1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive xpvirusHelp

Discussion in 'Malware and Virus Removal Archive' started by Barrall, 2010/04/16.

  1. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    [Inactive] xpvirusHelp

    [deleted by admin]
     
  2. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    DS (Ver_10-03-17.01) - NTFSx86
    Run by Bobbi Barrall at 8:01:04.89 on Fri 04/16/2010
    Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_18
    Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1022.293 [GMT -4:00]

    AV: Microsoft Security Essentials *On-access scanning enabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}

    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    C:\WINDOWS\Explorer.exe
    C:\WINDOWS\system32\spoolsv.exe
    svchost.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\Program Files\iPod\bin\iPodService.exe
    C:\WINDOWS\system32\dlcccoms.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\WINDOWS\system32\cidaemon.exe
    C:\WINDOWS\system32\netdde.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\Bobbi Barrall\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uSearch Page = hxxp://www.google.com/hws/sb/dell-usuk/en/side.html?channel=us
    uSearch Bar = hxxp://www.google.com/hws/sb/dell-usuk/en/side.html?channel=us
    uDefault_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
    uInternet Settings,ProxyOverride = *.local
    mSearchAssistant = hxxp://www.google.com/hws/sb/dell-usuk/en/side.html?channel=us
    mWinlogon: Shell=Explorer.exe rundll32.exe mwyb.wdo hudrv
    mWinlogon: Userinit=c:\windows\system32\userinit.exe,c:\windows\system32\sdra64.exe,
    BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
    BHO: ABB Toolbar: {4e7bd74f-2b8d-469e-82be-fd60bb9aae3f} - c:\progra~1\abbtoo~1\ABBTOO~1.DLL
    BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
    BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\bae\BAE.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: ABB Toolbar: {4e7bd74f-2b8d-469e-82be-fd60bb9aae3f} - c:\progra~1\abbtoo~1\ABBTOO~1.DLL
    TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
    uRun: [DellSupport] "c:\program files\dell support\DSAgnt.exe" /startup
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    uRun: [Hide-The-IP] "c:\program files\hide the ip 2010\HideTheIP.exe" /startup
    mRun: [SigmatelSysTrayApp] stsystra.exe
    mRun: [ATIPTA] "c:\program files\ati technologies\ati control panel\atiptaxx.exe "
    mRun: [DMXLauncher] c:\program files\dell\media experience\DMXLauncher.exe
    mRun: [ISUSPM Startup] "c:\program files\common files\installshield\updateservice\isuspm.exe" -startup
    mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
    mRun: [<NO NAME>]
    mRun: [DLA] c:\windows\system32\dla\DLACTRLW.EXE
    mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
    mRun: [MSSE] "c:\program files\microsoft security essentials\msseces.exe" -hide -runkey
    mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe "
    mRun: [DLCCCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\DLCCtime.dll,_RunDLLEntry@16
    mRun: [dlccmon.exe] "c:\program files\dell photo aio printer 924\dlccmon.exe "
    mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
    mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe "
    dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\digita~1.lnk - c:\program files\digital line detect\DLG.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - {552781AF-37E4-4FEE-920A-CED9E648EADD} - c:\program files\common files\microsoft shared\encarta search bar\ENCSBAR.DLL
    IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
    LSP: c:\windows\system32\AVLibrary.dll
    Trusted Zone: musicmatch.com\online
    DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} - hxxp://www.worldwinner.com/games/shared/wwlaunch.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
    DPF: {A52FBD2B-7AB3-4F6B-90E3-91C772C5D00F} - hxxp://www.worldwinner.com/games/v57/wof/wof.cab
    DPF: {C82BB209-F528-46F9-96D5-69DEF7260916} - hxxp://www.worldwinner.com/games/v45/mysterypi/mysterypi.cab
    DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
    Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
    Notify: avgrsstarter - avgrsstx.dll
    AppInit_DLLs: c:\progra~1\google\google~1\goec62~1.dll c:\windows\system32\gukagigi.dll,ripagupa.dll c:\windows\system32\wufefudi.dll
    STS: {c520d112-d7c8-48d0-a4c6-8c2366d75639} - No File
    LSA: Notification Packages = scecli tipigawi.dll ervap9.dll

    ================= FIREFOX ===================

    FF - ProfilePath - c:\docume~1\bobbib~1\applic~1\mozilla\firefox\profiles\utbcvxw4.default\
    FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=VE3D01&q=
    FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/
    FF - component: c:\documents and settings\bobbi barrall\application data\mozilla\firefox\profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
    FF - component: c:\documents and settings\bobbi barrall\application data\mozilla\firefox\profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
    FF - plugin: c:\documents and settings\bobbi barrall\application data\facebook\npfbplugin_1_0_3.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\NPcol308.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npCouponPrinter.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npMozCouponPrinter.dll
    FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
    FF - plugin: c:\program files\virtual earth 3d\npVE3D.dll
    FF - HiddenExtension: XULRunner: {F9A67035-9FA1-4527-BCE9-93D8CC1FDDC3} - c:\documents and settings\bobbi barrall\local settings\application data\{F9A67035-9FA1-4527-BCE9-93D8CC1FDDC3}
    FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
    FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}

    ---- FIREFOX POLICIES ----
    c:\program files\mozilla firefox\greprefs\all.js - pref( "ui.use_native_colors ", true);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "ui.use_native_popup_windows ", false);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.enable_click_image_resizing ", true);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "accessibility.browsewithcaret_shortcut.enabled ", true);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "javascript.options.mem.high_water_mark ", 32);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "javascript.options.mem.gc_frequency ", 1600);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "network.auth.force-generic-ntlm ", false);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "svg.smil.enabled ", false);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "ui.trackpoint_hack.enabled ", -1);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.formfill.debug ", false);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.formfill.agedWeight ", 2);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.formfill.bucketSize ", 1);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.formfill.maxTimeGroupings ", 25);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.formfill.timeGroupingSize ", 604800);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.formfill.boundaryWeight ", 25);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "browser.formfill.prefixWeight ", 5);
    c:\program files\mozilla firefox\greprefs\all.js - pref( "html5.enable ", false);
    c:\program files\mozilla firefox\greprefs\security-prefs.js - pref( "security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref ", true);
    c:\program files\mozilla firefox\greprefs\security-prefs.js - pref( "security.ssl.renego_unrestricted_hosts ", " ");
    c:\program files\mozilla firefox\greprefs\security-prefs.js - pref( "security.ssl.treat_unsafe_negotiation_as_broken ", false);
    c:\program files\mozilla firefox\greprefs\security-prefs.js - pref( "security.ssl.require_safe_negotiation ", false);
    c:\program files\mozilla firefox\greprefs\security-prefs.js - pref( "security.ssl3.rsa_seed_sha ", true);
    c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref( "app.update.download.backgroundInterval ", 600);
    c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref( "app.update.url.manual ", "http://www.firefox.com ");
    c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref( "browser.search.param.yahoo-fr-ja ", "mozff ");
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name ", "chrome://browser/locale/browser.properties ");
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description ", "chrome://browser/locale/browser.properties ");
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "xpinstall.whitelist.add ", "addons.mozilla.org ");
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "xpinstall.whitelist.add.36 ", "getpersonas.com ");
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "lightweightThemes.update.enabled ", true);
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "browser.allTabs.previews ", false);
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "plugins.hide_infobar_for_outdated_plugin ", false);
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "plugins.update.notifyUser ", false);
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "toolbar.customization.usesheet ", false);
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.enable ", false);
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.max ", 20);
    c:\program files\mozilla firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.cachetime ", 20);

    ============= SERVICES / DRIVERS ===============

    R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2009-6-18 149040]
    S2 AVRedirector;AVRedirector;c:\program files\hide the ip 2010\avredirector.exe --> c:\program files\hide the ip 2010\AVRedirector.exe [?]
    S3 Avgfwdx;Avgfwdx;c:\windows\system32\drivers\avgfwdx.sys --> c:\windows\system32\drivers\avgfwdx.sys [?]
    S3 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwdx.sys --> c:\windows\system32\drivers\avgfwdx.sys [?]

    ============== File Associations ===============

    .exe=secfile

    =============== Created Last 30 ================

    2010-04-14 11:11:07 664 ----a-w- c:\windows\system32\d3d9caps.dat
    2010-04-09 14:51:04 466944 ----a-w- c:\windows\system32\BSTIEPrintCtl1.dll
    2010-04-08 10:50:51 0 d-----w- c:\program files\iPod
    2010-04-08 10:50:33 0 d-----w- c:\program files\iTunes
    2010-04-08 10:50:33 0 d-----w- c:\docume~1\alluse~1\applic~1\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
    2010-04-08 10:42:17 0 d-----w- c:\program files\Bonjour
    2010-04-06 20:23:54 0 d-----w- c:\docume~1\bobbib~1\applic~1\Facebook
    2010-04-05 18:51:19 57432 ----a-w- c:\docume~1\bobbib~1\applic~1\GDIPFONTCACHEV1.DAT
    2010-03-18 01:53:42 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
    2010-03-18 01:53:42 69632 ----a-w- c:\windows\system32\QuickTime.qts

    ==================== Find3M ====================

    2010-04-08 11:39:41 5120 ----a-w- c:\docume~1\bobbib~1\applic~1\wklnhst.dat
    2010-04-07 16:00:25 3350 --sha-w- c:\windows\system32\KGyGaAvL.sys
    2010-03-10 06:15:52 420352 ----a-w- c:\windows\system32\vbscript.dll
    2010-03-10 06:15:52 420352 ----a-w- c:\windows\system32\dllcache\vbscript.dll
    2010-03-09 22:01:56 42824 ---ha-w- c:\windows\system32\mlfcache.dat
    2010-02-26 04:18:09 30784 ----a-w- c:\windows\system32\drivers\ewkvixrj.sys
    2010-02-26 04:14:52 30784 ----a-w- c:\windows\system32\drivers\huaooups.sys
    2010-02-25 15:54:36 11070976 ------w- c:\windows\system32\dllcache\ieframe.dll
    2010-02-24 14:16:06 181632 ------w- c:\windows\system32\MpSigStub.exe
    2010-02-24 12:31:30 454016 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
    2010-02-24 12:31:30 454016 ------w- c:\windows\system32\dllcache\mrxsmb.sys
    2010-02-24 09:54:25 173056 ------w- c:\windows\system32\dllcache\ie4uinit.exe
    2010-02-17 15:57:54 2063744 ------w- c:\windows\system32\dllcache\ntkrnlpa.exe
    2010-02-16 17:37:57 2186880 ------w- c:\windows\system32\dllcache\ntoskrnl.exe
    2010-02-16 17:35:40 2143744 ----a-w- c:\windows\system32\ntoskrnl.exe
    2010-02-16 17:35:40 2143744 ------w- c:\windows\system32\dllcache\ntkrnlmp.exe
    2010-02-16 16:57:54 2021888 ----a-w- c:\windows\system32\ntkrnlpa.exe
    2010-02-16 16:57:54 2021888 ------w- c:\windows\system32\dllcache\ntkrpamp.exe
    2010-02-12 22:36:19 411368 ----a-w- c:\windows\system32\deploytk.dll
    2010-02-12 15:46:14 91424 ----a-w- c:\windows\system32\dnssd.dll
    2010-02-12 15:46:14 107808 ----a-w- c:\windows\system32\dns-sd.exe
    2010-02-12 04:47:05 100864 ----a-w- c:\windows\system32\6to4svc.dll
    2010-02-12 04:47:05 100864 ------w- c:\windows\system32\dllcache\6to4svc.dll
    2010-02-11 12:01:43 226880 ------w- c:\windows\system32\dllcache\tcpip6.sys

    ============= FINISH: 8:02:23.76 ===============
     

  3. to hide this advert.

  4. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_10-03-17.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume2
    Install Date: 2/1/2010 9:20:34 PM
    System Uptime: 4/16/2010 7:02:31 AM (1 hours ago)

    Motherboard: Dell Inc. | | 0HJ054
    Processor: Intel(R) Pentium(R) D CPU 2.66GHz | Microprocessor | 2660/533mhz
    Processor: Intel(R) Pentium(R) D CPU 2.66GHz | Microprocessor | 2660/533mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 70 GiB total, 52.48 GiB free.
    D: is CDROM ()
    E: is Removable

    ==== Disabled Device Manager Items =============

    Class GUID: {4D36E96B-E325-11CE-BFC1-08002BE10318}
    Description: HID Keyboard Device
    Device ID: HID\VID_413C&PID_2105\6&73B5C53&0&0000
    Manufacturer: (Standard keyboards)
    Name: HID Keyboard Device
    PNP Device ID: HID\VID_413C&PID_2105\6&73B5C53&0&0000
    Service: kbdhid

    ==== System Restore Points ===================

    RP32: 2/10/2010 12:52:37 PM - Microsoft Antimalware Checkpoint
    RP33: 2/11/2010 1:55:01 PM - System Checkpoint
    RP34: 2/12/2010 10:19:19 AM - Software Distribution Service 3.0
    RP35: 2/12/2010 10:44:55 AM - Software Distribution Service 3.0
    RP36: 2/12/2010 10:48:59 AM - Microsoft Antimalware Checkpoint
    RP37: 2/12/2010 5:36:09 PM - Installed Java(TM) 6 Update 18
    RP38: 2/13/2010 3:45:43 AM - Software Distribution Service 3.0
    RP39: 2/13/2010 3:51:08 AM - Software Distribution Service 3.0
    RP40: 2/14/2010 5:18:04 AM - System Checkpoint
    RP41: 2/15/2010 3:52:24 PM - System Checkpoint
    RP42: 2/15/2010 7:16:19 PM - Software Distribution Service 3.0
    RP43: 2/16/2010 2:21:55 PM - Installed Windows XP WIC.
    RP44: 2/17/2010 2:42:20 PM - System Checkpoint
    RP45: 2/18/2010 6:37:30 PM - System Checkpoint
    RP46: 2/19/2010 7:31:10 AM - Microsoft Antimalware Checkpoint
    RP47: 2/19/2010 7:33:41 AM - Software Distribution Service 3.0
    RP48: 2/19/2010 7:55:17 AM - Installed Windows Installer Clean Up
    RP49: 2/20/2010 8:10:32 AM - System Checkpoint
    RP50: 2/21/2010 3:09:49 AM - Microsoft Antimalware Checkpoint
    RP51: 2/22/2010 3:10:34 AM - System Checkpoint
    RP52: 2/23/2010 3:26:59 AM - System Checkpoint
    RP53: 2/23/2010 8:31:07 AM - Microsoft Antimalware Checkpoint
    RP54: 2/24/2010 9:19:28 AM - System Checkpoint
    RP55: 2/25/2010 9:50:53 AM - Installed iTunes
    RP56: 2/25/2010 11:14:01 PM - Microsoft Antimalware Checkpoint
    RP57: 2/25/2010 11:15:06 PM - Software Distribution Service 3.0
    RP58: 2/25/2010 11:24:29 PM - Software Distribution Service 3.0
    RP59: 2/26/2010 2:15:06 AM - Software Distribution Service 3.0
    RP60: 2/26/2010 3:00:17 AM - Software Distribution Service 3.0
    RP61: 2/26/2010 3:58:09 PM - Software Distribution Service 3.0
    RP62: 2/27/2010 12:55:22 AM - Microsoft Antimalware Checkpoint
    RP63: 2/27/2010 1:54:18 AM - Software Distribution Service 3.0
    RP64: 2/27/2010 3:01:45 AM - Software Distribution Service 3.0
    RP65: 2/28/2010 2:08:56 AM - Software Distribution Service 3.0
    RP66: 2/28/2010 3:00:16 AM - Software Distribution Service 3.0
    RP67: 2/28/2010 3:46:35 AM - Microsoft Antimalware Checkpoint
    RP68: 3/1/2010 1:59:26 AM - Software Distribution Service 3.0
    RP69: 3/1/2010 3:00:19 AM - Software Distribution Service 3.0
    RP70: 3/2/2010 1:59:26 AM - Software Distribution Service 3.0
    RP71: 3/3/2010 1:59:33 AM - Software Distribution Service 3.0
    RP72: 3/3/2010 3:20:04 AM - Microsoft Antimalware Checkpoint
    RP73: 3/4/2010 8:32:13 AM - System Checkpoint
    RP74: 3/4/2010 10:58:53 AM - Software Distribution Service 3.0
    RP75: 3/5/2010 1:59:11 AM - Software Distribution Service 3.0
    RP76: 3/6/2010 1:59:28 AM - Software Distribution Service 3.0
    RP77: 3/6/2010 2:10:35 AM - Microsoft Antimalware Checkpoint
    RP78: 3/7/2010 1:47:00 AM - Software Distribution Service 3.0
    RP79: 3/7/2010 3:00:15 AM - Software Distribution Service 3.0
    RP80: 3/8/2010 1:44:36 AM - Software Distribution Service 3.0
    RP81: 3/8/2010 9:25:37 AM - Software Distribution Service 3.0
    RP82: 3/9/2010 2:34:30 AM - Software Distribution Service 3.0
    RP83: 3/10/2010 1:45:38 AM - Software Distribution Service 3.0
    RP84: 3/10/2010 3:00:19 AM - Software Distribution Service 3.0
    RP85: 3/11/2010 1:58:25 AM - Software Distribution Service 3.0
    RP86: 3/11/2010 3:00:16 AM - Software Distribution Service 3.0
    RP87: 3/11/2010 4:29:17 PM - Software Distribution Service 3.0
    RP88: 3/12/2010 2:08:54 AM - Software Distribution Service 3.0
    RP89: 3/12/2010 11:14:06 AM - Software Distribution Service 3.0
    RP90: 3/13/2010 2:28:22 AM - Software Distribution Service 3.0
    RP91: 3/13/2010 3:00:17 AM - Software Distribution Service 3.0
    RP92: 3/13/2010 11:51:54 AM - Software Distribution Service 3.0
    RP93: 3/14/2010 2:50:57 AM - Software Distribution Service 3.0
    RP94: 3/15/2010 1:50:57 AM - Software Distribution Service 3.0
    RP95: 3/15/2010 11:51:57 AM - Software Distribution Service 3.0
    RP96: 3/16/2010 1:50:50 AM - Software Distribution Service 3.0
    RP97: 3/16/2010 11:52:05 AM - Software Distribution Service 3.0
    RP98: 3/17/2010 1:50:23 AM - Software Distribution Service 3.0
    RP99: 3/17/2010 11:51:58 AM - Software Distribution Service 3.0
    RP100: 3/18/2010 1:50:39 AM - Software Distribution Service 3.0
    RP101: 3/18/2010 11:52:14 AM - Software Distribution Service 3.0
    RP102: 3/19/2010 1:53:16 AM - Software Distribution Service 3.0
    RP103: 3/19/2010 11:52:43 AM - Software Distribution Service 3.0
    RP104: 3/20/2010 2:29:32 AM - Software Distribution Service 3.0
    RP105: 3/20/2010 11:52:10 AM - Software Distribution Service 3.0
    RP106: 3/21/2010 1:54:02 AM - Software Distribution Service 3.0
    RP107: 3/21/2010 3:00:17 AM - Software Distribution Service 3.0
    RP108: 3/21/2010 5:01:33 PM - Software Distribution Service 3.0
    RP109: 3/22/2010 1:53:26 AM - Software Distribution Service 3.0
    RP110: 3/22/2010 5:00:56 PM - Software Distribution Service 3.0
    RP111: 3/23/2010 1:53:32 AM - Software Distribution Service 3.0
    RP112: 3/23/2010 5:01:38 PM - Software Distribution Service 3.0
    RP113: 3/24/2010 1:53:35 AM - Software Distribution Service 3.0
    RP114: 3/24/2010 5:01:41 PM - Software Distribution Service 3.0
    RP115: 3/25/2010 1:53:18 AM - Software Distribution Service 3.0
    RP116: 3/25/2010 5:00:51 PM - Software Distribution Service 3.0
    RP117: 3/26/2010 1:53:53 AM - Software Distribution Service 3.0
    RP118: 3/26/2010 10:56:11 AM - Removed Adobe Reader 6.0.1
    RP119: 3/26/2010 10:56:26 AM - Removed Adobe Acrobat - Reader 6.0.2 Update
    RP120: 3/26/2010 5:01:44 PM - Software Distribution Service 3.0
    RP121: 3/27/2010 1:53:48 AM - Software Distribution Service 3.0
    RP122: 3/27/2010 5:00:58 PM - Software Distribution Service 3.0
    RP123: 3/28/2010 1:58:59 AM - Software Distribution Service 3.0
    RP124: 3/29/2010 2:03:45 AM - Software Distribution Service 3.0
    RP125: 3/29/2010 5:02:26 PM - Software Distribution Service 3.0
    RP126: 3/30/2010 1:53:05 AM - Software Distribution Service 3.0
    RP127: 3/30/2010 5:06:43 PM - Software Distribution Service 3.0
    RP128: 3/31/2010 1:53:28 AM - Software Distribution Service 3.0
    RP129: 3/31/2010 3:00:20 AM - Software Distribution Service 3.0
    RP130: 4/1/2010 2:14:11 AM - Software Distribution Service 3.0
    RP131: 4/1/2010 3:00:17 AM - Software Distribution Service 3.0
    RP132: 4/2/2010 2:13:46 AM - Software Distribution Service 3.0
    RP133: 4/3/2010 2:26:41 AM - Software Distribution Service 3.0
    RP134: 4/4/2010 2:14:01 AM - Software Distribution Service 3.0
    RP135: 4/5/2010 2:13:29 AM - Software Distribution Service 3.0
    RP136: 4/6/2010 2:13:54 AM - Software Distribution Service 3.0
    RP137: 4/7/2010 2:13:45 AM - Software Distribution Service 3.0
    RP138: 4/8/2010 2:15:10 AM - Software Distribution Service 3.0
    RP139: 4/8/2010 6:37:01 AM - Removed Apple Application Support
    RP140: 4/8/2010 6:41:10 AM - Removed Apple Application Support
    RP141: 4/8/2010 6:43:23 AM - Removed Apple Mobile Device Support
    RP142: 4/9/2010 2:13:58 AM - Software Distribution Service 3.0
    RP143: 4/10/2010 2:14:18 AM - Software Distribution Service 3.0
    RP144: 4/11/2010 1:51:03 AM - Software Distribution Service 3.0
    RP145: 4/11/2010 3:00:17 AM - Software Distribution Service 3.0
    RP146: 4/11/2010 5:37:55 PM - Software Distribution Service 3.0
    RP147: 4/12/2010 1:50:25 AM - Software Distribution Service 3.0
    RP148: 4/12/2010 5:36:32 PM - Software Distribution Service 3.0
    RP149: 4/13/2010 1:50:29 AM - Software Distribution Service 3.0
    RP150: 4/13/2010 5:36:47 PM - Software Distribution Service 3.0
    RP151: 4/14/2010 1:50:07 AM - Software Distribution Service 3.0
    RP152: 4/14/2010 3:00:24 AM - Software Distribution Service 3.0
    RP153: 4/15/2010 3:00:17 AM - Software Distribution Service 3.0
    RP154: 4/15/2010 7:06:59 AM - Software Distribution Service 3.0
    RP155: 4/15/2010 8:02:17 AM - Software Distribution Service 3.0
    RP156: 4/16/2010 7:09:04 AM - Software Distribution Service 3.0

    ==== Installed Programs ======================

    924PLC32
    ABB Toolbar
    ABBYY FineReader 6.0 Sprint
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Reader 7.0
    America Online (Choose which version to remove)
    AOL Coach Version 1.0(Build:20040229.1 en)
    AOL Connectivity Services
    AOLIcon
    Apple Application Support
    Apple Mobile Device Support
    Apple Software Update
    ATI Control Panel
    ATI Display Driver
    Banctec Service Agreement
    Bing Maps 3D
    Bonjour
    CinepPlayer 30 Update
    Conexant D850 56K V.9x DFVc Modem
    Corel Photo Album 6
    Coupon Printer for Windows
    Dell CinePlayer
    Dell Digital Jukebox Driver
    Dell Driver Reset Tool
    Dell Game Console
    Dell Media Experience
    Dell Photo AIO Printer 924
    Dell Support 3.1
    Dell System Restore
    Digital Content Portal
    Digital Line Detect
    Documentation & Support Launcher
    EarthLink setup files
    EducateU
    ELIcon
    Facebook Plug-In
    Games, Music, & Photos Launcher
    Get High Speed Internet!
    Google Desktop
    Hide The IP 2010
    High Definition Audio Driver Package - KB835221
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    Hotfix for Windows XP (KB896256)
    Hotfix for Windows XP (KB906569)
    Hotfix for Windows XP (KB908673)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB954550-v5)
    Hotfix for Windows XP (KB961118)
    Hotfix for Windows XP (KB976098-v2)
    Hotfix for Windows XP (KB979306)
    Intel(R) PRO Network Connections Drivers
    Intel(R) PROSet for Wired Connections
    Internet Service Offers Launcher
    iTunes
    J2SE Runtime Environment 5.0 Update 6
    Java Auto Updater
    Java(TM) 6 Update 18
    Learn2 Player (Uninstall Only)
    Macromedia Shockwave Player
    Malwarebytes' Anti-Malware
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Security Update (KB953297)
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft Antimalware
    Microsoft Application Error Reporting
    Microsoft Digital Image Library 9 - Blocker
    Microsoft Digital Image Standard 2006
    Microsoft Digital Image Standard 2006 Editor
    Microsoft Digital Image Standard 2006 Library
    Microsoft Encarta Encyclopedia Standard 2006
    Microsoft Money 2006
    Microsoft Plus! Digital Media Edition Installer
    Microsoft Plus! Photo Story 2 LE
    Microsoft Security Essentials
    Microsoft Silverlight
    Microsoft Streets & Trips 2006
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Word 2002
    Microsoft Works
    Microsoft Works Suite 2006 Setup Launcher
    Microsoft Works Suite Add-in for Microsoft Word
    MobileMe Control Panel
    Modem Helper
    Mozilla Firefox (3.6.3)
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    MSXML 6 Service Pack 2 (KB973686)
    Musicmatch® Jukebox
    NetWaiting
    NetZeroInstallers
    PhotoScape
    QuickTime
    RealPlayer Basic
    Roxio DLA
    Roxio RecordNow Audio
    Roxio RecordNow Copy
    Roxio RecordNow Data
    Safari
    Search Assist
    Security Update for Step By Step Interactive Training (KB923723)
    Security Update for Windows Internet Explorer 8 (KB971961)
    Security Update for Windows Internet Explorer 8 (KB976325)
    Security Update for Windows Internet Explorer 8 (KB978207)
    Security Update for Windows Internet Explorer 8 (KB981332)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player (KB954155)
    Security Update for Windows Media Player (KB968816)
    Security Update for Windows Media Player (KB973540)
    Security Update for Windows XP (KB896358)
    Security Update for Windows XP (KB896423)
    Security Update for Windows XP (KB896424)
    Security Update for Windows XP (KB899588)
    Security Update for Windows XP (KB899591)
    Security Update for Windows XP (KB901214)
    Security Update for Windows XP (KB904706)
    Security Update for Windows XP (KB908519)
    Security Update for Windows XP (KB908531)
    Security Update for Windows XP (KB911562)
    Security Update for Windows XP (KB911567)
    Security Update for Windows XP (KB912919)
    Security Update for Windows XP (KB914388)
    Security Update for Windows XP (KB916281)
    Security Update for Windows XP (KB917159)
    Security Update for Windows XP (KB917344)
    Security Update for Windows XP (KB918439)
    Security Update for Windows XP (KB921883)
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB944338-v2)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956844)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958470)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958869)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB960859)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB969059)
    Security Update for Windows XP (KB969947)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB970430)
    Security Update for Windows XP (KB971468)
    Security Update for Windows XP (KB971486)
    Security Update for Windows XP (KB971557)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB971657)
    Security Update for Windows XP (KB971961)
    Security Update for Windows XP (KB972270)
    Security Update for Windows XP (KB973354)
    Security Update for Windows XP (KB973507)
    Security Update for Windows XP (KB973525)
    Security Update for Windows XP (KB973869)
    Security Update for Windows XP (KB973904)
    Security Update for Windows XP (KB974112)
    Security Update for Windows XP (KB974318)
    Security Update for Windows XP (KB974392)
    Security Update for Windows XP (KB974571)
    Security Update for Windows XP (KB975025)
    Security Update for Windows XP (KB975467)
    Security Update for Windows XP (KB975560)
    Security Update for Windows XP (KB975561)
    Security Update for Windows XP (KB975713)
    Security Update for Windows XP (KB977165-v2)
    Security Update for Windows XP (KB977816)
    Security Update for Windows XP (KB978037)
    Security Update for Windows XP (KB978251)
    Security Update for Windows XP (KB978262)
    Security Update for Windows XP (KB978338)
    Security Update for Windows XP (KB978601)
    Security Update for Windows XP (KB978706)
    Security Update for Windows XP (KB979309)
    Security Update for Windows XP (KB979683)
    Security Update for Windows XP (KB980232)
    Sonic Activation Module
    Sonic Update Manager
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Windows Internet Explorer 8 (KB976662)
    Update for Windows Internet Explorer 8 (KB978506)
    Update for Windows Internet Explorer 8 (KB980182)
    Update for Windows XP (KB898461)
    Update for Windows XP (KB912945)
    Update for Windows XP (KB914882)
    Update for Windows XP (KB925720)
    Update for Windows XP (KB932823-v3)
    Update for Windows XP (KB955759)
    Update for Windows XP (KB967715)
    Update for Windows XP (KB968389)
    Update for Windows XP (KB971737)
    Update for Windows XP (KB973687)
    Update for Windows XP (KB973815)
    URL Assistant
    Viewpoint Media Player
    WebCyberCoach 3.2 Dell
    WebFldrs XP
    WildTangent Web Driver
    Windows Imaging Component
    Windows Installer 3.1 (KB893803)
    Windows Installer Clean Up
    Windows Internet Explorer 8
    Windows Media Format Runtime
    Windows Media Player 10
    Windows XP Hotfix - KB873339
    Windows XP Hotfix - KB885250
    Windows XP Hotfix - KB885835
    Windows XP Hotfix - KB885884
    Windows XP Hotfix - KB887472
    Windows XP Hotfix - KB888113
    Windows XP Hotfix - KB889673
    Windows XP Hotfix - KB891781
    Works Upgrade

    ==== Event Viewer Messages From Past Week ========

    4/16/2010 7:58:58 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x8024002d: Office XP Service Pack 3.
    4/16/2010 7:33:54 AM, error: Service Control Manager [7000] - The AVRedirector service failed to start due to the following error: The system cannot find the file specified.
    4/16/2010 7:33:54 AM, error: DCOM [10005] - DCOM got error "%2" attempting to start the service AVRedirector with arguments "-Service" in order to run the server: {B1A429DB-FB06-4645-B7C0-0CC405EAD3CD}
    4/16/2010 7:32:10 AM, error: Service Control Manager [7001] - The Network DDE service depends on the Network DDE DSDM service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
    4/16/2010 7:10:28 AM, error: Service Control Manager [7023] - The Human Interface Device Access service terminated with the following error: The specified module could not be found.
    4/16/2010 7:01:00 AM, error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.79.1777.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.5605.0 Error code: 0x80072efe Error description: The connection with the server was terminated abnormally
    4/15/2010 8:30:23 AM, error: Service Control Manager [7031] - The Microsoft Antimalware Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 15000 milliseconds: Restart the service.
    4/15/2010 8:06:42 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments " " in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
    4/15/2010 8:06:15 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service netman with arguments " " in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
    4/15/2010 8:06:13 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD Fips intelppm IPSec MpFilter MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip WS2IFSL
    4/15/2010 8:06:13 AM, error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error: A device attached to the system is not functioning.
    4/15/2010 8:06:13 AM, error: Service Control Manager [7001] - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.
    4/15/2010 8:06:13 AM, error: Service Control Manager [7001] - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    4/15/2010 8:06:13 AM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error: A device attached to the system is not functioning.
    4/15/2010 8:06:13 AM, error: Service Control Manager [7001] - The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    4/15/2010 8:06:13 AM, error: Service Control Manager [7001] - The Apple Mobile Device service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
    4/15/2010 8:05:27 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments " " in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    4/15/2010 7:50:11 AM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service AVRedirector with arguments "-Service" in order to run the server: {6EEBC7FF-67DA-4B90-9251-C2C5696E4B48}
    4/15/2010 7:38:25 AM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service AVRedirector with arguments "-Service" in order to run the server: {B1A429DB-FB06-4645-B7C0-0CC405EAD3CD}
    4/15/2010 6:37:23 AM, error: Ftdisk [49] - Configuring the Page file for crash dump failed. Make sure there is a page file on the boot partition and that is large enough to contain all physical memory.
    4/15/2010 6:37:23 AM, error: Ftdisk [45] - The system could not sucessfully load the crash dump driver.
    4/15/2010 6:34:40 AM, error: Service Control Manager [7034] - The AVRedirector service terminated unexpectedly. It has done this 6 time(s).
    4/15/2010 6:34:29 AM, error: Service Control Manager [7034] - The AVRedirector service terminated unexpectedly. It has done this 5 time(s).
    4/15/2010 6:34:06 AM, error: Service Control Manager [7034] - The AVRedirector service terminated unexpectedly. It has done this 4 time(s).
    4/15/2010 6:33:04 AM, error: Service Control Manager [7034] - The AVRedirector service terminated unexpectedly. It has done this 3 time(s).
    4/15/2010 6:32:04 AM, error: Service Control Manager [7034] - The AVRedirector service terminated unexpectedly. It has done this 2 time(s).
    4/15/2010 6:31:44 AM, error: Service Control Manager [7034] - The AVRedirector service terminated unexpectedly. It has done this 1 time(s).
    4/15/2010 2:12:29 AM, error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.79.1777.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.5605.0 Error code: 0x80072efe Error description: The connection with the server was terminated abnormally
    4/14/2010 3:52:05 PM, error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.79.1777.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.5605.0 Error code: 0x80072efe Error description: The connection with the server was terminated abnormally
    4/14/2010 3:46:29 PM, error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.79.1777.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.5605.0 Error code: 0x80072efe Error description: The connection with the server was terminated abnormally
    4/14/2010 3:41:30 PM, error: Service Control Manager [7032] - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Management Instrumentation service, but this action failed with the following error: An instance of the service is already running.
    4/14/2010 3:40:03 PM, error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.79.1777.0 Update Source: Microsoft Update Server Update Stage: Search Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.5605.0 Error code: 0x80072efe Error description: The connection with the server was terminated abnormally
    4/10/2010 5:35:06 PM, error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: This operation returned because the timeout period expired.
    4/10/2010 3:55:53 PM, error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\D.

    ==== End Of File ===========================
     
  5. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    . Please Help:mad::eek:
     
  6. 2010/04/16
    Admin.

    Admin. Administrator Administrator Staff

    Joined:
    2001/12/30
    Messages:
    6,687
    Likes Received:
    107
    As posted above in the Posting Announcement

     
  7. 2010/04/16
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Please, describe your issues.

    Print these instructions out.

    NOTE. If any of the programs listed below refuse to run, try renaming executive file to something else; for instance, rename hijackthis.exe to scanner.exe

    ***VERY IMPORTANT! Make sure, you update Malwarebytes before running the scans.***


    STEP 1. Download Malwarebytes' Anti-Malware: http://www.malwarebytes.org/mbam.php to your desktop.
    (Malwarebytes is free to use as a manual scanner. Payment is only required if you wish to have it run and update automatically which is not necessary for our purposes)

    * Double-click mbam-setup.exe and follow the prompts to install the program.
    * At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    * If an update is found, it will download and install the latest version.
    * Once the program has loaded, select Perform Quick Scan, then click Scan.
    * When the scan is complete, click OK, then Show Results to view the results.
    * Be sure that everything is checked, and click Remove Selected.
    * When completed, a log will open in Notepad.
    * Post the log back here.

    The log can also be found here:
    C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
    Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

    RESTART COMPUTER!

    STEP 2. Download GMER: http://www.gmer.net/files.php, by clicking on Download EXE button.
    Alternative downloads:
    - http://majorgeeks.com/GMER_d5198.html
    - http://www.softpedia.com/get/Interne...ers/GMER.shtml
    Double click on downloaded .exe file, select Rootkit tab and click the Scan button.
    When scan is completed, click Save button, and save the results as gmer.log
    Warning ! Please, do not select the "Show all" checkbox during the scan.
    Post the log to your next reply.

    RESTART COMPUTER

    STEP 3. Download HijackThis:
    http://www.trendsecure.com/portal/en-US/tools/security_tools/hijackthis/download
    by clicking on Installer under Version 2.0.2
    [DO NOT download version 2.0.3 (beta)]
    Install, and run it.
    Post HijackThis log.
    NOTE. If you're using Vista, or 7, right click on HijackThis, and click Run as Administrator
    Do NOT attempt to "fix" anything!


    DO NOT make any other changes to your computer (like installing programs, using other cleaning tools, etc.), until it's officially declared clean!!!
     
  8. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    Malware bytes log

    Broni Thanks so much for your help! I saw another post regarding this XP Virus and I ran combo fix and hi-jack this prior to your response to my post. It seems to have cleared up the pop ups and I have use of the keyboard and I do not seem to be having any problems YET, but I know a lot of these virus hide in the registry and pop up again...I will run all the programs you suggested and post the logs. Sorry for my impatience I am using my computer for college research and panicked and it was a real experience to copy and paste individual letters from a word document i had on here just to try and post something..sorry!:rolleyes:






    Malwarebytes' Anti-Malware 1.45
    www.malwarebytes.org

    Database version: 3930

    Windows 5.1.2600 Service Pack 2
    Internet Explorer 8.0.6001.18702

    4/16/2010 1:23:23 PM
    mbam-log-2010-04-16 (13-23-23).txt

    Scan type: Quick scan
    Objects scanned: 109732
    Time elapsed: 3 minute(s), 43 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 10
    Registry Values Infected: 0
    Registry Data Items Infected: 1
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{494e6cec-7483-a4ee-0938-895519a84bc7} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{3446af26-b8d7-199b-4cfc-6fd764ca5c9f} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{4776c4dc-e894-7c06-2148-5d73cef5f905} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{494e6cec-7483-a4ee-0938-895519a84bc7} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{3446af26-b8d7-199b-4cfc-6fd764ca5c9f} (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{4776c4dc-e894-7c06-2148-5d73cef5f905} (Backdoor.Bot) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command\(default) (Hijack.StartMenuInternet) -> Bad: ( "C:\Documents and Settings\LocalService\Local Settings\Application Data\ave.exe" /START "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode) Good: (firefox.exe -safe-mode) -> Quarantined and deleted successfully.

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)
     
  9. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    gmer log

    MER 1.0.15.15281 - http://www.gmer.net
    Rootkit scan 2010-04-16 14:24:19
    Windows 5.1.2600 Service Pack 2
    Running: m38qws6g.exe; Driver: C:\DOCUME~1\BOBBIB~1\LOCALS~1\Temp\kwtiqpob.sys


    ---- Devices - GMER 1.0.15 ----

    Device \FileSystem\Fastfat \FatCdrom kmixer.sys (Kernel Mode Audio Mixer/Microsoft Corporation)
    Device \FileSystem\Fastfat \Fat kmixer.sys (Kernel Mode Audio Mixer/Microsoft Corporation)

    AttachedDevice \FileSystem\Fastfat \Fat fltMgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)

    Device \FileSystem\Cdfs \Cdfs DLAIFS_M.SYS (Drive Letter Access Component/Sonic Solutions)

    ---- EOF - GMER 1.0.15 ----
     
  10. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    ogfile of Trend Micro HijackThis v2.0.2
    Scan saved at 3:07:08 PM, on 4/16/2010
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    c:\Program Files\Microsoft Security Essentials\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\stsystra.exe
    C:\Program Files\Dell\Media Experience\DMXLauncher.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    C:\Program Files\Microsoft Security Essentials\msseces.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Dell Support\DSAgnt.exe
    C:\Program Files\Hide The IP 2010\HideTheIP.exe
    C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\WINDOWS\system32\netdde.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\dlcccoms.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: ABB Toolbar - {4E7BD74F-2B8D-469E-82BE-FD60BB9AAE3F} - C:\PROGRA~1\ABBTOO~1\ABBTOO~1.DLL
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
    O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O3 - Toolbar: ABB Toolbar - {4E7BD74F-2B8D-469E-82BE-FD60BB9AAE3F} - C:\PROGRA~1\ABBTOO~1\ABBTOO~1.DLL
    O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
    O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe "
    O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
    O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe "
    O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
    O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe "
    O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe "
    O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
    O4 - HKCU\..\Run: [Hide-The-IP] "C:\Program Files\Hide The IP 2010\HideTheIP.exe" /startup
    O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "c:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "c:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Digital Line Detect.lnk = ?
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\avlibrary.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\avlibrary.dll
    O10 - Unknown file in Winsock LSP: c:\windows\system32\avlibrary.dll
    O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
    O16 - DPF: {A52FBD2B-7AB3-4F6B-90E3-91C772C5D00F} (WoF Control) - http://www.worldwinner.com/games/v57/wof/wof.cab
    O16 - DPF: {C82BB209-F528-46F9-96D5-69DEF7260916} (MysteryPI Control) - http://www.worldwinner.com/games/v45/mysterypi/mysterypi.cab
    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: AVRedirector - Unknown owner - C:\Program Files\Hide The IP 2010\AVRedirector.exe (file missing)
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: dlcc_device - - C:\WINDOWS\system32\dlcccoms.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe

    --
    End of file - 7414 bytes
     
  11. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    Broni: My posts are delayed but should hopefully be up soon I ran Mbam GMER and High Jack and posted all logs. I am still having problems with Firefox freezing up, no other problems as of yet. Is there anything else I need to do to make sure all of the virus is gone?
     
  12. 2010/04/16
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Please download ComboFix from [color= "Red"]Here[/color] or [color= "#FF0000"]Here[/color] to your Desktop.

    **Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved directly to your desktop**
    1. Please, never rename Combofix unless instructed.
    2. Close any open browsers.
    3. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
      • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results ".
      • Click on this link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.
      NOTE1. If Combofix asks you to install Recovery Console, please allow it.
      NOTE 2. If Combofix asks you to update the program, always do so.
      • Close any open browsers.
      • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
      • Please do not attempt to re-connect your machine back to the Internet until Combofix has completely finished.
      • If there is no internet connection after running Combofix, then restart your computer to restore back your connection.
    4. Double click on combofix.exe & follow the prompts.
    5. When finished, it will produce a report for you.
    6. Please post the "C:\ComboFix.txt" along with a new HijackThis log for further review.
    **Note: Do not mouseclick combofix's window while it's running. That may cause it to stall**

    Make sure, you re-enable your security programs, when you're done with Combofix.

    DO NOT make any other changes to your computer (like installing programs, using other cleaning tools, etc.), until it's officially declared clean!!!

    I'd like to also see any log from your previous Combofix run(s).
     
  13. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    Initial ComboFix Log

    ComboFix 10-04-15.05 - Bobbi Barrall 04/16/2010 12:09:37.1.2 - x86
    Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1022.586 [GMT -4:00]
    Running from: c:\documents and settings\Bobbi Barrall\Desktop\ComboFix.exe
    AV: Microsoft Security Essentials *On-access scanning disabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
    .

    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .

    c:\documents and settings\Administrator\Local Settings\Application Data\ave.exe
    c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\{F9A67035-9FA1-4527-BCE9-93D8CC1FDDC3}
    c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\{F9A67035-9FA1-4527-BCE9-93D8CC1FDDC3}\chrome.manifest
    c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\{F9A67035-9FA1-4527-BCE9-93D8CC1FDDC3}\chrome\content\_cfg.js
    c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\{F9A67035-9FA1-4527-BCE9-93D8CC1FDDC3}\chrome\content\overlay.xul
    c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\{F9A67035-9FA1-4527-BCE9-93D8CC1FDDC3}\install.rdf
    c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\ave.exe
    c:\documents and settings\NetworkService\Local Settings\Application Data\ave.exe
    c:\windows\system32\BSTIEPrintCtl1.dll
    c:\windows\system32\lowsec
    c:\windows\system32\lowsec\local.ds
    c:\windows\system32\lowsec\user.ds

    .
    ((((((((((((((((((((((((( Files Created from 2010-03-16 to 2010-04-16 )))))))))))))))))))))))))))))))
    .

    2010-04-16 15:58 . 2004-08-04 02:58 14848 ----a-w- c:\windows\system32\drivers\kbdhid.sys
    2010-04-16 15:58 . 2004-08-04 02:58 14848 ----a-w- c:\windows\system32\dllcache\kbdhid.sys
    2010-04-16 15:44 . 2010-04-16 15:44 -------- d--h--w- c:\windows\PIF
    2010-04-16 15:12 . 2010-04-16 15:12 -------- d-----w- c:\windows\EHome
    2010-04-08 10:50 . 2010-04-08 10:50 -------- d-----w- c:\program files\iPod
    2010-04-08 10:50 . 2010-04-08 10:51 -------- d-----w- c:\program files\iTunes
    2010-04-08 10:50 . 2010-04-08 10:51 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
    2010-04-08 10:46 . 2010-04-08 10:47 -------- d-----w- c:\program files\QuickTime
    2010-04-08 10:42 . 2010-04-08 10:42 -------- d-----w- c:\program files\Bonjour
    2010-04-08 10:39 . 2010-04-08 10:39 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.0.79\SetupAdmin.exe
    2010-04-08 10:38 . 2010-04-08 10:38 -------- d-----w- c:\program files\Safari
    2010-04-08 10:35 . 2010-04-08 10:35 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe
    2010-04-06 20:23 . 2010-04-06 20:24 50354 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook\uninstall.exe
    2010-04-06 20:23 . 2010-04-06 20:23 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2010-04-16 15:57 . 2010-02-25 14:53 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\Apple Computer
    2010-04-16 15:48 . 2010-02-02 12:45 5120 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\wklnhst.dat
    2010-04-16 15:09 . 2010-04-14 11:11 664 ----a-w- c:\windows\system32\d3d9caps.dat
    2010-04-16 10:49 . 2010-03-10 21:19 -------- d-----w- c:\program files\Hide The IP 2010
    2010-04-15 12:09 . 2010-04-15 12:06 57432 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
    2010-04-13 13:36 . 2010-02-16 22:37 -------- d-----w- c:\program files\Dl_cats
    2010-04-10 21:23 . 2010-02-02 11:46 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\ABBTOOLBAR
    2010-04-08 10:50 . 2010-02-12 02:13 -------- d-----w- c:\program files\Common Files\Apple
    2010-04-07 16:00 . 2010-02-12 22:17 3350 --sha-w- c:\windows\system32\KGyGaAvL.sys
    2010-04-07 16:00 . 2010-02-12 22:17 88 --sh--r- c:\windows\system32\9CBE093B94.sys
    2010-04-01 10:43 . 2010-02-16 22:38 -------- d-----w- c:\program files\Abbyy FineReader 6.0 Sprint
    2010-03-26 14:57 . 2010-02-02 22:23 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\AdobeUM
    2010-03-15 23:38 . 2010-03-15 23:38 -------- d-----w- c:\program files\Coupons
    2010-03-10 21:19 . 2010-03-10 21:19 -------- dc-h--w- c:\documents and settings\All Users\Application Data\{19435D74-3065-47BF-9D09-F83C525CD68E}
    2010-03-10 08:03 . 2010-02-02 13:21 -------- d-----w- c:\program files\Microsoft Security Essentials
    2010-03-10 06:15 . 2004-08-10 16:51 420352 ----a-w- c:\windows\system32\vbscript.dll
    2010-03-09 23:35 . 2010-03-09 22:13 -------- d-----w- c:\program files\PhotoScape
    2010-03-09 22:01 . 2010-03-09 22:01 42824 ---ha-w- c:\windows\system32\mlfcache.dat
    2010-03-06 05:30 . 2010-03-06 05:30 847040 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook\axfbootloader.dll
    2010-03-06 05:30 . 2010-03-06 05:30 5582848 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook\npfbplugin_1_0_3.dll
    2010-03-01 20:26 . 2010-02-21 08:09 120 ----a-w- c:\windows\Rwugafonutulivih.dat
    2010-03-01 20:26 . 2010-02-21 08:09 0 ----a-w- c:\windows\Pkiyoguqutoqihoj.bin
    2010-02-27 18:27 . 2010-02-12 02:13 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
    2010-02-27 12:18 . 2010-02-02 03:50 57432 ----a-w- c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
    2010-02-27 11:38 . 2010-02-27 11:38 -------- d-----w- c:\program files\MSBuild
    2010-02-27 11:38 . 2010-02-27 11:38 -------- d-----w- c:\program files\Reference Assemblies
    2010-02-27 08:29 . 2010-02-27 08:29 -------- d-----w- c:\program files\MSXML 6.0
    2010-02-26 04:18 . 2010-02-26 04:18 30784 ----a-w- c:\windows\system32\drivers\ewkvixrj.sys
    2010-02-26 04:14 . 2010-02-26 04:14 30784 ----a-w- c:\windows\system32\drivers\huaooups.sys
    2010-02-25 14:52 . 2010-02-25 14:51 -------- d-----w- c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
    2010-02-25 14:51 . 2010-02-25 14:49 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
    2010-02-25 14:49 . 2010-02-25 14:49 -------- d-----w- c:\program files\Apple Software Update
    2010-02-25 06:24 . 2004-08-10 16:51 916480 ----a-w- c:\windows\system32\wininet.dll
    2010-02-24 14:16 . 2010-02-02 13:25 181632 ------w- c:\windows\system32\MpSigStub.exe
    2010-02-24 12:31 . 2006-08-29 12:47 454016 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
    2010-02-19 17:48 . 2010-02-19 17:48 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\Template
    2010-02-19 12:55 . 2010-02-19 12:55 3584 ----a-r- c:\documents and settings\Bobbi Barrall\Application Data\Microsoft\Installer\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}\Icon386ED4E3.exe
    2010-02-19 12:55 . 2010-02-19 12:55 -------- d-----w- c:\program files\Windows Installer Clean Up
    2010-02-19 12:54 . 2010-02-19 12:54 -------- d-----w- c:\program files\MSECACHE
    2010-02-17 14:19 . 2010-02-17 14:19 -------- d-----w- c:\program files\Microsoft Silverlight
    2010-02-16 22:37 . 2010-02-16 22:36 -------- d-----w- c:\program files\Dell Photo AIO Printer 924
    2010-02-16 19:26 . 2010-02-16 19:21 -------- d-----w- c:\program files\Virtual Earth 3D
    2010-02-16 17:35 . 2004-08-10 16:51 2143744 ----a-w- c:\windows\system32\ntoskrnl.exe
    2010-02-16 16:57 . 2004-08-04 02:59 2021888 ----a-w- c:\windows\system32\ntkrnlpa.exe
    2010-02-12 22:36 . 2010-02-12 22:36 503808 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-73571f13-n\msvcp71.dll
    2010-02-12 22:36 . 2010-02-12 22:36 499712 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-73571f13-n\jmc.dll
    2010-02-12 22:36 . 2010-02-12 22:36 348160 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-73571f13-n\msvcr71.dll
    2010-02-12 22:36 . 2010-02-12 22:36 61440 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-672489be-n\decora-sse.dll
    2010-02-12 22:36 . 2010-02-12 22:36 12800 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-672489be-n\decora-d3d.dll
    2010-02-12 22:36 . 2010-02-12 22:36 411368 ----a-w- c:\windows\system32\deploytk.dll
    2010-02-12 15:46 . 2010-02-12 15:46 91424 ----a-w- c:\windows\system32\dnssd.dll
    2010-02-12 15:46 . 2010-02-12 15:46 107808 ----a-w- c:\windows\system32\dns-sd.exe
    2010-02-12 04:47 . 2004-08-10 16:50 100864 ----a-w- c:\windows\system32\6to4svc.dll
    2010-02-11 12:01 . 2004-08-10 16:51 226880 ----a-w- c:\windows\system32\drivers\tcpip6.sys
    2010-02-04 12:30 . 2010-02-04 12:30 1924200 ----a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player.exe
    2010-02-02 12:20 . 2010-02-02 12:20 5115824 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
    2010-02-02 11:38 . 2010-02-02 11:37 1956072 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe
    2010-01-20 17:13 . 2010-02-02 15:49 52224 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
    2010-01-20 17:13 . 2010-02-02 15:49 101376 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
    .

    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "DellSupport "= "c:\program files\Dell Support\DSAgnt.exe" [2005-05-15 332800]
    "Hide-The-IP "= "c:\program files\Hide The IP 2010\HideTheIP.exe" [2010-01-05 3839296]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SigmatelSysTrayApp "= "stsystra.exe" [2006-02-10 282624]
    "ATIPTA "= "c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-08-06 344064]
    "DMXLauncher "= "c:\program files\Dell\Media Experience\DMXLauncher.exe" [2005-11-01 94208]
    "ISUSPM Startup "= "c:\program files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
    "ISUSScheduler "= "c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
    "DLA "= "c:\windows\System32\DLA\DLACTRLW.EXE" [2005-09-08 122940]
    "Google Desktop Search "= "c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2006-08-29 169984]
    "MSSE "= "c:\program files\Microsoft Security Essentials\msseces.exe" [2010-02-21 1093208]
    "SunJavaUpdateSched "= "c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-01-11 246504]
    "DLCCCATS "= "c:\windows\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2005-09-14 73728]
    "dlccmon.exe "= "c:\program files\Dell Photo AIO Printer 924\dlccmon.exe" [2005-10-21 430080]
    "AppleSyncNotifier "= "c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2010-02-17 177472]
    "QuickTime Task "= "c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]
    "iTunesHelper "= "c:\program files\iTunes\iTunesHelper.exe" [2010-03-26 142120]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "DWQueuedReporting "= "c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-26 437160]

    c:\documents and settings\All Users\Start Menu\Programs\Startup\
    Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2006-8-29 24576]
    Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
    @= "Service "

    [HKEY_LOCAL_MACHINE\software\microsoft\security center]
    "AntiVirusOverride "=dword:00000001
    "FirewallOverride "=dword:00000001

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
    "EnableFirewall "= 0 (0x0)
    "DisableNotifications "= 1 (0x1)

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe "=
    "c:\\Program Files\\Intel\\PROSetWired\\NCS\\PROSet\\PROSet.exe "=
    "c:\\Program Files\\Hide The IP 2010\\HideTheIP.exe "=
    "c:\\Program Files\\Bonjour\\mDNSResponder.exe "=
    "c:\\Program Files\\iTunes\\iTunes.exe "=

    S2 AVRedirector;AVRedirector;c:\program files\Hide The IP 2010\AVRedirector.exe --> c:\program files\Hide The IP 2010\AVRedirector.exe [?]
    S3 Avgfwdx;Avgfwdx;c:\windows\system32\DRIVERS\avgfwdx.sys --> c:\windows\system32\DRIVERS\avgfwdx.sys [?]
    S3 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwdx.sys --> c:\windows\system32\DRIVERS\avgfwdx.sys [?]
    .
    Contents of the 'Scheduled Tasks' folder

    2010-04-07 c:\windows\Tasks\AppleSoftwareUpdate.job
    - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]

    2010-04-16 c:\windows\Tasks\MP Scheduled Scan.job
    - c:\program files\Microsoft Security Essentials\MpCmdRun.exe [2009-12-09 23:02]
    .
    .
    ------- Supplementary Scan -------
    .
    uInternet Settings,ProxyOverride = *.local
    LSP: c:\windows\system32\AVLibrary.dll
    Trusted Zone: musicmatch.com\online
    FF - ProfilePath - c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\
    FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=VE3D01&q=
    FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/
    FF - component: c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
    FF - component: c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
    FF - plugin: c:\documents and settings\Bobbi Barrall\Application Data\Facebook\npfbplugin_1_0_3.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\NPcol308.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\npCouponPrinter.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\npMozCouponPrinter.dll
    FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
    FF - plugin: c:\program files\Virtual Earth 3D\npVE3D.dll
    FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

    ---- FIREFOX POLICIES ----
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "ui.use_native_colors ", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "ui.use_native_popup_windows ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.enable_click_image_resizing ", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "accessibility.browsewithcaret_shortcut.enabled ", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "javascript.options.mem.high_water_mark ", 32);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "javascript.options.mem.gc_frequency ", 1600);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "network.auth.force-generic-ntlm ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "svg.smil.enabled ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "ui.trackpoint_hack.enabled ", -1);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.debug ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.agedWeight ", 2);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.bucketSize ", 1);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.maxTimeGroupings ", 25);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.timeGroupingSize ", 604800);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.boundaryWeight ", 25);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.prefixWeight ", 5);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "html5.enable ", false);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref ", true);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.renego_unrestricted_hosts ", " ");
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.treat_unsafe_negotiation_as_broken ", false);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.require_safe_negotiation ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref( "app.update.download.backgroundInterval ", 600);
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref( "app.update.url.manual ", "http://www.firefox.com ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref( "browser.search.param.yahoo-fr-ja ", "mozff ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name ", "chrome://browser/locale/browser.properties ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description ", "chrome://browser/locale/browser.properties ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "xpinstall.whitelist.add ", "addons.mozilla.org ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "xpinstall.whitelist.add.36 ", "getpersonas.com ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "lightweightThemes.update.enabled ", true);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.allTabs.previews ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "plugins.hide_infobar_for_outdated_plugin ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "plugins.update.notifyUser ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "toolbar.customization.usesheet ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.enable ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.max ", 20);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.cachetime ", 20);
    .
    - - - - ORPHANS REMOVED - - - -

    SharedTaskScheduler-{c520d112-d7c8-48d0-a4c6-8c2366d75639} - (no file)
    Notify-avgrsstarter - avgrsstx.dll
    AddRemove-StreetPlugin - c:\program files\Learn2.com\StRunner\stuninst.exe
    AddRemove-WebCyberCoach_wtrb - c:\program files\WebCyberCoach\b_Dell\WCC_Wipe.exe WebCyberCoach ext\wtrb



    **************************************************************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2010-04-16 12:15
    Windows 5.1.2600 Service Pack 2 NTFS

    scanning hidden processes ...

    scanning hidden autostart entries ...

    HKLM\Software\Microsoft\Windows\CurrentVersion\Run
    DLCCCATS = rundll32 c:\windows\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

    scanning hidden files ...

    scan completed successfully
    hidden files: 0

    **************************************************************************
    .
    --------------------- DLLs Loaded Under Running Processes ---------------------

    - - - - - - - > 'lsass.exe'(692)
    c:\windows\system32\AVLibrary.dll

    - - - - - - - > 'explorer.exe'(3888)
    c:\windows\system32\WININET.dll
    c:\windows\system32\msi.dll
    c:\windows\system32\ieframe.dll
    c:\windows\system32\webcheck.dll
    .
    ------------------------ Other Running Processes ------------------------
    .
    c:\windows\system32\Ati2evxx.exe
    c:\program files\Microsoft Security Essentials\MsMpEng.exe
    c:\windows\system32\netdde.exe
    c:\progra~1\COMMON~1\AOL\ACS\AOLacsd.exe
    c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    c:\program files\Bonjour\mDNSResponder.exe
    c:\program files\Java\jre6\bin\jqs.exe
    c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
    c:\windows\stsystra.exe
    c:\program files\Google\Google Desktop Search\GoogleDesktopIndex.exe
    c:\windows\system32\wdfmgr.exe
    c:\program files\iPod\bin\iPodService.exe
    c:\windows\system32\dlcccoms.exe
    c:\windows\system32\rundll32.exe
    .
    **************************************************************************
    .
    Completion time: 2010-04-16 12:19:01 - machine was rebooted
    ComboFix-quarantined-files.txt 2010-04-16 16:18

    Pre-Run: 56,130,277,376 bytes free
    Post-Run: 57,044,566,016 bytes free

    WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
    [boot loader]
    timeout=2
    default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
    [operating systems]
    c:\cmdcons\BOOTSECT.DAT= "Microsoft Windows Recovery Console" /cmdcons
    multi(0)disk(0)rdisk(0)partition(2)\WINDOWS= "Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

    - - End Of File - - 1D6AE5CE7FCBC2E9205B2DDC483C25FD
     
  14. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    Combofix scan 2

    ComboFix 10-04-15.05 - Bobbi Barrall 04/16/2010 23:59:04.2.2 - x86
    Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1022.581 [GMT -4:00]
    Running from: c:\documents and settings\Bobbi Barrall\My Documents\Downloads\ComboFix.exe
    AV: Microsoft Security Essentials *On-access scanning disabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
    .

    ((((((((((((((((((((((((( Files Created from 2010-03-17 to 2010-04-17 )))))))))))))))))))))))))))))))
    .

    2010-04-16 18:29 . 2010-04-16 18:29 -------- d-----w- c:\program files\Trend Micro
    2010-04-16 15:58 . 2004-08-04 02:58 14848 ----a-w- c:\windows\system32\drivers\kbdhid.sys
    2010-04-16 15:58 . 2004-08-04 02:58 14848 ----a-w- c:\windows\system32\dllcache\kbdhid.sys
    2010-04-16 15:44 . 2010-04-16 15:44 -------- d--h--w- c:\windows\PIF
    2010-04-16 15:12 . 2010-04-16 15:12 -------- d-----w- c:\windows\EHome
    2010-04-08 10:50 . 2010-04-08 10:50 -------- d-----w- c:\program files\iPod
    2010-04-08 10:50 . 2010-04-08 10:51 -------- d-----w- c:\program files\iTunes
    2010-04-08 10:50 . 2010-04-08 10:51 -------- d-----w- c:\documents and settings\All Users\Application Data\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
    2010-04-08 10:46 . 2010-04-08 10:47 -------- d-----w- c:\program files\QuickTime
    2010-04-08 10:42 . 2010-04-08 10:42 -------- d-----w- c:\program files\Bonjour
    2010-04-08 10:39 . 2010-04-08 10:39 73000 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.1.0.79\SetupAdmin.exe
    2010-04-08 10:38 . 2010-04-08 10:38 -------- d-----w- c:\program files\Safari
    2010-04-08 10:35 . 2010-04-08 10:35 79144 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\Safari 5.31.22.7\SetupAdmin.exe
    2010-04-06 20:23 . 2010-04-06 20:24 50354 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook\uninstall.exe
    2010-04-06 20:23 . 2010-04-06 20:23 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook

    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2010-04-16 19:18 . 2010-02-02 11:46 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\ABBTOOLBAR
    2010-04-16 17:13 . 2010-02-02 12:19 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
    2010-04-16 17:08 . 2010-02-16 22:37 -------- d-----w- c:\program files\Dl_cats
    2010-04-16 17:01 . 2010-02-02 12:45 5120 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\wklnhst.dat
    2010-04-16 15:57 . 2010-02-25 14:53 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\Apple Computer
    2010-04-16 15:09 . 2010-04-14 11:11 664 ----a-w- c:\windows\system32\d3d9caps.dat
    2010-04-16 10:49 . 2010-03-10 21:19 -------- d-----w- c:\program files\Hide The IP 2010
    2010-04-15 12:09 . 2010-04-15 12:06 57432 ----a-w- c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
    2010-04-08 10:50 . 2010-02-12 02:13 -------- d-----w- c:\program files\Common Files\Apple
    2010-04-07 16:00 . 2010-02-12 22:17 3350 --sha-w- c:\windows\system32\KGyGaAvL.sys
    2010-04-07 16:00 . 2010-02-12 22:17 88 --sh--r- c:\windows\system32\9CBE093B94.sys
    2010-04-01 10:43 . 2010-02-16 22:38 -------- d-----w- c:\program files\Abbyy FineReader 6.0 Sprint
    2010-03-30 04:46 . 2010-02-02 12:19 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
    2010-03-30 04:45 . 2010-02-02 12:19 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
    2010-03-26 14:57 . 2010-02-02 22:23 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\AdobeUM
    2010-03-15 23:38 . 2010-03-15 23:38 -------- d-----w- c:\program files\Coupons
    2010-03-10 21:19 . 2010-03-10 21:19 -------- dc-h--w- c:\documents and settings\All Users\Application Data\{19435D74-3065-47BF-9D09-F83C525CD68E}
    2010-03-10 08:03 . 2010-02-02 13:21 -------- d-----w- c:\program files\Microsoft Security Essentials
    2010-03-10 06:15 . 2004-08-10 16:51 420352 ----a-w- c:\windows\system32\vbscript.dll
    2010-03-09 23:35 . 2010-03-09 22:13 -------- d-----w- c:\program files\PhotoScape
    2010-03-09 22:01 . 2010-03-09 22:01 42824 ---ha-w- c:\windows\system32\mlfcache.dat
    2010-03-06 05:30 . 2010-03-06 05:30 847040 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook\axfbootloader.dll
    2010-03-06 05:30 . 2010-03-06 05:30 5582848 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Facebook\npfbplugin_1_0_3.dll
    2010-03-01 20:26 . 2010-02-21 08:09 120 ----a-w- c:\windows\Rwugafonutulivih.dat
    2010-03-01 20:26 . 2010-02-21 08:09 0 ----a-w- c:\windows\Pkiyoguqutoqihoj.bin
    2010-02-27 18:27 . 2010-02-12 02:13 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple
    2010-02-27 12:18 . 2010-02-02 03:50 57432 ----a-w- c:\documents and settings\Bobbi Barrall\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
    2010-02-27 11:38 . 2010-02-27 11:38 -------- d-----w- c:\program files\MSBuild
    2010-02-27 11:38 . 2010-02-27 11:38 -------- d-----w- c:\program files\Reference Assemblies
    2010-02-27 08:29 . 2010-02-27 08:29 -------- d-----w- c:\program files\MSXML 6.0
    2010-02-26 04:18 . 2010-02-26 04:18 30784 ----a-w- c:\windows\system32\drivers\ewkvixrj.sys
    2010-02-26 04:14 . 2010-02-26 04:14 30784 ----a-w- c:\windows\system32\drivers\huaooups.sys
    2010-02-25 14:52 . 2010-02-25 14:51 -------- d-----w- c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
    2010-02-25 14:51 . 2010-02-25 14:49 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
    2010-02-25 14:49 . 2010-02-25 14:49 -------- d-----w- c:\program files\Apple Software Update
    2010-02-25 06:24 . 2004-08-10 16:51 916480 ----a-w- c:\windows\system32\wininet.dll
    2010-02-24 14:16 . 2010-02-02 13:25 181632 ------w- c:\windows\system32\MpSigStub.exe
    2010-02-24 12:31 . 2006-08-29 12:47 454016 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
    2010-02-19 17:48 . 2010-02-19 17:48 -------- d-----w- c:\documents and settings\Bobbi Barrall\Application Data\Template
    2010-02-19 12:55 . 2010-02-19 12:55 3584 ----a-r- c:\documents and settings\Bobbi Barrall\Application Data\Microsoft\Installer\{121634B0-2F4B-11D3-ADA3-00C04F52DD52}\Icon386ED4E3.exe
    2010-02-19 12:55 . 2010-02-19 12:55 -------- d-----w- c:\program files\Windows Installer Clean Up
    2010-02-19 12:54 . 2010-02-19 12:54 -------- d-----w- c:\program files\MSECACHE
    2010-02-17 14:19 . 2010-02-17 14:19 -------- d-----w- c:\program files\Microsoft Silverlight
    2010-02-16 22:37 . 2010-02-16 22:36 -------- d-----w- c:\program files\Dell Photo AIO Printer 924
    2010-02-16 19:26 . 2010-02-16 19:21 -------- d-----w- c:\program files\Virtual Earth 3D
    2010-02-16 17:35 . 2004-08-10 16:51 2143744 ----a-w- c:\windows\system32\ntoskrnl.exe
    2010-02-16 16:57 . 2004-08-04 02:59 2021888 ----a-w- c:\windows\system32\ntkrnlpa.exe
    2010-02-12 22:36 . 2010-02-12 22:36 503808 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-73571f13-n\msvcp71.dll
    2010-02-12 22:36 . 2010-02-12 22:36 499712 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-73571f13-n\jmc.dll
    2010-02-12 22:36 . 2010-02-12 22:36 348160 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-73571f13-n\msvcr71.dll
    2010-02-12 22:36 . 2010-02-12 22:36 61440 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-672489be-n\decora-sse.dll
    2010-02-12 22:36 . 2010-02-12 22:36 12800 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-672489be-n\decora-d3d.dll
    2010-02-12 22:36 . 2010-02-12 22:36 411368 ----a-w- c:\windows\system32\deploytk.dll
    2010-02-12 15:46 . 2010-02-12 15:46 91424 ----a-w- c:\windows\system32\dnssd.dll
    2010-02-12 15:46 . 2010-02-12 15:46 107808 ----a-w- c:\windows\system32\dns-sd.exe
    2010-02-12 04:47 . 2004-08-10 16:50 100864 ----a-w- c:\windows\system32\6to4svc.dll
    2010-02-11 12:01 . 2004-08-10 16:51 226880 ----a-w- c:\windows\system32\drivers\tcpip6.sys
    2010-02-04 12:30 . 2010-02-04 12:30 1924200 ----a-w- c:\documents and settings\All Users\Application Data\NOS\Adobe_Downloads\install_flash_player.exe
    2010-02-02 12:20 . 2010-02-02 12:20 5115824 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
    2010-02-02 11:38 . 2010-02-02 11:37 1956072 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe
    2010-01-20 17:13 . 2010-02-02 15:49 52224 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
    2010-01-20 17:13 . 2010-02-02 15:49 101376 ----a-w- c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
    .

    ((((((((((((((((((((((((((((( SnapShot@2010-04-16_16.15.31 )))))))))))))))))))))))))))))))))))))))))
    .
    + 2010-04-16 19:01 . 2010-04-16 19:01 16384 c:\windows\Temp\Perflib_Perfdata_6a0.dat
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "DellSupport "= "c:\program files\Dell Support\DSAgnt.exe" [2005-05-15 332800]
    "Hide-The-IP "= "c:\program files\Hide The IP 2010\HideTheIP.exe" [2010-01-05 3839296]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SigmatelSysTrayApp "= "stsystra.exe" [2006-02-10 282624]
    "ATIPTA "= "c:\program files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2005-08-06 344064]
    "DMXLauncher "= "c:\program files\Dell\Media Experience\DMXLauncher.exe" [2005-11-01 94208]
    "ISUSPM Startup "= "c:\program files\Common Files\InstallShield\UpdateService\isuspm.exe" [2005-06-10 249856]
    "ISUSScheduler "= "c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2005-06-10 81920]
    "DLA "= "c:\windows\System32\DLA\DLACTRLW.EXE" [2005-09-08 122940]
    "Google Desktop Search "= "c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2006-08-29 169984]
    "MSSE "= "c:\program files\Microsoft Security Essentials\msseces.exe" [2010-02-21 1093208]
    "SunJavaUpdateSched "= "c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-01-11 246504]
    "DLCCCATS "= "c:\windows\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll" [2005-09-14 73728]
    "dlccmon.exe "= "c:\program files\Dell Photo AIO Printer 924\dlccmon.exe" [2005-10-21 430080]
    "AppleSyncNotifier "= "c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2010-02-17 177472]
    "QuickTime Task "= "c:\program files\QuickTime\qttask.exe" [2010-03-18 421888]
    "iTunesHelper "= "c:\program files\iTunes\iTunesHelper.exe" [2010-03-26 142120]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "DWQueuedReporting "= "c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-26 437160]

    c:\documents and settings\All Users\Start Menu\Programs\Startup\
    Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
    Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2006-8-29 24576]
    Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE [2001-2-13 83360]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
    @= "Service "

    [HKEY_LOCAL_MACHINE\software\microsoft\security center]
    "AntiVirusOverride "=dword:00000001
    "FirewallOverride "=dword:00000001

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
    "EnableFirewall "= 0 (0x0)
    "DisableNotifications "= 1 (0x1)

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe "=
    "c:\\Program Files\\Intel\\PROSetWired\\NCS\\PROSet\\PROSet.exe "=
    "c:\\Program Files\\Hide The IP 2010\\HideTheIP.exe "=
    "c:\\Program Files\\Bonjour\\mDNSResponder.exe "=
    "c:\\Program Files\\iTunes\\iTunes.exe "=

    S2 AVRedirector;AVRedirector;c:\program files\Hide The IP 2010\AVRedirector.exe --> c:\program files\Hide The IP 2010\AVRedirector.exe [?]
    S3 Avgfwdx;Avgfwdx;c:\windows\system32\DRIVERS\avgfwdx.sys --> c:\windows\system32\DRIVERS\avgfwdx.sys [?]
    S3 Avgfwfd;AVG network filter service;c:\windows\system32\DRIVERS\avgfwdx.sys --> c:\windows\system32\DRIVERS\avgfwdx.sys [?]
    .
    Contents of the 'Scheduled Tasks' folder

    2010-04-07 c:\windows\Tasks\AppleSoftwareUpdate.job
    - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 17:34]

    2010-04-16 c:\windows\Tasks\MP Scheduled Scan.job
    - c:\program files\Microsoft Security Essentials\MpCmdRun.exe [2009-12-09 23:02]
    .
    .
    ------- Supplementary Scan -------
    .
    uInternet Settings,ProxyOverride = *.local
    LSP: c:\windows\system32\AVLibrary.dll
    Trusted Zone: musicmatch.com\online
    FF - ProfilePath - c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\
    FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=VE3D01&q=
    FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/
    FF - component: c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\FFExternalAlert.dll
    FF - component: c:\documents and settings\Bobbi Barrall\Application Data\Mozilla\Firefox\Profiles\utbcvxw4.default\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}\components\RadioWMPCore.dll
    FF - plugin: c:\documents and settings\Bobbi Barrall\Application Data\Facebook\npfbplugin_1_0_3.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\NPcol308.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\npCouponPrinter.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\npMozCouponPrinter.dll
    FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
    FF - plugin: c:\program files\Virtual Earth 3D\npVE3D.dll
    FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

    ---- FIREFOX POLICIES ----
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "ui.use_native_colors ", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "ui.use_native_popup_windows ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.enable_click_image_resizing ", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "accessibility.browsewithcaret_shortcut.enabled ", true);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "javascript.options.mem.high_water_mark ", 32);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "javascript.options.mem.gc_frequency ", 1600);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "network.auth.force-generic-ntlm ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "svg.smil.enabled ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "ui.trackpoint_hack.enabled ", -1);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.debug ", false);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.agedWeight ", 2);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.bucketSize ", 1);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.maxTimeGroupings ", 25);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.timeGroupingSize ", 604800);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.boundaryWeight ", 25);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "browser.formfill.prefixWeight ", 5);
    c:\program files\Mozilla Firefox\greprefs\all.js - pref( "html5.enable ", false);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref ", true);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.renego_unrestricted_hosts ", " ");
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.treat_unsafe_negotiation_as_broken ", false);
    c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref( "security.ssl.require_safe_negotiation ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref( "app.update.download.backgroundInterval ", 600);
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref( "app.update.url.manual ", "http://www.firefox.com ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox-branding.js - pref( "browser.search.param.yahoo-fr-ja ", "mozff ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name ", "chrome://browser/locale/browser.properties ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description ", "chrome://browser/locale/browser.properties ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "xpinstall.whitelist.add ", "addons.mozilla.org ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "xpinstall.whitelist.add.36 ", "getpersonas.com ");
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "lightweightThemes.update.enabled ", true);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.allTabs.previews ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "plugins.hide_infobar_for_outdated_plugin ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "plugins.update.notifyUser ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "toolbar.customization.usesheet ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.enable ", false);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.max ", 20);
    c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref( "browser.taskbar.previews.cachetime ", 20);
    .
    - - - - ORPHANS REMOVED - - - -

    AddRemove-HijackThis - c:\program files\Trend Micro\HijackThis\HijackThis.exe



    **************************************************************************

    catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2010-04-17 00:03
    Windows 5.1.2600 Service Pack 2 NTFS

    scanning hidden processes ...

    scanning hidden autostart entries ...

    HKLM\Software\Microsoft\Windows\CurrentVersion\Run
    DLCCCATS = rundll32 c:\windows\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

    scanning hidden files ...

    scan completed successfully
    hidden files: 0

    **************************************************************************
    .
    --------------------- DLLs Loaded Under Running Processes ---------------------

    - - - - - - - > 'lsass.exe'(688)
    c:\windows\system32\AVLibrary.dll

    - - - - - - - > 'explorer.exe'(1944)
    c:\windows\system32\WININET.dll
    c:\windows\system32\ieframe.dll
    c:\windows\system32\msi.dll
    c:\windows\system32\webcheck.dll
    .
    Completion time: 2010-04-17 00:04:26
    ComboFix-quarantined-files.txt 2010-04-17 04:04
    ComboFix2.txt 2010-04-16 16:19

    Pre-Run: 56,651,522,048 bytes free
    Post-Run: 57,001,168,896 bytes free

    - - End Of File - - B44649AA5E6D80632BE58E976139A723
     
  15. 2010/04/16
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    Alureon virus???

    Broni:
    I was looking at my Microsoft security Essentials and in the history there are numerous Alureon H. viruses but the software removed them when I was finally able to do the update earlier today before I had major problems maybe this has something to do with it?? You're the pro, let me know!! :D Thank you!
     
  16. 2010/04/17
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    1. Please open Notepad
    • Click Start , then Run
    • Type notepad .exe in the Run Box.

    2. Now copy/paste the entire content of the codebox below into the Notepad window:

    Code:
    File::
    c:\windows\system32\9CBE093B94.sys
    c:\windows\Rwugafonutulivih.dat
    c:\windows\Pkiyoguqutoqihoj.bin
    c:\windows\system32\drivers\ewkvixrj.sys
    c:\windows\system32\drivers\huaooups.sys
    
    
    Folder::
    
    Driver::
    
    Registry::
    [HKEY_LOCAL_MACHINE\software\microsoft\security center]
     "AntiVirusOverride "=dword:00000000
     "FirewallOverride "=dword:00000000
    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
     "EnableFirewall "=dword:00000001
     "DisableNotifications "=dword:00000000
    
    RegLockDel::
    
    

    3. Save the above as CFScript.txt

    4. Then drag the CFScript.txt into ComboFix.exe as depicted in the animation below. This will start ComboFix again.

    [​IMG]


    5. After reboot, (in case it asks to reboot), please post the following reports/logs into your next reply:
    • Combofix.txt
    • A new HijackThis log.
     
  17. 2010/04/17
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    Notepad problem?

    Can open note pad but I have to choose program from list then when I open it ther is a bunch of text I had to split because doc was too big (see below and next post) Should i just delete text and insert CF script?
    MZ   ÿÿ ¸ @ à º ´ Ã!¸LÃ!This program cannot be run in DOS mode.

    $ ì…[¡¨Ã¤5ò¨Ã¤5ò¨Ã¤5òkë:ò©Ã¤5òkëUò©Ã¤5òkëhò»Ã¤5ò¨Ã¤4òcä5òkëkò©Ã¤5òkëjò¿Ã¤5òkëoò©Ã¤5òRich¨Ã¤5ò PE L Ã|A à  
    x ¦ s          @  O  €      v È ° X‰ P  ¨ @ P à  H .text Hw  x  `.data ¨  | @ À.rsrc X‰ ° Å  "ž @ @°â€“AX ·â€“Ae ¶â€“Aq Œ–A~ Œ–A‹ §â€“A– ´â€“A£  ´â€“A° "”–Aº ¸â€“AÄ comdlg32.dll SHELL32.dll WINSPOOL.DRV COMCTL32.dll msvcrt.dll ADVAPI32.dll KERNEL32.dll NTDLL.DLL GDI32.dll USER32.dll ÈoÃwðkÃw}ßwýÕßwÆ’xÃwvÃwÌ×Ãw íÒ=w #Yòw4ôw±[òw¦lñw¦jòwtñwÃøòw25ôwy°Ã±wè|ñw¢@ôw|êówñ_ñw#Ėw¢Xñwºâ€¹Ã±w;jñwõ{ñw ]ñw•ñw¶Ã£Ã²w_äòw÷¨Ã±w*Yñw 7—€|¬â€™â‚¬|¤â‚¬|ÃÉ€|ÀŸ€|y|‚|Õ„‚||‚ |…|ž“€|Ã¥€|€|
    à€|†|w€|)µâ‚¬|î€|/þ€|r|]™€|½â„¢â‚¬|9š€|!.‚|N£â‚¬|ˆ-‚|æ’‡|w›€|ì¸â‚¬|€|v |#¨â‚¬|N™€|(¬â‚¬|ûl|J|×ï€|áð€|Ե€|Y¨â‚¬|ô—€|w¸â‚¬||#‚|1‘|Ÿ|@‘|Ç*€|±Ã¢|G‚|à-|Pø|=÷|C™€|ü·â‚¬|*œ€|·â‚¬|Å +†| ¢?§|îü¡|7¢£|ëø¥| VµÃ”w¨Ã†Ã”wm†Ôw—†ÔwgÕw€SÕw<ÄÔwÃ¥±Ã”wfæÔwÓ×wÞÔÔw®Ã„ÔwŠÄÔwëÔwªÃ”w6œÔw-7Õw¸Ã§Ã”w)®Ã”w¤BÕwi›ÔwêûÖwÕÕw»Ã—Ôw@ÆÔwt!Õw޺ÔwëíÖwÞ*ÔwdÀÔw€÷ÔwdŸÔwx’ÔwÔÄÔwÃ’ÕwŸbÖwýÉÔwuÔwÕÔw´Ã”wÔÙw\ÃÔwe…Öw¸Ã…ÔwfÅÔwü'Öwb·Ã”wFçÔwqÕwåîÔwíÃÔw÷îÔwŸtÖw<üÔwZ5Õw¾ÃªÃ–waÙwñÞÔw~ˆÔw¤RÕwÜåÔw0'Öwb¨Ã”w@kÕwÉlÕw׵ÔwDåÖwÙ‰Ôw΋Ôw=â€Ã”w>çÖw£Å’Ôw£â€˜Ã”wÓãÖw ` sS sIW s ÖH=v–†<v)=v©Ã„<v†;ve|<vʆ<vÃŽ <vó|<v ®-ÂMšžÂMΞÂM£®ÃƒM=«ÃƒM¶Å¾Ã‚M6ÃÀMâ€\ÂMwÎÀM/€ÃM ûÂM~žÂM¬Ã…MëîÀMgÂMuÖÃMØ#Ã…M¤Ã±Ã€MÛñÀM|SÂM/îÃMk€ÃM Ã|A  $ ð ð  ê  ê  ë % d N p E n c o d i n g D i a l o g t x t * . t x t RegisterPenApp notepad.chm i W i n d o w P o s D Y i W i n d o w P o s D X i W i n d o w P o s Y i W i n d o w P o s X f M L E _ i s _ b r o k e n i M a r g i n R i g h t i M a r g i n L e f t i M a r g i n B o t t o m i M a r g i n T o p s z T r a i l e r s z H e a d e r l f F a c e N a m e f S a v e W i n d o w P o s i t i o n s S t a t u s B a r f W r a p i P o i n t S i z e l f P i t c h A n d F a m i l y l f Q u a l i t y l f C l i p P r e c i s i o n l f O u t P r e c i s i o n l f C h a r S e t l f S t r i k e O u t l f U n d e r l i n e l f I t a l i c l f W e i g h t l f O r i e n t a t i o n l f E s c a p e m e n t S o f t w a r e \ M i c r o s o f t \ N o t e p a d L u c i d a C o n s o l e O u t o f R C s t r i n g s p a c e ! ! D E V E r r o r ! S l i p U p A c c / . S E T U P / P / P T * . * / W / A E d i t M a i n A c c c o m m d l g _ h e l p c o m m d l g _ F i n d R e p l a c e . t x t ÿÿÿÿÈU ÃŒU  é  é ! è  è

      hhctrl.ocx CLSID\{ADB880A6-D8FF-11CF-9377-00AA003B7A11}\InprocServer32 ÿÿÿÿ*u >u  H –    RSDSø®yö¾ÃŠD´Ã‹Ã„µ-w$ notepad.pdb ºu ¡¨¤ …ÀV‹5Ô tPÿÖ¡¬¤ …ÀtPÿÖƒ%¨¤  Æ’%¬¤  ^ÃÌÌÌÌÌ‹ÿU‹ìQjEüPj
    h  Çä¤ c_ Çì¤  ÿØ fÆ’}ü1u ¸Ã¨ £Ã¤ £Ã˜¤ ǰ¤ * ¸Ã® ë¸Ã„ £Ã¤ £Ã˜¤ ǰ¤ 
    * ¸Ã £ÃŒ¤ £Ã”¤ ÉÃÌÌÌÌÌ‹ÿU‹ìjj ÿ58Ëœ ÿ$ ¡@Ëœ ‹M ֯À#ঠj+ÈQÿuj j ÿ58Ëœ ÿ  ] ÌÌÌÌÌ‹ÿU‹ìQQ‹E ďSV„ ď(„¾ -• t(H… j j hG h ÿuÿ< £(¥ éþ "¹5< SWÿ5´ »C j S¿ WÿuÿÖÿ5¸ j SWÿuÿÖÿ5¼ j SWÿuÿÖÿ5À j SWÿuÿÖ¡0 ‹
    ´ £(¥ HtHt Hu‹
    À ë‹
    ¼ ë‹
    ¸ QjÿhM WÿuÿÖ_[ëo‹u9uu(EøPÿ8 EøPÿuÿ4 ÿuüÿuøÿuÿ0 ‹ðVÿ, = t= u*hl j
    ÿ5t Vë.‹uÿv ÿ, = t = t3Àëhl j ÿ5t ÿv ÿ( 3À@^É ÌÌÌÌÌ‹ÿU‹ì‹EV‹5@ j HPh» ÿ58Ëœ ÿÖƒøÿt PPh± ÿ58Ëœ ÿÖj j h· ÿ58Ëœ ÿÖ^] ÌÌÌÌÌ‹ÿU‹ì‹EV3ö3Éë&fƒù tfƒù u…ötfƒù "u 3É…öâ€Ã‹ñPÿD f‹f…ÉuÃ’^f‹fƒù tfƒù u@@ëí] ÌÌÌÌÌ‹ÿU‹ìì  ¡– SV‹5@ W‰Eü…ôþÿÿP…øþÿÿPh° ÿ58Ëœ ÿÖj ÿµÃ¸Ã¾Ã¿Ã¿hÉ ÿ58Ëœ ÿÖ‹øj GGÿPh» ÿ58Ëœ ÿÖ‹øþÿÿ+ØCÆ’} u;$– u;= "“ t9SWÿ5È …üþÿÿjPÿ ¡4Ëœ fÆ’eú Ā…ÀtüþÿÿQjh  PÿÖ‹Mü‰= "“ _^‰$– [è4T É ÌÌÌÌÌj èÿÿÿ ÌÌÌÌÌ‹ÿU‹ìV‹u3Éf‹f…ÉW‹þ‹Æt#fƒù:tfƒù\u‹øPÿD f‹f…Éuã;þtGG‹Ç_^] ÌÌÌÌÌ‹ÿUܓ篒eø SVWÿ50Ëœ ÿd ‹ØEðPEôPh° ÿ58Ëœ ÿ@ ‹Mô‹5` 3À;Mðâ€Ã€Ph  jS‰EüÿÖ‹=\ Pÿ×ÿuüh jSÿÖPÿ×ÿuüh jSÿÖPÿ×j jjSÿÖPÿX ƒøu9Eüu j jPSÿÖPÿ×ÿuÿT …ÀtjÿP ‰EøÿL 3À9Eøâ€Ã€Ph jSÿÖPÿ×j j jÿ58Ëœ ÇEü ÿ@ …ÀtÆ’eü ÿuüjjSÿÖPÿ×ÿuüjjSÿÖPÿ×3À9PËœ •ÀPjjSÿÖPÿ×j j hÆ ÿ58Ëœ ÿ@ 3É…Àâ€ÃQjjSÿÖPÿסPËœ ֯ÀƒàPj jSÿÖ‹=H Pÿס@Ëœ ֯ÀƒàPjjSÿÖPÿ×_^[É ÌÌÌÌÌ‹ÿU‹ì‹M‹EWj_ëf‹f‰f‹ÇÃf…Òtf‹f;« uâV‹u …ötë
    3Àë'f‰Ç÷3Ã’f‹f…ÒuïƒÃ^f‹f‰ÇÃf…Òuñ3À@_] ÌÌÌÌÌ‹ÿU‹ìƒ} V‹5ä Wt ÿuÿÖ‹øë3ÿÿuÿÖÇD Pj@ÿà ‹ð…öt'VÿuÿuèNÿÿÿÿuÿu Vÿuÿh V‹øÿÜ ëÿuÿu ÿuÿuÿh ‹ø‹Ç_^] ÌÌÌÌÌ‹ÿU‹ì송– ‰Eüÿà …Àtc3É3Ã’;‚*‘ u‹Š¤â€˜ ‹ ƒÂƒú@rè…Éu "Pÿ5¨ …lþÿÿhÇ Pÿ ĀlþÿÿfÆ’9 th ÿ5T Qÿ50Ëœ ÿh 3À@‹MüèÃP ÉÃÌÌÌÌÌ‹ÿUܓēSVÿ5¥ ‹5ä ÿÖÿ5¥ ‰EðÿÖ‹5@ ‰EüEôPEøPh° ÿ58Ëœ ÿÖ3ÛSSh½ ÿ58Ëœ ÿÖ;ÉEì„¿ WPÿð ‹ø;û„¬ "¹Mô‹Eø+È;Mü…’ 9Å¡ t%ÿuüGPÿ5¥ ÿ Ā …Àt09Å¡ uh‹EøÿuüGPÿuüÿ5¥ h h  ÿì ƒøu@ÿ5¥ jh ÿ58Ëœ ÿÖ‹Eø‹MðÈQPh± ÿ58Ëœ ÿÖ9]tSSh· ÿ58Ëœ ÿÖÿuìÿè _^[É ÌÌÌÌÌ‹ÿU‹ììÔ ¡– ‹U‹MS‹]‰Eü‹E ďSVW„* ď(„‡ -• „í H…› ·Ã‚Ht!Ht
    -  …‡ ë jSÿˆ 3À@év jd…4ÿÿÿP¾ VSÿ„ jd…4ÿÿÿPjÿPh€ ÿô …4ÿÿÿPÿ  ‹=@ Yj £â€« HPh» ÿ58Ëœ ÿ×3É9
    ‫ vƒøÿtQëˆQÿ5¬ ÿ5° Sÿh j j hº ÿ58Ëœ ÿ×P…4ÿÿÿhËœ Pÿ€ Ā …4ÿÿÿPVSÿ| Sÿx éµ ¾ VSÿt ‹øjðWÿp 
    PjðWÿl ‹=@ …,ÿÿÿP…0ÿÿÿPh° ÿ58Ëœ ÿ×j ÿµ0ÿÿÿhÉ ÿ58Ëœ ÿ×@P…4ÿÿÿhËœ Pÿ€ Ā …4ÿÿÿPVSÿ| Sÿx éªÃ¾Ã¿Ã¿h„ j
    ÿ5t Rëh„ j ÿ5t ÿq ÿ( 3À‹Mü_^[è³M É ÌÌÌÌÌ‹ÿU‹ìW‹} 3ÀƒÿvRV‹u·ùï» t4ùÿþ tùþÿ t WVèÞL "¦Ã€t3À@ë "WVèvL ֯Àƒàëjë
    ƒÿv €~¿ujX^_] ÌÌÌÌÌ‹ÿU‹ì3À9E u¸W ۑ-‹UV‹uf‹f…Ét f‰
    BBFFÿM uìƒ} ^uJJ¸z €fÆ’" ] ÌÌÌÌÌ‹ÿU‹ìì ¡– S‹]‰Eü‹E ďNV‹uW‹}‰µÃ°Ã¹Ã¿Ã¿„h ď„2 ď(„À -• t&H…V j j hG h Vÿ< £0 é7 ÿ5´ »C j S¿ WV‹5< ÿÖÿ5¸ j SWÿµÃ°Ã¹Ã¿Ã¿Ã¿Ã–ÿ5¼ j SWÿµÃ°Ã¹Ã¿Ã¿Ã¿Ã–ÿ5À j SWÿµÃ°Ã¹Ã¿Ã¿Ã¿Ã–¡0 H‹
    ´ tHt Hu‹
    À ë‹
    ¼ ë‹
    ¸ QjÿhM WÿµÃ°Ã¹Ã¿Ã¿Ã¿Ã–é¤ ;óu0…äùÿÿPÿ8 …äùÿÿPVÿ4 ÿµÃ¨Ã¹Ã¿Ã¿Ã¿µÃ¤Ã¹Ã¿Ã¿Vÿ0 ‹ØSÿ, = t = …W hl j
    ÿ5t Sÿ( 3À@é= ÿw ÿ, = t = …  hl j ÿ5t ÿw ëŦýÿÿ… "¦Ã´Ã½Ã¿Ã¿Ph he VÿÅ’ Pÿ@ …ÀŽÚ »hËœ S…ôýÿÿPÿ …À„¿ 3ÿWh€ jWjh €…ôýÿÿPÿ ƒøÿ‰…ìùÿÿ„‘ WðùÿÿQh  ôùÿÿQPÿ  …À~f9½Ã°Ã¹Ã¿Ã¿t^ÿµÃ°Ã¹Ã¿Ã¿â€¦Ã´Ã¹Ã¿Ã¿Pèüüÿÿ‹
    ´ £0 HtHt Hu‹
    À ë‹
    ¼ ë‹
    ¸ QjÿhM h Vÿ< …ôýÿÿPSÿü ÿµÃ¬Ã¹Ã¿Ã¿Ã¿ø 3À‹Mü_^[èAJ É ÌÌÌÌÌ‹ÿU‹ìì ¡– SVW‰Eü3Û3Àf‰ôýÿÿ¹ ½Ã¶Ã½Ã¿Ã¿Ã³«3öF9 f«â€¹=@ ‰µÃ°Ã½Ã¿Ã¿tSSjÿ58Ëœ ÿ×…À„œ SSh¸ ÿ58Ëœ ÿ×…À„} 9 ¡@ ¿ © u‹Ç‹M÷ÙÉá  ·Ã‰Æ’É3QPÿ5< ‰5TËœ ÿ5T ÿ50Ëœ è©Ã·Ã¿Ã¿Æ’ø‰…ðýÿÿ‰TËœ … " 9 thÃŒ ë#¡0 SWÿ50Ëœ £(¥ è¬& "¦Ã€t‹Æéý W…ôýÿÿPÿü ‹=ä »â‚¬¦ ë@ÿ5Å“¦ …ôýÿÿPÿü V…ôýÿÿPÿ50Ëœ è`& "¦Ã€â€¦Ã´Ã½Ã¿Ã¿…½ h © Pÿü …ôýÿÿ£Å“¦ ¡ S‰5TËœ ‰5Ëœ¦ Ǽ¦ Ä ÇÅ’¦ @¥ ÇĦ ( ÇȦ * Ç´¦ fˆˆ £°¦ ÿ×…À…bÿÿÿÇ…ðýÿÿ ÿà …Àth ÿ5T ÿ5L ÿ50Ëœ ÿh Æ’%TËœ  3Àƒ½Ã°Ã½Ã¿Ã¿•À‹Mü_^[è2H É Ph © ÿü ¡(¥ £0 ëÆÌÌÌÌÌ‹ÿUܓē VWÿ hØ j)‹øÿ Pÿ 3ö;ƉEütjjÿÃÿuWètòÿÿPÿu ÿuèå "¦Ã€u‰uèé° SVVÿ  Ph V¸ € PPÿ¬ ‹=¨ ‹Øë_Æ’}äPuVVh€ ÿ50Ëœ ÿ¤ ¡<Ëœ ;ÆtMàQPÿ* …Àu.EàPÿ5ئ ÿ50Ëœ ÿÅ“ …ÀuEàPÿËœ EàPÿ†VVEàVPÿ×…Àuâ€Ã¨ïÿÿÿ5Å’« ÿÜ ;ÞtSÿ [9uütVjÿUü‹Eè_^É ÌÌÌÌÌ‹ÿU‹ììÈ ¡– fÆ’¥Ã¼Ã¾Ã¿Ã¿ V‹uWj?‰EüYÿ5@ 3À½Ã¾Ã¾Ã¿Ã¿Ã³«Vf«Ã¿( …Àuÿ5@ …üÿÿh6 Pè]ùÿÿëfVÿ$ …8øÿÿPVÿ  ‹øƒÿÿt "…døÿÿP¾ V…ˆúÿÿPè&ùÿÿWÿ ëV¾ V…ˆúÿÿPè
    ùÿÿV…üÿÿP…ˆúÿÿPÿÔ jjÿ5È …üþÿÿjPÿ ¡4Ëœ Ā…À_^tüþÿÿQjh  Pÿ@ ÿ5D …üÿÿPÿ …üÿÿPÿ50Ëœ ÿð ‹MüèÉE É ÌÌÌÌÌ‹ÿU‹ìì` ¡– ‹USVW‰Eü3ö3Àf‰µÃ´Ã½Ã¿Ã¿¹ ½Ã¶Ã½Ã¿Ã¿Ã³«f«·} ƒÿ@‰•ðýÿÿù „Û ƒÿÃŽ „ì ƒÿt „  O„ø O„ Ot
    Ot23Àé^ 95 ¡0 £(¥ uVh © ÿ50Ëœ è" "¦Ã€…0 95 ‹=0 …ôýÿÿ£Å“¦ ¡ £°¦ Ç´¦ fˆˆ ÇȦ * ÇĦ ( ÇÅ’¦ @¥ Ǽ¦ Ä » "¦Ã´Ã½Ã¿Ã¿u Sh © Pÿ×ë hÃŒ Pÿü 3À@h€¦ £TËœ £Ëœ¦ ÿä …Àt3j…ôýÿÿPÿµÃ°Ã½Ã¿Ã¿Ã¨Ã! "¦Ã€t S…ôýÿÿPh © ÿס(¥ £0 ëèîòÿÿ‰5TËœ éZ Vèüùÿÿ…À„L "¹0 …ôýÿÿhÃŒ P£Å“¦ ÿü ¡Å’ h€¦ £°¦ ÇÅ’¦ ॠǼ¦ Ä Ç´¦ dˆ ÇËœ¦  ÇȦ * ÇĦ R$ ÿØ …ÀtS‹=€¤ Vh€ jVjh €…ôýÿÿPÿ ÿ50 £â‚¬¤ …ôýÿÿPè²# "¦Ã€…˜ "°=€¤ ‰0 é‡ "°0 èòÿÿéw jè ék "¹=Ä »*¤ ë,ÿà =  t=  t=  uÂè ëÿÿ‰5¬¤ ‰5¨¤ Sÿ×…ÀtË5ü h@£ h࣠ÿÖh£ h0¤ ÿÖé ĕt;Ot(ĕ„÷ O…ŽýÿÿVVhÇ ÿ58Ëœ ÿ@ éØ VVjRÿ¤ éÈ Vè¦? é½ ƒÿf „U ĕ„ô O„“ Ot^O…2ýÿÿÿ50Ëœ ÿd ‹=@ VVjÿ58Ëœ ‹Øÿ×PVh± ÿ58Ëœ ÿ×VVh· ÿ58Ëœ ÿ×jjjSÿ` Pÿ\ é= Vh¦! ÿ50Ëœ jÿ5€« ÿËœ …À… ÿ5‫ èBìÿÿé  ¡<Ëœ ;Æt Pÿx éö h ¥ Ç ¥   Ç¥  § fÇ¥ € Ç¥  ¨ fÇ¥ € ÿÜ £<Ëœ é± f95 ¨ th ¨ èƒ) é™ ¡<Ëœ ;ÆuŽh ¥ Ç ¥   "°5¥ f‰5¥ Ç¥  ¨ fÇ¥ € ÿÈ ëžVèü> éN j[+û„÷ ĕ„ O…ÑûÿÿVÿ†‹Ø;Þ„ " "¹â€¦Ã°Ã½Ã¿Ã¿hà jZ¿ « SÇ…*ýÿÿ< "°â€¦¤Ã½Ã¿Ã¿â€°½¬Ã½Ã¿Ã¿Ã¿` Pÿ5 ÿ, S֯V£ « Ç…´Ã½Ã¿Ã¿A ‰µ¸Ã½Ã¿Ã¿â€°µ¼Ã½Ã¿Ã¿â€°µÃ€Ã½Ã¿Ã¿â€°µÃ„ýÿÿ‰µÃˆÃ½Ã¿Ã¿â€°µÃŒÃ½Ã¿Ã¿fÇ…Ãýÿÿ "°µÃ”ýÿÿ‰µÃ˜Ã½Ã¿Ã¿Ã¿ …*ýÿÿPÿà …À„ ÿ5„« ‹Å’ ÿÓWÿd ‹ø;þt.ÿ5|« ÿh jWj0ÿ58Ëœ ‰=|« ÿ@ ‹…°Ã½Ã¿Ã¿£ ÿ5ˆ« ÿÓé) ¡PËœ ֯À%   PPèê) "¦Ã€t3À95PËœ â€Ã€£PËœ ëj0ÿ5T ÿ5l ÿ50Ëœ ÿh 95PËœ tP¡@Ëœ ;Æ£DËœ tVSh ÿµÃ°Ã½Ã¿Ã¿Ã¿@ ÿ50Ëœ ÿd V‹5` S‹øjWÿÖPÿH jSjWÿÖé?ýÿÿÿ50Ëœ ÿd VSjPÿ` Pÿ\ 95DËœ „^ VSh ÿµÃ°Ã½Ã¿Ã¿Ã©iüÿÿ…àýÿÿPÿ50Ëœ ÿˆ 95@Ëœ t7Vÿ54Ëœ ‰5@Ëœ ÿ° ‹…ìýÿÿ+…äýÿÿP‹…èýÿÿ+…àýÿÿPèxçÿÿéú "¹â€¦Ã¬Ã½Ã¿Ã¿+…äýÿÿ3öP‹…èýÿÿ+…àýÿÿFP‰5@Ëœ èKçÿÿVè§Ã©Ã¿Ã¿jÿ54Ëœ ÿ° é¹ VVhè ÿä Pè@ é¡ ƒÿAtvÿÿ Ž.ùÿÿÿ ~ÿ t9ÿ …ùÿÿ…ÜýÿÿP…ðýÿÿPh° ÿ58Ëœ ÿ@ ‹…ðýÿÿ;…ÜýÿÿtGÿè ‹
    8Ëœ ;Ãt;0Ëœ u/VVWQéSûÿÿjÿ5€« ÿì Ph†ÿ5T ÿ50Ëœ ÿ€ 3À@‹Mü_^[èÒ= É ÌÌÌÌÌ‹ÿVW‹=€¤ 3öVèóÿÿ…Àt@Vh€ jVjh €¾(– Vÿ ƒøÿ£â‚¬¤ uVè` ë jÿVè¯ "¦Ã€u‰=€¤ _^ÃÌÌÌÌÌ‹ÿU‹ìV‹5x j j jÿÿuÿÖ…Àth h(– j ÿuÿÖÿu ÿÅ“ èhÿÿÿÿuÿt ^] ÌÌÌÌÌ‹ÿU‹ìQQV‹u ƒþWjZ‡A „· ;ò‡í „Û "¹Ã†HH„Ç ďtaHtH…\ ÿ50Ëœ ÿ¸ …Àu?ÿ58Ëœ ë1fÆ’}tfÆ’}u)ÿ50Ëœ ÿ¸ …Àu‹5´ ÿÖ;0Ëœ u ÿÖPÿx 3À_^É "¹E3ö+ÆtHtIHué‹=@ VVjÿ54Ëœ ÿ׿ujYv™÷ùƒMüÿ‰EøEøPjh ÿ54Ëœ ÿ׿EPVèÈäÿÿë£Ã¿ujjé* j ÿô ëÿuÿuRéà "¹Ã†Æ’ètIHtď „nÿÿÿév 3ö95TËœ t "‹=¬ Vÿ×Vÿ×h  ÿ5T ÿ5" éŠ jèˆñÿÿé3ÿÿÿè¨ 3öVèvñÿÿ…À„ÿÿÿVjÿ5t ÿ50Ëœ ÿ( …Àuh ÿ5T ÿ5L ÿ50Ëœ ÿh ÿ54Ëœ ‹5¨ ÿÖÿ50Ëœ ÿÖÿ5|« ÿh é¿Ã¾Ã¿Ã¿3ö9ut@¡\Ëœ ;Æ‹
    `Ëœ u;ÃŽ„¡Ã¾Ã¿Ã¿â€¹=@ QPh± ÿ58Ëœ ÿ×VVh· ÿ58Ëœ ÿ×éxþÿÿ‹=@ h`Ëœ h\Ëœ h° ÿ58Ëœ ÿס\Ëœ ‹
    `Ëœ ;Ãu±â€°5\Ëœ ‰5`Ëœ é;þÿÿ‹}‹Æ- „5 H„ê ď„Ô H„™ - „~ -æ „O -è| „ ;5ˆ¤ …ö "¹E‹H ‹Ã‹ñÃîÃ·ÃÆ’àľ„Ê£â€Å¡ ‰5Å¡ tÿ5„« ‹5Å’ ÿÖëöÃt,ÿ5„« ‹5Å’ ÿÖjè[éÿÿh ¨ è" ÿ5ˆ« ÿÖé‚ýÿÿöà tw3ö;Æt‰5â€Å¡ Sÿ5„« ‹Å’ ÿÓ‹=@ VVh± ÿ58Ëœ ÿ×Vè éÿÿh ¨ èÌ! "¦Ã€uìÿ5ˆ« ÿÓVVh± ÿ58Ëœ ÿ×VVh· ÿ58Ëœ ÿ×jè‘äÿÿ[éýÿÿöÃ@„ýüÿÿƒ%<Ëœ  éñüÿÿÿuÿuVÿuÿ¤ éÞüÿÿ3öVÿ* f%ÿf= uFVjhØ ÿ58Ëœ ÿ@ é¯Ã¼Ã¿Ã¿â€¹Ã‡Ãèf%ÿf= …¦ j jÿuèZóÿÿé‹üÿÿÿuÿuèŸûÿÿé{üÿÿƒ=LËœ  „nüÿÿ‹EÃèf…À„_üÿÿjh ð ÿ5ܦ ÿ\ éGüÿÿÿuèõäÿÿé:üÿÿƒ=LËœ  "¹Et!= ð „#üÿÿ=@ð „üÿÿ=Pð „
    üÿÿÿuPh ÿuÿ¤ éöûÿÿ;=8Ëœ uL‹EÃèf= tf=u:Æ’=HËœ uÇHËœ  éÄûÿÿh ÿ5T ÿ5L ÿ50Ëœ ÿh é¢Ã»Ã¿Ã¿Wÿuÿuè`òÿÿ…À…ŽûÿÿWéšþÿÿÌÌÌÌÌ‹ÿU‹ìjEPjj ÿu ÿuÿ ] ÌÌÌÌÌ‹ÿU‹ìÿuÿä D Pÿujj ÿu ÿuÿ ] ÌÌÌÌÌ‹ÿUܓē Æ’eü Æ’} ÇEø ÇEô t$EôPEøPEüPj ÿu ÿuÿ  …ÀuÆ’}üt‹Eë‹EøÉ ÌÌÌÌÌ‹ÿU‹ìV‹uöƒ} W‹}‰ut!EPWEPj ÿu ÿuÿ  …ÀuÆ’}t‹Î‹u‹ÃÃéó¥â€¹ÃˆÆ’áó¤_^] ÌÌÌÌÌ‹ÿUܓē0EüPh¤ h €ÿ …À…. ÿ5(« hˆ ÿuüèÊþÿÿÿ5,« hl ÿuüè·Ã¾Ã¿Ã¿Ã¿50« hX ÿuüè¤Ã¾Ã¿Ã¿¶4« PhD ÿuüèþÿÿ¶5« Ph, ÿuüèzþÿÿ¶6« Ph ÿuüèeþÿÿ¶7« Ph  ÿuüèPþÿÿ¶8« Phà ÿuüè;þÿÿ¶9« PhÀ ÿuüè&þÿÿ¶:« Ph¬ ÿuüèþÿÿ¶;« Phˆ ÿuüèüýÿÿÿ5 hp ÿuüèéýÿÿÿ5PËœ hd ÿuüèÖýÿÿÿ5@Ëœ hP ÿuüèÃýÿÿÿ5„š h$ ÿuüè°Ã½Ã¿Ã¿h<« h  ÿuüèÂýÿÿh࣠hø ÿuüè°Ã½Ã¿Ã¿h0¤ hä ÿuüèžýÿÿÿ5ä hÃŒ ÿuüègýÿÿÿ5ؤ h° ÿuüèTýÿÿÿ5ÃŒ¤ hËœ ÿuüèAýÿÿÿ5Ô¤ h| ÿuüè.ýÿÿÿ5XËœ h\ ÿuüèýÿÿEÃPÿ50Ëœ ÇEÃ, ÿ¼ …ÀtHÿuìhD ÿuüèðüÿÿÿuðh, ÿuüèàüÿÿ‹Eô+EìPh ÿuüèÌüÿÿ‹Eø+EðPhô ÿuüè¸Ã¼Ã¿Ã¿Ã¿uüÿ ÉÃÌÌÌÌÌ‹ÿUܓēd¡– VWj‰EüÿX 3ÿ;Çt
    M*Qj\Pÿ\ EÅ“Ph¤ h €ÿ …Àt‰}œÿu¨â€°=$« hˆ ÿuœèüÿÿÿu¬£(« hl ÿuœèˆüÿÿÿu°£,« hX ÿuϏsüÿÿ£0« ¶E´PhD ÿuϏ\üÿÿ¢4« ¶EµPh, ÿuϏEüÿÿ¢5« ¶E¶Ph ÿuϏ.üÿÿ¢6« ¶E·Ph  ÿuϏüÿÿ¢7« ¶E¸Phà ÿuϏ üÿÿ¢8« ¶E¹PhÀ ÿuœèéûÿÿ¢9« ¶EºPh¬ ÿuœèÒûÿÿ¢:« ¶E»Phˆ ÿuϏ»Ã»Ã¿Ã¿j h<« hÜ h  ÿuÅ“¢;« èòûÿÿjdhp ÿuœèŽûÿÿWhd ÿuÅ“£ è{ûÿÿ£PËœ WhP ÿuϏhûÿÿWh$ ÿuÅ“£@Ëœ èUûÿÿj(£â€žÅ¡ ¸Ã £ PPhø ÿuœèûÿÿj(¸0¤ PPhä ÿuϏyûÿÿÿ5ä hÃŒ ÿuϏûÿÿÿ5ؤ £Ã¤ h° ÿuœèùúÿÿÿ5ÃŒ¤ £Ã˜¤ hËœ ÿuœèáúÿÿÿ5Ô¤ £ÃŒ¤ h| ÿuœèÉúÿÿ¾ €Vh, ÿuÅ“£Ã”¤ è±ÃºÃ¿Ã¿VhD ÿuÅ“£|Å¡ èžúÿÿVh ÿuÅ“£xÅ¡ è‹úÿÿVhô ÿuÅ“£tÅ¡ èxúÿÿWh\ ÿuÅ“£pÅ¡ èeúÿÿ9}Å“_£XËœ ^t ÿuœÿ ‹Müè2 ÉÃÌÌÌÌÌ‹ÿU‹ìQSVW‹ù‹Øf‹f…Àt'‹5À ·Ã€PÿÖ‰Eü·GGCPCÿÖf9Eüuf‹f…Àuß3À_^[ÉÃ3À@ëöÌÌÌÌÌ‹ÿU‹ììT ¡– S‹]V‹u ‰Eüf‹f=" W‹Ëtf=' th VSÿ0 ë+3Ã’F‹øFëf;Çtú sf‰AABFF3Àf‹f…ÀuáfÆ’! "¹=  …¬Ã½Ã¿Ã¿PSÿ׃øÿuSè²
    "¦¬Ã½Ã¿Ã¿PSÿ׃øÿtPÿ ‹Mü_‹Æ^[è 1 É ÌÌÌÌÌ‹ÿU‹ìQSVW¾ h0 ë?3ÿ3Û‹½Ã¨ Vÿuüÿ0ÿuÿÄ Nÿ;Ã}
    Gƒÿ-\|ÙÿuüÿÜ ƒÿ-}ö6Pj@ÿà …À‰Eüu²Ã«‹Ã_^[É ÌÌÌÌÌ‹ÿU‹ìÿuè€ÿÿÿ…À„Š VÀPj@ÿà ‹ð…ötwSVÿ4 ‹ØÑëu3ÀëdW¿Ã¨ ‹SVÿ0ÿuÿÄ ‹@;É14FIĂ+Øÿœ‘ |Ø‹50 j(ÿ5x h࣠ÿÖj(ÿ5| h0¤ ÿÖ¡p f‹ f£« 3À@_[^] j h0 hü j ÿh 3ÀëáÌÌÌÌÌ‹ÿU‹ì‹Ef‹fƒù tfƒù u@@ëí] ÌÌÌÌÌ‹ÿU‹ìQSV‹uW3ÿ‹Æ¹\ ‰}üè‘ýÿÿ…À…( Wÿ50Ëœ ÇLËœ  ÿÃŒ hH ÿ5€« £Ãœ¦ ÿÈ h ý jðÿ50Ëœ £Ã˜¦ ÿl ĮVèiÿÿÿf98„Ì P¾ © VèsýÿÿW»â‚¬ SjW‹= jh €Vÿ׃øÿ£â‚¬¤ …„ ÿ8 HHt9ďj1Vt)ďvtÿ54 ÿ5T ÿ50Ëœ èôÜÿÿ‰EüëHÿ5d ëâÿ5Å“ ëÚj3Vÿ58 ÿ5T ÿ50Ëœ èÅÜÿÿƒø‰Eüuj Sjj jh ÀVÿף€¤ Æ’=€¤ ÿtÿ5€š Vè› jX9EütjXë3À_^[É ÌÌÌÌÌ‹ÿU‹ìQV‹uW‹Æ¹t ÇEü è5üÿÿ3ÿ…ÀuĮVèTþÿÿ‰}üë‹Æ¹l èüÿÿ…À…  ĮVè2þÿÿ‹ðf9>„ø ÿu ÿ50Ëœ ÿ° V¾ © Vè+üÿÿ@@9}üuJf98„à PèöýÿÿfÆ’8 "…½ @@3Òëfƒù "túÿ sf‰ U@¡ B@@3Éf‹f;ÃuÃf‰<U@¡ Wh€ jWjh €Vÿ ƒøÿ£â‚¬¤ uJÿ8 HHt$ďtď<tď:t¡4 ë¡d ë ¡Å“ ë¡8 j0VPÿ5T ÿ50Ëœ èHÛÿÿëÿ5€š VèC
    9}ütjëjè* 3À@ë3À_^É ÌÌÌÌÌ‹ÿU‹ìS‹]V‹5ü Wÿ5„ SÿÖ‹=ä Sÿ×\ChÃŒ SÿÖSÿ×ÿ5ˆ \CSÿÖSÿ×\Ch| SÿÖSÿ×fÆ’dC _^[] ÌÌÌÌÌ‹ÿU‹ì‹EÅ @‹MˆA3À] ÌÌÌÌÌ‹ÿUܓē0Wj)ÇEÃ0 ÿ ֯À P3ÿWÿØ jV‰Eìÿì WjjjjV‰EèÿÔ ‰EüEÃPÇEô "°uäÇEø ÇEØ)4 ÇEð "°}Ô‰}܉}àÿà f֯_À÷ØÉÃÌÌÌÌÌ‹ÿU‹ìì¨ ¡– SV‹uW‹=ø ‰Eü‹EhÃŒ ‰u¬â€°E°Ã¿Ã—3Û;㈤ „  h° ÿ×;ㄤ „÷ Sÿ†;ÉE¸„å Vèëúÿÿ…À„× j)ÿ ‹=Ø ֯À PSÿ×h S£Ë†« ÿ×h* V£â€ž« ÿÈ 9„« £Ã˜¦ „ ;Ä… 9] u
    è¤Ã¾Ã¿Ã¿â€¦Ã€„s "°5€« Ç*¤ T "°¨¤ ‰¬¤ ‰5ܤ èûÒÿÿè+öÿÿSVSSÿ5pÅ¡ ¾â€ ÿ5tÅ¡ ÿ5|Å¡ ÿ5xÅ¡ h à Vh Sÿà ‹Ã;Ó‰0Ëœ ‰¤¤ „þ ¸ €9tÅ¡ tb9pÅ¡ tZ3Àj Y½Xÿÿÿó«¡xÅ¡ ‹
    tÅ¡ ‰…tÿÿÿË
    pÅ¡ ‰…|ÿÿÿ¡|Å¡ ‰…xÿÿÿÉE€…XÿÿÿPRÇ…Xÿÿÿ, ÿÜ ‹0Ëœ jRÿ| ‹=ˆ E„Pÿ50Ëœ ÿ׋ESÿu¬Æ’Àœjÿ50Ëœ PÿuÅ’¡PËœ ֯SÀS% ðÿ0PPVh†h  ÿà ;ã8Ëœ „* ¡@Ëœ ֯h ÿ50Ëœ À% V
    €DPÿ  ;ã4Ëœ „÷ jè„ÔÿÿEâ€Pÿ54Ëœ ÿ׋E*+EËœj£Ã ¦ ‹EÅ“+Eâ€Y@™÷ù‹5@ Æ’M¨Ã¿â€°E¤E¤Pjh ÿ54Ëœ ÿÖSÿ5PËœ hÈ ÿ58Ëœ ÿÖ9PËœ t ÿ50Ëœ ÿd jjjPÿ` Pÿ\ hà jZÿu¸Ã¿` Pÿ5 ÿ, ֯¿ « W£ « ÿd Pÿu¸£|« ÿ„ ‰E´E¼Pj ÿu¸Ã¿H ÿu´Ã¿u¸Ã¿„ h<« E¼Pÿ …Àt,Wh»D h<« ÿu¸Ã¿T ÿ5|« ÿh Wÿd £|« Sÿ5|« j0ÿ58Ëœ ÿÖÿu¸Sÿ jjBf‰ ¨ ÿà SShÃ… ÿ58Ëœ £Å’« ÿ¤ ÿ5@ è*áÿÿÿuÿ50Ëœ ÿ° ÿ5ˆ« ÿÅ’ ÿu°Ã¨,øÿÿƒ
    €š ÿ¹Å’ ‹øèëõÿÿ…Àu‰€š ë#‹Ç¹â€ž èÓõÿÿ…Àu
    Ç€š  Æ’=€š ÿt ĂWèá÷ÿÿ‹øWèý÷ÿÿ;Ãtƒø…í 3À‹Mü_^[èŒ' É ÿuWè1ùÿÿ…ÀtSSjÿ50Ëœ ÿ¤ éw f9„± W¿ © Wè£ÃµÃ¿Ã¿Sh€ jSjh €Wÿ ƒøÿ£â‚¬¤ uxÿ8 ƒøuFj3Wÿ58 ÿ5T ÿ50Ëœ è4Õÿÿƒø„iÿÿÿƒøu<Sh€ jSjh ÀWÿ £â‚¬¤ ëWè² ÿ5@ èÜßÿÿÿ5@ Wÿü Æ’=€¤ ÿt ÿ5€š WèÞ hॠè³Ã¹Ã¿Ã¿h@¥ è©Ã¹Ã¿Ã¿â€¹0Ëœ jY3Àj
    ¿â‚¬¦ ó«â€¹E¬Y£Ë†¦ 3À¿ ¥ ó«E°PE´Ph° ÿ58Ëœ Ç€¦ X "°„¦ Ç*¦  Ç ¥ ( "°¥ ÿÖÿu°Ã¿u´h± ÿ58Ëœ ÿÖSSh· ÿ58Ëœ ÿÖSÿ* f%ÿf= ujjhØ ÿ58Ëœ ÿÖ3À@éPþÿÿÌÌÌÌÌ‹ÿU‹ìV‹u…öv‹E ‹MSf¶P3ÛŠ83Óf‰AA@@Nuë[^] ÌÌÌÌÌ‹ÿUܓēS3Û9]u3À@éŽ } éý "°]ütEô‰EüV‹5D WÿuüSSSÿuÿuÿuÿu ÿÖ‹ø;ûtGPj@ÿà ;ÉEøu jÿ@ 3Àë9ÿuüSWPÿuÿuÿuÿu ÿÖ‹ð;ótSEðPWÿuøÿuÿ< ‹ðÿuøÿÜ ‹Æ_^[É ÌÌÌÌÌ‹ÿW3ÿ9=PËœ tN9=XËœ V‹5@ t jè-Ãÿÿë&hˆš hÅ’Å¡ h° ÿ58Ëœ ÿÖWWh± ÿ58Ëœ ÿÖWWhÈ ÿ58Ëœ ÿÖ^_ÃÌÌÌÌÌ3À9PËœ tD9XËœ t h Pèz ÃV‹5@ PjhÈ ÿ58Ëœ ÿÖÿ5ˆš ÿ5Å’Å¡ h± ÿ58Ëœ ÿÖ^ÃÌÌÌÌÌ‹ÿUâÙÿÿ…À„© V‹5@ Wh†Sj ÿ58Ëœ ÿÖÿ5@ ¿ © WÇ  ÿü WèÃÿÿSSh± ÿ58Ëœ ÿÖSSh· ÿ58Ëœ ÿÖjjÿ5Å’« ÿH ;Ãt£Å’« ÿ5Å’« ÿð f‰ÿ5Å’« ÿè Sÿ5Å’« h¼ ÿ58Ëœ ÿÖ_f‰ ¨ ^[] ÌÌÌÌÌ‹ÿU‹ìV‹uVÿä  Fëƒú\tƒú:t;ÃŽv
    II·ƒú.uèfÆ’9.tƒÀ= w hô Vÿ ^] ÌÌÌÌÌ‹ÿU‹ìì ¡– V‹uj "°Eüh  "¦Ã¼Ã½Ã¿Ã¿PÿP ·Ã€Pÿ8 Pj h  ÿL …Àj0tÿ5T …üýÿÿPÿ50Ëœ ÿh ëVÿ54 ÿ5T ÿ50Ëœ èÔÃÿÿ‹Mü^è¢" É ÌÌÌÌÌ‹ÿUܓēV3ö9uVh€ j‰uðVujëjh Àÿu ÿ ƒøÿ£â‚¬¤ tÿ8 3É=· â€¢ÃÆ’=€¤ ÿ‰Mìu j0ÿu ÿ5h ÿ5T ÿuèSÃÿÿ3ÀéÚ 95PËœ tèýÿÿSW‹=@ VVjÿ58Ëœ ÿ×VVh½ ÿ58Ëœ ‹Øÿ×;ƉEô„I Pÿð ;ƉE„7 ¡(¥ H„ë H„š HuVEüPjhà‘ ÿ5€¤ ÿ< Æ’=(¥ tÿ\ ‰EøEð¿  ë 3ÀÇEøéý 3ÿPVVVSÿuWÿuøÿD 9uðu;Þt(;Æu$j1ÿu ÿ5* ÿ5T ÿuèpÃÿÿƒø„© 3ÿSÿuWÿuøÿ5€¤ è{ûÿÿëx‹=< VEüPjhè‘ ÿ5€¤ ÿ×SÿuÿuèûÿÿVEüPPÿuÿ5€¤ ÿ×Sÿu‹øÿuèýúÿÿë0‹=< VEüPjhä‘ ÿ5€¤ ÿ×VEüPPÿuÿ5€¤ ÿ׋ø;þueÿ5ˆ« ÿÅ’ ÿu ènýÿÿÿ5ˆ« ÿÅ’ ÿ5€¤ ÿø Æ’
    €¤ ÿ9uôt ÿuôÿè 9uìt ÿu ÿX 95PËœ tè±Ã»Ã¿Ã¿3À_[^É ÿ5€¤ ÿT ¡(¥ VVh¹ ÿ58Ëœ £0 ÿ@ ÿu è!Ùÿÿÿ5€¤ ‰5 ÿø ÿuôƒ
    €¤ ÿÿè 95PËœ tèHûÿÿÿ5ˆ« ÿÅ’ 3À@ëˆÌÌÌÌÌh€ h  èà# ¡– ‰Eä‹}‰½Ã€Ã½Ã¿Ã¿3Û‰Ìýÿÿ‰°Ã½Ã¿Ã¿â€°ÃˆÃ½Ã¿Ã¿â€°¸Ã½Ã¿Ã¿â€°Ãýÿÿ¡â‚¬¤ ƒøÿuWé× pýÿÿQPÿ° ‹µâ€Ã½Ã¿Ã¿â€°µ¬Ã½Ã¿Ã¿;Ãu Wè3üÿÿéï þ @ă 9ýÿÿ…½ ÿ5„« ÿÅ’ ;ótD3ÿ‰½Ã„ýÿÿSVSjSÿ5€¤ ÿ´ ‰…¤Ã½Ã¿Ã¿;Ãt9VSSjPÿh ‰…Äýÿÿÿµ¤Ã½Ã¿Ã¿Ã¿ø 녴ýÿÿ‰…Äýÿÿf‰´Ã½Ã¿Ã¿â€¹½Ã„ýÿÿÿ5€¤ ÿø Æ’
    €¤ ÿ;ûuÿ5ˆ« ÿÅ’ ÿµÃ€Ã½Ã¿Ã¿Ã¨{ûÿÿéJ "°]ü‰½¼Ã½Ã¿Ã¿â€¹E ƒøÿ…² ·=ï» t<=ÿþ t$=þÿ u[Ç…Èýÿÿ Ç…Ôýÿÿ "¹ÃžÃ‘ëé0 3À@‰…Èýÿÿ‰…Ôýÿÿëæƒþv(€¿u "Ç…¨Ã½Ã¿Ã¿ Ç…Ãýÿÿéý jX‰…Ôýÿÿé˜ VWèx "°â€¦ÃˆÃ½Ã¿Ã¿;ÃtÇ…Ôýÿÿ "¹ÃžÃ‘ëéà VWèü "°â€¦¨Ã½Ã¿Ã¿;Ä Ç…Ôýÿÿ Ç…Ãýÿÿéý "¹Ã˜Ã½Ã¿Ã¿3À9…Èýÿÿu PPVÿµ¼Ã½Ã¿Ã¿PÿµÃýÿÿÿd ‹Ø‰Øýÿÿ3ÀPPj ÿ58Ëœ ‹5@ ÿÖj j h± ÿ58Ëœ ÿÖj j h· ÿ58Ëœ ÿÖjDPÿ5Å’« ÿH ‰…¸Ã½Ã¿Ã¿â€¦Ã€…, ÿµÃ€Ã½Ã¿Ã¿â€¦ÃœÃ½Ã¿Ã¿Pÿü 3ÛSèàøÿÿÿ5ˆ« ÿÅ’ j0…ÜýÿÿPÿ5P ÿ5T ÿ50Ëœ è%Ëÿÿ…´Ã½Ã¿Ã¿;øtWÿ` SSj ÿ58Ëœ ÿÖƒMüÿéƒ H„ˆ HteHt‰Ôýÿÿ‰ÃýÿÿéðþÿÿÇ…¨Ã½Ã¿Ã¿ Ç…Ãýÿÿéý jX‰…Ôýÿÿƒþ†Êþÿÿf?ï»…¿Ã¾Ã¿Ã¿â‚¬¿…µÃ¾Ã¿Ã¿O‰¼Ã½Ã¿Ã¿+ð‰µ¬Ã½Ã¿Ã¿Ã©Å¸Ã¾Ã¿Ã¿3À@‰…Èýÿÿ‰…Ôýÿÿ‹ÞÑë‰Øýÿÿf?þÿë3À@‰…Èýÿÿ‰…Ôýÿÿ‹ÞÑë‰Øýÿÿf?ÿþ…aþÿÿK‰ØýÿÿéUþÿÿPÿð ‰…Ìýÿÿƒ½ÃˆÃ½Ã¿Ã¿ tFf‹fùÿþuwëfùþÿu
    SOQPèþõÿÿëG‹÷ ‹ø‹ÃÃéó¥â€¹ÃˆÆ’áó¤â€¹½Ã„ýÿÿ‹5@ ë$SPÿµ¬Ã½Ã¿Ã¿Ã¿µ¼Ã½Ã¿Ã¿j ÿµÃýÿÿÿd ‹Ø‰Øýÿÿ‹…Ìýÿÿ‹Ôýÿÿ‰
    0 Æ’Müÿë>3À@Ëeèj0ÿµÃ€Ã½Ã¿Ã¿Ã¿54 ÿ5T ÿ50Ëœ è‚Éÿÿ3ÛƒMüÿ‹½Ã„ýÿÿ‹5@ ‹…Ìýÿÿ´Ã½Ã¿Ã¿;ùt
    Wÿ` ‹…Ìýÿÿ3ÿ;ÇtR‹È;ßv‹Óf99ufÇ AAJuñf‰<Xf‹@@fƒù.u&f‹@@fƒùLuf‹@@fƒùOufÆ’8GÇ…°Ã½Ã¿Ã¿ t‰½°Ã½Ã¿Ã¿9½¸Ã½Ã¿Ã¿tÿµ¸Ã½Ã¿Ã¿Ã¿è ‹…¸Ã½Ã¿Ã¿£Å’« ÿµÃ€Ã½Ã¿Ã¿h © ÿü ÿµÃ€Ã½Ã¿Ã¿Ã¨¥Ã“ÿÿ‰= ÇHËœ  Wÿ5Å’« h¼ ÿ58Ëœ ÿÖƒ=HËœ uIÿ5ˆ« ÿÅ’ ‰=HËœ j0ÿµÃ€Ã½Ã¿Ã¿Ã¿5P ÿ5T ÿ50Ëœ èbÈÿÿWèëõÿÿWjj ÿ58Ëœ ÿÖéÎ "°=HËœ WWhÃ… ÿ58Ëœ ÿ¤ 9½°Ã½Ã¿Ã¿t%SSh± ÿ58Ëœ ÿÖWWh· ÿ58Ëœ ÿÖjè¤ 3ÛCSWh¾ h ÿ58Ëœ ÿÖPSÿ50Ëœ ÿ  WSj ÿ58Ëœ ÿÖSWÿ58Ëœ ÿ$ ÿ58Ëœ ÿü ÿ5ˆ« ÿÅ’ ‹Ãë/j0Wÿ5P ÿ5T ÿ50Ëœ èÇÿÿÿ5€¤ ÿø Æ’
    €¤ ÿ3À‹MäèI è*  ÌÌÌÌÌ‹ÿU‹ìQQSV‹u·WPÿÀ ‰Eü·Pÿ ‹=ä V‰Eøÿ׋] …Û‰Eu\‹]Sÿ×CëQKKÆ’} f‹tf;ë
    f;Eütf;Eøu5Æ’} tÿuVSÿ Ā …ÀëÿuVÿuSh h  ÿì ƒøt ;]uª3Àë‹Ã_^[É ÌÌÌÌÌ‹ÿU‹ìQSV‹u WVÿä ‹Ø·PÿÀ ‰E ·Pÿ ‹}‰EüëBÆ’} tf;u5SVWÿ Ā …Àë#f;E tf;EüuSVSWh h  ÿì ƒøt
    GGf‹f…Àu¶f‹f֯À#Ç_^[É ÌÌÌÌÌ‹ÿUܓē$‹ES3Ûf9‰]è‰]ìu3ÀéË V‹5@ WEðPEüPh° ÿ58Ëœ ÿÖÿ50Ëœ ÿd Sj3ÿGWP‰EÜÿ` PÿX ;Çu ‰}ì‰]ð‰]üSSh½ ÿ58Ëœ ÿÖ;ÉEàt
    Pÿð ‹ø;ûu3ÀéQ 9â€Å¡ tsSÿuühÉ ÿ58Ëœ ÿÖSPh» ÿ58Ëœ ‰EøÿÖ‹Mø‰Mø‹Müë$Æ’}ø "¹Eô‰EätPÿMøj ÿuøh» ÿ58Ëœ ÿÖ‹Mäÿ5Å¡  Oÿu‰EôGQPè´Ã½Ã¿Ã¿â€¹Ã˜â€¦Ã›t½Ã«ÿ5Å¡ ‹EðÿuGPèDþÿÿ‹Øÿuàÿè …ÛuIö ¥  …¢ ÿ5ˆ« ‹5Å’ ÿÖ‹ø¡<Ëœ …Àu¡0Ëœ j@h ¨ ÿ5H ÿ5T Pè©Ã„ÿÿWÿÖëfÿu+ßÑû‰]üÿä EüPÿuüh± ÿ58Ëœ ÿÖ3ÿ9}ìtWjjÿuÜÿ` Pÿ\ ö ¥  uWWh· ÿ58Ëœ ÿÖjèÃÿÿÇEè "¹Eè_^[É ÌÌÌÌÌ‹ÿUܓē8S‹Å’ V‹uWÿ5„« ÃuôÿÓ3ÿ;÷‹5@ ‰EøtjèÀÿÿWWhÈ ÿ58Ëœ ÿÖWWh¸ ÿ58Ëœ ÿÖW֯WÀjÿ58Ëœ ÷؉EèÿÖ‰EðD Pjÿà ;ljEüu9}ôtWjhÈ ÿ58Ëœ ÿÖÿuøÿÓéð EÈPÿ50Ëœ ÿˆ ÿuüÿð P‰Eì‹Eð@Pj
    ÿ58Ëœ ÿÖWÿ5€« jÿ50Ëœ ÿuÔÿuÃWWÿuh†h†h  ÿà ;ljEuÿuøÿÓ9}ôtrWjhÈ ÿ58Ëœ ÿÖë`jìÿ58Ëœ ÿp 
     Pjìÿuÿl jÿ5|« j0ÿuÿÖÿuìWj ÿuÿÖ…Àu<ÿuøÿÓ9}ôtWjhÈ ÿ58Ëœ ÿÖÿuÿ¨ ÿuüÿè ÿuüÿÜ 3Àé» ÿuüÿè ÿ58Ëœ ÿ¨ ‹E£8Ëœ ¡Å’« ;ÇtPÿÜ ‹EüWWhÃ… ÿ58Ëœ £Å’« ÿ¤ jÿ50Ëœ ÿ° Wÿuèh¹ ÿ58Ëœ ÿÖÿ58Ëœ ÿx ÿuøÿÓ9=@Ëœ t8EØPÿ50Ëœ ÿˆ ‹Eä+EÜP‹Eà+EØPèa¼Ã¿Ã¿j輾ÿÿjÿ54Ëœ ÿ° 3À@_^[É ÌÌÌÌÌ‹ÿUܓēV3öë?jVVVEäPÿ …Àt4¡8¡ ;ÆtMäQPÿ* …ÀuEäPÿËœ EäPÿ†954¡ t¹3À954¡ ^â€Ã€Ã‰Ã‚ ÌÌÌÌÌ‹ÿU‹ìV‹5` W‹}jWÿÖj
    W£Ã¨Å¡ ÿÖjZW£Ã¤Å¡ ÿÖjnW£Ã Å¡ ÿÖjoW£ÃœÅ¡ ÿÖjpW£Ã˜Å¡ ÿÖjqW£Ã”Å¡ ÿÖ_£ÃÅ¡ ^] ÌÌÌÌÌ‹ÿUܓēT‹¬¤ …ÒSV‹5Ä W»ûÿÿuf
    °¤ €h*¤ ÿÖ!°¤ ‹¬¤ 3ÀjY}¬Ã³«¡0Ëœ ‰E°¡¨¤ Æ’Ãÿ…ÀÇE¬T "°}øÇEÀ „ t‰E´â€¦Ã’t‰U¸E¬PÿÃŒ …Àu@Æ’}ütÆ’}üu4ë‹}¼Æ’=¨¤  uf
    °¤ €h*¤ ÿÖ!°¤ ‹E´£¨¤ ‹E¸£¬¤ ‹Ç_^[ÉÃÌÌÌÌÌjÿ50Ëœ ÿ  ÿ58¡ ÿ¨ Æ’%8¡  ÃÌÌÌÌÌ‹ÿU‹ìQQ‹E HHVW„ì ďQ„» ď(t\-• …ô "¹5< Sj_»Ã £ j j'hÃ… WÿuÿÖSWÿuÿ| ƒÃPGû0¤ ~Úh ' j h± jÿuÿÖ3À@[é¥ "¹u9uu(EøPÿ8 EøPÿuÿ4 ÿuüÿuøÿuÿ0 ‹ðVÿ, ƒø|gƒø!bh  j
    ÿ5t Vÿ( 3À@ëK‹uÿv ÿ, ƒø|8ƒø!3h  j ÿ5t ÿv ëÃj_¾@£ j(VWÿuÿ„ ĮPGþ£ ~ç3À_^É ÌÌÌÌÌ‹ÿU‹ìì$ ¡– SV‰EüW‹}3Û…Üýÿÿ3öP‰½Ã°Ã½Ã¿Ã¿F‰àýÿÿ‰äýÿÿ‰èýÿÿÿø …ÜýÿÿPÿü YYf‹f;Ë„ÿ ¡â‚¬ ë4fƒù&tIƒ…ðýÿÿ‹ÞiÛ "µÃ Ã½Ã¿Ã¿â€¹:ßf‰ ] "º ‹ðýÿÿ· G‰:f…É‹ä uËðýÿÿfÆ’9&…— ƒ…ðýÿÿ‹ðýÿÿf‹ f;„ù f;H„ï f;H„4 f;H„* f;H„à f;H
    „Å f;H „Ž f;H„„ fƒù&u?Å’µÃ Ã½Ã¿Ã¿â€¹zÿ "°½Ã¬Ã½Ã¿Ã¿
     "¹Ã¾iÿ ú‹•ìýÿÿfÇ} "º & "°éì f;Ht1f;Ht+f;Htf;Htf;Ht
    f;H…Ä 3öé½ j^éµ 3öFé* hð‘ ÿÓ¼µÃ Ã½Ã¿Ã¿â€¹ú "°â€¢Ã¬Ã½Ã¿Ã¿Æ’ Phð‘ ë+hø“ ÿÓ¼µÃ Ã½Ã¿Ã¿â€¹ú "°â€¢Ã¬Ã½Ã¿Ã¿V Phø“ ‹ÆiÀ ÃE "º Pÿ@ ‹…ìýÿÿƒÄ é( ƒ…ðýÿÿ‹…ðýÿÿ3ÿfÆ’8+u,ë‹…ðýÿÿ· ¿|JÃ@@‰…ðýÿÿ· jPÿ …ÀYYuÖ¡¼Å¡ ÇP…ôýÿÿhËœ Pÿ€ Ā …ôýÿÿP¼µÃ Ã½Ã¿Ã¿Ã¿Ã“‹È‹Èù },ôýÿÿQ‹ÎiÉ ÈM "º Pÿü …ôýÿÿPÿӉƒ*ðýÿÿëyÆ’=  "¦Ã´Ã½Ã¿Ã¿uh Ph © ÿÔ ë
    ÿ5@ Pÿü …ôýÿÿP¼µÃ Ã½Ã¿Ã¿Ã¿Ã“‹È‹Èù },ôýÿÿQ‹ÎiÉ ÈM "º Pÿü …ôýÿÿPÿÓ‰¡â‚¬ ƒ…ðýÿÿ‹ðýÿÿf‹ f…É…ýÿÿ_^3É…àýÿÿ[‹ÑfÆ’$U "º  à ƒÀù ~â‹Müè(
    É ÌÌÌÌ̃=¬¤  u@€
    ±¤ h*¤ ÿÄ €%±¤ ûƒ=¬¤  uj0ÿ5T ÿ5Ëœ ÿ50Ëœ ÿh ƒÈÿÃVWÿ5¬¤ ‹=¨ ÿ׋
    ¨¤ ‹ð3À…ÉtQÿ×P·FFj P·FPÿ@ ÿ5¬¤ ‹5¬ ‹øÿÖ¡¨¤ …ÀtPÿÖ…ÿuj0ÿ5T ÿ5Ëœ ÿ50Ëœ ÿh ƒÈÿë‹Ç_^ÃÌÌÌÌÌ‹ÿU‹ìQQSW3ÛSEüP¿@¡ Wè„ "¦Ã€uƒÈÿé¨ VEøPSSjSÿuüèZ ÿuøj@ÿà ‹ð;óu
    ÿuüè5 ƒÈÿëwEøPÿuøVjSÿuüè) "¦Ã€u VÿÜ ëÓ€
    ±¤ h*¤ ÿÄ €%±¤ ûSSWÿ6ÿ@ V‹øÿÜ ÿuüèÛ
    ;ûuj0ÿ5T ÿ5Ëœ ÿ50Ëœ ÿh 놋Ç^_[ÉÃÌÌÌÌÌ‹ÿU‹ì‹E - t2Htďt3Àëhjh`ð ÿ5˜š ÿ\ ëPÇ4¡  è2ùÿÿë?j ÿuÿÃŒ Æ’=  £ËœÅ¡ t¡@ ë
    h © èõ¶Ã¿Ã¿Pjÿuÿ| ÿuÿx 3À@] ÌÌÌÌÌ‹ÿU‹ìQQSV‹u ¶Ãàۈ£ 3Ûf9u3Àéë Pèúÿÿ;óu¡ÃŒÅ¡ ë¡Ã¤Å¡ +0¡ +Èš f9 "º ‹5ä ‰E Wt¿ "º WÿÖPWÿu ÿ5Äš ÿuÿL f9 tKEøP» SÿÖPSÿuÿ< ¡Ã¨Å¡ +Àš SÄš â„¢+‹ø‹Eø™+ÂÑøÑÿ+øÿÖPSÿu WÿuÿL fÆ’=Ÿ  t8EøP»Ÿ SÿÖPSÿuÿ< ‹=èš +=Àš S+}øÿÖPSÿu WÿuÿL 3À@_^[É ÌÌÌÌÌ‹ÿU‹ììÈ ¡– SV‹u3ÛWÿ5„« ‰Eü‰µÃˆÃ¼Ã¿Ã¿â€°¬Ã¼Ã¿Ã¿â€°Ã€Ã¼Ã¿Ã¿â€°¼Ã¼Ã¿Ã¿â€°°Ã¼Ã¿Ã¿â€°Ã„üÿÿ‰4¡ ‰8¡ ÿÅ’ Vè<öÿÿ¾Ã°Å¡ VÿËœ ÿÅ“ ¿ Whð‘ SVjP‰…¸Ã¼Ã¿Ã¿Ã¿* Whø“ SVSÿµ¸Ã¼Ã¿Ã¿Ã¿¤ ¡Ã Å¡ ¯ jY¾ « ½ÃŒÃ¼Ã¿Ã¿Ã³¥â„¢¹0ýÿÿ÷ùjÿµÃˆÃ¼Ã¿Ã¿â€°Ãüÿÿ‹€ ‰…ÌüÿÿÿÓj ÿ5Øš ÿ5Üš ÿµÃˆÃ¼Ã¿Ã¿Ã¿| j ÿ5¸¤ ÿ5´¤ ÿµÃˆÃ¼Ã¿Ã¿Ã¿x ¸ ¡ ‹ø¾ÃŒ¤ ¥¥¥j¥â€¹µÃˆÃ¼Ã¿Ã¿PVÿt 3ÿGWVÿÓ‹d …ÌüÿÿPÿÓ…À‰…´Ã¼Ã¿Ã¿„É PVÿ„ …À‰…Àüÿÿ„³ WVÿp …8üÿÿPV‹5l ÿÖ…À„“ ö…oüÿÿurÿµÃ€Ã¼Ã¿Ã¿Ã¿µÃˆÃ¼Ã¿Ã¿Ã¿„ Pÿh jY3À½Ã¨Ã¼Ã¿Ã¿Ã³«â€¦ÃŒÃ¼Ã¿Ã¿PÿÓ…À‰…´Ã¼Ã¿Ã¿„M PÿµÃˆÃ¼Ã¿Ã¿Ã¿„ …À‰…Àüÿÿ„2 "¦8üÿÿPÿµÃˆÃ¼Ã¿Ã¿Ã¿Ã–…À„ 3ÿG‹…8üÿÿ‹Hüÿÿ‹ ¡ È‹…LüÿÿÃà£<¡ ¡Ã”Å¡ +Ã3Û;Ó‰
    0¡ ‰Äš ‰Äš ‹èš +Üš (¡ Â;ãÀš ‰Àš ¡$¡ ‹ÃÅ¡ +Â;ãÌš ‰Ìš ¡Ã¤Å¡ ‹ð+5Øš 5,¡ Ö;ӉȚ ‰Èš +Èš +Ìš ™÷ùf9࣠tHf90¤ tH;ÃŽ' h£] ÿµÃˆÃ¼Ã¿Ã¿Ã¿D ‹ð;óŒŽ SSh½ ÿ58Ëœ ÿ@ ;É…¬Ã¼Ã¿Ã¿„  Pÿð ;É…Äüÿÿ„÷ h "¦(ýÿÿPÿ50Ëœ ÿ Sÿ50Ëœ ÿ  ShËe ÿ50Ëœ j ÿ5€« ÿ ;ã8¡ „« "¦(ýÿÿSÇ…ˆüÿÿ "°â€¦Å’üÿÿ‰üÿÿ‰â€Ã¼Ã¿Ã¿â€°ËœÃ¼Ã¿Ã¿Ã¿@ …ˆüÿÿPÿµÃˆÃ¼Ã¿Ã¿Ã¿P …À
    ÿ8 ‹ðé¹ 3À‰½°Ã¼Ã¿Ã¿â€°=¼Å¡ ½Å“üÿÿ«««â€¹
    0¡ «¡Ã„Å¡ ‰…œüÿÿ¡Ã¨Å¡ +Àš 3ö‰…¤Ã¼Ã¿Ã¿¡ÃŒÅ¡ ‰…*üÿÿ¡Ã¤Å¡ +Èš f95࣠‰¸Ã¼Ã¿Ã¿â€°¼Ã¼Ã¿Ã¿â€°â€¦¨Ã¼Ã¿Ã¿t*üÿÿf950¤ t+É…¨Ã¼Ã¿Ã¿Ã¿µÃ„üÿÿÿä jìÿ58Ëœ ‹Øÿp öÄ t
    Ç…¸Ã¼Ã¿Ã¿  954¡ …ú "¦Ã›Žò ÿ5¼Å¡ …0ÿÿÿÿ5Ä jdPÿ Ā…0ÿÿÿPjÿ58¡ ÿ| ‹µÃˆÃ¼Ã¿Ã¿j Vèúÿÿ3À½tüÿÿ«««««¡<¡ VÇ…tüÿÿ "°â€¦xüÿÿÿ8 …ÀŽ# "¦tüÿÿP‹…¸Ã¼Ã¿Ã¿
    P( P…œüÿÿPSÿµÃ„üÿÿ3ÿGV‰½¼Ã¼Ã¿Ã¿Ã¿ WVè®Ã¹Ã¿Ã¿Vÿ( …ÀŽÜ Æ’¥¼Ã¼Ã¿Ã¿ "¹â€¦â€žÃ¼Ã¿Ã¿Ã¿¼Å¡ …À„ž "¹Ã„üÿÿ A+؃=4¡  "°Ã„üÿÿ„ÿÿÿ3ö3Û9ÀüÿÿtÿµÃ€Ã¼Ã¿Ã¿Ã¿µÃˆÃ¼Ã¿Ã¿Ã¿„ ÿµ´Ã¼Ã¿Ã¿Ã¿h 9Äüÿÿt ÿµ¬Ã¼Ã¿Ã¿Ã¿è 9¼Ã¼Ã¿Ã¿tÿµÃˆÃ¼Ã¿Ã¿Ã¿( …À ;óuÿ8 ‹ð9°Ã¼Ã¿Ã¿t\94¡ ÿµÃˆÃ¼Ã¿Ã¿t8ÿ, ëF3Ûj0ÿ5T ÿ5¤ ÿ50Ëœ ÿh Sÿ@ ÿ8 ‹ðéRÿÿÿÿ0 …À ;óuÿ8 ‹ðÿµÃˆÃ¼Ã¿Ã¿Ã¿4 ètñÿÿÿ5ˆ« ÿÅ’ 94¡ u‹ÆëjýX‹Mü_^[èY É ÌÌÌÌÌ‹ÿU‹ìVÿ5„« ‹5Å’ ÿÖ‹Eď tHHtè öÿÿë èÃöÿÿëèCðÿÿƒøÿu ÿ5ˆ« ÿÖ3ÀëPè2ùÿÿ^] ÌÌÌÌÌ‹ÿU‹ìì$ ¡– Vÿu‰Eüèÿÿÿ‹ð…ö„ ƒþþ„„ ƒþýtƒþüujp^ƒþûuj^ƒþÿuÿ8 ‹ð…öt^j h "¦ÃœÃ¼Ã¿Ã¿PÿP ·Ã€PVj h  ÿL …À‹
    ` tÜüÿÿƒ=  ¡@ u¸ © j0PQÿ5T ÿ50Ëœ èr°Ã¿Ã¿â€¹Mü^è@ É ÌÌÌÌÌ‹ÿU‹ììè ¡– SVW‰Eü3Ûf‰hýÿÿ3À¹¤ ½jýÿÿó«3öf«F‹þÿÅ“ %ÿ f;Ætf=
    t3ö…üÿÿPÿËœ ;ó‹5 t.jìÿ58Ëœ ÿp öÄ "¦hýÿÿt
    j!_hD ëj_h@ PÿÖjP…(üÿÿPS…üÿÿPW¿  Wÿ* jP…ÈüÿÿPS…üÿÿPjWÿ¤ 9]¿8 t
    W…hýÿÿPÿÖ…ÈüÿÿP…hýÿÿPÿÖh4 …hýÿÿPÿÖ…(üÿÿP…hýÿÿPÿÖ9]t
    W…hýÿÿPÿÖ…hýÿÿPjh ÿ58˜ ÿ@ ‹Mü_^[è÷ É ÌÌÌÌÌ‹ÿU‹ìV3ö3ÉF3Ò9M ~5‹EŠ„Ày3ö…Òu<
     
  18. 2010/04/17
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    remainder of text from notepad.....
    €rÃàB„ÀxùJtë$À<€uJA;M |Ó…Ã’w…öt3Àë3À@^] ÌÌÌÌ̋ÿU‹Ã¬QƒMüÿEüPÿu ÿuÿ  É ÌÌÌÌ̋ÿU‹Ã¬ƒÃ¬¡– …Àt=@» uMVEøPÿ¸ ‹uü3uøÿ  3ðÿŒ 3ðÿ 3ðEðPÿ” ‹Eô3Eð3Æ%ÿÿ ^u¸@» £– ֋ – ÉÃÌÌÌÌÌ;
    – u ÷à ÿÿuÃé ÌÌÌÌ̋ÿU‹Ã¬Ã¬0 W‰…Øýÿÿ‰Ã”ýÿÿ‰•Ãýÿÿ‰ÃŒÃ½Ã¿Ã¿‰µÃˆÃ½Ã¿Ã¿‰½Ã„ýÿÿfŒ•ðýÿÿfŒÃ¤Ã½Ã¿Ã¿fŒÃ€Ã½Ã¿Ã¿fŒ…¼Ã½Ã¿Ã¿fŒ¥¸Ã½Ã¿Ã¿fŒ*´Ã½Ã¿Ã¿œ…èýÿÿÇ…(ýÿÿ  ‹E‰…àýÿÿE‰…ìýÿÿE‹@ü‰…ÜýÿÿjY3À½Ãüÿÿó«Ã‡…Ãüÿÿ  À‹E‰…Üüÿÿ…Ãüÿÿ‰Eø…(ýÿÿ‰Eü¡– ‰… ýÿÿ¡ – ‰…$ýÿÿj ÿÄ EøPÿl h ÿÀ Pÿ¼ _ÉÃÌÌÌÌ̋ÿU‹Ã¬QQVEüPh  3öVhT h €Ã¿ …Àu0EøPÿuÇEø VVh ÿuüÿ …ÀuFÿuüÿ ‹Ã†Ã«3À^É ÌÌÌÌ̋ÿU‹Ã¬Ã¬ ‹
    ¨š …É¡– S‹] VW‹}‰EüuI9
    ¤š uA…øþÿÿPèbÿÿÿ…À‹5È t…øþÿÿPÿÖ£¨š ‹
    ¨š …ÉuhH ÿ֋È…ɉ
    ¨š t¡œš …Àu jQÿ …À£œš uǤš  3Àë
    ÿuÿuSWÿËMü_^[è×ýÿÿÉ ÌÌÌÌÌÌÿ%¸ ÌÌÌÌÌÌÿ%´ ÌÌÌÌÌÌÿ%¼ ÌÌÌÌÌjph˜ è¿ 3ÛS‹=ÃŒ ÿ×f8MZu‹H<È9PE u·A=  t=  t‰]äë'ƒ¹„ vò3À9™Ã¸ ëƒytvâ3À9™Ã¨ •À‰Eä‰]üjÿ8 Yƒ
    œ« ÿƒ
    *« ÿÿ4 ‹
    ¸š ‰ÿ0 ‹
    ´š ‰¡, ‹ £¤« è§ 9– u hôu ÿ( Yèw h h è] ¡°š ‰EÜEÜPÿ5¬š EÔPEÃPEÃŒPÿ  ‰EÈh h è' ƒÃ„$¡ ‹0‰uà€> "u:F‰uàŠ:Ãt< "uò€> "uF‰uàŠ:Ãt< vò‰]¬E€Pÿà öE¬t·E°Ã«€> vØF‰uàëõj
    XPVSSÿ×Pè%´Ã¿Ã¿‹Ã°‰uÄ9]äuVÿ ÿ  ë-‹Eì‹‹ ‰MØPQè‹ YYËeè‹u؃}ä uVÿð ÿô ƒMüÿ‹Ã†Ã¨A ÃÌÌÌÌÌhºu d¡ P‹D$‰l$l$+àSVW‹Eø‰eèP‹EüÇEüÿÿÿÿ‰EøEðd£ ËMðd‰
    Y_^[ÉQÃÌÌÌÌÌÌÿ% ÌÌÌÌÌÌÿ%ì ÌÌÌÌÌÌÿ%$ ÌÌÌÌÌh  h  è YYÃÌÌÌÌÌ3ÀÃÌÌÌÌÌÿ%< ÌÌy ÿÿÿÿÿÿÿÿ¬z Ä @x ÿÿÿÿÿÿÿÿúz t €y ÿÿÿÿÿÿÿÿ:{ ´ ìv ÿÿÿÿÿÿÿÿ^{  ¸y ÿÿÿÿÿÿÿÿv| ì ÃŒv ÿÿÿÿÿÿÿÿ}  Xw ÿÿÿÿÿÿÿÿì€ Œ ôv ÿÿÿÿÿÿÿÿ^‚ ( Tx ÿÿÿÿÿÿÿÿ<‡ ˆ ¢| ¶| Ä| Ô| ä| ø| | H{ à Ä º ® Ú Š ~ ò ^ ¢ æ P > 0
    ú€ ‚ ‚ ‚ *‚ <‚ P‚ n $€ € ú ê Ô Â ° ¢ ’ t ^ :€ T€ h€ ˜€ ¶€ Æ€ Ú€ } $} 6} B} P} \} j} |} ˆ} –} ¤} °} ¼} Ê} Ö} ì} þ} ~ ~ (~ :~ P~ \~ f~ r~ ~~ Ž~ š~ ª~ À~ Ã~ â~ þ~   & 8 N |€ Èz Öz èz ºz $… 4… @… L… T… f… x… Œ… ž… ®… … ÃŽ… ä… ð… † † "† 6† F† Z† h† v† Œ† … ö„ ê„ Ø„ ¼… ž† ¸† Ȇ ؆ æ† ö† ‡ ‡ *‡ Ä„ h‚ v‚ ˆ‚ ”‚ ¤‚ ¼‚ ÃŽ‚ Þ‚ ô‚ ƒ ƒ ƒ 2ƒ Pƒ `ƒ pƒ ‚ƒ ƒ šƒ ¨ƒ ºƒ ÃŒƒ Úƒ æƒ øƒ „ „ "„ .„ @„ T„ h„ €„ ”„ ¤„ ²„ { { *{ zz ^z žz Pz @z Šz jz z ,z Ü{ Ô{ Ê{ Â{ ¶{ ê{ *{ Œ{ „{ z{ l{ ô{ ü{ | | "| 6| F| V| d| ‚| ¬{  CommDlgExtendedError GetSaveFileNameW  GetFileTitleW  ChooseFontW  FindTextW  ReplaceTextW  PageSetupDlgW
    GetOpenFileNameW  PrintDlgExW comdlg32.dll ShellAboutW  DragFinish # DragQueryFileW  DragAcceptFiles SHELL32.dll  ClosePrinter x GetPrinterDriverW ~ OpenPrinterW WINSPOOL.DRV  CreateStatusWindowW COMCTL32.dll ä_snwprintf /wcsncmp t_wtol í _except_handler3 Æiswctype 0wcsncpy Ôlocaltime time Ã… _c_exit ö _exit N _XcptFilter È _cexit exit ¨ _acmdln m __getmainargs ;_initterm š __setusermatherr ¶ _adjust_fdiv € __p__commode … __p__fmode ˜ __set_app_type msvcrt.dll Ö _controlfp ûRegSetValueExW îRegQueryValueExW ÊRegCloseKey ÃRegCreateKeyW 9IsTextUnicode íRegQueryValueExA ãRegOpenKeyExA ADVAPI32.dll ñGlobalFree lGetLocaleInfoW KLocalFree GLocalAlloc ´lstrlenW QLocalUnlock 8 CompareStringW MLocalLock ê FoldStringW 1 CloseHandle ®lstrcpyW £ReadFile R CreateFileW «lstrcmpiW <GetCurrentProcessId —GetProcAddress
    GetCommandLineW ¥lstrcatW ÃŒ FindClose Ó FindFirstFileW YGetFileAttributesW ¨lstrcmpW cMulDiv ±lstrcpynW PLocalSize hGetLastError ‹WriteFile SetLastError ~WideCharToMultiByte NLocalReAlloc ì FormatMessageW ×GetUserDefaultUILanguage ýSetEndOfFile ‚ DeleteFileW ö GetACP ZUnmapViewOfFile dMultiByteToWideChar WMapViewOfFile Q CreateFileMappingW ZGetFileInformationByHandle üGlobalUnlock õGlobalLock ÓGetTimeFormatW @GetDateFormatW ÕGetUserDefaultLCID jGetLocalTime ‘QueryPerformanceCounter ÑGetTickCount >GetCurrentThreadId ½GetSystemTimeAsFileTime FTerminateProcess ;GetCurrentProcess WUnhandledExceptionFilter 2SetUnhandledExceptionFilter ALoadLibraryA uGetModuleHandleA ¬GetStartupInfoA KERNEL32.dll DeleteObject = CreateFontIndirectW kGetDeviceCaps —GetObjectW ¥GetStockObject ÃŽ EnumFontsW »GetTextFaceW SelectObject / CreateDCW µGetTextExtentPoint32W OTextOutW Œ DeleteDC – EndDoc AbortDoc ˜ EndPage HStartPage FStartDocW SetAbortProc ½GetTextMetricsW SetBkMode ËLPtoDP BSetWindowExtEx >SetViewportExtEx +SetMapMode GDI32.dll éMoveWindow “InvalidateRect ÓWinHelpW GetDlgCtrlID < ChildWindowFromPoint 1ScreenToClient GetCursorPos 7SendDlgItemMessageW @SendMessageW , CharNextW 9 CheckMenuItem B CloseClipboard ŸIsClipboardFormatAvailable óOpenClipboard 7GetMenuState  EnableMenuItem YGetSubMenu ,GetMenu ãMessageBoxW SetWindowLongW oGetWindowLongW GetDlgItem VSetFocus TSetDlgItemTextW ÙwsprintfW GetDlgItemTextW Æ EndDialog EGetParent ¬UnhookWinEvent ¢ DispatchMessageW ªTranslateMessage ¨TranslateAcceleratorW ¢IsDialogMessageW PostMessageW >GetMessageW ~SetWinEventHook ]GetSystemMetrics ‡SetWindowTextW ¼LoadIconW GetFocus GetDesktopWindow ’ShowWindow ÿ GetClientRect MSetCursor *ReleaseDC GetDC Ÿ DialogBoxParamW CSetActiveWindow "GetKeyboardLayout DefWindowProcW ™ DestroyWindow ÛMessageBeep PostQuitMessage GetForegroundWindow ¦IsIconic sGetWindowPlacement 7 CharUpperW ÉLoadStringW ´LoadAcceleratorsW \GetSystemMenu RegisterClassExW ¾LoadImageW ºLoadCursorW ‚SetWindowPlacement a CreateWindowExW (RegisterWindowMessageW »UpdateWindow oSetScrollPos ) CharLowerW þPeekMessageW Ä EnableWindow ¾ DrawTextExW V CreateDialogParamW zGetWindowTextW USER32.dll Ôp  x  N o t e p a d ÿÿÿÿ       

          -             ! " # $ % & ' ( ) * + , 4 8 < @ L H D P T X \ ` d h l p t „ ˆ Œ  ” ˜ œ * ¨ ¤ ¬ ° ´ ¸ ¼ À Ä x | È ÃŒ à Ô Ø Ü à ä € ” ÿÿ L  X 
    \  L  L  ˜  L  œ‘  ÿþ þÿ Y Y ¿Dÿÿ@»    P € ¨ € À € ð €  € @ € X € p €  ˆ € * € ¸ € à € è €  €  € 0 € H €   ` €   D €x €  € ¨ € À €   Ø € ð €  €  €   €8 €0 €P €   h €   € €   ˜ €   °   À   à   à   ð            0   @   P   `   p   €      *   °   À   à   à   ð       ¸ h x¾ è `à ( ˆÃ‚ ¨ 0Ñ ¨ ØÙ h @ß ¨% è ¨  h € B à ~ ø Ö P  > $ Þ è/ þ à(  è7 0 9 : È ˆ P ¨ ø „ p% p pµ ž  M A I N A C C S L I P U P A C C  N P E N C O D I N G D I A L O G <?xml version= "1.0" encoding= "UTF-8" standalone= "yes "?>
    <assembly xmlns= "urn:schemas-microsoft-com:asm.v1" manifestVersion= "1.0 ">
    <assemblyIdentity
    name= "Microsoft.Windows.Shell.notepad "
    processorArchitecture= "x86 "
    version= "5.1.0.0 "
    type= "win32 "/>
    <description>Windows Shell</description>
    <dependency>
    <dependentAssembly>
    <assemblyIdentity
    type= "win32 "
    name= "Microsoft.Windows.Common-Controls "
    version= "6.0.0.0 "
    processorArchitecture= "x86 "
    publicKeyToken= "6595b64144ccf1df "
    language= "* "
    />
    </dependentAssembly>
    </dependency>
    </assembly>
    ( 0 `   € €€ € € € €€ ÀÀÀ €€€ ÿ ÿ ÿÿ ÿ ÿ ÿ ÿÿ ÿÿÿ  ˆˆˆˆˆˆˆˆˆˆˆˆˆˆˆÿÿÿÿÿÿÿÿÿÿÿÿÿÿ÷€ÿÿÿÿÿÿÿÿÿÿÿÿÿÿÿ€wwwwwwwwwÿÿÿÿÿÿ€ˆˆˆˆˆˆˆˆˆÃ§Ã§Ã§Ã§Ã§Ã§€wwwwwwwwwÿÿÿÿÿ€wwwwwwwwwwÿÿÿÿÿ€ wwwwÿÿÿÿÿ€ffffffffffff`ˆˆˆˆ~~~~~€gwwwwwwwwwwww`wwwwÿÿÿÿÿ€n~~~~~~~~~~~~vwwwÿÿÿÿ€nççççççççççççvwwwÿÿÿÿ€n~~~~~~~~~~~~w`ˆˆˆŽ~~~~€nççççççççççççç`wwwÿÿÿÿ€î~~~~~~~~~~~~vwwwÿÿÿÿ€çççççççççççççvwwwÿÿÿÿ€n~~~~~~~~~~~~w`ˆˆˆ~~~~€nççççççççççççç`wwwÿÿÿÿ€î~~~~~~~~~~~~vwwÿÿÿ€çççççççççççççvwwÿÿÿ€n~~~~~~~~~~~~w`ˆˆŽ~~~€nççççççççççççç`wwÿÿÿ€î~~~~~~~~~~~~vwwÿÿÿ€çççççççççççççvwwÿÿÿ€n~~~~~~~~~~~~w`ˆˆ~~~€nççççççççççççç`wwÿÿÿ€î~~~~~~~~~~~~vwÿÿ€çççççççççççççvwÿÿ€n~~~~~~~~~~~~w`ˆŽ~~€nççççççççççççç`wwÿÿ€î~vfffffff~~~vwÿÿ€ççà çççvwÿÿ€n~~~~~~~~~~~~w`ˆŽ~€nççffffffffççç`wÿ€î~ ~~~vwÿ€çççççççççççççvwÿ€n~~~~~~~~~~~~w`wÿ€nççççççççççççç`w€î~~~~~~~~~~~~v€çççççççççççççv€n~~~~~~~~~~~~w`xnfîænîfîænîfîæ`pÿfoöfÿfoöfÿfoˆˆˆˆˆˆˆˆˆÿÿÿÿÿÿ ÿÿ€  ÿÿ  ÿþ ÿþ ÿþ ÿþ ÿþ ÿþ À € € € À À à à ð ð ø ø ü ü þ þ ÿ ÿ ÿ€ ÿ€ ÿÀ ÿÀ ÿà ÿà ÿð ÿð ÿø ÿø ÿü  ÿü  ÿþ  ÿÿ„! ÿÿÿÿÿÿ ÿÿÿÿÿÿ ( @   € €€ € € € €€ ÀÀÀ €€€ ÿ ÿ ÿÿ ÿ ÿ ÿ ÿÿ ÿÿÿ  ˆˆˆˆˆˆˆˆˆÿÿÿÿÿÿÿÿ÷€‡wwwwwÿÿÿÿ€‡wwwwwÿÿÿ€ ˆˆŽ~~~€ffffffffwwÿÿÿ€nwwwwwwww`wwÿÿÿ€nçççççççç`ˆˆÃ§Ã§Ã§€n~~~~~~~~vwÿÿ€ççççççççvwÿÿ€î~~~~~~~w`ˆŽ~~€nçççççççç`wwÿÿ€n~~~~~~~~vwÿÿ€ççççççççvˆÃ§Ã§€î~~~~~~~w`wÿ€nçççççççç`wÿ€n~~~~~~~~vŽ~€ççççççççvwÿ€î~~~~~~~w`wÿ€nç çç`ˆÃ§€n~~~~~~~~v€çà çv€î~~~~~~~w`w€nçççççççç`w€n~~~~~~~~v€ççççççççv€æînæînæîg`oföoföoföˆˆˆˆÿÿÿÿÿø ÿð ÿà ÿÀ ÿÀ À € € € À À à à ð ð ø ø ü ü þ þ ÿ ÿ ÿ€ ÿ€ ÿÀ ÿä’Oÿÿÿÿ(    € €€ € € € €€ ÀÀÀ €€€ ÿ ÿ ÿÿ ÿ ÿ ÿ ÿÿ ÿÿÿ  wwwwpÿÿÿÿp wîpffffÿpn~~~~~pnçççç`pî~~~p~pççççæpn~~~wpnçççç`pà ~ppççççv n~~~ç`n‡‡‡‡affffüwwø wwø wwÀ ÿ€€ çç çç ˆˆ€ 瀀 ~~À ~~À wà ÿ€Ã  ççð ççðwøÿ€( 0 `   xft ˆ yZi ÎÄÉ «›* Q^ «‹‘ §u| ÃŒ®² ªdh ±sw Ö®° ÃŽ°± °UV ½wy ¸aa ¿vv Ñ¡¡ Ù©© Ó§§ óåå wvv YXX ÃŒŽ Ã¥Ã†Ã… Ã’±¯ ⾺ ›0 iWQ ÙyL ©jO Ô~ Ë*Ÿ ýŽV öŠU êˆV õ”d Çh ý¸” ¬|e ø‘[ Ã…}W ú¦x ÉŒe {eX ¶Y Ã’i! Ã’•j Óe ךk ÿç çy ÿظ ÑT Ô’V Õ•Y Ø—[ Ûže ךe w` æ3 æ•E Ûœ^ é¬q ߦn ä² _\Y ÛT àŸX ã£[ ç©e á¤e ñ³m Ã¥¨i ¦Šl ÿëÕ ƒ{r è¦T ã£T ç¨^ ì¯f ÿÀu ÿÃx ÿÂx öºt äq œn ÿÚ¬ ÿãà ê©V ì¬Z É’M ð°^ ÔS ÿ½e ó´` þ¾j ð³e ÿÀq ÿÆ{ ÿÉ‚ š‡o ÿèË ÿöê {v ð°S ô³V ø·Y ÃŽH ÿÃe ÷ºf ÿÎ ÿÔ™ ÿèÆ ÿýú ÕŽ þ½U ³†? þ¾\ ù»\ ÿÃ` Ã¥¯V ÿÄe ÿÅj ò½h ÿÈp ÿÈs ÿËv þÌ{ ÿÎ Ã¿Ã“Š Ã¿Ãœ£ ò¹P »A ßI éP ǘI ÿÑ„ Ã¿Ã•Ž Ã¾Ã–‘ ÿØ– ÿÛœ ÿᬠÿã² ÿæ¸ ÿᨠÿêÀ ÿüö ÿýù w]$ á¯G ÙªI Ã¥ºY õÉl ÿìÅ ÿíÈ Ã¥¶I ë½N ìÃ[ ðÎy ñÔ ÿîÅ ÿûñ ¬Œ5 êÇf ëÊo ÿñÌ ýôÛ Þ9 º™9 õä¯ ï8 É©8 ±”5 Ö·N éÑz Õ¸< *‰. Ù»C Ú¾L èÓ„ éÙ“ ʲ/ µŸ. œŠ( ×ÃW ëߟ º¦* ¥”& ½®% *ž% µ: ØËg —Œ õ, ƺB ®¦ ÖÃr ¼¸7 ÖÒx ÂÂJ ÅÇW ××… º½G ÄÊb ÄÃl ¥·7 åí» ¼ÃŽd åï Ã×{ Ìë´ žÃœ€ åöÞ òûð ©Ã¦œ ¾Ã¬´ ™Ã¢ eÖZ ÃòË åøã rÙk Ãx ŒÃ¡Š ™Ã¤— TÓR eØd Óæ ÄÜ $Ãã 3Ãà ©Ã $›¸ /¯Ã J½Ãž ~*« c±ÃŒ „¯Ã ÉÃæ ^‡ Gx• ®Ã‰Ã™ ¬±¸ ’™¨ ÿÿÿ ‘‘‘ ‰‰‰ ‚‚‚ zzz sss lll ddd ^^^ RRR úúúùù÷ ÷úúúúúúùø÷ö %#$*-Cýýüûúùø÷ &*$#$$#$*-Cýüüúùø÷ ×õs”L5'%" "# "$-ýýüûùø ãâãáÙÜ£££L5'?)" " "#-ýýû õõ×ÜáßââßÚԨÚÔ¨Y3+)" " "#û õõs•””££ÃœÃ™ÃšÃ£Ã¢Ã¢ÃšÃ˜Ã”¨¨¨rX+% "/ü áÜÕ””£Lep„ÕÙÔØßÛâÞÕÔç§ü ÙáÞâãßÚµ}ccc¯™dp„‘›Ã’ÙÕÞâÛ–û õõs•”ÜٯÀ½®¸˜oaaaa_ep„¢þüû õõs•””LRI?9\²²¹²¹©˜z_____/VK<-ýüû âÞáÙÜ”XRG???¤m988m†¤¹¤®ªˆ4TTTTTAWK-û õÃÜØàãÃÀ®ª‰^®‰999877766mv.,0A@UTTTUû õõs•”hRU‡‰ª½Ã‚½®†‰8877666.,,,&&&1TUù Üõs•”YRIPPPFª‡^‰ª®¹Ã‚¹¤¤m\.1,,,,,2TW÷ àãâãÞÙˆPPPPª‡FFEEEDD‰†¤¹.111,,,@Tf õõs•Ö}¯*¿¿¿¸¿©‡OFFEEEDDDD.111111RUù õõs•gRa``]]z¸¸©¿½¿¿ª©‡DDD.;;;11ATW÷ àáÙÜ„Ro```]]*˜[[[Zˆ‡©ª½½½.:;;;;ITf ÜÜáàÌǾ¾¬¬——*˜][[[ZZZNNOO/HH::;UUù õõs¨Rcyx¬*Ã…Ã…¼¼**˜˜ZZZNN/HHHHJTW÷ õõsYR|nyywwx¬lj—¬*¼¿¿¿¸©/GGGHITf ããã̯´ŸŸnyyw±xlllkkkjj—˜/QGGGRT õõ£}Ÿ™´Ã„ÃÃÃþ·…lllkkkjj/bbQQTV÷ õõgRd€€~~||·³±±Ãƒ¾¾¾¾¬¬——4bbbUTK ÙܶR‚Š‚€€~±ž{yywwu…±¬·toobRTi ááÄÀÉÌÉʺº¥¥Ã„Ÿ||{yywuuuuu4oooTV÷ õ¨ReŒ‹ƒ*¦¥ººÃ‡Ã‡Ã‡Ã€Ã€±³³žžuuu4nncTK õ5RpŒ‹ƒŠŠ‚º¥€~ŸŸ´³±ÃƒÃƒ¾tnnTTi ã̯ȵµµŒŒ‹ƒƒº¦‚€€~~||{yy4naTV÷ h}¦¶Ã‹ÃˆÃˆÃÃÊÊÊÌÊÃæ¦€€~||{4ncTK YSq’„„ŽŽÃðÃÃÃÉÉÌÉÄÄ´=TTi ¡S’„„ŽŽÃ†µŒ‹ƒƒŠŠ‚€š¥=TV÷ ÄÄÓÓÓÓÓËË˶¶Ã޵Œ‹ƒƒŠŠ‚€=dTK Sq›““‘«»»¶Ã‹Ã‹ÃŽÃ‘ÎÎÑÃÃÃÃÃæ¦=dTi S›››““‘‘‘˶„„ŽŽŽ¡µ°°ÃÃ>TVø S¨›››œ›“››››Ã‹»’ŽŽŒ}>TK Sœ›››Ã‹’’’’’’’’’’’>TM Sñ蜜èð››è ’’ôï’’’>Tù ꜜœÃ²Ã¨›êð’’ñè ’’èîø (éðÃ¥ôéê’ïé÷ Bóð
    äóä
    Ã¥éðÃ¥ íçêæç äìçê<êíóêíî äó ðé !ííK íæç óæäæê ëåäë êêìæ óæó òî ëæí ÿÿÿÿÿÿ øÿÿÿÿ ð ÿÿÿÿ ð ÿÿÿ à ?ÿÿ à ÿÿ à ÿÿ à ÿ à ÿ à ÿ à ?ÿ à ÿ à  à ? à ? à ? à ? à  à  à  à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ?ÿ à ?ÿ à ?ÿ à ?ÿ à ?ÿ ð ÿ ø0 ÿ ü1‚ÿÿ ÿÿÇ8ÿÿ ÿÿÿÿÿÿ ( @   yx Œ‹• —•š ’…‘ | × È¡ Ç–™ Ö™ ÃŒ•– Ã…… É”” Ÿ‘‘ æ|x À~ È”’ Ç“‘ ÃŽ‹ ¾wq ‰xv Óš 裔 ĉ~ ¾ˆ} Ë Èz ‰{ ÿÃÃ… Àˆy ™\D ð”i ÃwL Ç] ¹rP ø£w z]O  ybW igf è…O ȃ] ćd »Œ ´f7 Ñh ѯ— Ñ` ÷¸‰ øÂ™ õÉ© Ѻ© Öšg Ã’—i ŠoX Äw1 Þ›^ ê¥e è§l ái ä¨p à¢e â¦l Þo xmb ÿþý ß1 Ó†5 ò¦U ë¦\ ÑS è¬i ûÕª ø×³ ª ó°] ÞŸV Ã¥¦^ ú»r ë°l ò¸t ç³u Ó¤l ·”l Ÿ| ë›4 ç©U ÄŽJ û¹b ê*[ ÕœS ú·c û¾n ò¶k þÅ{ Ú«p Ë¢n ¬Š^ «l —‰w ê©H Þ¡G ýº[ ÷¸Z öÀs Ã·Ã‹Ž usp Ê”B ý½U ò´S Û¤M ½F ËšL ì²Y ߬X î¹b ýÆq åΨ ‘: ¹‹> ÷½S ë´Q â*R ÷Ã^ ûÊt üËy õÈv ûÒ‹ íÊ ïÔ¥ ìµM É›C Û©K ä²P íº[ ւi þìÈ ØªD ã´I ÄœA ¿—@ ë¹P xc5 ñÌy òц ùÙ– ýß¡ ÿä© ùæ» Ä›: ´‘8 ˤA é¼M óL îÂZ õÒ ôÕ‹ èÙ´ Ã’ª: É£9 Ã’ª@ Û³D ä¼I Ô®J ìÇc ¡8 ¹™7 á»E ªŽ4 ã¿T èÈg þc éÊm àÄn íÒ€ î× ýñË Ù´: ®’3 ýI ܾU óᦠó㪠ٺB âÇb âÊj äÃ| §’, Õ¼E ÞÈe ãÃs íÞ Ê´/ «/ ÖÅa äÕ„ æÚ” Ãʹ äÙ‹ ñíà ÎÃR ÖÎq ØÒz ×Ô„ ÃÛ‘ Ûßœ åè½ ÊÔ… ÎÞ‘ ÂÖ ©Ã”r Ãç´ óõñ ³Ãš™ ³Ã£— ¾Ã«§ ¢Ã¤ˆ »ÃŒµ Úï× ÃôÌ çøå «Ã¨¦ ÇíÄ *Ã¥ª ¸Ãª· ÛöÚ ˜Ã«— ªÃ¬ª {â} ¡Ã§¢ §Ã­© ÉôÊ ¬Ã­¯ ïýð ¨Ã±¯ ‰“ •Ã…Ã… g©± MÎæ X¼Ã {¸Ã… ;«Ã… G¥º 4•® 9Ãì R•ª vˆŽ e—ª nx| ¥¯´ –§ ŒŒŒ ‰‰‰  yyy üþüü" "6&@þûü3221# " "$'jýüåâèàÓÓIQ#! ,$&&' ÔéÜÞãæãèäâÓ210(üàÛááÜ”ÄÒÖÖØââ×Óà ÚàååÖ«„r£†^‘¿ÃØØŽ'
    ÚÜAAÇspo¨–Œƒezst^(a6@@jýßæÃèÃrZ8oWFFWwwvvC:QQQRa' ÔéÜÛ*„‹Œ»²ŒWFFFFW,)---<^ýÞçÛÎhYMM‹pZƒ¦–––w,)-**>Rü ÞãèÙ—Ÿ—¦‹nLLLLZk7/5--Pb
    ÚéAH[qzz¥¥—¥••‹ƒk7/4/;PTàêÖ´¡¡…q*„YVVnn—•78;4O`ü ÔéÎs†Š¡ÃÞ*‰‰„„eC8>=Pb àèˆ{{{{¡‚gyЉžžŸCMGGPc
    ÚÛ*©©³··Ã€±Š‚‚‚mmdBEO]_ü
    ÜÇ^}}|tt³¢˜§±±±±žBK]NSàÑ´½½¸¸¤¼©š{{flx‚UK\PTÔ‘~œ¬¬ÃˆÃˆ´´³³§§±Uft_üÕº¯œ½¬}|‡‡šš˜Uf^SI~¯Ã„ÃÊÉÉȹ¹ª¤¤¤šUX^c
    €µ¶µ’’’º®œ®¾¹½¸´d\Qü«ÃŠÃÌÌÌÆÆÊÊÃî®››|DNbi”ˆ””¶µ¿Ã‹Ã‹Ã†ÃƒÃƒº¾¾½VNc1ˆ°ˆˆˆˆÃ¶“““’‘‘DR
    0ð°”úì°uÙ“IÃ…”“H9aüó3IùñÅ ò%õð“.÷öü? ñò ò
    òùó?ïîòïïõø÷íó íñöõ+ùíëíöðïJïîöôðàÿÿÿÀÿÿÀ ÿÀ ÿÀ ÿÀ ÿÀ ÿÀ À À À À À À À À À À ?À ?À ?À À À À ÿÀ ÿÀ ÿÀ ÿÀ ÿÀ ÿà ÿñÿÿÿÿÿ(    ‹‰‘ –Œ’ »šœ Ã™Š ›Œ —}v Žtl —І ”n` dZ ®“Š ˜vi “~u Ëi §z\ à*‹ Ã|H ÕŠQ Üžj è¨r Û*o Ú«… ÉI ¿“m Ã’·Ÿ Ã’¸¡ Ã¥l Ü˺ Û”I ñ²p Û¥l §–ƒ ßú æH ÊŠ@ ÆG ê¨] þÀt —wQ ½™o çÌ« ÃÀ° Ã…C þ»d ñ¹q ßq ѯ„ ~h ¥—… Ìò ô¬I þ·R ÂŒ? ز| ôÕª ¦™‡ ÌÀ® Ãð Ìñ Ãô ’‹ Ü¥J ÛI È–H Ø¢P â°a Ìõ ÌÄ· Ø? Ö¤I Õ¢I »Ž@ ½‘A á«? Õ¡> â®J ã¯L ÊE ÉH ç´@ çµF ê¸K Û«G í»R ë»W ðÃ^ Ñ«V æ¿j ÞÊ Ü°C æB ÓªD Ç*A î¾O ìÀV íÄ^ ïÉk ñÌs ˜Žw äºG ç¼M ëÆ_ êÆd ìÌt Û¼l óÒ| îÓ† Ú´B â½K íÓ„ öà òä¸ áÃU âÄ] äÊj çÃ{ íØ óߘ ôæ¸ úîà æÎq áΆ àÌp äÓ~ ìÜ– ãÕ… íß“ èÜ” ÛÎz âÕ„ çߟ èâ¡ ØÔ˜ àßž ÔÖ~ Ü㣠×ߣ Ûᯠ½Ã€¶ ×ê° ¿Ã¤‘ Çë Ñë² Ôíà Ò÷à ÅöÉ É÷à ÉúÒ ÑûÚ ÃÿÚ *©¨ Ÿ·» R¹Ã’ eŠœ —¡© ˆ‹’ 
    ŠY/ <–’ŒŽˆ…6
    9“BOWi‡'=*•‰AIH$+#0:”z>]N?@58;‘XL\[FGE.CUTlZMSK(.D†V`mdRQJ "& 2~hbrq_^P3-.nuk{safe4.ƒ}‚|tyg,1pxw„€voj%1›!˜—)‹7c1 ™œ™ ™™šƒÃ¿€?Ãè€Z8€FF€wv€:Q€Ra€€ €ÜÛ€‹Œ€ŒW€FF€)-€<^ÿÿ( 0 `  MMMMMM MMMMMMAMMMNMMMKMMMFMMM@MMM7MMM,MMM!MMMMMMMMMMMM
    MMMMMMMMMMMMMMMMMM MMMMMMMMM9MMMxMMM˜MMM—MMM”MMMMMM…MMMrMMM`MMMRMMMFMMM:MMM.MMM "MMMMMMMMMMMM MMMMMMMMMMMMMMMMMM MMMÃC)X“gQccUN¢SOMÆMMMÇMMMÈMMMÃŒMMMÉMMM¾MMM´MMMªMMMMMMŒMMMyMMMfMMMVMMMKMMM@MMM2MMM%MMMMMMMMMMMM MMMMMMMMMMMMMMMMMM ïŠV¿vvÿÓ§§Ã¿ÃªˆVðõŒVýç‡VüÂyT÷žkRõy^OòTPMìMMMèMMMäMMMÞMMMÔMMMÈMMM¼MMM±MMM¦MMM–MMMMMMjMMMXMMMLMMMAMMM4MMM%MMMMMMMMMMMM MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿¶tSÕÉ|T֎ˆVþöVÿêˆVþëˆVþ÷Wÿè‡VþÀxSýœkQûx]O÷TPMñMMMíMMMéMMMãMMMÚMMMÃMMM¿MMM³MMM§MMM˜MMMƒMMMkMMMXMMMLMMMBMMM2MMMMMM
    MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã²Ã¼Ã²Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã»Ã¶Ã¿Ã¿Ã¦Ã–ÿÿѶÿü±‹Ã¿Ã¼šjÿþXÿüŒVÿú‰SÿýŒUÿï‡RÿÒxKþ¨eIüx]OøSOMóMMMîMMMêMMMäMMMÛMMMÃŽMMMÀMMM³MMM©MMM™MMMzMMMKMMMMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿eØeÿXÕXÿeØdÿ™Ã¤–ÿ¿Ã­¹Ã¿Ã™Ã³ÃÿÿûòÿÿûñÿÿúîÿÿíÚÿÿۿÿý¿œÃ¿ÃŸŸ^ÿö‘XÿþWÿü‹TÿýŽUÿó†RÿØwKþ*cGýx]OùSOMóMMMîMMMêMMMÃ¥MMMÙMMMºMMM|MMM4MMM MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã²ÃºÃ®Ã¿ÃŒÃ°Ã‡Ã¿™Ã¤”ÿÃ{ÿXÔVÿXÔVÿÃyÿ™Ã¢Ã¿ÃŒÃ®¼Ã¿Ã²Ã¶Ãÿ™Ã¢ŒÃ¿ÃŒÃ¬·Ã¿Ã¿ÃµÃžÃ¿Ã¿Ã¢Ã„ÿÿçÿù¡tÿú‘]ÿþWÿýVÿýŽVÿ÷‡RÿàyLþ¶hIýbOIôMMMÕMMM“MMM?MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã½Ã¹Ã¿Ã¿Ã¼Ã¶Ã¿Ã¿Ã¼ÃµÃ¿Ã¿Ã»Ã²Ã¿Ã¿Ã»Ã±Ã¿Ã™Ã±Ã‹Ã¿¿Ã«³Ã¿™Ã¢ŽÃ¿eÖ`ÿLÑIÿXÓSÿ™Ã¡ŠÃ¿²Ã¦žÃ¿ÃŒÃ«²Ã¿Ã¿ÃµÃ›Ã¿Ã¿Ã´Ã˜Ã¿Ã¿Ã´Ã–ÿÿèÆÿÿÖ*ÿúª|ÿù“aÿüŽWÿÓ\6þMMMÜMMMMMMJMMMMMM MMMMMMMMMMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿™Ã¥™Ã¿ÃŒÃ²Ã‹Ã¿Ã¥Ã·Ã¡Ã¿Ã¿Ã½Ã¹Ã¿Ã¿Ã¼Ã¶Ã¿Ã¿Ã¼ÃµÃ¿Ã¿Ã»Ã²Ã¿Ã¿Ã¬Ã’ÿÿÆ‚ÿÿÎÿÿإÿÿ߳ÿ¨Ã—{ÿ¿Ãª¬Ã¿ÃŒÃ¬µÃ¿¥Ã¤“ÿÛrÿeÖ\ÿXÓQÿrØeÿ™ÃŸƒÃ¿ÃŒÃ¨©Ã¿Ã¥Ã­»Ã¿Ã¿Ã±ÃŒÃ¿Ã¿Ã±Ã‹Ã¿£#ýMMMãMMM¯MMMjMMM>MMM*MMMMMMMMMMMM
    MMM
    MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿¿Ã¯¿Ã¿™Ã¥˜Ã¿rÛqÿXÔXÿe×cÿÃ{ÿ™Ã£’ÿãÈÿõ½iÿÿ¿rÿÿ¿pÿÿ¿oÿÖ¶Jÿêº[ÿÿÅ{ÿÿÃÿÿڤÿÿä·Ã¿Ã¿ÃªÃƒÃ¿Ã¥Ã¯Ã‚ÿ¿Ã§¡Ã¿™ÃŸÃ¿r×cÿLÃEÿeÕXÿv\#þMMMïMMMÑMMM¨MMM‡MMMrMMMaMMMQMMMDMMM9MMM,MMMMMM MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã½Ã¹Ã¿Ã¿Ã¼Ã¶Ã¿Ã™Ã³Ã‘ÿ¿Ã¬¶Ã¿Ã“ºRÿñ=ÿ“ˆ "ÿ¢’+ÿ±™6ÿ®ž0ÿëIÿ÷ºgÿÿ¾kÿÿ¾jÿÿ¾iÿÿ½hÿÿ½gÿÿË‚ÿÿÑÿÿۡÿÿä²Ã¿Ã¿Ã®Ã…ÿ‘:þMMMøMMMîMMMÞMMMÃMMMÄMMM¹MMM¬MMMœMMMŠMMMrMMMKMMMMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã½Ã¹Ã¿Ã¿Ã¼Ã¶Ã¿Ã¿Ã¼ÃµÃ¿Ã¿Ã¬Ã’ÿÿÀsÿñ²kÿÙš_ÿؘ^ÿÇ“Pÿ*ˆ/ÿ*ˆ/ÿ›‡*ÿŸ‹,ÿŸ*ÿ¿ž?ÿÖ©Nÿæ±Wÿÿ½fÿÿ½eÿÿ½eÿÿ¼dÿÿ¼cÿÃp(ÿÓ¥mþ§ˆcý‘z^úpdUõMMMðMMMìMMMæMMMÞMMMÑMMM·MMMMMM7MMM
    MMM Ô~ÿ¿vvÿÓ§§Ã¿XÕXÿrÛqÿ™Ã¤–ÿ²Ãª®Ã¿ÃŒÃ°Ã…ÿÿüõÿÿګÿÿÀsÿç¨fÿÜ_ÿÛœ^ÿÚš^ÿ*8ÿÑJÿÖ–[ÿÕ”ZÿÔ“ZÿÃŽLÿ·‹Cÿ§†6ÿ—‚)ÿ¬5ÿ¬”2ÿ½›<ÿÞ«Oÿã},ÿÿÂxÿÿÂxÿÿÂxÿÿÂxÿÿÂxÿÞ¬pþ½–hý¨‰cûqdVòMMMÔMMM“MMM?MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¥Ã¸Ã¤Ã¿ÃŒÃ±ÃˆÃ¿¥Ã§¢Ã¿ŒÃ ˆÃ¿e×cÿ¥·7ÿò9ÿ´˜6ÿ¶—:ÿÉšLÿÒ›Tÿ±‘8ÿÅ•JÿÙ™[ÿØ—Zÿ×–ZÿÕ•YÿÔ“XÿÓ’WÿÒ‘VÿÑUÿÎTÿ¿‰Gÿ³†?ÿ§WÿÉŒfÿÒ•jÿà£oÿè«qÿó¶tÿÿÂxÿÿÂxÿÿÂxÿõ»uþMMMÃMMM‡MMM7MMM
    MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã½Ã¹Ã¿Ã¿Ã¼Ã¶Ã¿Ã¿Ã´Ã¥Ã¿Ã¿Ã€sÿø¹nÿÃ*MÿÉHÿ¸™9ÿ¨”+ÿ–ŽÿšŽ!ÿ¤*ÿ²’7ÿ»“@ÿÄ”Gÿ×–XÿÖ•WÿÕ”VÿÔ’UÿÒ‘TÿÑSÿÎRÿµEÿÈ‹eÿÈ‹eÿÇŠeÿňeÿÂ…eÿÄeÿÃiÿÿÂxÿõ»uþMMM¾MMMlMMM'MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿ÃŒÃ²ÃŒÃ¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã½Ã¹Ã¿Ã¿Ã¼Ã¶Ã¿Ã¿Ã¢½Ã¿Ã¿Ã€sÿò´iÿç¨`ÿæ§_ÿå¦^ÿä¥^ÿ¹™8ÿÌœJÿÖžRÿÊšIÿº–;ÿ¯’2ÿžŽ%ÿ˜‹!ÿœ‹%ÿª0ÿ*4ÿÃCÿÊJÿ¼LÿÃeÿÊeÿÈ‹eÿÈ‹eÿÈ‹eÿÇŠeÿךkÿÿÂxÿÙiôMMM¦MMMQMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿ŒÃ¢ŒÃ¿eØeÿLÑKÿe×dÿrÚoÿÆÆgÿà¹VÿÚ«Pÿåª[ÿéª_ÿè©^ÿç¨^ÿ»›8ÿßJÿã£[ÿâ¢Zÿá¡ZÿߟYÿÞXÿÜWÿÜ›VÿÆ•EÿÀ“@ÿ¯Ž4ÿŸ‹(ÿ¨h ÿÓeÿÓeÿÒeÿÌeÿÉŒeÿÈ‹eÿê*qÿÿÂxÿw\àMMMŠMMM:MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã½Ã¹Ã¿Ã¥Ã¶ÃžÃ¿Ã¯½eÿÙ¶OÿƧ:ÿ°*'ÿªž "ÿ®ž'ÿ²ž+ÿ«›&ÿ¾ž8ÿÒ¢Iÿà¤Vÿä¤Zÿã¢Yÿâ¡XÿàŸWÿßžVÿÞœUÿÛTÿÜšSÿÚ˜RÿÃSÿÓ–eÿÑ”eÿÓeÿÓeÿÓeÿΑeÿü¿wÿõ»uþMMM¾MMMlMMM'MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã½Ã¹Ã¿Ã¿Ã©ÃÿÿÀtÿú»kÿò³aÿñ²`ÿï°_ÿî¯^ÿã¬Tÿ·*/ÿ·Ÿ/ÿá7ÿ«›&ÿ¥™!ÿ©™%ÿ¬˜)ÿ»š6ÿÄ›=ÿÜEÿÛPÿßSÿÛRÿÄTÿךeÿךeÿÕ˜eÿÓ–eÿÓeÿߢkÿÿÂxÿÙiôMMM¦MMMQMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿ŒÃ¢ŒÃ¿™Ã¥˜Ã¿¿Ã­¼Ã¿ÃŒÃ°Ã‡Ã¿Ã¿Ã—¥Ã¿Ã¿Ã€tÿùºgÿõ¶aÿôµ`ÿó³_ÿñ²^ÿð±^ÿƦ8ÿÙ©Jÿì¬[ÿë«ZÿêªZÿé¨YÿÞ¥PÿÒ¡FÿÂ9ÿ¼›5ÿ¦•$ÿŸ“ ÿ£“$ÿ¶v ÿÚeÿØ›eÿךeÿךeÿךeÿï²qÿÿÂxÿw\àMMMŠMMM:MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿ÃŒÃ²ÃŒÃ¿ÃŒÃ²Ã‹Ã¿™Ã¤–ÿŒÃ¡‰Ã¿··@ÿ»±4ÿ¼*'ÿ»¬'ÿί:ÿî:ÿá±Lÿß°KÿÉ©8ÿܬJÿð°[ÿï¯Zÿî*Zÿì¬YÿëªXÿê©Wÿé¨Vÿè¦Uÿç¥Tÿå£Sÿä¢RÿÌ\ÿà£eÿà£eÿÃ*eÿÚeÿךeÿú½vÿõ»uþMMMÀMMMmMMM'MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã²Ã¡Ã¿Ã¿Ã€tÿÿÀnÿý¿bÿ÷¼\ÿæ·MÿàµHÿð9ÿÉ*4ÿ¯§ÿ*¥ÿ¶¦&ÿº¦*ÿɨ7ÿ̨;ÿÚªGÿÞ©Jÿí«VÿëªUÿê¨Tÿé§Sÿè¦RÿÑbÿã¦eÿà£eÿà£eÿà£eÿå¨iÿÿÂxÿÀ™iõMMMªMMMSMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã½ÃºÃ¿Ã¿Ã£Ã€Ã¿Ã¿Ã€tÿÿÂlÿÿÂdÿÿÃbÿþ¿`ÿý¾_ÿü¼^ÿú»^ÿð8ÿã³Jÿ÷·[ÿì³Qÿà°HÿÕ¬?ÿÉ©6ÿ¾¥-ÿ²¢%ÿ¬* ÿ°Ÿ$ÿ¹*,ÿ¡3ÿÆvÿçªeÿçªeÿä§eÿâ¥eÿñ´pÿÿÂxÿŒv\ãMMMMMM=MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿eØeÿeØeÿeØdÿ¼¼NÿÖ·MÿÛ¼LÿëÀWÿðÀYÿÿÂdÿÿÃaÿÿÀ_ÿþ¾^ÿÔµ8ÿç·Jÿúº[ÿù¸Zÿø·Zÿö¶Yÿõ´Xÿô³Wÿó²Vÿò°Uÿð¯TÿàªGÿÙ¨CÿÒrÿê*eÿçªeÿçªeÿçªeÿü¿vÿÿÂxÿMMMÃMMMsMMM+MMM MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã¹Ã²Ã¿Ã¯½gÿê½aÿàÃVÿÖ¾Jÿ̺>ÿ·1ÿ¼´*ÿ´-ÿ´*ÿ¼° "ÿ˳/ÿã·Eÿç·Iÿð¸Qÿù¹Yÿø·Xÿ÷¶WÿöµVÿõ³Uÿó²Tÿò°Sÿñ¯RÿÜlÿï²eÿî±eÿì¯eÿí°iÿÿÂxÿË*l÷MMM¬MMMWMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã¾Ã¿Ã¿Ã§Ã‰Ã¿Ã¿ÃvÿÿÆyÿÿÌ{ÿÿÊxÿÿÊuÿÿÈqÿÿÇoÿÿÆlÿÿÄhÿ˶3ÿÛ¹@ÿÖ¸;ÿÖ·9ÿƲ*ÿÀ°%ÿº*!ÿ¾*%ÿÂ*)ÿï5ÿή4ÿâ°Cÿá¯Cÿßpÿð³eÿï²eÿï²eÿø»pÿÿÂxÿ˜~_Ã¥MMM‘MMM?MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿¿Ã¯¿Ã¿ÃŒÃ²Ã‹Ã¿Ã¨Ã’‘ÿÿÃvÿÿÃÿÿÂÿÿÃ~ÿÿÌ{ÿÿËxÿÿÊuÿÿÈrÿÿÇnÿÖ¹@ÿê¾RÿÿÃdÿÿÂbÿÿÃ_ÿÿÀ[ÿÿ¾Yÿþ½WÿóºNÿç¶Eÿܳ<ÿï4ÿÊ*/ÿÑŠÿö¹eÿõ¸eÿòµeÿýÀvÿÿÂxÿ\WQÇMMMsMMM+MMM MMM Ô~ÿ¿vvÿÓ§§Ã¿™Ã¥™Ã¿™Ã¥˜Ã¿Ã„·Eÿô<ÿÂÄOÿ¼ÃHÿÂÃJÿÌÃRÿÖÄXÿÖÃUÿëÆeÿëÅbÿ˼AÿêÃZÿÿÆjÿÿÅhÿÿÃeÿÿÂaÿÿÃ_ÿÿÀ[ÿÿ¿Xÿþ½Vÿý¼TÿüºSÿû¹Rÿçwÿ÷ºeÿö¹eÿø»iÿÿÂxÿË*l÷MMM¬MMMWMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ã°ÃÿÿÃvÿÿÉÿÿÕÿÿԎÿÿӊÿðÎyÿëËqÿåÉiÿÖÄYÿÖÃVÿ¼º7ÿ¼º7ÿ¼º8ÿº9ÿ¹7ÿÑ»AÿÖ»CÿÛ»Dÿë½Nÿë¼Kÿÿ¿Wÿÿ¾Uÿþ¼Sÿë{ÿÿÃeÿýÀeÿýÀpÿÿÂxÿ˜~_Ã¥MMM‘MMM?MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¿Ã¿Ã¿Ã¿Ãœ³Ã¿Ã¿ÃvÿÿÌÿÿ×–ÿÿ×”ÿÿÕ‘ÿÿԎÿÿӊÿÿчÿÿÄÿÿÃÿÖÃWÿêÇgÿÿËwÿÿÊtÿÿÉqÿëÃ]ÿëÂZÿà¿NÿÖ¼DÿѺ=ÿ¶-ÿ´+ÿ¼²%ÿÙ’ÿÿÃeÿÿÃeÿÿÂvÿÿÂxÿ\WQÇMMMsMMM+MMM MMM Ô~ÿ¿vvÿÓ§§Ã¿eØeÿ·»IÿÖ¸NÿÖÃvÿàӀÿëՇÿëÓ„ÿúÖÿÿÕ‘ÿÿՎÿÿӋÿÿ҈ÿÖÅ[ÿêÊmÿÿÎ~ÿÿÃ{ÿÿÌxÿÿÊuÿÿÉqÿÿÈoÿÿÇkÿÿÆhÿÿÄdÿÿÃaÿÿÂ^ÿë{ÿÿÃeÿÿÃiÿÿÂxÿË*l÷MMM¬MMMWMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã·Ã®Ã¿Ãµ¿mÿêÄoÿëÚ“ÿÛÕ‚ÿÖÓ{ÿÖÒxÿÂÌbÿÂÊ_ÿ¼ÃˆXÿÂÉZÿÂÇXÿ·Ã‚JÿÌÆYÿÖÉbÿàÉhÿëËnÿëÊjÿúËtÿÿËvÿÿÊrÿÿÉoÿÿÇkÿÿÆhÿÿÅeÿë}ÿÿÃeÿÿÂpÿÿÂxÿ˜~_Ã¥MMM‘MMM?MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ã¤Ã„ÿÿÃxÿÿÔ—ÿÿá*ÿÿà«Ã¿Ã¿ÃŸ¨Ã¿Ã¿Ãž¥Ã¿Ã¿Ã¢Ã¿Ã¿ÃœžÃ¿Ã¿Ãš›Ã¿Ã¿Ã™˜Ã¿Ã¿Ã˜•ÿÖËjÿÛÌmÿëÃyÿÛËjÿÖÉcÿÖÈ`ÿÂÃLÿÂÃJÿ¼¿BÿÂÀEÿ¾AÿǾCÿÖÀLÿÔ-ÿÿÈsÿÿÃvÿÿÂxÿ[VPÈMMMtMMM+MMM MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã­ÃÿÿÃxÿÿ߫ÿÿä´Ã¿Ã¿Ã£±Ã¿Ã¿Ã¢®Ã¿Ã¿Ã «Ã¿Ã¿ÃŸ¨Ã¿Ã¿Ãž¤Ã¿Ã¿Ã¡Ã¿Ã¿ÃœžÃ¿Ã¿Ãš›Ã¿Ã–ÃrÿêÒÿÿבÿÿՎÿÿԋÿÿӈÿÿÒ…ÿÿÂÿÿÃ~ÿÿÎ{ÿÿÃwÿõÉlÿëÆbÿçˆ,ÿÿÇuÿÿÂxÿË*l÷MMM®MMMYMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã†´@ÿøDÿÂÙÿ¼Ã—yÿÂ×|ÿÂÖyÿÂÕwÿÖوÿÖׄÿÖÖ‚ÿëÚ’ÿëÙÿËÃoÿêՈÿÿÙ—ÿÿØ”ÿÿ×’ÿÿ֎ÿÿԋÿÿӈÿÿÒ…ÿÿÑÿÿÃ~ÿÿÎ{ÿÿÃwÿëˆ7ÿÿÈ}ÿÿÂxÿ—~_çMMM•MMMBMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿ÃxÿÿԛÿÿìÅÿÿêÃÿÿé¾Ã¿Ã¿Ã¨¼Ã¿ÃµÃ¤¯Ã¿Ã«Ã¡¢Ã¿Ã«ÃŸŸÃ¿Ã¥Ã˜Ã¿Ã–هÿÖׄÿÃÃnÿ¼ÃgÿÂÃjÿÂÃhÿ¼ÃŒaÿÂÌbÿÂË`ÿÇËaÿÖÃkÿÖÌhÿÛÌiÿëÃrÿëÌoÿçŽ:ÿÿÄzÿÿÂxÿ[VPËMMMyMMM/MMM
    MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ãxÿÿá´Ã¿Ã¿Ã¬Ã…ÿÿìÅÿÿìÅÿÿêÂÿÿé¿Ã¿Ã¿Ã¨»Ã¿Ã¿Ã§¸Ã¿Ã¿Ã¦µÃ¿Ã¿Ã¤²Ã¿Ã¿Ã£¯Ã¿Ã–؇ÿêÜ–ÿÿߥÿÿޢÿÿßÿÿܜÿÿڙÿõ×ÿëÔ‚ÿëÓÿåÃwÿÖÌiÿÖËfÿä–EÿÿÂxÿÖ§nùMMM²MMM^MMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿ÃxÿÿòÕÿÿìÅÿÿìÅÿÿìÅÿÿíÈÿÿìÅÿÿëÂÿÿìÅÿÿìÅÿÿìÅÿÿìÅÿÖØ‡Ã¿ÃªÃž›Ã¿Ã¿Ã¢«Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¢«Ã¿Ã¿Ã¢«Ã¿Ã¿Ã¢«Ã¿Ã¿ÃœœÃ¿Ã¿Ã›™Ã¿Ã¿Ã™•ÿÿØ‘ÿùÉ|ÿò¹hÿí‘DÿÿÂxÿ¢…bëMMM™MMMFMMMMMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ãxÿ̉ÿyZiÿËßãÿÿìÅÿÿíÈÿÿíÈÿåÆÄÿËÅÌÿÿìÅÿÿìÅÿÿìÅÿÖØ‡Ã¿Ã‹Ã…Ìÿÿá¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¤–EÿÿÂxÿh_TÃ’MMM€MMM3MMM MMM Ô~ÿ¿vvÿÓ§§Ã¿Ã¿Ãxÿ̊ÿEsÿ*ÑÿÔÃÄÿÿíÈÿÿíÈÿ¤LOÿ*ÊÿH«Ã¿Ã¿Ã¬Ã…ÿÿìÅÿÚ¬¬Ã¿Q^ÿ¢ÃŠÃ¿Ã–®°Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¡¼¼Ã¿““¢Ã¿Ã‹ÃŸÃ©Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Ãš¬¬Ã¿Ã¤–EÿÿÂxÿMMM¿MMMnMMM(MMMMMM Ô~ÿ¿vvÿÑ¡¡Ã¿Ã¢¾¹Ã¿Ã¢¾¹Ã¿Ã¢¾¹Ã¿(¬Ã‹Ã¿¡Œ–ÿÿíÈÿÿíÈÿÿíÈÿ¿ÃÚÿ ´Ã•ÿåÅÅÿÿìÅÿóååÿ¹ddÿ#¯ÃÿW…ÿÿá¨Ã¿Ã¿Ã¡¨Ã¿ÃŒÃ¿I}šÃ¿¬ÃÿË*±Ã¿Ã¿Ã¡¨Ã¿Ã¿Ã¡¨Ã¿Q]ÿ ¨Ã‘ÿ¯Ã€Ã¿MMM´MMMdMMM "MMMMMM ¬|eÿ¿vvÿ´YYÿ³VVÿ¸aaÿ¸aaÿœ·Ã¿`€”ÿÀssÿÀssÿÀssÿ½wyÿ ÂÃÿ©„ŒÃ¿ÃŽ’’ÿب¨Ã¿Ã˜¨¨Ã¿‘ž*ÿ£Ã€Ã¿Ã˜¨¨Ã¿Ã˜¨¨Ã¿Ã˜¨¨Ã¿Ã˜¨¨Ã¿*°Ãÿب¨Ã¿Ã¿Ã¡¨Ã¿Ã˜¨¨Ã¿Ãš¬¬Ã¿Ã„Úåÿ š¹Ã¿MMM¨MMMWMMMMMM Êfiº¹Ã‚ïe‰žÃ¿Ã’±¯Ã¿Ãް±Ã¿ Ãäÿ¬¥°Ã¿§t{ÿ§t{ÿʉ‰Ã¿§v}ÿ Ñåÿªdhÿ¸aaÿ³VVÿ´XXÿxftÿÂÚÿ·^^ÿ¸aaÿ¸aaÿ¸aaÿ *»Ã¿`€”ÿÂwwÿË‹‹Ã¿ÃŽ’’ÿ¬‹“ÿ
    ½ÃšÃ¿MMMMMMBMMMMMM Ài?5ÂÛÿ8¸ÃÿÆÛÿ4Æãÿ ‚·ÃŠÃ¿Ãåÿ„¦°Ã¿'ÀØÿ:¬Ã‡Ã¿p^ÿ#±ÃŽÃ¿\·Ã‹Ã¿µ³µÃ¿´ÃŒÃ¿M°ÃŠÃ¿ˆÃ¿w¯ÃƒÃ¿«›*ÿ̯³Ã¿ Óåÿ¨§´Ã¿µÃ¿±swÿÂwwÿpŠÃ¿9Ž¬Ã¿MMMdMMM(MMM
    MMM ÃŒf3¬|ezq·Ã“ÿa§Ãÿ‘\D ²_4)x½Ãÿ$Ñâÿ<ÃÜÿŠR8/*U/v—ÿ1Ãêÿ@ÉØÿ&ÑãÿxO:6U7J:ÃÞÿÎÞÿÔåÿDµÃ–ÿgI8pBÃÃ6¶Ã’ÿw™¥Ã¿&ÅáÿD]h@MMM)MMMMMM ÃŒf3ÃŒf3ÃŒf3 ÃŒf3ÃŒf3 ÃŒf3 *”Œ„z»ÃšÃ½‚³Ã‰Ã¶ÃŒf3% ƉlAœÃƒÃ—ÿ‡°ÃÿÆwP= Ã…tL(T¼Ã¤Ã¿Ãçÿc«ÃŒÃ¿ÃŠf5 ÃŒf3 Ëf  Ëf  à ÿÿÿ à ÿÿ à ?ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ? à  à  à  à  à  à  à  à  à  à  à  à  à  à  à  à  à ? à ? à ? à  à  à  à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ à ÿ ð ÿ ø ÿ ø ÿ üy‚ÿ ÿÿ¿Ã­Ã¿Ã¿ ( @  Z … w v l T C 5 ! 

     ÃŒy[ˆÃ€|uñ¸iCæÅf5ä³_4à€E&Óf8ÆQ-¼% ¥ ˆ s e R 2  
        ¾ˆ|üÉ–™Ã¿Ã™º*÷ñȩüý˯ÿû¹šÃ¾Ã»¢|ýîŠ]ùÒtHð´b;Ã¥¢V2Ã~> "Ô@ ¼ f E 5 *   ÄzøÈ”“ÿ¡Ã§§Ã¿‘îÿ*î±Ã¿½Ã¬·Ã¿ÃŠÃ¦·Ã¿ÃâµÃ¿Ã¥Ã·Ã¿Ã¼Ã³Ã¿Ã¨²}ÿõ¢qÿê”løÛUóÃi<ïžK)à_3ÉI'º6± — W   ½ƒtõ՚ÿîóíÿñýòÿæøâÿÄðÀÿ«Ã¬«Ã¿¥Ã¬¨Ã¿ªÃ­ªÃ¿¯Ã®*ÿ{â}ÿ˜Ã¨•ÿÑí¼Ã¿Ã§Ãš¯Ã¿Ã°Ã†¡Ã¿Ã³Ã€–ÿõ³†Ã½Ã¶–hüð}Oú‰; "Ú   ÄxõÆ“‘ÿ¿Ã©¼Ã¿ÃŽÃ·ÃŽÃ¿Ã˜Ã´Ã—ÿÃ÷Ãÿêùèÿýá½Ã¿ÃºÃ‘‘ÿåژÿ©Ã”rÿ°Ã Ã¿»Ã¦œÃ¿¡Ã¦Ã¿—éÿŸÃ¬™Ã¿¾Ã«§Ã¿Ã‘Ã¥¨Ã¿Ã–ޡÿ™G,ë‰ "    ¿„võ֙ÿÚðÖÿ·Ã¯¸Ã¿*æŸÃ¿¢Ã§*ÿ¯Ã¤šÃ¿ÃŸ¿bÿÙ¨Lÿ߬XÿÔ®Jÿê¸]ÿÿÇ}ÿúÈÿúוÿìÚÿÎÞ‘ÿ¬Ã¤†Ã¿šÃ£„ÿkT "é £ i K 8 )   ¿ƒvõË––ÿÚîÖÿéûèÿÿþýÿÿÿÿÿôìÃÿë¸bÿȘMÿ½ŽGÿªŽ4ÿ²‘7ÿÀ—@ÿÈœ@ÿÚ¤Hÿå«Pÿð¸bÿùÄsÿÿÄ{ÿß…E÷›sDßpY7ÃS@'¾7*¬
    ™ ]
    „yõÈ”’ÿ*Ã¥ªÃ¿¨Ã®©Ã¿«Ã¨¦Ã¿®Ã¬¯Ã¿ÃŽÃ’…ÿÞ®TÿÒ›UÿÞœaÿ¼‘EÿÂKÿÒWÿÊRÿÂŽLÿ¹‹AÿºŒ>ÿÀ‘>ÿÃ6ÿÔ‡;ïlôÎ*bî*zKÞ “  ¾ƒuõ֙ÿôõðÿóýòÿåöáÿÑðÈÿÞÅnÿÚ©Oÿ™Bÿ¾š>ÿ§’,ÿ®’3ÿ¿•BÿÅ“IÿÓQÿÑSÿÎRÿÃSÿņHÿ·c3ÿÄ€\ÿÎ’kÿÒiÿÒjÿä¨pÿýÂxþ   ÄxõÇ”’ÿÅëÂÿÆõÇÿÌóÃÿâé½Ã¿Ã¶Ã€sÿé¬]ÿä§]ÿå§]ÿÜAÿÜJÿÖžRÿÈ™Fÿ¹•;ÿ³‘6ÿ´8ÿµ‘;ÿ¹Š:ÿºm0ÿˆ]ÿËiÿƉdÿÂ…dÿâ¥nÿΞbê X
    ¿„võΖ™Ã¿ÃŒÃ¬Ã‰Ã¿ªÃ«©Ã¿©Ã¬±Ã¿Ã…Õ…ÿóLÿ˧@ÿǤ=ÿˤAÿ¸3ÿÆž@ÿÚ¢QÿÜ¡TÿßUÿáŸYÿÜVÿ×›QÿÉ’Cÿ¾r1ÿÃ^ÿÒ—iÿËŽdÿÃeÿò¶sÿoDÉ 6  ¾ƒuõÌ•—ÿÞïÚÿëüíÿÿýúÿÿ֩ÿú·cÿê±Yÿâ*Rÿá*Rÿ£7ÿá9ÿÉ¢?ÿß9ÿÂ:ÿÄœ<ÿÆœ?ÿËœDÿË–@ÿÇv2ÿÔ‘]ÿÖ›iÿÑ“dÿÜŸiÿñ¸sú]G,š   „yõÇ“‘ÿ¸Ã¨´Ã¿¨Ã±¯Ã¿±Ã¡˜Ã¿Ã—¼[ÿزCÿÛ²Gÿä²Pÿí²XÿѪ@ÿÜ«Kÿë*Yÿè«Wÿå¨UÿߦOÿÙ£JÿΡCÿÆ™9ÿÈ}1ÿÛ˜]ÿâiÿÖ™dÿê*oÿƘ_ç a
    ½ƒtõ֚ÿøöôÿîýðÿçæ½Ã¿Ã¯»bÿï¼Xÿë¹PÿáµHÿܲCÿì.ÿê0ÿë<ÿÒª?ÿÖªCÿÙ¨FÿÛ¨HÿÛ¨IÿÞ¡GÿÖ€3ÿàœ]ÿâ§iÿà¢eÿõ¸sÿ™vIÃŒ :  „xõÉ””ÿµÃ¦²Ã¿«Ã®®Ã¿ÃšÃ‡Ã¿Ã®»[ÿõÃ^ÿúÀaÿøÀ`ÿ÷¿aÿܶCÿéµMÿ÷¸Zÿë´Qÿâ°KÿÙ¬CÿÑ©<ÿè<ÿÊ¢5ÿÊ0ÿæ£_ÿæ«iÿé¬iÿîµqùaJ.£   À„võÌ•–ÿ×ïÕÿÒôÎÿâÂmÿæ½WÿáÃTÿÚ½IÿÖ»BÿÙºBÿÊ´/ÿÖ¶9ÿç·Iÿì·MÿíµOÿî´Oÿñ³Qÿò´Tÿì«Kÿâˆ3ÿë¦\ÿì²iÿòµmÿÔ£eí- "r  ¿ƒuõÕ–ÿãôçÿîîÎÿüÄ}ÿýÉyÿüËxÿüÊsÿüÇoÿÿÇpÿÞ¼Gÿä¼Iÿé½Oÿá¹DÿÚ¶<ÿÚ´:ÿÙ²9ÿÖ²:ÿÖ«5ÿÜ‘.ÿñ*^ÿò·hÿû¾tÿ¨€PÖ A  „xõÈ”’ÿ±Ã«ºÃ¿Ã‚ÖÿúTÿÜÈeÿÜÈbÿáÇbÿåÆbÿìÅeÿÔ½Gÿã¿RÿïÃ_ÿôÃ[ÿúÀ\ÿÿ¿Zÿý½Uÿ÷½SÿîµHÿê–3ÿõ²\ÿù¾lÿõºrûtX7¬   ½ƒtõ×ÿóöôÿó֛ÿôÇwÿòՌÿòÒ…ÿðÎyÿëÌpÿçÉkÿÃÀNÿÒÀLÿÞÂUÿÿPÿÞ¾LÿÞ½Hÿá»Fÿâ½Eÿß¶<ÿè›0ÿû¸\ÿþÄsÿÛ§gð l  Â…yõ—˜Ã¿³Ãš™Ã¿Ã˜Ã‚`ÿçÃ{ÿí×ÿò֋ÿüՎÿüӊÿû҈ÿàÈeÿêÉmÿúÃzÿúÊtÿùÇlÿõÆeÿòÃ]ÿíÂVÿè»Jÿê›2ÿü¸[ÿÿÆxÿªPØ ;  ¾ƒvõÌš¡Ã¿Ã³Ã¸Ã¿ÃµÃˆuÿî×’ÿæÙÿâֆÿ×ÑxÿÕÎqÿ×ÎpÿÉÈ\ÿÓÈaÿàËkÿäÉhÿèÈgÿëÇeÿëÇaÿíÇ_ÿîÀXÿîž;ÿû¹bÿýÄyþ[E+¦   ¿…zõÌ––ÿíÊÿòÆÿòà©Ã¿Ã³Ã¡©Ã¿ÃµÃŸ¥Ã¿ÃºÃž¤Ã¿Ã¼Ã¡Ã¿Ã¿Ã£Ã¿Ã¥Ã’ÿîÒ‚ÿ÷ՊÿðÑÿèÎuÿâÊjÿàÉeÿáÈaÿÞÃUÿç¦Dÿü¾oÿâ¯nó e
    ¿‡}õË‘ÿÛ¼dÿÜÓ{ÿÚàšÃ¿ÃœÃ”ÿÚÚÿàÛÿàًÿçَÿÑÒvÿÃÃ’~ÿçևÿæÓ‚ÿèÒÿíҀÿóÑÿ÷Ò~ÿûËvÿò¤Qÿû»pÿ›xKÃ’ >  ½‡|õ΋ÿ÷ˎÿüî¸Ã¿ÃºÃ®Ã„ÿúé¾Ã¿Ã·Ã§¶Ã¿Ã´Ã¦*ÿñâ¦Ã¿Ã­ÃŸ*ÿÔׄÿØÖÿäØ‰Ã¿Ã¢Ã•ƒÃ¿Ã£Ã”€Ã¿Ã¡Ã‘yÿáÑtÿàÃqÿÃÇfÿè©Tÿù¹rþbL/§ "  ½†|õÉÿùÜÿíӶÿýêÊÿÿñÊÿÿìÈÿÿêÊÿÿîÆÿÿîÊÿâà™Ã¿Ã³Ã¤©Ã¿Ã¿Ã§¨Ã¿Ã¿Ã¢ªÃ¿Ã¿Ã£ªÃ¿Ã¿Ã£Ã¿Ã½Ãœ–ÿùÚ“ÿòÊxÿñ¨XÿÓ›^ï3'|   ¾‡|öӚÿù»‹Ã¿„sÿv´ÃˆÃ¿Ã»Ã°Ãÿûã¿Ã¿–§Ã¿•ÅÅÿþóÉÿåΨÿ‘˜ŸÃ¿»ÃŒµÃ¿Ã¿Ã£¦Ã¿ÃµÃ˜®Ã¿ÃĴÿóã»Ã¿Ã¿Ã¦ªÃ¿Ã·Ã”ªÃ¿Ãª¥eÿ¦}Eß j  ¼‡|ÿʈ‹Ã¿Ã¨¨™Ã¿Ãƒ**ÿ<—¶Ã¿Ã‡¸®Ã¿Ã¼Ã˜±Ã¿«¬«Ã¿=«ÃŒÃ¿Ã‰Ã¾Ã¿Ã¿ÃÅÿyxÿD*¾Ã¿Ã¯Ã”¥Ã¿Ã®º¡Ã¿Z¯Ã¿·Ã†Ã¿Ã¿Ã¡©Ã¿Ã‘¯—ÿg•¥Ã¿WttÃg  ¸xU›´viò¢yˆÃ¿Ã‚‡„ÿ>*Âÿ„’ÿÄppÿÀÿC«¾Ã¿”†Ã¿Ãzwÿ¿‚†Ã¿@*·Ã¿¢•ÿï}xÿ¢Œ’ÿW£¸Ã¿Ã¦§Ã¿Ãª™”ÿ¥*¼Ã¿sŒÃ™ S ½x6·b³ÃŽÃ¿JÃíÿDª¶Ã¿Žzvÿ[´ÃŒÃ¿R¹Ã’ÿCªÃ¿nx|ÿb™¯Ã¿c¦´Ã¿-*¶Ã¿w€ŒÃ¿Œ‹•ÿr¨³Ã¿6ªÃ‚ÿ˜‘ÿ½|}ÿ‹—ÿe|±  ÃŽ`¦€jÄt’“®Dš¥Ã’
    ‰“ÿa«§Ã¿eˆ„ìV3!'cª°ÃŸPÇÎÿ„q]°iH7*[ÇÕÿOÌÞÿ‹{mÿ|…ŽÃ¿9ÃìÿE¡µ°  À ÿÿÀ ÿÀ ÿÀ À À À À À À À À À À À À À À À À À À À ?À ?À ?À ?À À À à à ÿÿÿÿÿ(   b;0©f4 ¬H#–'v O 4   Ã’¸¡Ã¿Ã›Ã¡¯Ã¿ÃžÃŠÃ¿Ã‘¯„ÿ¼Žfó›hFáq@-ÃL#¡+ }I  ÃôÿÃÿÚÿÅöÉÿ×ê°Ã¿¿Ã¤‘ÿÇëÿÜã£Ã¿Ã˜Ã”˜Ã¿Ã˜²|ÿG!²
    ÌÀ®Ã¿Ã‰Ã·ÃÿÔíÃÿâ°aÿÉHÿÑ«VÿÛ¼lÿÛÎzÿÔÖ~ÿ†a4Û;/ŽlC  ÃÀ°Ã¿Ã‘ûÚÿ×ߣÿØ¢Pÿ½‘Aÿ»Ž@ÿÆGÿÅCÿÊŠ@ÿÕŠQÿÛ*oÿålÿdM/¹
    ÃðÿÉúÒÿáΆÿÜ¥JÿÇ*AÿÊEÿÛIÿÈ–HÿÂŒ?ÿÃ|HÿËiÿè¨rÿdN/“ ÌñÿÒ÷Ãÿæ¿jÿâ®JÿÓªDÿæBÿÖ¤IÿÕ¢IÿØ?ÿÉIÿÜžjÿÚ£hù%M ÌõÿÑë²Ã¿Ã«»Wÿí»RÿÚ´BÿܰCÿã¯LÿÛ«GÿÕ¡>ÿÛ”Iÿñ²pÿ°…SÕ  ÌķÿàߞÿðÃ^ÿíÄ^ÿâ½KÿäºGÿê¸KÿçµFÿá«?ÿæHÿþÀtÿoT5œ  ÌòÿãÕ…ÿìÌtÿñÌsÿâÄ]ÿáÃUÿìÀVÿî¾Oÿç´@ÿô¬Iÿñ¸oü)U Ã’·ŸÃ¿Ã­Ã“„ÿíØÿîӆÿàÌpÿäÊjÿïÉkÿëÆ_ÿç¼Mÿþ·Rÿ¹YÚ  Ú«…ÿíß“ÿçߟÿìÜ–ÿâÕ„ÿäÓ~ÿçÃ{ÿæÎqÿêÆdÿþ»dÿhP3˜ à*‹Ã¿Ã²Ã¤¸Ã¿ÃºÃ®ÃƒÃ¿Ã´Ã¦¸Ã¿Ã¨Ã¢¡Ã¿Ã¨Ãœ”ÿóߘÿöÃÿóÒ|ÿê§Zû,!Y يÿ—¡©Ã¿ÃŸÃºÃ¿Ÿ·»Ã¿ÃœÃ‹ºÃ¿*©¨Ã¿Ã§ÃŒ«Ã¿½Ã€¶Ã¿Ã´Ã•ªÃ¿’‡oñ@ ¦ˆ~çc¤·Ã¿ˆ‹’ÿhªÃ¿‹‰‘ÿf•§Ã¿–Œ’ÿqœ«Ã¿»šœÃ¿NyÞ " € € €yõ€’ÿ€ªÃ¿€©Ã¿€¦Ã¿€¯Ã¿€…ÿ€Tÿ€Uÿ€aÿ€Eÿ€Kÿ€WÿÿÿRÿ  00   h     è     (  00   ¨    ¨     h  00  ¨%   ¨    h  & F i l e  & N e w C t r l + N  & O p e n . . . C t r l + O  & S a v e C t r l + S  S a v e & A s . . .  P a g e S e t & u p . . .  & P r i n t . . . C t r l + P €  E & x i t  & E d i t  & U n d o C t r l + Z  C u & t C t r l + X  & C o p y C t r l + C  & P a s t e C t r l + V  D e & l e t e D e l  & F i n d . . . C t r l + F  F i n d & N e x t F 3  & R e p l a c e . . . C t r l + H  & G o T o . . . C t r l + G  S e l e c t & A l l C t r l + A €  T i m e / & D a t e F 5  F & o r m a t & W o r d W r a p € ! & F o n t . . .  & V i e w €  & S t a t u s B a r & H e l p @ & H e l p T o p i c s € A & A b o u t N o t e p a d N  O  S  P  -   p @  r   t  G  F  H     Z  X  C  V  ‰ A  N  O  S  P  -   p @  r   t  G  F  H     Z  X  C  V  A     C  D  ‰ Z  À È    È @ N o t e p a d  M S S h e l l D l g  P T ,   ÿÿ€ C a n c e l  P  È  ÿÿÿÿ‚ N o w P r i n t i n g €P  È   ÿÿ‚  P  È   ÿÿ‚ D$ D    ,  M S S h e l l D l g P D  ( ( ÿÿ‚ & E n c o d i n g :  #P ‚ ¤ d ÿÿ… Ä È  dÄ P a g e S e t u p  M S S h e l l D l g  P   à 8 1ÿÿ€ P a p e r P   $  Aÿÿ‚ S i & z e : #P @  * * qÿÿ… P  - $  Bÿÿ‚ & S o u r c e : #P @ * * * rÿÿ…  P  E @ 8 0ÿÿ€ O r i e n t a t i o n P  R 4 ÿÿ€ P & o r t r a i t P  g 4 !ÿÿ€ L & a n d s c a p e  P P E ˜ 8 3ÿÿ€ M a r g i n s P X U  Nÿÿ‚ & L e f t : ƒP x R  ƒÿÿ P ¤ U  Oÿÿ‚ & R i g h t : ƒP Ä R  …ÿÿ P X h  Pÿÿ‚ & T o p : ƒP x g  „ÿÿ P ¤ h  Qÿÿ‚ & B o t t o m : ƒP Ä g  †ÿÿ P  ‡   ÿÿ‚ & H e a d e r : € P 8 † ®  ÿÿ P  š   ! ÿÿ‚ & F o o t e r : € P 8 ™ ®  ÿÿ  P ¾ ® 2   ÿÿ€ O K P ô ® 2   ÿÿ€ C a n c e l P *® 2  ÿÿ€ & P r i n t e r . . .  P ð  l ž ÿÿÿÿ€ P r e v i e w  P þ . P P 8ÿÿ‚  P N2  P 9ÿÿ‚  P z P  :ÿÿ‚ À È€  ´ 9 G o t o l i n e  M S S h e l l D l g P  2
    °ÿÿ‚ & L i n e N u m b e r : € P 7  9 ÿÿ  P  " 2   ÿÿ€ O K P N " 2   ÿÿ€ C a n c e l p4 V S _ V E R S I O N _ I N F O ½ïþ    „(
      „(
    ?    Ã  S t r i n g F i l e I n f o ¬  0 4 0 9 0 4 B 0 L   C o m p a n y N a m e M i c r o s o f t C o r p o r a t i o n 8   F i l e D e s c r i p t i o n N o t e p a d r )  F i l e V e r s i o n 5 . 1 . 2 6 0 0 . 2 1 8 0 ( x p s p _ s p 2 _ r t m . 0 4 0 8 0 3 - 2 1 5 8 ) 0   I n t e r n a l N a m e N o t e p a d € .  L e g a l C o p y r i g h t © M i c r o s o f t C o r p o r a t i o n . A l l r i g h t s r e s e r v e d . @  O r i g i n a l F i l e n a m e N O T E P A D . E X E j %  P r o d u c t N a m e M i c r o s o f t ® W i n d o w s ® O p e r a t i n g S y s t e m @   P r o d u c t V e r s i o n 5 . 1 . 2 6 0 0 . 2 1 8 0 D  V a r F i l e I n f o $  T r a n s l a t i o n ° % % n o t e p a d . h l p  & f  P a g e & p  T e x t D o c u m e n t s ( * . t x t )
    A l l F i l e s  O p e n  S a v e A s š Y o u c a n n o t q u i t W i n d o w s b e c a u s e t h e S a v e A s d i a l o g
    b o x i n N o t e p a d i s o p e n . S w i t c h t o N o t e p a d , c l o s e t h i s
    d i a l o g b o x , a n d t h e n t r y q u i t t i n g W i n d o w s a g a i n . ” C a n n o t a c c e s s y o u r p r i n t e r .
    B e s u r e t h a t y o u r p r i n t e r i s c o n n e c t e d p r o p e r l y a n d u s e C o n t r o l P a n e l t o v e r i f y t h a t t h e p r i n t e r i s c o n f i g u r e d p r o p e r l y . u % %
    Y o u d o n o t h a v e p e r m i s s i o n t o o p e n t h i s f i l e . S e e t h e o w n e r o f t h e f i l e o r a n a d m i n i s t r a t o r t o o b t a i n p e r m i s s i o n . % %
    T h i s f i l e c o n t a i n s c h a r a c t e r s i n U n i c o d e f o r m a t w h i c h w i l l b e l o s t i f y o u s a v e t h i s f i l e a s a n A N S I e n c o d e d t e x t f i l e . T o k e e p t h e U n i c o d e i n f o r m a t i o n , c l i c k C a n c e l b e l o w a n d t h e n s e l e c t o n e o f t h e U n i c o d e o p t i o n s f r o m t h e E n c o d i n g d r o p d o w n l i s t . C o n t i n u e ? B P a g e t o o s m a l l t o p r i n t o n e l i n e .
    T r y p r i n t i n g u s i n g s m a l l e r f o n t .  C o m m o n D i a l o g e r r o r ( 0 x % 0 4 x )  N o t e p a d - G o t o L i n e  L i n e n u m b e r o u t o f r a n g e I C a n n o t o p e n t h e % % f i l e .

    M a k e s u r e a d i s k i s i n t h e d r i v e y o u s p e c i f i e d . ; C a n n o t f i n d t h e % % f i l e .

    D o y o u w a n t t o c r e a t e a n e w f i l e ? F T h e t e x t i n t h e % % f i l e h a s c h a n g e d .

    D o y o u w a n t t o s a v e t h e c h a n g e s ?  U n t i t l e d
    - N o t e p a d  C a n n o t f i n d " % % " ‡ N o t e n o u g h m e m o r y a v a i l a b l e t o c o m p l e t e t h i s o p e r a t i o n . Q u i t o n e o r m o r e a p p l i c a t i o n s t o i n c r e a s e a v a i l a b l e m e m o r y , a n d t h e n t r y a g a i n . K T h e % % f i l e i s t o o l a r g e f o r N o t e p a d .

    U s e a n o t h e r e d i t o r t o e d i t t h e f i l e .  N o t e p a d E F a i l e d t o I n i t i a l i z e F i l e D i a l o g s . C h a n g e t h e F i l e n a m e a n d t r y a g a i n . ž F a i l e d t o I n i t i a l i z e P r i n t D i a l o g s . M a k e s u r e t h a t y o u r p r i n t e r i s c o n n e c t e d p r o p e r l y a n d u s e C o n t r o l P a n e l t o v e r i f y t h a t t h e p r i n t e r i s c o n f i g u r e d p r o p e r l y . ’ C a n n o t p r i n t t h e % % f i l e . B e s u r e t h a t y o u r p r i n t e r i s c o n n e c t e d p r o p e r l y a n d u s e C o n t r o l P a n e l t o v e r i f y t h a t t h e p r i n t e r i s c o n f i g u r e d p r o p e r l y .  N o t a v a l i d f i l e n a m e . M C a n n o t c r e a t e t h e % % f i l e .

    M a k e s u r e t h a t t h e p a t h a n d f i l e n a m e a r e c o r r e c t . R C a n n o t c a r r y o u t t h e W o r d W r a p c o m m a n d b e c a u s e t h e r e i s t o o m u c h t e x t i n t h e f i l e .  A N S I  U n i c o d e  U n i c o d e b i g e n d i a n  U T F - 8  P a g e % d  L n % d , C o l % d C o m p r e s s e d , E n c r y p t e d ,  H i d d e n , O f f l i n e ,
    R e a d O n l y ,  S y s t e m ,  F i l e  f F p P t T d D c C r R l L
    T e x t D o c u m e n t
     
  19. 2010/04/17
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    You did something wrong.
    Please, re-read my previous instructions and try again.
    If any problems, please describe thoroughly what exactly happens.
    Remember, I'm not there, so I can't see your computer screen.
     
  20. 2010/04/19
    Barrall

    Barrall Inactive Thread Starter

    Joined:
    2010/04/16
    Messages:
    19
    Likes Received:
    0
    Broni
    All of my icons have changed to generic looking icons that look like a box with a red blue and green symbol of some sort in them. I cannot drag the CF script into the combo fix. When I go to open notepad it prompts me to choose from a list which program to use to open notepad with when i choose notepad program it opens it but the notepad is filled with the text I previously posted.
     
  21. 2010/04/19
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    See, if same thing happens in Safe Mode.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.