ùr±\ë%ø„x GaþÏCv\# ¾˜~'Ëx·J&“mÓp쏎h-HÎТ3„OÂ_¼|ý5ªWq"¨;!qáÖ, ÀM&^²i¿Kø&B•‰Útï—¨­Óþ~¹[˜nêªàΖzmÉ
Ï£~£­ay­ÇDå`ݍä°kÅ¢R°âœ¤“}*͍ÂúðÙ é·¿²‚®±ÒJЄ+ú@BïCZŽ­ø)îðErž~ˆQ!áiR }w¾à¡ÊÝpUKŽ‰9ÐNM–oÓx@~aªÌõ§Ø1®lmYðÊÌ-4k$Å…ÆŒhAS=°Ü XbëêÏL¾‡8ŸqÀÁƒT
ç(UÄAb
é£-IöÊ\C¯.tA‚嬅š~Ã47vj/Þ(S0ÇõÞ»-©ä퀰a°×KWéÅq´
]*)ã
|B…Û§¶€ÿK+¼y?MÀ“É$.Wl4:F'³‹o;®côf3TNk \ìÁv¤ ô0¡:YªÛ¨áØi¾qª‚(žLÊ8tïú²¯ßÓÂà­gCt?éÓH÷»rúQþ6 ®©µH9CømËáÎÏ(bmzén
`CïK/êð³¢w]gduÒûCÖ‡CÝé¹Ë™ÏÕ„yFj­s®G–i¢­ôáTn)8£9ˆT©<T¤;h¯ÿJ ®ØŽÑxìZªL¾ôhüâüT4ŽSž:Í /{;´?sœÖÒ1TہÌZ·¿²Óºè6òP_àø}ÆvÚR4D~—)ùâY<|¨î“áu&wôì £Ûq'鵄ü¥ß¤{uú•õg sc¼þºÌGå”.þ­ïK•z/6„.M;î§~Ä+øoc\Ãêov„ªÙâG—3’ÎVc;dï-cûA 'èøc4ú*^,êýdM¨"f® TvãbéC ak/—J¦¼³ÈãFºßGCÈš@®º2Uºè·ïØ:4°Ϙ‡5#YìµIƲs B“]±/·ÔDè|™½âxŸ_H`R½ãþR/ì¢Jä_º«¤Y£è}dfóT]iìTt;ùŽá/£Ô„ÉBÔv~;{`Õ9Ò» 
GÿðÓèd„šø8‡1fy÷–ZÆ%2sï¯Ú«fÓãÆL\â­IP4y)KÕ àÝ¿û}õ˜õ›c›¿¦|AyŸ YÝ„­?Z¬5q-søÀšÐòÁ׍äéÜ µP`.² EŒ ‚ñ§x¢'㯗öÅ ÂgðÑ—4÷degâ×j†ÌýE"ÿ¤Ë-ULÙÆ£)/ÚŸ#CÃY^jh!‡¹æ¼Û©|¶µÉäwo5ãF—»`bª±J èpGÁ^8_iWdƒÛ—v÷®nŒ:»àÁw:å9Äqa¬‘<ACˆ„™~À†ÿ¨xŒÅƒ›ì©J6Úåí™{Ä)'çàI鞦§Ò‚5 »J8¬ÐÃzܺ.¾)òy»vüÑaZ*¡Zþ–fˆïm¦Z1óS}<oSü¦‘€ã^öت¤A’pŶúEb+ñI½¨¹|dbYwI}
œxÞ’wô]Äè|ý…ÞŠÏ5Wös•$°ƒ•sX%@g¡cÒä\è7͆ŸÙàüáÝ1tALq§Ëùÿ¹ËöT’[ùƒçÜJnl"É^ád®(ß–
¡Zõì'Ï^¸Oh6µvÀ;œõT
mÝt{¹âŠ¯«!
©þ©®}¬æNiJùT2î-,³²X¯5·‘<L ,V>+2Uùõ¡¶º —ž´6€Í ^ŽŽVA÷ës«ÚG8dÜ®ZõØrÌ®oz‘CËÎ êä0IpFçý­wOôÑFµL( kocd'ÛM>yÞ·¡
ü½Ôºø äµ£Œ÷¿›ÿôÒ=#üxZgš“¾2Æ1Ô­îBŒC\ä˜ÓN”ðÞÔµž‚°õõæ%$6[ys-¢OÆêf“–á ¡â‰Í%u[Ƒ–@ØFÌ3‚îDAÏ¿I
ºIþ`wD‹¾9'‚H3ï“RežyÁÒŨ¯­%Zéè©œÊh®aÂï9]Š«s–VºVoYÿ:äta½ͧ©`',ÖÞ –gpre$%< €^™àqïSŽ#¾ÈËwå^½V¢$v´:)h{±¢×`ïíÛ%êŒvòXÄÅEí’waoá:
¾iÆþ'°ŽÕ ªÂvÔLsØØùFèÏUJš+"òùtvJ—
iFDPÀÿåÐ|}Ø´cÞùKd˜Àë~ló„ú0Z„¤í•5£r¡ÖLKè'Ù*bãcž¡†â.ƒÍý˜ÐHÀ5ºån”I¬ªbÁrZ‰R⥸N¯›eÇ0—
Ò¯Û¢ü֏E$‘”‚–dÚò»OÌÃn3®T%œüÁmõ1¹@¨k7z¤Z2z9}µ—£‹
ú½ŒCî4¦:Y'E]o±‹…ÐVS÷*³ÃÕ»Aì/q‹.pjmë~½±Î^V–&ùètãù‚zôFdÝ;±Èw=ø[Ó’f`bz3˜pe€=8wL^ä
~-oéá&Uß)Út¢1_SŠÁö#ª« AžV šÝ³»;`$1Óùtÿ] / ]£l’AÜu›Cµ¶*P3ñ—Nœ%ÿ©úF<¤+}#hh¶Áaš¿|Â
÷ôø=¢)6oCÐwYàⵌ–†ÑLJéÉ°H4Gkt\
q¼™ ܈Y$¼%_™»¨•Iæô,
ó}„Š-”(šG:R˜ÔG{÷¨* #t1\€TíÒùR^î”èÀ—Ž䨍sK*X•@V1¢kè3À†@/ÉÚ£y:‹5ôçJÚŸÄzo·<Ð! FèiHœòM|×ñ+LèóÓÛ~™ún¯«˜êâéÄçX¶ºKìãDÉ<ž“™Š˜eõ¹À3N¬I˜
|ô¦#%×vq­ƒ
¢cEm˜Ï8èï@®A,rìLôo-›ÁCuY/Ø›É(ÉE—1þ¦ƒ‰|E¢¡ XpžÉzÛ#­]Ÿ;-äU‚³E#ú´ *oÊÏÌ#`žgDsÑçƒÈ;§Ýô›9@«êHÿ;nyُŸ¿Ù±Ôxùïk%!¶²SXU)õWüFÉ/*cüÝR§*Ó'ípâc¾XJ‡Eê’Ý>ƒd¿1ýP"¨œ4ñ ²Ø³aÐI›#\Ç¡S£f« úÇõ- íðg*`©¹n=LÈ„I1Q×D ídµ{n¦ã³¤ ~üÕÖ]ZYJcÖ‰d©ÿBOjAUˆã`® œÝ4y‚ÆÑ2äÑ# <*úäFKõ´ &6 §ß’‡#ìÏXô—Ï›'+sÆ_!bþô€²eG¬ù‰ëTKÊ”Íïïax’ÁÜU:5ø!ã,G 4 |w"œg;ü±NçP½.ús†ëà9 çœ¿4c´æ\†mqý)5ÅÿPM›ªCiǯ\ °ñ žeaE± e½*Á,À cH8=šüþcŸ $°ï§š›ÃõW®’”nz‰R':§E·×m¿á =à‹yÉbŒ†£¸»1âk5øº7*d(Me0Œ–5#KíøëÆôÁót{‰NEÔÓ.Ô|“BãóxÐ*H‘ñÝ1ÀUek.ðÍo•J
³áxÎMµ¸èË,qã¢1wå}56»7ÖËfêzí¾lÕ>”Ð ¾gÄz¾{¡Õ‚£ß !^&ÀtBYŸxp>¶«Ý$ìÂ|ÃôþP/º”ŽFY³Äyø©ò—D+Ê6caýÕŸt4ÕOÓa²É9˜Qäw³ð‚­ê¹Û.T7ÍrNnli„ ²¸ª"èÓIÙ&è÷\<‡’ŠW&‰ÀŽÅ§þ¡dB7Ûymò¢›%A2Ñ\à(v¿ÇE©^âsÀý˜©ûœ·ç;RDÚHJyg€–¾É·8ôàV×"õÍXM”è–d3‡ÌŸÒ½ú¶qX3èwi¯m§:NÝmí& ‡ŒÝA¾+øÑÊ–µiã#¨U§FVŒF}Œ§åºÞ„6ðñ#-.+ÂËdBaæ’u È¬ß»Æ~V?ùMu¼k£K[Ùbú<”™ÛMÏ8ö{æ×ì±vÿ3Â5i´\RS{ˆ´òÆï‘•ì0_:;ÏÁ`SnüžŠ
›Ô½¬ÔKÐ(
êJq!‰a¯X(åsÇŠ¦fUYß̇÷¤ê½.CëAâ¿!{Z^’ Ë„Æÿ§ÒÿžÒè=!6IÜ7|c{úš›gÀ±¹äX U÷@}6–4î;{_­³æ[ö?/©D‹ÓM‚Ò—[<ó÷¼ô}Á ï-ßžVü#lh'
s]?Í™:‘ÔѦîÜ„ãñZ‡JÃH ,4u·(kb™äÀbK¹/Q4kÀGÛ™† 2æ–,™Ê)™›ë ÅW¹q5qdA{PMo¶¤ö'§ÌÍ’¥ØГƒ
2hÔ,˜T…Tp'¢Œo馮'ØM!]ó왚)‹¼Ð^*Ãîwɝ®hŒ¿Á‰û¦ÇE Däst(Ê=¹F¨ÂΊ£²¾'ögo?ç1Aš3õ?<Ùúyõ·»#êZ5Y ùʪ;˜òÍR7éû…Ö‡1¿u¢oÖY¤ ³wÒ RZñF'|¤/ªßÎøàöm—( ²TC«¨‚zJG»­é}ñĈ/þ'7eÆ-“HeÈÉcç•£=ÌB¸kçáV €MÞ1_hkþB‚=xµ<ضìÛöìzí9‰PP¸Ý†‹Wê 
6§E•+ 2òžžÓ*ߧ­hGpÑû
µ
•9iF{VLïàSÐr´ÓDcX»n!ôZéêj·Ü“ǸÈv"ËT;ˆ¡5žäCu`“®La:%Œö‚üûDºMU­róˆ4JKT«­úÙ"]‘µDb^ØåVרŠs)È96Uëóî·²†õ#TÃyº¸¸]“±ùhŠ¦ÎÅÜo(úijAåÎnĨÛ~ÂDÀܹáö¿I”Úâ&Å_”‚ †]iC<?–j~¨ÿ’ –ö%’D"þÌ4§ïÚP{0‡žþš(ó4‘ó1dsf:}坴“µ4äw¢½ÆŒ¯ÒŒ\”‘ t*Ñ¡Þi¢À8 4¦ ¤“
Ç1ÞF—Vw>Í)•%2Ú.ÝLâ†éÖñ“†¥EȏèAÙV„{ìÐ?ì–=Nê+‡Ë›¤ÂM'š´ø'}É_Ájêþç  €›£(¾vm̆õ‘ªÀðôl Þ«%èçUòø¾Ìç\=à±Ä?m„2\‘äv‘™F4¡‚‘ùÙƒ‚“®íÏi‚ðìâ¢3žm!§!Ýáì|*Ïà5È1éà¯ø7Bgœ0‚ÿ¶™Öîª.e˜u+K2©·g†u¾ø<âü¯Þªß
sÿ%,ZNZ‡Á·’°¡~¬J ß9"ñ# ³ÂÇÕ¦•¿ê y¦øhËÒ{ë•tk§JY÷²S)…?jŽ‰„oc†‹¹¥2Ë`K]ƒVq‚)Ì3aIðÉù×RèL<vjóé[9h‰Žèn“»­x„Å^ùø]àâìxol¾ Lx¾#’t%@­¢˜ÁÙè
”xZ
³È.¹”ožÍ%MÚDy¡;¬U•k³õ˜;o ÷ ¹Þþ@]„›–Fxª¦è-ë!xa׻ዌ#î¡I_æœÆ^ÇŠÁûÕíJá©oFlwî'øº׬U¼ªã=ÉcG,Ñ

´^úQ$ÂìÁÄ(tÄâŒË€Æ¯ÇÙS˜r´éÇ¥¬hmÊ\Þ3ÊJû†4áôÒ…Çãô˜à~h ŠQ<Š÷p¼íë.ñ‹Ï˜»hýMS×èxŽ£ì|(,²½74

¸#…¬ "SÉ?WÉ¿¡ýV0lØòÏö…}]ʹ¨¡Ü4åwa/Š~-Âî ³  ÕÛù¬þb6à`ô Ój´øÆ›.j]꣫ rØZ¯U7ïhm|!sèüÈÕ»i?ϳBžRo?Ì€{/f
'¿Ö&GªŠV˜ê HˆŠ,” ˜(–VîëUZöÕ…xçC†æÐúO"•í|A@Š¬d›BRyAA ¢Y"ã¦úwy:cWðW¾¦OE»{úÏ(šR}Êj¯‰^øÂþÁªùÉÕ ‹kÉ΃ݰíµ+þ?ë£Ö5¾%}Ú¨ú´&‘䉁¿5¯çLö Ǧï]0åLD¶+ò7†jBR{ESèt)žBÙ¯N6¾ü#‡Fa5´¹“”>BNç¤YÎ,¼0ÈöÚ6sBØaâ~bèO…C=˜Ýæ9—tÎKÕàCg»ù LÔJ%‡Z¨ÿ\;â¬GäïÆk<ØqõLF§Z1θÐè"¯†Í²+`ÓÀ05ƒÈø¹ Ü0Of2®×GÇYíÖªæLð±þo
Y·¾ëÎfÊ Ôȹ:3 ÇÛŸšƒÅÿ¹B®‘B)h÷éû=ª÷k
õM#ÜÂ=‹—_ã3KËW业Qäk*]}á Uoæ³røˆí­ä
^
™]_žöJÅsN÷/<Sž-u–‚P74hÂò|ÇùZñ ¾šQp\tåò"I¸Ë“×½
&âòí/‚Hµ-”ûÒaǾŠgÜÕ»úšMk
¦éi ]((€$:{Ä̏[‚¤cd­—3ðAù´üQÕ.33Ÿ­ŽÍk÷gûyªÅ«ÎÜ* È  Dþ¸½RÃÊe°B9äÛ)œ,ͤ ÿ¤ú^òTÛ¼ùĬW·UÖ9æ
+|5d6W4¤¬‘$ø3nÆ3É^.ÙG´p¬››ÌßË‘8[Keó;Mø‚w—~
¥›×oâ`ò¬ &[|‚/²—¢ùرCpà ÜЍÁdé Ù¿•MM”[3rÏ€tã`ܸ‹¯YL¤r±jÊ Q«ô¶kû2öbd+¹U®wˁƒØ/ÙÂÈäÒÑz8$ œmCº¨âìøGÙerŽüΙ(ì´|OlÍÓ¡XdÙÍûý˜ÎûæúP‰Z²ŽÁô_©Y\ó>9;:¸ó@JçЕ õÓâç¶ø ‘Ûu¥ŸÌ\¦Ïsœ<_+¡Ïs5{E¦ƒ%h/ÌÁuVs/Ç›ÆÍÀ¿auRàü×ÂàÕ¦&˜‚³*
2iÚƒZìñ$Éβg/½£E§±I±¦ü ”•ëFºvË-ZÖó+üšÄÀ$sÑÚn=²Ðì•ý5
¯àá6gx²ì·F˜ÄGm²G[Néãøµ3x7@”?{A´6 “Ës¨íøyCA¥ÌXMT(‹4j=¹¯ÔŠ PÝBŠø6`u
ú8qx ÊYó¢W:¯ÁÀF1Ü!Èäd".ÉŽt«Ê\š²¨‹é~ÁìÃû׍/vI†PGIæ²t7_oêù¹Âñ½^ân‘H=#wὁ^¤= G-Õ‘—”êñ“ÀÕíc©†wQƒ‚MÙdùšY¾8 S}Èè4ÅîÇéçR» RØÀóàÑü‘yŠE‡¢¸b_ñ(x®³UúÍý¿ì
DuãZåvZb¨‹°é“]ýÂvwùQYý :Æ;†æFRãìç ãRW¿áfl_¤ìž ça„BÔ[üÔ$(;.¢]²ªÀàþeʹhÙ,•ŽI4‰.Jœ¢’ ðŒGRaÀ7@TÏž n‹ØK…»R Ù»aÆ]ÓóÍkGÙ:#ýQ"^€î)}ȹ~+xUÕž¥ÏRWå““ãE4—”‘(,d,•OÇUNœ¼¸ˆÊËI|©ZÓš¤RÒ×Érà­6H*ÈnAºåŒR(Ș'é¨QÝn÷üsÊnóÍßjๆÅ%±B%sÍ/\ÉT?ï«dR¬L¸êð
~*9o«èþI\½lÃrïlÝçãj‰¼Aû>Ø®¿æ™ÌQ8Ž‘úK9‘«V pÿü)Í+Ì8qiÊ0°6µ”©5ü….¯S9¦2ž¡Cø| –‰gSô[ À׳ï¢Hµwp<´Øò 'ÊòÍl+Bª- 
P/b r5
ìlaÛÂH%ޢΟڐÁ«c øøqTÿë¶äŒŠ,oTòh`‹¦»þõ‡¬™iÇ´ÀÐÃtÚÁå…ÞWK ®uÂòÔ_¦K(ŒPàŽ ÃÞ^Ò<C»‚£l?s’ ªn 1]7ÈÀtÖ̍!ýâôªô-„¿‹å<A¹ºP4ÂQyÖ)]Nðt‡tG²gÁ ‚E„Füж²¹7F(ÃQÏQÕ賲ʙ§ÉBgèª0¨ö‘ue¿è+`ù$–á*P ³Ü3Hé»Id&„XÀâ\÷¾Q¤ÚÕ1ÌC‰fö‘·N¹É¡Æ%X.ÿÄ1;§…ìï66J¨[gg ³f ÒÛqŒ ½ÃÀ‡ÂŒ’pº^{ÕØg}dÒ^˜ÉÊ1 盀¼ê+©„d_@üµž“EŸæjŒÁ;®TßLQßÖ”žT4 z•©ž» ¥v; ŽœIß7 ñEFÕÓÓ–CŽY”@†IÙÉÑÁ‰ÜŽUóàO5:¶›0Zî¡©UP´Å̏‹~ XNvä¸
‰’7ò¢„lÂÏÇ‹7¬ãAþÉ6ƒ9ï7Óñ¨µIñ¶ÈA∭/!*<˜ƒ³i{~^jÌSI7g þ7À‘¯í”ûa~îk¶ê ž®lâ[w(ÿn“aîé ’8þ ¯õfå “»¦ ⠽Οœ­]¼tI?#rÑíyûE™ÌW™Ækñ@… °ËÍö² ÎÔ¨qÊJñ
dŸ#âx?¥X|
ªlÅ‘ö?^ì?8MÝ#*G¨²É™¯ÆÍ|Xhìk?ô¬sf»ÒGÞN UÛœ–ÛÑÅ…”RUåRGS©GÙÛå¤~h”D»RžVü{ÛHÓÃN÷D è¦-
[eRLŽÉ;Z†I½›B
÷ª{©GT4R–^!ÖFÛfÙ©œ–ÛVŽÑ;®WÝ4] ß'`u$„ej7ý¶–V!ÛÑÅ…”RUåRGS©GV6¤~h”–N!×D»RSeR÷»îƒA¹d÷ÑÏôSíÛÜ»[¤JÒ÷j­-òþlM;•ã.y– ·v(µÛï÷Š` OhÇÀªê6ÑÚ…rá·&#

offline
  • diarno  Male
  • Anti Malware Fighter
    Rank 2
  • Pridružio: 15 Jun 2007
  • Poruke: 5572

Udji na taj USB i obrisi fajl abk.bat. To bi bilo sve.

Ko je trenutno na forumu
 

Ukupno su 1014 korisnika na forumu :: 33 registrovanih, 5 sakrivenih i 976 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: _Rade, A.R.Chafee.Jr., Aleksandar Tomiæ, Asparagus, bato, bobomicek, bojankrstc, Boris90, BraneS, cavatina, cemix, darcaud, debeli, Denaya, flash12, ILGromovnik, Kubovac, kubura91, kybonacci, mercedesamg, milenko crazy north, Milometer, mrav pesadinac, nikoladim, ozzy, pein, royst33, S.Palestinac, Silvertooth, solic, VJ, voja64, Zmaj Ognjeni Vuk