Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

PC not starting up after combo fix


  • Please log in to reply
15 replies to this topic

#1 skagt

skagt

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 02 August 2013 - 08:34 AM

I ran combofix on a pc that I could not re-attach the driver on last night.

 

I have been able to Farbar Recovery Scan Tool and these are the results

 

any help is greatly appreciated.

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03
Ran by SYSTEM on 01-08-2013 20:38:12
Running from F:\
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log.

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6463592 2012-02-02] (Realtek Semiconductor)
HKLM\...\Run: [combofix] - C:\ComboFix\CF32727.3XE [345088 2010-11-20] (Microsoft Corporation)
HKLM\...\RunOnce: [combofix] - C:\ComboFix\CF32727.3XE /c C:\ComboFixCombobatch.bat [345088 2010-11-20] (Microsoft Corporation)
HKLM\...\runonceex: [flags] - 8 [x]
HKLM\...\InprocServer32: [Default-cscui]  <==== ATTENTION!
HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [495616 2011-03-08] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [856064 2011-03-08] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-11] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-08-27] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-02] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKU\Atgiaras\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
HKU\Atgiaras\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
HKU\Atgiaras\...\Run: [iMesh] - C:\Program Files (x86)\iMesh Applications\iMesh\iMesh.exe [30943096 2013-04-04] (iMesh, Inc)
HKU\UpdatusUser\...\Run: [Exetender] - "C:\Program Files (x86)\FantastiGames\GPlayer.exe" /runonstartup [x]
HKU\UpdatusUser\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
HKU\UpdatusUser\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
AppInit_DLLs:   C:\PROGRA~2\SEARCH~1\Datamngr\x64\mgrldr.dll     [97280 2009-07-13] ()

==================== Services (Whitelisted) =================

S2 IERA; C:\Program Files (x86)\Sierra Wireless Inc\IERA\IERA64.exe [198512 2010-11-22] (Sierra Wireless, Inc.)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [161560 2012-01-20] (Intel Corporation)
S2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe [138272 2012-06-15] (Symantec Corporation)
S2 VideoDownloadConverter_4zService; C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbarsvc.exe [42504 2012-12-05] (COMPANYVERS_NAME)

==================== Drivers (Whitelisted) ====================

S1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation)
S1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation)
S1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1309010.00E\ccSetx64.sys [167072 2012-06-06] (Symantec Corporation)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2012-09-30] (Symantec Corporation)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2012-09-30] (Symantec Corporation)
S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2012-09-30] (Symantec Corporation)
S1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130726.001\IDSvia64.sys [513184 2012-09-27] (Symantec Corporation)
S1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130726.001\IDSvia64.sys [513184 2012-09-27] (Symantec Corporation)
S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\ENG64.SYS [126040 2013-05-22] (Symantec Corporation)
S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\ENG64.SYS [126040 2013-05-22] (Symantec Corporation)
S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\EX64.SYS [2098776 2013-05-22] (Symantec Corporation)
S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\EX64.SYS [2098776 2013-05-22] (Symantec Corporation)
S1 SRTSP; C:\Windows\System32\Drivers\NISx64\1309010.00E\SRTSP64.SYS [737952 2012-07-05] (Symantec Corporation)
S1 SRTSPX; C:\Windows\system32\drivers\NISx64\1309010.00E\SRTSPX64.SYS [37536 2012-07-05] (Symantec Corporation)
S3 swiwdmbus; C:\Windows\System32\DRIVERS\swiwdmbusx64.sys [102656 2010-06-20] (Sierra Wireless Inc.)
S3 SWUMXA3; C:\Windows\System32\DRIVERS\swumxa3.sys [210944 2010-06-20] (Sierra Wireless Inc.)
S0 SymDS; C:\Windows\System32\drivers\NISx64\1309010.00E\SYMDS64.SYS [451192 2011-08-15] (Symantec Corporation)
S0 SymEFA; C:\Windows\System32\drivers\NISx64\1309010.00E\SYMEFA64.SYS [1129120 2012-05-21] (Symantec Corporation)
S3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [175736 2012-09-29] (Symantec Corporation)
S1 SymIRON; C:\Windows\system32\drivers\NISx64\1309010.00E\Ironx64.SYS [190072 2012-04-17] (Symantec Corporation)
S1 SymNetS; C:\Windows\System32\Drivers\NISx64\1309010.00E\SYMNETS.SYS [405624 2012-04-17] (Symantec Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 MSICDSetup; \??\D:\CDriver64.sys [x]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [x]
S3 SWUMX20; system32\DRIVERS\swumx20.sys [x]

========================== Drivers MD5 =======================

C:\Windows\system32\drivers\1394ohci.sys ==> MD5 is legit
C:\Windows\System32\drivers\ACPI.sys ==> MD5 is legit
C:\Windows\system32\drivers\acpipmi.sys ==> MD5 is legit
C:\Windows\system32\drivers\adp94xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\adpahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\adpu320.sys ==> MD5 is legit
C:\Windows\system32\drivers\afd.sys 1C7857B62DE5994A75B054A9FD4C3825
C:\Windows\system32\drivers\agp440.sys ==> MD5 is legit
C:\Windows\system32\drivers\aliide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdide.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdk8.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdppm.sys ==> MD5 is legit
C:\Windows\system32\drivers\amdsata.sys D4121AE6D0C0E7E13AA221AA57EF2D49
C:\Windows\system32\drivers\amdsbs.sys ==> MD5 is legit
C:\Windows\System32\drivers\amdxata.sys 540DAF1CEA6094886D72126FD7C33048
C:\Windows\system32\drivers\appid.sys ==> MD5 is legit
C:\Windows\system32\drivers\arc.sys ==> MD5 is legit
C:\Windows\system32\drivers\arcsas.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit
C:\Windows\System32\drivers\atapi.sys ==> MD5 is legit
C:\Windows\system32\drivers\bxvbda.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\b57nd60a.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Beep.sys ==> MD5 is legit
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130715.001\BHDrvx64.sys 6E10DB69DB1AA96207F4B14B18FF12F8
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130715.001\BHDrvx64.sys 6E10DB69DB1AA96207F4B14B18FF12F8
C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit
C:\Windows\system32\drivers\BrFiltLo.sys ==> MD5 is legit
C:\Windows\system32\drivers\BrFiltUp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\bridge.sys 5C2F352A4E961D72518261257AAE204B
C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit
C:\Windows\system32\drivers\bthmodem.sys ==> MD5 is legit
C:\Windows\system32\drivers\NISx64\1309010.00E\ccSetx64.sys 2C6FFCCA37B002AAB3C7C31A6D780A76
C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit
C:\Windows\system32\drivers\circlass.sys ==> MD5 is legit
C:\Windows\System32\CLFS.sys ==> MD5 is legit
C:\Windows\system32\drivers\CmBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\cmdide.sys ==> MD5 is legit
C:\Windows\System32\Drivers\cng.sys 9AC4F97C2D3E93367E2148EA940CD2CD
C:\Windows\system32\drivers\compbatt.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\CompositeBus.sys ==> MD5 is legit
C:\Windows\system32\drivers\crcdisk.sys ==> MD5 is legit
C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit
C:\Windows\System32\drivers\discache.sys ==> MD5 is legit
C:\Windows\System32\drivers\disk.sys ==> MD5 is legit
C:\Windows\System32\drivers\drmkaud.sys ==> MD5 is legit
C:\Windows\System32\drivers\dxgkrnl.sys AF2E16242AA723F68F461B6EAE2EAD3D
C:\Windows\system32\drivers\evbda.sys ==> MD5 is legit
C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys 4353FF94D47A0A9D52B89ECCF0CDB013
C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys 4353FF94D47A0A9D52B89ECCF0CDB013
C:\Windows\system32\drivers\elxstor.sys ==> MD5 is legit
C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys C5BCCB378D0A896304A3E71BE7215983
C:\Windows\system32\drivers\errdev.sys ==> MD5 is legit
C:\Windows\System32\Drivers\exfat.sys ==> MD5 is legit
C:\Windows\System32\Drivers\fastfat.sys ==> MD5 is legit
C:\Windows\system32\drivers\fdc.sys ==> MD5 is legit
C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit
C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit
C:\Windows\system32\drivers\flpydisk.sys ==> MD5 is legit
C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B
C:\Windows\System32\DRIVERS\fvevol.sys 8F6322049018354F45F05A2FD2D4E5E0
C:\Windows\system32\drivers\gagp30kx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\GEARAspiWDM.sys 8E98D21EE06192492A5671A6144D092F
C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit
C:\Windows\System32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A
C:\Windows\System32\DRIVERS\HDAudBus.sys ==> MD5 is legit
C:\Windows\system32\drivers\HidBatt.sys ==> MD5 is legit
C:\Windows\system32\drivers\hidbth.sys ==> MD5 is legit
C:\Windows\system32\drivers\hidir.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit
C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 is legit
C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit
C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\i8042prt.sys ==> MD5 is legit
C:\Windows\system32\drivers\iaStorV.sys AAAF44DB3BD0B9D1FB6969B23ECC8366
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130726.001\IDSvia64.sys A48928D4CCA6F8B731989DB08CF2C0AB
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130726.001\IDSvia64.sys A48928D4CCA6F8B731989DB08CF2C0AB
C:\Windows\system32\drivers\iirsp.sys ==> MD5 is legit
C:\Windows\System32\drivers\RTKVHD64.sys 602788BF364D43E5878AA1B4F85C232B
C:\Windows\system32\drivers\intelide.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit
C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit
C:\Windows\system32\drivers\isapnp.sys ==> MD5 is legit
C:\Windows\system32\drivers\msiscsi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit
C:\Windows\System32\Drivers\ksecdd.sys 97A7070AEA4C058B6418519E869A63B4
C:\Windows\System32\Drivers\ksecpkg.sys 26C43A7C2862447EC59DEDA188D1DA07
C:\Windows\system32\drivers\ksthunk.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_fc.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_sas.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_sas2.sys ==> MD5 is legit
C:\Windows\system32\drivers\lsi_scsi.sys ==> MD5 is legit
C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit
C:\Windows\system32\drivers\megasas.sys ==> MD5 is legit
C:\Windows\system32\drivers\MegaSR.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\HECIx64.sys 6B01B7414A105B9E51652089A03027CF
C:\Windows\System32\drivers\modem.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit
C:\Windows\System32\drivers\mountmgr.sys ==> MD5 is legit
C:\Windows\system32\drivers\mpio.sys ==> MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit
C:\Windows\system32\drivers\mrxdav.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mrxsmb.sys A5D9106A73DC88564C825D317CAC68AC
C:\Windows\System32\DRIVERS\mrxsmb10.sys D711B3C1D5F42C0C2415687BE09FC163
C:\Windows\System32\DRIVERS\mrxsmb20.sys 9423E9D355C8D303E76B8CFBD8A5C30C
C:\Windows\System32\drivers\msahci.sys ==> MD5 is legit
C:\Windows\system32\drivers\msdsm.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Msfs.sys ==> MD5 is legit
C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit
C:\Windows\System32\drivers\msisadrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit
C:\Windows\System32\Drivers\MsRPC.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\mssmbios.sys ==> MD5 is legit
C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit
C:\Windows\system32\drivers\MTConfig.sys ==> MD5 is legit
C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\ENG64.SYS 56540E526B46E379A476FB5BC381B290
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\ENG64.SYS 56540E526B46E379A476FB5BC381B290
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\EX64.SYS 8A19D3991F9F14B885CDE8BC640F6B68
C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\EX64.SYS 8A19D3991F9F14B885CDE8BC640F6B68
C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit
C:\Windows\System32\Drivers\NDProxy.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit
C:\Windows\system32\drivers\nfrd960.sys ==> MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit
C:\Windows\System32\Drivers\Ntfs.sys B98F8C6E31CD07B2E6F71F7F648E38C0
C:\Windows\System32\drivers\nvhda64v.sys 10204955027011E08A9DC27737A48A54
C:\Windows\System32\DRIVERS\nvlddmkm.sys FCBA1C22727939E7CFF9EB08FE9692AB
C:\Windows\system32\drivers\nvraid.sys 0A92CB65770442ED0DC44834632F66AD
C:\Windows\system32\drivers\nvstor.sys DAB0E87525C10052BF65F06152F37E4A
C:\Windows\system32\drivers\nv_agp.sys ==> MD5 is legit
C:\Windows\system32\drivers\ohci1394.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\parport.sys ==> MD5 is legit
C:\Windows\System32\drivers\partmgr.sys E9766131EEADE40A27DC27D2D68FBA9C
C:\Windows\System32\drivers\pci.sys ==> MD5 is legit
C:\Windows\system32\drivers\pciide.sys ==> MD5 is legit
C:\Windows\system32\drivers\pcmcia.sys ==> MD5 is legit
C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit
C:\Windows\System32\drivers\peauth.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit
C:\Windows\system32\drivers\processr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit
C:\Windows\system32\drivers\ql2300.sys ==> MD5 is legit
C:\Windows\system32\drivers\ql40xx.sys ==> MD5 is legit
C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 is legit
C:\Windows\system32\drivers\rdpbus.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit
C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit
C:\Windows\System32\Drivers\RDPWD.sys E61608AA35E98999AF9AAEEEA6114B0A
C:\Windows\System32\drivers\rdyboost.sys ==> MD5 is legit
C:\Windows\System32\Drivers\RootMdm.sys 388D3DD1A6457280F3BADBA9F3ACD6B1
C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\Rt64win7.sys 130DD683DCC902F47A4AC35201D07E2F
C:\Windows\system32\drivers\sbp2port.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 is legit
C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\serenum.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\serial.sys ==> MD5 is legit
C:\Windows\system32\drivers\sermouse.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffdisk.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 is legit
C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 is legit
C:\Windows\system32\drivers\sfloppy.sys ==> MD5 is legit
C:\Windows\system32\drivers\SiSRaid2.sys ==> MD5 is legit
C:\Windows\system32\drivers\sisraid4.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit
C:\Windows\System32\Drivers\spldr.sys ==> MD5 is legit
C:\Windows\System32\Drivers\NISx64\1309010.00E\SRTSP64.SYS 891793E00432FA055CF040605C260E49
C:\Windows\system32\drivers\NISx64\1309010.00E\SRTSPX64.SYS 1CB7BB3B0561FB5ECFE37F7731E8BF3E
C:\Windows\System32\DRIVERS\srv.sys 441FBA48BFF01FDB9D5969EBC1838F0B
C:\Windows\System32\DRIVERS\srv2.sys B4ADEBBF5E3677CCE9651E0F01F7CC28
C:\Windows\System32\DRIVERS\srvnet.sys 27E461F0BE5BFF5FC737328F749538C3
C:\Windows\system32\drivers\stexstor.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\swenum.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\swiwdmbusx64.sys C89FFA6A0B7723F2FB72A734934A4425
C:\Windows\System32\DRIVERS\swumxa3.sys F6CEB2FF475265197D4407E87FF68701
C:\Windows\System32\drivers\NISx64\1309010.00E\SYMDS64.SYS 8B2430762099598DA40686F754632EFD
C:\Windows\System32\drivers\NISx64\1309010.00E\SYMEFA64.SYS 5CB7F2FD7E30A0F52F93574BFC3A8041
C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 898BB48C797483420DF523B2BBC1ECDB
C:\Windows\system32\drivers\NISx64\1309010.00E\Ironx64.SYS 5013A76CAAA1D7CF1C55214B490B4E35
C:\Windows\System32\Drivers\NISx64\1309010.00E\SYMNETS.SYS 3911BD0E68C010E5438A87706ABBE9AB
C:\Windows\System32\drivers\tcpip.sys 9849EA3843A2ADBDD1497E97A85D8CAE
C:\Windows\System32\DRIVERS\tcpip.sys 9849EA3843A2ADBDD1497E97A85D8CAE
C:\Windows\System32\drivers\tcpipreg.sys 1B16D0BD9841794A6E0CDE0CEF744ABC
C:\Windows\System32\drivers\tdpipe.sys ==> MD5 is legit
C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8
C:\Windows\System32\DRIVERS\tdx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\termdd.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\tssecsrv.sys ==> MD5 is legit
C:\Windows\System32\drivers\tsusbflt.sys ==> MD5 is legit
C:\Windows\system32\drivers\TsUsbGD.sys 9CC2CCAE8A84820EAECB886D477CBCB8
C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 is legit
C:\Windows\system32\drivers\uagp35.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 is legit
C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\umbus.sys ==> MD5 is legit
C:\Windows\system32\drivers\umpass.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\usbccgp.sys 6F1A3157A1C89435352CEB543CDB359C
C:\Windows\system32\drivers\usbcir.sys ==> MD5 is legit
C:\Windows\system32\drivers\usbehci.sys C025055FE7B87701EB042095DF1A2D7B
C:\Windows\System32\DRIVERS\usbhub.sys 287C6C9410B111B68B52CA298F7B8C24
C:\Windows\system32\drivers\usbohci.sys 9840FC418B4CBD632D3D0A667A725C31
C:\Windows\system32\drivers\usbprint.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\USBSTOR.SYS FED648B01349A3C8395A5169DB5FB7D6
C:\Windows\system32\drivers\usbuhci.sys 62069A34518BCF9C1FD9E74B3F6DB7CD
C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit
C:\Windows\System32\drivers\vga.sys ==> MD5 is legit
C:\Windows\system32\drivers\vhdmp.sys ==> MD5 is legit
C:\Windows\system32\drivers\viaide.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgr.sys ==> MD5 is legit
C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit
C:\Windows\System32\drivers\volsnap.sys ==> MD5 is legit
C:\Windows\system32\drivers\vsmraid.sys ==> MD5 is legit
C:\Windows\System32\drivers\vwifibus.sys ==> MD5 is legit
C:\Windows\system32\drivers\wacompen.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 is legit
C:\Windows\system32\drivers\wd.sys ==> MD5 is legit
C:\Windows\System32\drivers\Wdf01000.sys 442783E2CB0DA19873B7A63833FF4CB4
C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit
C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\SysWow64\drivers\wimmount.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\WinUsb.sys FE88B288356E7B47B74B13372ADD906D
C:\Windows\system32\drivers\wmiacpi.sys ==> MD5 is legit
C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit
C:\Windows\System32\DRIVERS\WSDPrint.sys 8D918B1DB190A4D9B1753A66FA8C96E8
C:\Windows\System32\DRIVERS\WSDScan.sys 4A2A5C50DD1A63577D3ACA94269FBC7F
C:\Windows\System32\drivers\WudfPf.sys AB886378EEB55C6C75B4F2D14B6C869F
C:\Windows\System32\DRIVERS\WUDFRd.sys DDA4CAF29D8C0A297F886BFE561E6659

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2013-08-01 20:37 - 2013-08-01 20:37 - 00000000 ____D C:\FRST
2013-08-01 01:33 - 2013-08-01 01:37 - 00000000 ___SD C:\ComboFix
2013-08-01 01:33 - 2013-08-01 01:37 - 00000000 ____D C:\Windows\erdnt
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ___SD C:\32788R22FWJFW
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ____D C:\Qoobox
2013-08-01 01:33 - 2011-06-25 22:45 - 00256000 _____ C:\Windows\PEV.exe
2013-08-01 01:33 - 2010-11-07 09:20 - 00208896 _____ C:\Windows\MBR.exe
2013-08-01 01:33 - 2009-04-19 20:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00098816 _____ C:\Windows\sed.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00080412 _____ C:\Windows\grep.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00068096 _____ C:\Windows\zip.exe
2013-07-30 00:02 - 2013-07-30 00:02 - 00000000 ____D C:\ProgramData\2430A
2013-07-28 02:52 - 2013-07-28 02:50 - 00869654 _____ C:\Users\Atgiaras\Desktop\Driver_Win7_7072_05222013.zip
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Malwarebytes
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-28 01:25 - 2013-07-28 01:35 - 00000000 ____D C:\Program Files (x86)\Sierra Wireless Inc
2013-07-28 01:25 - 2013-07-28 01:26 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Sierra Wireless
2013-07-28 01:25 - 2013-07-28 01:25 - 00000000 ____D C:\ProgramData\Sierra Wireless
2013-07-27 03:41 - 2013-07-27 03:41 - 00032352 _____ C:\{10BA3DCA-25ED-42E3-BE67-509F328F9E32}
2013-07-27 03:41 - 2013-07-27 03:41 - 00002200 _____ C:\{8CD708F7-C529-4205-A006-199E81E9658B}
2013-07-12 04:16 - 2013-06-11 15:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-12 04:16 - 2013-06-11 15:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-07-12 04:16 - 2013-06-11 15:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-07-12 04:16 - 2013-06-11 15:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-07-12 04:16 - 2013-06-11 15:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-07-12 04:16 - 2013-06-11 14:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-12 04:16 - 2013-06-11 14:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-07-12 04:16 - 2013-06-06 19:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-07-12 04:16 - 2013-06-06 18:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-12 02:10 - 2013-06-04 19:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2013-07-12 02:10 - 2013-06-03 22:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\System32\qedit.dll
2013-07-12 02:10 - 2013-06-03 20:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-12 02:10 - 2013-05-05 22:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\System32\WMVDECOD.DLL
2013-07-12 02:10 - 2013-05-05 20:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-12 02:10 - 2013-04-09 15:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-12 02:10 - 2013-04-02 14:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\System32\DWrite.dll
2013-07-05 19:11 - 2013-07-13 19:44 - 00000000 ____D C:\Users\Atgiaras\Documents\BOOK SHELF
2013-07-04 02:30 - 2013-07-04 02:30 - 00000557 _____ C:\Users\Atgiaras\Downloads\usb000i5tm.kml
2013-07-03 22:04 - 2013-07-03 22:04 - 00013006 _____ C:\Users\Atgiaras\Downloads\Suppliers breakdown.xlsx

==================== One Month Modified Files and Folders =======

2013-08-01 20:37 - 2013-08-01 20:37 - 00000000 ____D C:\FRST
2013-08-01 19:40 - 2012-09-29 22:59 - 00950128 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2013-08-01 01:37 - 2013-08-01 01:33 - 00000000 ___SD C:\ComboFix
2013-08-01 01:37 - 2013-08-01 01:33 - 00000000 ____D C:\Windows\erdnt
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ___SD C:\32788R22FWJFW
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ____D C:\Qoobox
2013-08-01 01:33 - 2009-07-13 21:13 - 00782902 _____ C:\Windows\System32\PerfStringBackup.INI
2013-08-01 01:32 - 2013-04-17 05:04 - 00000000 ____D C:\Users\Atgiaras\AppData\Local\iMesh
2013-08-01 01:31 - 2009-07-13 20:51 - 00066752 _____ C:\Windows\setupact.log
2013-07-30 00:02 - 2013-07-30 00:02 - 00000000 ____D C:\ProgramData\2430A
2013-07-30 00:02 - 2012-12-28 05:32 - 00000000 ____D C:\Users\Atgiaras\AppData\Local\CrashDumps
2013-07-30 00:02 - 2012-09-03 07:56 - 00000000 ____D C:\ProgramData\NVIDIA
2013-07-30 00:02 - 2009-07-13 21:08 - 00032594 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-07-30 00:02 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-28 03:27 - 2010-11-20 19:47 - 00099990 _____ C:\Windows\PFRO.log
2013-07-28 03:02 - 2013-01-16 04:49 - 00000000 ____D C:\Program Files (x86)\LSHunter.TV
2013-07-28 02:57 - 2009-07-13 20:45 - 00022064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-28 02:57 - 2009-07-13 20:45 - 00022064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-28 02:52 - 2013-04-09 17:09 - 00849992 _____ (Realtek                                            ) C:\Windows\System32\Drivers\Rt64win7.sys
2013-07-28 02:52 - 2013-04-09 17:09 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RtNicProp64.dll
2013-07-28 02:52 - 2012-09-03 08:02 - 00108104 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RTNUninst64.dll
2013-07-28 02:50 - 2013-07-28 02:52 - 00869654 _____ C:\Users\Atgiaras\Desktop\Driver_Win7_7072_05222013.zip
2013-07-28 02:49 - 2012-09-03 07:50 - 01935326 _____ C:\Windows\WindowsUpdate.log
2013-07-28 02:47 - 2012-11-12 22:54 - 00000000 ____D C:\Program Files\Google
2013-07-28 02:47 - 2012-11-12 22:53 - 00000000 ____D C:\Program Files (x86)\Google
2013-07-28 02:47 - 2012-09-03 08:02 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-07-28 02:44 - 2013-04-11 00:40 - 00000000 ____D C:\Program Files (x86)\Graboid
2013-07-28 02:41 - 2012-11-12 22:53 - 00000000 ____D C:\Users\Atgiaras\AppData\Local\Google
2013-07-28 01:35 - 2013-07-28 01:25 - 00000000 ____D C:\Program Files (x86)\Sierra Wireless Inc
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Malwarebytes
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-28 01:26 - 2013-07-28 01:25 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Sierra Wireless
2013-07-28 01:26 - 2013-05-10 01:57 - 00000000 ____D C:\Users\Atgiaras\Documents\Outlook Files
2013-07-28 01:25 - 2013-07-28 01:25 - 00000000 ____D C:\ProgramData\Sierra Wireless
2013-07-28 01:12 - 2013-06-27 21:53 - 00000000 ____D C:\Program Files (x86)\DealPlyLive
2013-07-28 01:10 - 2013-06-27 21:52 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\PerformerSoft
2013-07-28 01:07 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2013-07-27 22:34 - 2013-06-30 22:03 - 00000000 ____D C:\Users\Atgiaras\Desktop\Noah
2013-07-27 03:42 - 2012-09-29 00:38 - 00000000 ____D C:\users\Atgiaras
2013-07-27 03:41 - 2013-07-27 03:41 - 00032352 _____ C:\{10BA3DCA-25ED-42E3-BE67-509F328F9E32}
2013-07-27 03:41 - 2013-07-27 03:41 - 00002200 _____ C:\{8CD708F7-C529-4205-A006-199E81E9658B}
2013-07-27 03:41 - 2012-11-12 22:53 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-26 22:05 - 2012-10-14 02:16 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-26 21:53 - 2013-06-27 21:53 - 00000302 _____ C:\Windows\Tasks\Dealply.job
2013-07-26 21:19 - 2012-11-12 22:53 - 00000902 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-26 17:28 - 2012-09-29 03:31 - 00000000 ____D C:\ProgramData\Norton
2013-07-26 16:38 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\FxsTmp
2013-07-26 16:37 - 2013-06-27 21:52 - 00003118 _____ C:\Windows\System32\Tasks\PC Performer
2013-07-25 23:32 - 2012-11-27 01:44 - 00003934 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{ED1C96F8-31EA-4905-8FF0-2846FE7EF07A}
2013-07-16 00:14 - 2012-11-12 22:53 - 00003898 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-16 00:14 - 2012-11-12 22:53 - 00003646 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-13 23:04 - 2012-09-29 02:48 - 00000000 ____D C:\Users\Atgiaras\Desktop\Paul
2013-07-13 19:44 - 2013-07-05 19:11 - 00000000 ____D C:\Users\Atgiaras\Documents\BOOK SHELF
2013-07-12 15:10 - 2009-07-13 20:45 - 00416688 _____ C:\Windows\System32\FNTCACHE.DAT
2013-07-12 15:09 - 2010-11-20 23:17 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-12 15:09 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-12 15:09 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-12 04:20 - 2012-09-29 02:44 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-12 04:17 - 2012-12-30 18:45 - 78185248 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-07-04 02:30 - 2013-07-04 02:30 - 00000557 _____ C:\Users\Atgiaras\Downloads\usb000i5tm.kml
2013-07-03 23:27 - 2013-05-10 01:50 - 00000000 ____D C:\Users\Atgiaras\AppData\Local\LogMeIn Rescue Applet
2013-07-03 22:04 - 2013-07-03 22:04 - 00013006 _____ C:\Users\Atgiaras\Downloads\Suppliers breakdown.xlsx
2013-07-02 05:31 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\restore

==================== Known DLLs (Whitelisted) ================

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points  =========================

==================== BCD ================================

Windows Boot Manager
--------------------
identifier              {bootmgr}
device                  partition=Y:
description             Windows Boot Manager
locale                  en-US
inherit                 {globalsettings}
default                 {default}
resumeobject            {7aa81b0d-040b-11e2-b0f7-8c89a5d9bf45}
displayorder            {default}
toolsdisplayorder       {memdiag}
timeout                 3

Windows Boot Loader
-------------------
identifier              {default}
device                  partition=C:
path                    \Windows\system32\winload.exe
description             Windows 7
locale                  en-US
inherit                 {bootloadersettings}
recoverysequence        {current}
recoveryenabled         Yes
osdevice                partition=C:
systemroot              \Windows
resumeobject            {7aa81b0d-040b-11e2-b0f7-8c89a5d9bf45}
nx                      OptIn
detecthal               Yes

Windows Boot Loader
-------------------
identifier              {current}
device                  ramdisk=[C:]\Recovery\7aa81b0f-040b-11e2-b0f7-8c89a5d9bf45\Winre.wim,{7aa81b10-040b-11e2-b0f7-8c89a5d9bf45}
path                    \windows\system32\winload.exe
description             Windows Recovery Environment
inherit                 {bootloadersettings}
osdevice                ramdisk=[C:]\Recovery\7aa81b0f-040b-11e2-b0f7-8c89a5d9bf45\Winre.wim,{7aa81b10-040b-11e2-b0f7-8c89a5d9bf45}
systemroot              \windows
nx                      OptIn
winpe                   Yes

Resume from Hibernate
---------------------
identifier              {7aa81b0d-040b-11e2-b0f7-8c89a5d9bf45}
device                  partition=C:
path                    \Windows\system32\winresume.exe
description             Windows Resume Application
locale                  en-US
inherit                 {resumeloadersettings}
filedevice              partition=C:
filepath                \hiberfil.sys
debugoptionenabled      No

Windows Memory Tester
---------------------
identifier              {memdiag}
device                  partition=Y:
path                    \boot\memtest.exe
description             Windows Memory Diagnostic
locale                  en-US
inherit                 {globalsettings}
badmemoryaccess         Yes

EMS Settings
------------
identifier              {emssettings}
bootems                 Yes

Debugger Settings
-----------------
identifier              {dbgsettings}
debugtype               Serial
debugport               1
baudrate                115200

RAM Defects
-----------
identifier              {badmemory}

Global Settings
---------------
identifier              {globalsettings}
inherit                 {dbgsettings}
                        {emssettings}
                        {badmemory}

Boot Loader Settings
--------------------
identifier              {bootloadersettings}
inherit                 {globalsettings}
                        {hypervisorsettings}

Hypervisor Settings
-------------------
identifier              {hypervisorsettings}
hypervisordebugtype     Serial
hypervisordebugport     1
hypervisorbaudrate      115200

Resume Loader Settings
----------------------
identifier              {resumeloadersettings}
inherit                 {globalsettings}

Device options
--------------
identifier              {7aa81b10-040b-11e2-b0f7-8c89a5d9bf45}
description             Ramdisk Options
ramdisksdidevice        partition=C:
ramdisksdipath          \Recovery\7aa81b0f-040b-11e2-b0f7-8c89a5d9bf45\boot.sdi

==================== Memory info ===========================

Percentage of memory in use: 9%
Total physical RAM: 8155.7 MB
Available physical RAM: 7353.91 MB
Total Pagefile: 8153.9 MB
Available Pagefile: 7351.06 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.41 GB) (Free:884.15 GB) NTFS (Disk=0 Partition=2)
Drive f: (USB 1) (Removable) (Total:7.44 GB) (Free:7.37 GB) FAT32 (Disk=1 Partition=1)
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS (Disk=0 Partition=1) ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: EB5B3C22)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 7 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=7 GB) - (Type=0B)

LastRegBack: 2013-07-26 18:16

==================== End Of Log ============================

 

 



BC AdBot (Login to Remove)

 


#2 The Dark Knight

The Dark Knight

    The Magician


  • Security Colleague
  • 661 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Krypton
  • Local time:10:33 PM

Posted 06 August 2013 - 04:42 PM

Hello and welcome to BleepingComputer. I am The Dark Knight and will be assisting you. Please ask questions if anything is unclear. :welcome:

 

Please open Notepad. PCopy the contents of the code box below. To do this highlight the contents of the box and right-click on it. Paste this into the open notepad. Save it on the flashdrive as fixlist.txt

start
HKLM\...\InprocServer32: [Default-cscui]  <==== ATTENTION!
end

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

On Vista or Windows 7: Now please enter System Recovery Options.
On Windows XP: Now please boot into the BartPE CD.
Run FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt). Please post it in your reply.

 

How is your computer now?
 

 


If you make yourself more than just a man, if you devote yourself to an ideal...you become something else entirely. A legend, Mr. Wayne, a legend!


If I have helped you please consider donating to the Neuroscience Research Institute.


Posted Image
Posted Image


#3 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 07 August 2013 - 03:36 AM

Good Evening,

 

thankyou for your reply, I ran the fix with the results below

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 30-07-2013 03
Ran by SYSTEM at 2013-08-06 18:31:57 Run:1
Running from F:\
Boot Mode: Recovery
==============================================

HKLM\Software\Classes\CLSID\{750fdf10-2a26-11d1-a3ea-080036587f03}\InprocServer32\\Default => Value was restored successfully.

==== End of Fixlog ====

 

 

 

The PC is still stopping at the windows logo and then blue screens, I have run the test tool again and the results are below

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-07-2013 03 (ATTENTION: ====> FRST version is 7 days old and could be outdated)
Ran by SYSTEM on 06-08-2013 18:34:08
Running from F:\
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> FRST is updated to run from normal or Safe mode to produce a full FRST.txt log and an extra Addition.txt log.

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6463592 2012-02-02] (Realtek Semiconductor)
HKLM\...\Run: [combofix] - C:\ComboFix\CF32727.3XE [345088 2010-11-20] (Microsoft Corporation)
HKLM\...\RunOnce: [combofix] - C:\ComboFix\CF32727.3XE /c C:\ComboFixCombobatch.bat [345088 2010-11-20] (Microsoft Corporation)
HKLM\...\runonceex: [flags] - 8 [x]
HKLM-x32\...\Run: [FUFAXRCV] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [495616 2011-03-08] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] - C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [856064 2011-03-08] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-11] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-08-27] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-02] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKU\Atgiaras\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
HKU\Atgiaras\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
HKU\Atgiaras\...\Run: [iMesh] - C:\Program Files (x86)\iMesh Applications\iMesh\iMesh.exe [30943096 2013-04-04] (iMesh, Inc)
HKU\UpdatusUser\...\Run: [Exetender] - "C:\Program Files (x86)\FantastiGames\GPlayer.exe" /runonstartup [x]
HKU\UpdatusUser\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
HKU\UpdatusUser\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHWP.EXE [241280 2012-12-09] (SEIKO EPSON CORPORATION)
AppInit_DLLs:   C:\PROGRA~2\SEARCH~1\Datamngr\x64\mgrldr.dll     [97280 2009-07-13] ()

==================== Services (Whitelisted) =================

S2 IERA; C:\Program Files (x86)\Sierra Wireless Inc\IERA\IERA64.exe [198512 2010-11-22] (Sierra Wireless, Inc.)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [161560 2012-01-20] (Intel Corporation)
S2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe [138272 2012-06-15] (Symantec Corporation)
S2 VideoDownloadConverter_4zService; C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbarsvc.exe [42504 2012-12-05] (COMPANYVERS_NAME)

==================== Drivers (Whitelisted) ====================

S1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation)
S1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\BASHDefs\20130715.001\BHDrvx64.sys [1393240 2013-05-31] (Symantec Corporation)
S1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1309010.00E\ccSetx64.sys [167072 2012-06-06] (Symantec Corporation)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2012-09-30] (Symantec Corporation)
S1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2012-09-30] (Symantec Corporation)
S3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [138912 2012-09-30] (Symantec Corporation)
S1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130726.001\IDSvia64.sys [513184 2012-09-27] (Symantec Corporation)
S1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\IPSDefs\20130726.001\IDSvia64.sys [513184 2012-09-27] (Symantec Corporation)
S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\ENG64.SYS [126040 2013-05-22] (Symantec Corporation)
S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\ENG64.SYS [126040 2013-05-22] (Symantec Corporation)
S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\EX64.SYS [2098776 2013-05-22] (Symantec Corporation)
S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.5.0.145\Definitions\VirusDefs\20130726.018\EX64.SYS [2098776 2013-05-22] (Symantec Corporation)
S1 SRTSP; C:\Windows\System32\Drivers\NISx64\1309010.00E\SRTSP64.SYS [737952 2012-07-05] (Symantec Corporation)
S1 SRTSPX; C:\Windows\system32\drivers\NISx64\1309010.00E\SRTSPX64.SYS [37536 2012-07-05] (Symantec Corporation)
S3 swiwdmbus; C:\Windows\System32\DRIVERS\swiwdmbusx64.sys [102656 2010-06-20] (Sierra Wireless Inc.)
S3 SWUMXA3; C:\Windows\System32\DRIVERS\swumxa3.sys [210944 2010-06-20] (Sierra Wireless Inc.)
S0 SymDS; C:\Windows\System32\drivers\NISx64\1309010.00E\SYMDS64.SYS [451192 2011-08-15] (Symantec Corporation)
S0 SymEFA; C:\Windows\System32\drivers\NISx64\1309010.00E\SYMEFA64.SYS [1129120 2012-05-21] (Symantec Corporation)
S3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [175736 2012-09-29] (Symantec Corporation)
S1 SymIRON; C:\Windows\system32\drivers\NISx64\1309010.00E\Ironx64.SYS [190072 2012-04-17] (Symantec Corporation)
S1 SymNetS; C:\Windows\System32\Drivers\NISx64\1309010.00E\SYMNETS.SYS [405624 2012-04-17] (Symantec Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 MSICDSetup; \??\D:\CDriver64.sys [x]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [x]
S3 SWUMX20; system32\DRIVERS\swumx20.sys [x]

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2013-08-01 20:37 - 2013-08-01 20:37 - 00000000 ____D C:\FRST
2013-08-01 01:33 - 2013-08-01 01:37 - 00000000 ___SD C:\ComboFix
2013-08-01 01:33 - 2013-08-01 01:37 - 00000000 ____D C:\Windows\erdnt
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ___SD C:\32788R22FWJFW
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ____D C:\Qoobox
2013-08-01 01:33 - 2011-06-25 22:45 - 00256000 _____ C:\Windows\PEV.exe
2013-08-01 01:33 - 2010-11-07 09:20 - 00208896 _____ C:\Windows\MBR.exe
2013-08-01 01:33 - 2009-04-19 20:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00098816 _____ C:\Windows\sed.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00080412 _____ C:\Windows\grep.exe
2013-08-01 01:33 - 2000-08-30 16:00 - 00068096 _____ C:\Windows\zip.exe
2013-07-30 00:02 - 2013-07-30 00:02 - 00000000 ____D C:\ProgramData\2430A
2013-07-28 02:52 - 2013-07-28 02:50 - 00869654 _____ C:\Users\Atgiaras\Desktop\Driver_Win7_7072_05222013.zip
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Malwarebytes
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-28 01:25 - 2013-07-28 01:35 - 00000000 ____D C:\Program Files (x86)\Sierra Wireless Inc
2013-07-28 01:25 - 2013-07-28 01:26 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Sierra Wireless
2013-07-28 01:25 - 2013-07-28 01:25 - 00000000 ____D C:\ProgramData\Sierra Wireless
2013-07-27 03:41 - 2013-07-27 03:41 - 00032352 _____ C:\{10BA3DCA-25ED-42E3-BE67-509F328F9E32}
2013-07-27 03:41 - 2013-07-27 03:41 - 00002200 _____ C:\{8CD708F7-C529-4205-A006-199E81E9658B}
2013-07-12 04:16 - 2013-06-11 15:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-12 04:16 - 2013-06-11 15:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-12 04:16 - 2013-06-11 15:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-12 04:16 - 2013-06-11 15:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-07-12 04:16 - 2013-06-11 15:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-07-12 04:16 - 2013-06-11 15:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-07-12 04:16 - 2013-06-11 15:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-07-12 04:16 - 2013-06-11 15:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-07-12 04:16 - 2013-06-11 14:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-12 04:16 - 2013-06-11 14:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-07-12 04:16 - 2013-06-06 19:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-07-12 04:16 - 2013-06-06 18:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-12 02:10 - 2013-06-04 19:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2013-07-12 02:10 - 2013-06-03 22:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\System32\qedit.dll
2013-07-12 02:10 - 2013-06-03 20:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-12 02:10 - 2013-05-05 22:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\System32\WMVDECOD.DLL
2013-07-12 02:10 - 2013-05-05 20:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-12 02:10 - 2013-04-09 15:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-12 02:10 - 2013-04-02 14:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\System32\DWrite.dll

==================== One Month Modified Files and Folders =======

2013-08-01 20:37 - 2013-08-01 20:37 - 00000000 ____D C:\FRST
2013-08-01 19:40 - 2012-09-29 22:59 - 00950128 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2013-08-01 01:37 - 2013-08-01 01:33 - 00000000 ___SD C:\ComboFix
2013-08-01 01:37 - 2013-08-01 01:33 - 00000000 ____D C:\Windows\erdnt
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ___SD C:\32788R22FWJFW
2013-08-01 01:33 - 2013-08-01 01:33 - 00000000 ____D C:\Qoobox
2013-08-01 01:33 - 2009-07-13 21:13 - 00782902 _____ C:\Windows\System32\PerfStringBackup.INI
2013-08-01 01:32 - 2013-04-17 05:04 - 00000000 ____D C:\Users\Atgiaras\AppData\Local\iMesh
2013-08-01 01:31 - 2009-07-13 20:51 - 00066752 _____ C:\Windows\setupact.log
2013-07-30 00:02 - 2013-07-30 00:02 - 00000000 ____D C:\ProgramData\2430A
2013-07-30 00:02 - 2012-12-28 05:32 - 00000000 ____D C:\Users\Atgiaras\AppData\Local\CrashDumps
2013-07-30 00:02 - 2012-09-03 07:56 - 00000000 ____D C:\ProgramData\NVIDIA
2013-07-30 00:02 - 2009-07-13 21:08 - 00032594 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-07-30 00:02 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-28 03:27 - 2010-11-20 19:47 - 00099990 _____ C:\Windows\PFRO.log
2013-07-28 03:02 - 2013-01-16 04:49 - 00000000 ____D C:\Program Files (x86)\LSHunter.TV
2013-07-28 02:57 - 2009-07-13 20:45 - 00022064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-28 02:57 - 2009-07-13 20:45 - 00022064 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-28 02:52 - 2013-04-09 17:09 - 00849992 _____ (Realtek                                            ) C:\Windows\System32\Drivers\Rt64win7.sys
2013-07-28 02:52 - 2013-04-09 17:09 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RtNicProp64.dll
2013-07-28 02:52 - 2012-09-03 08:02 - 00108104 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RTNUninst64.dll
2013-07-28 02:50 - 2013-07-28 02:52 - 00869654 _____ C:\Users\Atgiaras\Desktop\Driver_Win7_7072_05222013.zip
2013-07-28 02:49 - 2012-09-03 07:50 - 01935326 _____ C:\Windows\WindowsUpdate.log
2013-07-28 02:47 - 2012-11-12 22:54 - 00000000 ____D C:\Program Files\Google
2013-07-28 02:47 - 2012-11-12 22:53 - 00000000 ____D C:\Program Files (x86)\Google
2013-07-28 02:47 - 2012-09-03 08:02 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-07-28 02:44 - 2013-04-11 00:40 - 00000000 ____D C:\Program Files (x86)\Graboid
2013-07-28 02:41 - 2012-11-12 22:53 - 00000000 ____D C:\Users\Atgiaras\AppData\Local\Google
2013-07-28 01:35 - 2013-07-28 01:25 - 00000000 ____D C:\Program Files (x86)\Sierra Wireless Inc
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Malwarebytes
2013-07-28 01:32 - 2013-07-28 01:32 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-07-28 01:26 - 2013-07-28 01:25 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\Sierra Wireless
2013-07-28 01:26 - 2013-05-10 01:57 - 00000000 ____D C:\Users\Atgiaras\Documents\Outlook Files
2013-07-28 01:25 - 2013-07-28 01:25 - 00000000 ____D C:\ProgramData\Sierra Wireless
2013-07-28 01:12 - 2013-06-27 21:53 - 00000000 ____D C:\Program Files (x86)\DealPlyLive
2013-07-28 01:10 - 2013-06-27 21:52 - 00000000 ____D C:\Users\Atgiaras\AppData\Roaming\PerformerSoft
2013-07-28 01:07 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2013-07-27 22:34 - 2013-06-30 22:03 - 00000000 ____D C:\Users\Atgiaras\Desktop\Noah
2013-07-27 03:42 - 2012-09-29 00:38 - 00000000 ____D C:\users\Atgiaras
2013-07-27 03:41 - 2013-07-27 03:41 - 00032352 _____ C:\{10BA3DCA-25ED-42E3-BE67-509F328F9E32}
2013-07-27 03:41 - 2013-07-27 03:41 - 00002200 _____ C:\{8CD708F7-C529-4205-A006-199E81E9658B}
2013-07-27 03:41 - 2012-11-12 22:53 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-26 22:05 - 2012-10-14 02:16 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-26 21:53 - 2013-06-27 21:53 - 00000302 _____ C:\Windows\Tasks\Dealply.job
2013-07-26 21:19 - 2012-11-12 22:53 - 00000902 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-26 17:28 - 2012-09-29 03:31 - 00000000 ____D C:\ProgramData\Norton
2013-07-26 16:38 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\FxsTmp
2013-07-26 16:37 - 2013-06-27 21:52 - 00003118 _____ C:\Windows\System32\Tasks\PC Performer
2013-07-25 23:32 - 2012-11-27 01:44 - 00003934 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{ED1C96F8-31EA-4905-8FF0-2846FE7EF07A}
2013-07-16 00:14 - 2012-11-12 22:53 - 00003898 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-16 00:14 - 2012-11-12 22:53 - 00003646 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-13 23:04 - 2012-09-29 02:48 - 00000000 ____D C:\Users\Atgiaras\Desktop\Paul
2013-07-13 19:44 - 2013-07-05 19:11 - 00000000 ____D C:\Users\Atgiaras\Documents\BOOK SHELF
2013-07-12 15:10 - 2009-07-13 20:45 - 00416688 _____ C:\Windows\System32\FNTCACHE.DAT
2013-07-12 15:09 - 2010-11-20 23:17 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-12 15:09 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-12 15:09 - 2009-07-13 21:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-12 04:20 - 2012-09-29 02:44 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-12 04:17 - 2012-12-30 18:45 - 78185248 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe

==================== Known DLLs (Whitelisted) ================

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points  =========================

==================== Memory info ===========================

Percentage of memory in use: 9%
Total physical RAM: 8155.7 MB
Available physical RAM: 7358.98 MB
Total Pagefile: 8153.9 MB
Available Pagefile: 7352.82 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.41 GB) (Free:884.15 GB) NTFS (Disk=0 Partition=2)
Drive f: (USB 1) (Removable) (Total:7.44 GB) (Free:5.94 GB) FAT32 (Disk=1 Partition=1)
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS
Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS (Disk=0 Partition=1) ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: EB5B3C22)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 7 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=7 GB) - (Type=0B)

LastRegBack: 2013-07-26 18:16

==================== End Of Log ============================



#4 The Dark Knight

The Dark Knight

    The Magician


  • Security Colleague
  • 661 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Krypton
  • Local time:10:33 PM

Posted 07 August 2013 - 04:34 PM

Hey skagt,

 

Try this please. You will need a USB drive.

Download [URL=http://unetbootin.sourceforge.net/unetbootin-xpud-windows-latest.exe] http://unetbootin.sourceforge.net/unetbootin-xpud-windows-latest.exe[/url] & xPUD to the Desktop of your clean computer

 

  • Insert your USB drive
  • Press [b]Start[/b] > [b]My Computer[/b] > right click your USB drive > choose [b]Format[/b] > [b]Quick format[/b]
  • Double click the [b]unetbootin-xpud-windows-387.exe[/b] that you just downloaded
  • Press [b]Run[/b] then [b]OK[/b]
  • Select the DiskImage option then click the browse button located on the right side of the textbox field.
  • Browse to and select the [b]xpud-0.9.2.iso[/b] file you downloaded
  • Verify the correct drive letter is selected for your USB device then click OK
  • It will install a little bootable OS on your USB device
  • Once the files have been written to the device you will be prompted to reboot ~ do not reboot and instead just Exit the UNetbootin interface
  • After it has completed do [b]not[/b] choose to reboot the clean computer simply close the installer
  • Next download [url=http://noahdfear.net/downloads/driver.sh]http://noahdfear.net/downloads/driver.sh[/url] to your USB
  • Remove the USB and insert it in the sick computer
  • Boot the Sick computer
  • Press F12 and choose to boot from the USB
  • Follow the prompts
  • A [b]Welcome to xPUD[/b] screen will appear
  • Press [b]File[/b]
  • Expand [b]mnt[/b]
  • sda1,2...usually corresponds to your hard drive
  • sdb1 is likely your USB
  • Click on the folder that represents your USB drive (sdb1 ?)
  • If you don't see sdb1:
    • Click on the Tool menu, and then click on Open Terminal
    • In the Terminal window that opens, copy/paste each of the following lines, pressing enter after each one:

      mkdir /mnt/sdb1
      mount /dev/sdb1 /mnt/sdb1
    • Close the Terminal window.
  • Confirm that you see driver.sh that you downloaded there
  • Press Tool at the top
  • Choose Open Terminal
  • Type bash driver.sh
  • Press Enter
  • After it has finished a report will be located on your USB drive named report.txt
  • Remove the USB drive and insert back in your working computer and navigate to report.txt

    Note: All text entries are case sensitive.

Copy and paste the report.txt for my review.


Edited by The Dark Knight, 07 August 2013 - 04:36 PM.

If you make yourself more than just a man, if you devote yourself to an ideal...you become something else entirely. A legend, Mr. Wayne, a legend!


If I have helped you please consider donating to the Neuroscience Research Institute.


Posted Image
Posted Image


#5 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 10 August 2013 - 01:33 AM

Thankyou for your help so far

 

this is the report

 

Fri Aug 9 16:19:04 UTC 2013
Driver report for /mnt/sda2/Windows/System32/drivers NISx64/1309010.00E/ccsetx64.sys has NO Company Name! NISx64/1309010.00E/ironx64.sys has NO Company Name! NISx64/1309010.00E/srtsp64.sys has NO Company Name! NISx64/1309010.00E/srtspx64.sys has NO Company Name! NISx64/1309010.00E/symds64.sys has NO Company Name! NISx64/1309010.00E/symefa64.sys has NO Company Name! NISx64/1309010.00E/symnets.sys has NO Company Name!

64edd3f59db321947969fdf1dd747323  1394bus.sys
Microsoft Corporation

a87d604aea360176311474c87a63bb88  1394ohci.sys
Microsoft Corporation

99f8e788246d495ce3794d7e7821d2ca  acpipmi.sys
Microsoft Corporation

d81d9e70b8a6dd14d42d7b4efa65d5f2  acpi.sys
Microsoft Corporation

2f6b34b83843f0c5118b63ac634f5bf4  adp94xx.sys
Adaptec

597f78224ee9224ea1a13d6350ced962  adpahci.sys
Adaptec

e109549c90f62fb570b9540c4b148e54  adpu320.sys
Adaptec

1c7857b62de5994a75b054a9fd4c3825  afd.sys
Microsoft Corporation

7ecff9b22276b73f43a99a15a6094e90  agilevpn.sys
Microsoft Corporation

608c14dba7299d8cb6ed035a68a15799  AGP440.sys
Microsoft Corporation

5812713a477a3ad7363c7438ca2ee038  aliide.sys
Acer Laboratories

1ff8b4431c353ce385c875f194924c0c  amdide.sys
Microsoft Corporation

7024f087cff1833a806193ef9d22cda9  amdk8.sys
Microsoft Corporation

1e56388b3fe0d031c44144eb8c4d6217  amdppm.sys
Microsoft Corporation

d4121ae6d0c0e7e13aa221aa57ef2d49  amdsata.sys
Advanced Micro Devices

f67f933e79241ed32ff46a4f29b5120b  amdsbs.sys
AMD Technologies

540daf1cea6094886d72126fd7c33048  amdxata.sys
Advanced Micro Devices

89a69c3f2f319b43379399547526d952  appid.sys
Microsoft Corporation

019af6924aefe7839f61c830227fe79c  arcsas.sys
Adaptec

c484f8ceb1717c540242531db7845c4e  arc.sys
Adaptec

769765ce2cc62867468cea93969b2242  asyncmac.sys
Microsoft Corporation

02062c0b390b7729edc9e69c680a6f3c  atapi.sys
Microsoft Corporation

a34fe1e025e88798e746f484956c0720  ataport.sys
Microsoft Corporation

b5ace6968304a3900eeb1ebfd9622df2  b57nd60a.sys
Broadcom Corporation

f4de2ae7a9e1badac70bc71ea2c17612  battc.sys
Microsoft Corporation

16a47ce2decc9b099349a5f840654746  beep.sys
Microsoft Corporation

61583ee3c3a17003c4acd0475646b4d3  blbdrive.sys
Microsoft Corporation

6c02a83164f5cc0a262f4199f0871cf5  bowser.sys
Microsoft Corporation

f09eee9edc320b5e1501f749fde686c8  BrFiltLo.sys
Brother Industries

b114d3098e9bdb8bea8b053685831be6  BrFiltUp.sys
Brother Industries

5c2f352a4e961d72518261257aae204b  bridge.sys
Microsoft Corporation

43bea8d483bf1870f018e2d02e06a5bd  BrSerId.sys
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries
Brother Industries

a6eca2151b08a09caceca35c07f05b42  BrSerWdm.sys
Brother Industries

b79968002c277e869cf38bd22cd61524  BrUsbMdm.sys
Brother Industries

a87528880231c54e75ea7a44943b38bf  BrUsbSer.sys
Brother Industries

9da669f11d1f894ab4eb69bf546a42e8  bthmodem.sys
Microsoft Corporation

3e5b191307609f7514148c6832bb0842  bxvbda.sys
Broadcom Corporation

b8bd2bb284668c84865658c77574381a  cdfs.sys
Microsoft Corporation

f036ce71586e93d94dab220d7bdf4416  cdrom.sys
Microsoft Corporation

d7cd5c4e1b71fa62050515314cfb52cf  circlass.sys
Microsoft Corporation

acfad0b512226c7a83c7cb09fd55a9ad  Classpnp.sys
Microsoft Corporation

0840155d0bddf1190f84a663c284bd33  CmBatt.sys
Microsoft Corporation

e19d3f095812725d88f9001985b94edd  cmdide.sys
CMD Technology

9ac4f97c2d3e93367e2148ea940cd2cd  cng.sys
Microsoft Corporation

102de219c3f61415f964c88e9085ad14  compbatt.sys
Microsoft Corporation

03edb043586cceba243d689bdda370a8  CompositeBus.sys
Microsoft Corporation

3e588b60ec061686ba05d33574a344c6  crashdmp.sys
Microsoft Corporation

1c827878a998c18847245fe1f34ee597  crcdisk.sys
Microsoft Corporation

9bb2ef44eaa163b29c4a4587887a0fe4  dfsc.sys
Microsoft Corporation

13096b05847ec78f0977f2c0f79e9ab3  discache.sys
Microsoft Corporation

9bbd8b5855bc6578957f82341f9cde5a  Diskdump.sys
Microsoft Corporation

9819eee8b5ea3784ec4af3b137a5244c  disk.sys
Microsoft Corporation

9b19f34400d24df84c858a421c205754  drmkaud.sys
Microsoft Corporation

21d26064aedb4988f785bb4a3a2c051e  drmk.sys
Microsoft Corporation

839b5fe3d48e9f35b22c21a3d5103f6c  Dumpata.sys
Microsoft Corporation

814db88f2641691575a455cf25354098  dumpfve.sys
Microsoft Corporation

bf24d6f2ed97fe830bfd52b246f98e67  dxapi.sys
Microsoft Corporation

af2e16242aa723f68f461b6eae2ead3d  dxgkrnl.sys
Microsoft Corporation

1f04cfb79dd5fb7694468ce3fb3dcc31  dxgmms1.sys
Microsoft Corporation

fede0629ecb23650d48989517d4914da  dxg.sys
Microsoft Corporation

0e5da5369a0fcaea12456dd852545184  elxstor.sys
Emulex

34a3c54752046e79a126e15c51db409b  errdev.sys
Microsoft Corporation

dc5d737f51be844d8c82c695eb17372f  evbda.sys
Broadcom Corporation

a510c654ec00c1e9bdd91eeb3a59823b  exfat.sys
Microsoft Corporation

0adc83218b66a6db380c330836f3e36d  fastfat.sys
Microsoft Corporation

d765d19cd8ef61f650c384f62fac00ab  fdc.sys
Microsoft Corporation

655661be46b5f5f3fd454e2c3095b930  fileinfo.sys
Microsoft Corporation

5f671ab5bc87eea04ec38a6cd5962a47  filetrace.sys
Microsoft Corporation

c172a0f53008eaeb8ea33fe10e177af5  flpydisk.sys
Microsoft Corporation

da6b67270fd9db3697b20fce94950741  fltMgr.sys
Microsoft Corporation

d43703496149971890703b4b1b723eac  fsdepends.sys
Microsoft Corporation

6bd9295cc032dd3077c671fccf579a7b  fs_rec.sys
Microsoft Corporation

8f6322049018354f45f05a2fd2d4e5e0  fvevol.sys
Microsoft Corporation

41c67e4205c606a103dec8651d0b6fe6  FWPKCLNT.SYS
Microsoft Corporation

8c778d335c9d272cfd3298ab02abe3b6  GAGP30KX.SYS
Microsoft Corporation

8e98d21ee06192492a5671a6144d092f  GEARAspiWDM.sys
GEAR Software

f2523ef6460fc42405b12248338ab2f0  hcw85cir.sys
Hauppauge Computer Works

97bfed39b6b79eb12cddbfeed51f56bb  hdaudbus.sys
Microsoft Corporation

975761c778e33cd22498059b91e7373a  HdAudio.sys
Microsoft Corporation

6b01b7414a105b9e51652089a03027cf  HECIx64.sys
Intel Corporation

78e86380454a7b10a5eb255dc44a355f  hidbatt.sys
Microsoft Corporation

7fd2a313f7afe5c4dab14798c48dd104  hidbth.sys
Microsoft Corporation

8b0e40e7e8bbf5acf390465609d89ff1  hidclass.sys
Microsoft Corporation

0a77d29f311b88cfae3b13f9c1a73825  hidir.sys
Microsoft Corporation

49ee2e52e6cd03947dad72f65367be06  hidparse.sys
Microsoft Corporation

9592090a7e2b61cd582b612b6df70536  hidusb.sys
Microsoft Corporation

39d2abcd392f3d8a6dce7b60ae7b8efc  HpSAMD.sys
Hewlett-Packard

0ea7de1acb728dd5a369fd742d6eee28  http.sys
Microsoft Corporation

a5462bd6884960c9dc85ed49d34ff392  hwpolicy.sys
Microsoft Corporation

fa55c73d4affa7ee23ac4be53b4592d3  i8042prt.sys
Microsoft Corporation

aaaf44db3bd0b9d1fb6969b23ecc8366  iaStorV.sys
Intel Corporation

5c18831c61933628f5bb0ea2675b9d21  iirsp.sys
Intel Corp

f00f20e70c6ec3aa366910083a0518aa  intelide.sys
Microsoft Corporation

ada036632c664caa754079041cf1f8c1  intelppm.sys
Microsoft Corporation

c9f0e1bd74365a8771590e9008d22ab6  ipfltdrv.sys
Microsoft Corporation

0fc1aea580957aa8817b8f305d18ca3a  IPMIDrv.sys
Microsoft Corporation

af9b39a7e7b6caa203b3862582e9f2d0  ipnat.sys
Microsoft Corporation

05360b1ea5a2abf620d1d96ebd8bd8f1  irda.sys
Microsoft Corporation

3abf5e7213eb28966d55d58b515d5ce9  irenum.sys
Microsoft Corporation

2f7b28dc3e1183e5eb418df55c204f38  isapnp.sys
Microsoft Corporation

bc02336f1cba7dcc7d1213bb588a68a5  kbdclass.sys
Microsoft Corporation

0705eff5b42a9db58548eec3b26bb484  kbdhid.sys
Microsoft Corporation

97a7070aea4c058b6418519e869a63b4  ksecdd.sys
Microsoft Corporation

26c43a7c2862447ec59deda188d1da07  ksecpkg.sys
Microsoft Corporation

24fbf5cc5c04150073c315a7c83521ee  ks.sys
Microsoft Corporation

6869281e78cb31a43e969f06b57347c4  ksthunk.sys
Microsoft Corporation

1538831cf8ad2979a04c423779465827  lltdio.sys
Microsoft Corporation

1a93e54eb0ece102495a51266dcdb6a6  lsi_fc.sys
LSI Corporation

30f5c0de1ee8b5bc9306c1f0e4a75f93  lsi_sas2.sys
LSI Corporation

1047184a9fdc8bdbff857175875ee810  lsi_sas.sys
LSI Corporation

0504eacaff0d3c8aed161c4b0d369d4a  lsi_scsi.sys
LSI Corporation

43d0f98e1d56ccddb0d5254cff7b356e  luafv.sys
Microsoft Corporation

3c9f072f9dca856b9fb7a20cbd4281ac  mcd.sys
Microsoft Corporation

a55805f747c6edb6a9080d7c633bd0f4  megasas.sys
LSI Corporation

baf74ce0072480c3b6b7c13b2a94d6b3  MegaSR.sys
LSI Corporation

800ba92f7010378b09f9ed9270f07137  modem.sys
Microsoft Corporation

b03d591dc7da45ece20b3b467e6aadaa  monitor.sys
Microsoft Corporation

7d27ea49f3c1f687d357e77a470aea99  mouclass.sys
Microsoft Corporation

d3bf052c40b0c4166d9fd86a4288c1e6  mouhid.sys
Microsoft Corporation

32e7a3d591d671a6df2db515a5cbe0fa  mountmgr.sys
Microsoft Corporation

a44b420d30bd56e145d6a2bc8768ec58  mpio.sys
Microsoft Corporation

6c38c9e45ae0ea2fa5e551f2ed5e978f  mpsdrv.sys
Microsoft Corporation

dc722758b8261e1abafd31a3c0a66380  mrxdav.sys
Microsoft Corporation

d711b3c1d5f42c0c2415687be09fc163  mrxsmb10.sys
Microsoft Corporation

9423e9d355c8d303e76b8cfbd8a5c30c  mrxsmb20.sys
Microsoft Corporation

a5d9106a73dc88564c825d317cac68ac  mrxsmb.sys
Microsoft Corporation

c25f0bafa182cbca2dd3c851c2e75796  msahci.sys
Microsoft Corporation

db801a638d011b9633829eb6f663c900  msdsm.sys
Microsoft Corporation

aa3fb40e17ce1388fa1bedab50ea8f96  msfs.sys
Microsoft Corporation

f9d215a46a8b9753f61767fa72a20326  mshidkmdf.sys
Microsoft Corporation

d916874bbd4f8b07bfb7fa9b3ccae29d  msisadrv.sys
Microsoft Corporation

d931d7309deb2317035b07c9f9e6b0bd  msiscsi.sys
Microsoft Corporation

49ccf2c4fea34ffad8b1b59d49439366  mskssrv.sys
Microsoft Corporation

bdd71ace35a232104ddd349ee70e1ab3  mspclock.sys
Microsoft Corporation

4ed981241db27c3383d72092b618a1d0  mspqm.sys
Microsoft Corporation

759a9eeb0fa9ed79da1fb7d4ef78866d  msrpc.sys
Microsoft Corporation

0eed230e37515a0eaee3c2e1bc97b288  mssmbios.sys
Microsoft Corporation

2e66f9ecb30b4221a318c92ac2250779  mstee.sys
Microsoft Corporation

7ea404308934e675bffde8edf0757bcd  MTConfig.sys
Microsoft Corporation

f9a18612fd3526fe473c1bda678d61c8  mup.sys
Microsoft Corporation

9f9a1f53aad7da4d6fef5bb73ab811ac  ndiscap.sys
Microsoft Corporation

760e38053bf56e501d562b70ad796b88  ndis.sys
Microsoft Corporation

30639c932d9fef22b31268fe25a1b6e5  ndistapi.sys
Microsoft Corporation

136185f9fb2cc61e573e676aa5402356  ndisuio.sys
Microsoft Corporation

53f7305169863f0a2bddc49e116c2e11  ndiswan.sys
Microsoft Corporation

015c0d8e0e0421b4cfd48cffe2825879  ndproxy.sys
Microsoft Corporation

86743d9f5d2b1048062b14b1d84501c4  netbios.sys
Microsoft Corporation

09594d1089c523423b32a4229263f068  netbt.sys
Microsoft Corporation

7942b7ac3ff598f8a1736d51adaf04e8  netio.sys
Microsoft Corporation

77889813be4d166cdab78ddba990da92  nfrd960.sys
IBM Corp

2c6ffcca37b002aab3c7c31a6d780a76  NISx64/1309010.00E/ccsetx64.sys
Symantec Corporation

5013a76caaa1d7cf1c55214b490b4e35  NISx64/1309010.00E/ironx64.sys
Symantec Corporation

891793e00432fa055cf040605c260e49  NISx64/1309010.00E/srtsp64.sys
Symantec Corporation

1cb7bb3b0561fb5ecfe37f7731e8bf3e  NISx64/1309010.00E/srtspx64.sys
Symantec Corporation

8b2430762099598da40686f754632efd  NISx64/1309010.00E/symds64.sys
Symantec Corporation

5cb7f2fd7e30a0f52f93574bfc3a8041  NISx64/1309010.00E/symefa64.sys
Symantec Corporation

3911bd0e68c010e5438a87706abbe9ab  NISx64/1309010.00E/symnets.sys
Symantec Corporation

1e4c4ab5c9b8dd13179bbdc75a2a01f7  npfs.sys
Microsoft Corporation

e7f5ae18af4168178a642a9247c63001  nsiproxy.sys
Microsoft Corporation

b98f8c6e31cd07b2e6f71f7f648e38c0  ntfs.sys
Microsoft Corporation

9899284589f75fa8724ff3d16aed75c1  null.sys
Microsoft Corporation

270d7cd42d6e3979f6dd0146650f0e05  NV_AGP.SYS
Microsoft Corporation

10204955027011e08a9dc27737a48a54  nvhda64v.sys
NVIDIA Corporation

fcba1c22727939e7cff9eb08fe9692ab  nvlddmkm.sys
NVIDIA Corporation

0a92cb65770442ed0dc44834632f66ad  nvraid.sys
NVIDIA Corporation

dab0e87525c10052bf65f06152f37e4a  nvstor.sys
NVIDIA Corporation

1ea3749c4114db3e3161156ffffa6b33  nwifi.sys
Microsoft Corporation

3589478e4b22ce21b41fa1bfc0b8b8a0  ohci1394.sys
Microsoft Corporation

0557cf5a2556bd58e26384169d72438d  pacer.sys
Microsoft Corporation

0086431c29c35be1dbc43f52cc273887  parport.sys
Microsoft Corporation

e9766131eeade40a27dc27d2d68fba9c  partmgr.sys
Microsoft Corporation

b5b8b5ef2e5cb34df8dcf8831e3534fa  pciide.sys
Microsoft Corporation

144497daa145ba0f7be896064146c058  pciidex.sys
Microsoft Corporation

94575c0571d1462a0f70bde6bd6ee6b3  pci.sys
Microsoft Corporation

b2e81d4e87ce48589f98cb8c05b01f2f  pcmcia.sys
Microsoft Corporation

d6b9c2e1a11a3a4b26a182ffef18f603  pcw.sys
Microsoft Corporation

68769c3356b3be5d1c732c97b9a80d6e  PEAuth.sys
Microsoft Corporation

32e11315b5126921ffd9074840ef13d3  portcls.sys
Microsoft Corporation

0d922e23c041efb1c3fac2a6f943c9bf  processr.sys
Microsoft Corporation

a53a15a11ebfd21077463ee2c7afeef0  ql2300.sys
QLogic Corporation

4f6d12b51de1aaeff7dc58c4d75423c8  ql40xx.sys
QLogic Corporation

76707bb36430888d9ce9d705398adb6c  qwavedrv.sys
Microsoft Corporation

5a0da8ad5762fa2d91678a8a01311704  rasacd.sys
Microsoft Corporation

471815800ae33e6f1c32fb1b97c490ca  rasl2tp.sys
Microsoft Corporation

855c9b1cd4756c5e9a2aa58a15f58c25  raspppoe.sys
Microsoft Corporation

f92a2c41117a11a00be01ca01a7fcde9  raspptp.sys
Microsoft Corporation

e8b1e447b008d07ff47d016c2b0eeecb  rassstp.sys
Microsoft Corporation

77f665941019a1594d887a74f301fa2f  rdbss.sys
Microsoft Corporation

302da2a0539f2cf54d7c6cc30c1f2d8d  rdpbus.sys
Microsoft Corporation

cea6cc257fc9b7715f1c2b4849286d24  RDPCDD.sys
Microsoft Corporation

bb5971a4f00659529a5c44831af22365  RDPENCDD.sys
Microsoft Corporation

216f3fa57533d98e1f74ded70113177a  RDPREFMP.sys
Microsoft Corporation

e61608aa35e98999af9aaeeea6114b0a  rdpwd.sys
Microsoft Corporation

34ed295fa0121c241bfef24764fc4520  rdyboost.sys
Microsoft Corporation

caf88d6573d21cd2aa27001ddbfdc74d  rmcast.sys
Microsoft Corporation

0e01641d96889bdeb22de12d30575b08  RNDISMP.sys
Microsoft Corporation

388d3dd1a6457280f3badba9f3acd6b1  rootmdm.sys
Microsoft Corporation

ddc86e4f8e7456261e637e3552e804ff  rspndr.sys
Microsoft Corporation

130dd683dcc902f47a4ac35201d07e2f  Rt64win7.sys
?bStringFileInfoBCompanyNameRealtek*

602788bf364d43e5878aa1b4f85c232b  RTKVHD64.sys
Realtek Semiconductor

ac03af3329579fffb455aa2daabbe22b  sbp2port.sys
Microsoft Corporation

253f38d0d7074c02ff8deb9836c97d2b  scfilter.sys
Microsoft Corporation

1b1e264203d4ef9d3da1987ad70355ab  scsiport.sys
Microsoft Corporation

3ea8a16169c26afbeb544e0e48421186  secdrv.sys
Macrovision Corporation

cb624c0035412af0debec78c41f5ca1b  serenum.sys
Microsoft Corporation

c1d8e28b2c2adfaec4ba89e9fda69bd6  serial.sys
Microsoft Corporation

1c545a7d0691cc4a027396535691c3e3  sermouse.sys
Microsoft Corporation

a554811bcd09279536440c964ae35bbf  sffdisk.sys
Microsoft Corporation

ff414f0baefeba59bc6c04b3db0b87bf  sffp_mmc.sys
Microsoft Corporation

dd85b78243a19b59f0637dcf284da63c  sffp_sd.sys
Microsoft Corporation

a9d601643a1647211a1ee2ec4e433ff4  sfloppy.sys
Microsoft Corporation

843caf1e5fde1ffd5ff768f23a51e2e1  sisraid2.sys
Silicon Integrated Systems

6a6c106d42e9ffff8b9fcb4f754f6da4  sisraid4.sys
Silicon Integrated Systems

548260a7b8654e024dc30bf8a7c5baa4  smb.sys
Microsoft Corporation

a80348ba03e96c70852959655ca3e084  smclib.sys
Microsoft Corporation

b9e31e5cacdfe584f34f730a677803f9  spldr.sys
Microsoft Corporation

fff95479c7ab1550f0750a5d01744211  spsys.sys
Microsoft Corporation

b4adebbf5e3677cce9651e0f01f7cc28  srv2.sys
Microsoft Corporation

27e461f0be5bff5fc737328f749538c3  srvnet.sys
Microsoft Corporation

441fba48bff01fdb9d5969ebc1838f0b  srv.sys
Microsoft Corporation

f3817967ed533d08327dc73bc4d5542a  stexstor.sys
Promise Technology

19cb37ac38b802be9c441d094521a29a  storport.sys
Microsoft Corporation

001cc10fa5e71ae1119115e126c8750d  stream.sys
Microsoft Corporation

d01ec09b6711a5f8e7e6564a4d0fbc90  swenum.sys
Microsoft Corporation

c89ffa6a0b7723f2fb72a734934a4425  swiwdmbusx64.sys
Sierra Wireless

20d0580136847d1a1898085943f3c4c7  swnc8ua3.sys
Sierra Wireless

f6ceb2ff475265197d4407e87ff68701  swumxa3.sys
Sierra Wireless

898bb48c797483420df523b2bbc1ecdb  SYMEVENT64x86.SYS
Symantec Corporation

6e316c01cba8b785fe495f5cc4f48c6f  tape.sys
Microsoft Corporation

1b16d0bd9841794a6e0cde0cef744abc  tcpipreg.sys
Microsoft Corporation

9849ea3843a2adbdd1497e97a85d8cae  tcpip.sys
Microsoft Corporation

6f020a220388eca0ab6062dc27bd16b6  tdi.sys
Microsoft Corporation

3371d21011695b16333a3934340c4e7c  tdpipe.sys
Microsoft Corporation

51c5eceb1cdee2468a1748be550cfbc8  tdtcp.sys
Microsoft Corporation

ddad5a7ab24d8b65f8d724f5c20fd806  tdx.sys
Microsoft Corporation

561e7e1f06895d78de991e01dd0fb6e5  termdd.sys
Microsoft Corporation

ce18b2cdfc837c99e5fae9ca6cba5d30  tssecsrv.sys
Microsoft Corporation

d11c783e3ef9a3c52c0ebe83cc5000e9  TsUsbFlt.sys
Microsoft Corporation

9cc2ccae8a84820eaecb886d477cbcb8  TsUsbGD.sys
Microsoft Corporation

3566a8daafa27af944f5d705eaa64894  tunnel.sys
Microsoft Corporation

b4dd609bd7e282bfc683cec7eaaaad67  UAGP35.SYS
Microsoft Corporation

ff4232a1a64012baa1fd97c7b67df593  udfs.sys
Microsoft Corporation

4bfe1bc28391222894cbf1e7d0e42320  ULIAGPKX.SYS
Microsoft Corporation

dc54a574663a895c8763af0fa1ff7561  umbus.sys
Microsoft Corporation

b2e8e8cb557b156da5493bbddcc1474d  umpass.sys
Microsoft Corporation

92b3172e8c14c1444682f510843a9988  usb8023.sys
Microsoft Corporation

292a8e03b3fce04e39b5be9b14132030  USBCAMD2.sys
Microsoft Corporation

6f1a3157a1c89435352ceb543cdb359c  usbccgp.sys
Microsoft Corporation

af0892a803fdda7492f595368e3b68e7  usbcir.sys
Microsoft Corporation

cca2ab1752a61f29c3c941cd79d78cea  usbd.sys
Microsoft Corporation

c025055fe7b87701eb042095df1a2d7b  usbehci.sys
Microsoft Corporation

287c6c9410b111b68b52ca298f7b8c24  usbhub.sys
Microsoft Corporation

9840fc418b4cbd632d3d0a667a725c31  usbohci.sys
Microsoft Corporation

ae259c75f9a0b057b6bf9e9695632b09  usbport.sys
Microsoft Corporation

73188f58fb384e75c4063d29413cee3d  usbprint.sys
Microsoft Corporation

c3ec945dec43c00e2ad4c98dddd064c7  usbrpm.sys
Microsoft Corporation

fed648b01349a3c8395a5169db5fb7d6  USBSTOR.SYS
Microsoft Corporation

62069a34518bcf9c1fd9e74b3f6db7cd  usbuhci.sys
Microsoft Corporation

c5c876ccfc083ff3b128f933823e87bd  vdrvroot.sys
Microsoft Corporation

da4da3f5e02943c2dc8c6ed875de68dd  vgapnp.sys
Microsoft Corporation

53e92a310193cb3c03bea963de7d9cfc  vga.sys
Microsoft Corporation

2ce2df28c83aeaf30084e1b1eb253cbb  vhdmp.sys
Microsoft Corporation

e5689d93ffe4e5d66c0178761240dd54  viaide.sys
VIA Technologies

e7353d59c9842bc7299faeb7e7e09340  videoprt.sys
Microsoft Corporation

d2aafd421940f640b407aefaaebd91b0  volmgr.sys
Microsoft Corporation

a255814907c89be58b79ef2f189b843b  volmgrx.sys
Microsoft Corporation

0d08d2f3b3ff84e433346669b5e0f639  volsnap.sys
Microsoft Corporation

5e2016ea6ebaca03c04feac5f330d997  vsmraid.sys
VIA Technologies

36d4720b72b5c5d9cb2b9c29e9df67a1  vwifibus.sys
Microsoft Corporation

6a3d66263414ff0d6fa754c646612f3f  vwififlt.sys
Microsoft Corporation

6a638fc4bfddc4d9b186c28c91bd1a01  vwifimp.sys
Microsoft Corporation

4e9440f4f152a7b944cb1663d3935a3e  wacompen.sys
Microsoft Corporation

356afd78a6ed4457169241ac3965230c  wanarp.sys
Microsoft Corporation

fc438d1430b28618e2d0c7c332a710ad  watchdog.sys
Microsoft Corporation

442783e2cb0da19873b7a63833ff4cb4  Wdf01000.sys
Microsoft Corporation

aea0a67275cfba0e463e00c6e9a1ddae  WdfLdr.sys
Microsoft Corporation

72889e16ff12ba0f235467d6091b17dc  wd.sys
Microsoft Corporation

611b23304bf067451a9fdee01fbdd725  wfplwf.sys
Microsoft Corporation

05ecaec3e4529a7153b3136ceb49f0ec  wimmount.sys
Microsoft Corporation

fe88b288356e7b47b74b13372add906d  winusb.sys
Microsoft Corporation

f6ff8944478594d0e414d3f048f0d778  wmiacpi.sys
Microsoft Corporation

fc146f46872d4c5b529b89a5131fd1e6  wmilib.sys
Microsoft Corporation

6bcc1d7d2fd2453957c5479a32364e52  ws2ifsl.sys
Microsoft Corporation

8d918b1db190a4d9b1753a66fa8c96e8  WSDPrint.sys
Microsoft Corporation

4a2a5c50dd1a63577d3aca94269fbc7f  WSDScan.sys
Microsoft Corporation

ab886378eeb55c6c75b4f2d14b6c869f  WUDFPf.sys
Microsoft Corporation

dda4caf29d8c0a297f886bfe561e6659  WUDFRd.sys
Microsoft Corporation

 

 



#6 The Dark Knight

The Dark Knight

    The Magician


  • Security Colleague
  • 661 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Krypton
  • Local time:10:33 PM

Posted 12 August 2013 - 04:33 AM

Please do the following. You will need a USB drive with no less than 64 mb of space.
  • Insert your USB drive.
  • Press Start > My Computer > right click your USB drive > choose Format > Quick format
  • Download xPUD 0.9.2 iso, saving the file to your Desktop.
  • Download UNetbootin and save it to your Desktop as well.
  • Double click the unetbootin-windows-latest.exe that you just downloaded.
  • Select the DiskImage option then click the browse button located on the right side of the textbox field.
  • Browse to and select the xpud-0.9.2.iso file you downloaded
  • Verify the correct drive letter is selected for your USB device then click OK
  • It will write files to your USB device and make it bootable
  • Once the files have been written to the device you will be prompted to reboot ~ do NOT reboot and instead just Exit the UNetbootin interface
  • Next, download %5BB%5Ddumpit[/b] and save it to the same flash drive where you installed xPUD.
  • Remove the USB and insert it in the ailing computer
  • Power on the computer and press F12 then choose to boot from the USB
  • After selecting a language and readying the system, a Welcome to xPUD screen will appear
  • Click the File tab
  • Expand mnt by clicking the plus sign to it's left
  • sda1,2...usually corresponds to your HDD
  • sdb1 is likely your USB
  • Double click dumpit.
  • It will create some MBR copies on the USB drive.
  • When it completes press Enter to exit the Terminal window.
  • Remove the USB drive, then locate on it an mbr.zip file, and upload that here as an attachment please.
mbr.zip should be created on your flash drive, please attach it to your next reply.

Edited by The Dark Knight, 12 August 2013 - 04:35 AM.

If you make yourself more than just a man, if you devote yourself to an ideal...you become something else entirely. A legend, Mr. Wayne, a legend!


If I have helped you please consider donating to the Neuroscience Research Institute.


Posted Image
Posted Image


#7 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 14 August 2013 - 07:07 AM

I have tried but whenever I try to access dumpit, all I can get is a txt/notepad full of random characters

 

is there any better way to save/download it?



#8 The Dark Knight

The Dark Knight

    The Magician


  • Security Colleague
  • 661 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Krypton
  • Local time:10:33 PM

Posted 18 August 2013 - 03:42 AM

Hey skagt,

My apologies. I thought I had replied.

Please just post that notepad. :)

If you make yourself more than just a man, if you devote yourself to an ideal...you become something else entirely. A legend, Mr. Wayne, a legend!


If I have helped you please consider donating to the Neuroscience Research Institute.


Posted Image
Posted Image


#9 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 18 August 2013 - 05:19 AM

Thankyou,

 

this is whenever I click on the link for dumpit on the website, it will open notepad and give me the following.

 

#!/bin/sh -e sed -e '1,/^exit$/d' "$0" | tar xzf - && `xterm -e bash mbrdump.sh` exit
‹ ¨+ìN ìZ
pTU–~ ¤“
&b²ƒ
3ÏLó«ùéþ¢A¢‚ ù‘! N÷ë¼úoº_ó£¸Æ Ù!ÓÄM9ê°%n—©uWk¥fØk±Ì¬è”³K1Ö;°Sƒ;Ýj@@³ç;ï½î××£Öº[[µnÎûîù¹çÜsï}÷tvG½ñ`¤&¦J_Ù§Ž>MMM Î¦†,ŠOCãÜ:ÉéœÛTßÔXßØØ Õ9™Èu_K™O<¦¹£²,Å»ã!-~
¹?Àÿ?úùæ-µÝþPm·;¦–xŠ;Zâ÷Éírµ"?ìÈ%šª„J<FµñX”¥åé·×z•Mµ¡x –Os-Š&/Ø­±t+5,W-¡_Æò“ݨâön••-þ˜«2%ºÃQÍê‘#Ñ°GñÆ£
q1¥ÄçõÇ6Êՙ݈ygËõ¶õD•ˆ\íWdbd T¶Å/ü™«m……ÚÚž…±Ú5³õ‡šÙíÎêùfdôŒ!X•ô:jk[ˆ/ßîú7)±m‹V²ìîUÍU-äÛÅ#Ï]dálVýEFl²â”•zY™#+
%Þp‰×+û}͵U¥¾
¿çTÉa_3?ÔÐ,ÊݱæFg½ì Ó²kvfÍx˜bðÈiQÓ39Ûï5õõòí,qGc
ü±NSIZ²
¢U² ú™;î››åºì$"ƒž°W‘}ä¨W‡t3f‘\$bZXçÕÁéªkM@Ýšs]Y¤
¯²W†nVŸ„:Èæ¤è®Qn¦ >[õ!–ѬË͘þ…µ!^E·éöùbŠÆKk†eÝu̬™ílºMv{4Z%5³;fÕv´{Âp´9ªx;:;œíµÜÑÑÉöX£û‹jlÉ=%] «3÷Kè4Ô ¥Üá\[ÇótfÈãe7GÚUeBÕKbrCÃ\kž?#›k}eö\•³©½}A,âö(:;—ú½^òm›³û3Uãm¯ÌþúïÉ\Ÿ4k3;`«ƒN³ššŽY´4;œ|”au{Ôú,á›·ÈÚe9ÄzœrO=Ž/Ú$Í]<£ŽgældóÈ2ã]zp]‡iµÒݶÙC¸K®îQd§õD©ª'oKÂ!M i1ÚW2·Xmx±ºÊ2vŒÞ*rµ×gÙ•Õú Z3;k²5‚kÀO3RäEÓçáÙ<Œ,SfF
Z{!¬CïB>a’%ªJðz¬Æ¿“~WæœSëu\¬\ý=™9„eŸ›†ñâ$³úœyßd<N÷}F0ór¤ÓËÜÌ-‰‡è ”é嘶’y3Z,X^—ºs×”'ºéݢĸ7QînZŽ5ô‘Ý9.Ù‚þæ0×ü¿¶õšª9n?ä"¡LòÒ·“@@n¥Xo1;Ú¢J,&ßEë”_vt—ÑT•`ßÀF5­Ûº’ÿíûžø¡È¾ò1®yÿolœãlÀý¿¾®ÞIÝu¸ÿSðÿ÷ÿÿ‘Ïcw­¸;///ó¥ Ðè.›½Çò¹ŸÒ!K3¥)ÒÍR!cj½$CM&´ê³Q›@m5áÕÛìh7¾Áàå?¤‹¦þC¾„}©\ç—¾ž/•>PdG“Êh¬‹6|x$_&ÚQÂh…Æh*Qil4ò^Û{š·áù|©¡ªÈŽVA£™ü•ÄÏ5W¦ý‰oõïõ]°ÄWðw×¼Õ(¾¥&®©×yåÿžû×s­Û¤ð$75AgQk¢¶Îw‘Aï ¶ŠšÝÀÔÚ©ÝOíëFßJƒn öGÆs¥Ç7©Í§ÖEíN÷-j$=—æg2µûŒç»
º–Z«ñLáI-ÔfP›Fí£¿“ÚrÁþRjQ»ÇÒ÷ÇÔ:¨9,}µMm1µnjK¨Í£¶ÞàUS[&Ø¿—Ú
IÏ÷-ÔVý7[dš©•Rk3p1µjs%=OâgBŽ>óS4NÿuÔ&^CïZŸ2ç[ž§¼oëË5ŽÝ¯QsZ°x¾V{{µ[©5R»Ýè_hÐI-ÏXËænªAï¢vµ
|=µ5ÆóL‹î
½‰ÚãûsµŒ¸°&{_̯FŒX³¦îœòÒòߌÌ;Ÿ˜Ò³Æ]þá-qú¤ËÂ÷æeãEþW)wø¤€‹'d㧅ñÞ𨠿Uÿ‡ßÂæuýºÀO ø„`Ï'Œß$ÈGD}»Àÿ3Aÿ§‚üM^&è×üÓ’0Ÿgþ·…ñŸøOö#È·
òQÿ˜€/
ò3ûEÞ.ÈÿHÀõB|o
ú·
üY‚?¿äÏ
ø:ïð«þÁþ£‚¿ ?'èoø²À? ØPÀŠ _)à:AþUa¼6ÿ© ÿ#q¿ò¿KÀoòÓü¢ ÿWÂøëùûù2RÀ?ä;¼KÀ!¯õÿ®üÆïä— x‰ ïÖo¾€ú­nìMð÷Èß–
Ev¼«¯§7Þ­¸LÊ#yÙÂÇÝÐaÁÓÈŸÈË6ûÍlÞÒ.WO0r¡Ð\.‰®o\ÛæJ®eP¯×rÅcŠWòùñ˜*Å´¨'²•´"QH󹨼—Pì±x$®y$ª{a; H±(•®Ðy‚ШG’êfv³jD‰FÃQÉÓþ¨.Löcþž; »cZx³'FJä g#t\¨æ¥xˆn˜%*04šDRñ“Øc)Ž(!©GÑ"~¯äQƒa/Inö“7.—GÛQ\ÄsÁ‡xÔtoÁ¸Z8 ùcnMÛ*ù”°Oò‘HŒ ™Š‡y¤ ¤ðÐIÿÈy
»®æ‡¤h1h’!;QÉóhþ "ñH–4|[(mn-SHn‡ãšä‹)ÊÆ0q}4•1‡ÉðñôHA=TdÀM¢šBDµ‡á’Ë0-#vøár™=ä»Ú”Ž½ÛÅvbwȇ‘áYlkLS‚˜O/O,&œRáÖ÷øYÂ×5¡°ÑòmŽú5"P"Í›B
n„ˆ ¬Ï‚§ÞÓ"ˆ3ndâórº M~“êwð-Íc1¦ãZ˜“Ì4;ºŠ¶©;îC§eRiú‚áMdæá-QN£®›‰ÍXžúZ¤™¤=`lˆ ›V“OgèËá*Ò=+–ݹÄU_Ó”~š“~jH?Õg¸–^gú‰÷|þ™`PýÉÆ÷^ eÿLž
ÓRèV®kᧈ{&¤-eÿØrôR…eÅiYÑôäñ³^×ñµÜ8«¾æ÷ODµÖ4Aï»q‘´ØÀŒ¥åžÄ¸@Zc`íF1*—¯gþi£ËçKqã|¥Z´p¢~ötég^[?+pin+²ã®b¥Éµƒ’n)(Žå ¨…Aé2?”
œ) TtÊ ä‘”.ú3A©È¼

ª:P¿”
 y t_J·€RÐ
JùRPºø¯ ¥b¶
”ŠÕÕ T®¥¢¥”ŠÐ.P*8¼ tè« tˆ@©hˆ€Rá¡RA¼”
¤m 2Õ Tn¥bg(Ã;A©ø¥ö)P*´vRQ»”Š•= tÛJ…é T$½JEÎ>P*J÷ƒRAy ”
Ùƒ ´ÎG@© ;JEó› Th½
JE×QP*¸Þ¥bô8(]ÖO‚Rá{

÷Ó T¤'A©(;ºˆòJÅíP*Ú.ƒÞ!IWA[(ÿ+‰R1m¥ÂßJEu)(½„ËA©`« ¥B2(êS@©p—Aéåï ¥B{&(ø·RÑ]zåô~Ê?è”P*¶[@WRþAé¸tå”
õ6P*Wƒ®¥üƒ>Dù]Gùýåt=å´òJEZ”.7kÞ[ÕwÖ–ÄžhüPÅkùRâWÇÆÆúiÉw©7ÙOË;9úÛ<i]û[‡Æ/ÓΛvß5Ñglv
ÿ‡ˆÔ)R›†£‚—:Ê;GÅL0ÆRñ5Ijcì$UÞÃ;JE¹›bŒ¥âäKõ2ÆSñÕF*Â;MEÆR]Œ±ãT|u’jcŒ§âë‹Tcì@_¥êc'ª]À2cìH¥Êcgªøâ7%1ÆU· ~
ŒªörüŒ±cÕ?cì\uˆãgŒ¬îâøc'«{8~ÆØÑê?cìluÇÏ;\=Àñ3ÆNWG8~ÆØñê›?cì|õ(ÇÏ'€zœãgŒ“@=Åñ3Ɖ &9~Æ8ÔQŽŸ1Nõ2Çÿ{à^Îâg¼ó|”ñÎ?ðãœà}Œ‡8ÿÀ{?Åùb¼‹óÜËx7ç8Âx縋ñ^Î?pã8ÿÀ-Œ_âü×1ÞÇù–ïçü—3>Àù–äübŸLáüsüŒsþ9~Æorþ9~Æosþ9~ÆG9ÿ?ãw8ÿ?ã㜎ŸñIÎ?ÇÏøçŸãg|šóÏñ3Nrþ9~Æg9ÿ?ãQÎ?ÇÏøçŸãg|™óÏñ3¾Êùçø?ÆI©âþ‘:Å'¦Š¯ARGãäTËGãUQ¦¤ö1ÆIªÊÀ{ãDUg1ÆɪÖ÷2Æ «ÎŽ0ÆI«¶ w1Ɖ«.ncŒ“WEÙ›jaŒX]\Ç'±Ú,3Ɖ¬ªÀåŒq2«øÚ'%1Æ ­n½Âû¸—ãgŒ[ÝÁñ3ÆÉ­qüŒq‚«»8~Æ8ÉÕ=?cœèê?cœìê>ŽŸ1Nxõ ÇÏ'½:Âñ3Ɖ¯¾Éñ3Æɯåøã
 çøãM žâø [ÊKÉùþ†_÷m[ý Úûp!EA¿V®UË_±Ù“?¡É¸0”õ1Þ%½Í­t‰’â‹•KéáÀdzUTWЯ¼œ?¸nlþ¯bòàßÃ~ßOóXd¬âiðuùù¿ŠþÇ0‘×wØÖÞyhàÒàA|]ŽwUßÙÉÃSH´D›Ä_•ÐCñ›}cGß:”ísdà½l}ò¯bø£l tÀæHî “¤$~a8Éñ‰ƒ›¤T)­n¢Çmm‰u½
'.l[¤Ù*Ég)nN´-}ßËô­0ûbfŸ¯o‹ƒ®§‰¶VbMZØÖ¢óWYøU’V‘hk1UçYXÓ™µÔdMÍŒ´Úì+Îô­3û.^I÷u˜}¿Îôu™}?7û0XŸ}Õ‡—ÛóúOLEwYÿÇtè'¦^ÆìœÐV_¥‡ÁÕ‡.jÓ¥¾d^ßå1MN”ôýÎÞÿ–öá_‚;PêHnºb*ù¹oèHúñò˜âH®'Þ‘ð“áÃÛ8ìÀËpàpå|ö‘/ç dl­Ñ#­û‹ß-´S¶Q@´:lÉ'.“û¸²Sg‰Ùù*S¬Ÿ°=×r±ÐÞw(tK—>RÈ6Ö>’mãÞ\6âd£ï“ÊøAÝ}½šþ8ÆõçÓsØšeñg/)êþ”þ”®5üº’(´CÞ°—üq.[ÿþ ü*ŠïOþË_çIu'ˆ·û‰B{r
õ‘ý‘+f¼¶õYqÚ“ÝCµ8þoĬp“´ÉÅ×q(¥øãÜÈשm䉴zr©Ò~€}ÃKÌ%¹ül4ü|›:7ÒXÉýȺÍ1„çË—èz9¢©½ó¨f'ñRŒ;¤Oƒ­?ãvòåK¬ô,”éJ·Biº©ôl¥‡/a9(kž¢î3¿Òé38ŸZ»êñ³»I,Ñ|’V 2Œ¿ÜuÚ9Ò?VÖŒÆSXë—ÊúŸšºs¯ü)‰‰uôôVYÿDš¢Dåú•õ¯ 4Ü«/â)‰f"S8€,D¦¢@S·³©²þƒ0\É’dàì‚ÝÀDÞØ
^šUçHbÍieN%|,ëרú|ü0|oßà¢%¹Iß;˜†ß?¦Oç„”‹.b‹2¶Xª‰vÖßðÞÚâœò¿¼ ù“¦ü~j‘g>Mij¬ð>ÞCãvö&*÷ÂÛ„Vc-ü OÊLTkÖD2:H(ѽáxl„­ùWbí³Þ¸ñ—
¶¶L½þ$™jdS4+¡<‘M½U¶ýurPŸ©}z$; B
(õçŸûn³}þ(hôÙY£7^±ú»žæ1FÊúÿ)Ë‚Ç+ÛÞ.ŽqPãùhŒFŒ1¬>ªçáy‹HßH­Òòá6âéÏ¥éùì!U}bôY‡<MÑöýtÁüÜÆÌ•rÓGf²ó$ãR<¸Ÿÿô™¨|
ó¼ÛX%/YXí(u”mšvŽÏ²sßµc÷}²£¯|Kp—ʶ_¥c0åÃ|Y§õaZ—g»ñ3L ›GþæóæÚeù¢¼˜¶3çÈJJ›o(KN\B‡ 7@Ö’uDçÇZº@ȼböD¼”ö콉‰þ'ØlTs”›†&þö9ÃÃÌŽCwì#c½ÑRÜþ$Ï:DÇâ-ײ6圡–ÙïwÙûËí:SßøˆÏí\[þô¨¡wfxhÜsáuJÝšÞ÷ºÕ¬ûÔ—˜ãBëGs·çüçšÑZéè5æ£ìü¸óñ·Ÿc>^þðóÌGyö|, ·GqïB:Á¯òNð
•õO'´IÔMþh%™œÞFžs–øëóX^7ÓÏf ÷usNÊú›–#Ðéç°¾Iã,ih¿Í짌Ȅs™ým$LûÿÝYoˆµc°oæ`mEQ–ðŽ²rÀûrù˜°/E¥U¤Ô)3eÛOÐ&åïtr9äø wž9¶£œgeåç!$¨cxÛ3Aƒmyý#•èø“2ºBàÿM$èë$³ÿ&/sS½.3éŸäéG¾Í´µ_²õÏl/²—òˆvpQ;¼}†NÂöšƒ¸X¼hÔºp­/‡{ßO'^»ó’í5Ãä+¨I*ÚOk…Îb(~ßúö®Ó«ÕFèf_¶ýoáÛnêtC4Ðh‚{•èn _ój¥æ•|
öEQ ´7çIið$2 éÆ'¡ãq^#’9®ÍÂò1Ëf²àˆÉZÎ,ô0«Õ¢UǬVSkÔªdÖ¨ÁJV×k‹ëÎ¥Ïõ\‹æÃ3Y«x¶qÏI>Dý –<£/·wÇËÎK$ºåÓqÏ‘g²®^ïÒd(ùñïLûÕ†ý‚m‚}ó-¼âŒ‘ýTÙ§æ9“¨ÜG£'&3°r•îèkŽÜwÒêBñ™Ìª¢kÆ’Œ°E«%ù.96ÌÆ+÷ë6K%ã
Ï+„ث³x§ÿkïUÕ=€ÎÀ ƒ‚S“ŒJÓTJK
…AK(RQ¿’²2ª¯—åŒZ‚a3£œŽcTÚì$­¬¬¬IÍ@‰Q³D4¥´"C#XhŠÈܵÖÞûÌ@¿þ÷Þ~¿dÎ~?Ö^ï½6Œ«T±hÜNÙV-(†Æ•$@æÖȉ[pc¬3åÌ9½Ø9Ï€÷à(oL•6.ˆîò]9!C åjeŽÕe
‘-Õ²»›)õö3ÂGnM×Ì%½Fɬ¶[JŒöÌ28br–ñ¾m­’Y¢¤—<(¶*%÷0H²0ä>ÒÆ UœØ(0¸œØH%·f­ª7”H‹5A‘hÈCö2Ì“·
 j8å›êpÓ†‹M»úƒÂòIòv{]‚½qžõr{ãDk/{ã#ÖH\Éè’:e î
QÊOy7'ItL‚L\OÏM'Qv)ÈÆ&¦ÝÃXÌeÈpFeÀ—<Ö¼šþÅ­2pŒ`»è]ÔPÈå’ÃJ*•ƒA_¾ÒhÇ™p‘C~©¡üËHBw¥6€U$‘Ü^–Àd†ïó½ÞŒ%•DÅÝY“{T'ˆC¶Qê\Ìæôaõ™ëùèMè3Õ„?_AС.£í$ßÝIÔ©b©Á¶îÀ†m}F¬B\¶.9r ¤i*­ü íìqv_ñ¯ìöôƒ>Q¸zÔËûv'Q)uÑ£ÕØ&5S»‘äm6’ÿàHõË€[ÙÞ™ˆnT{þ8+h©Vg"êkG}ù{6D÷XÖ×Ú¹Ävncí }óQ?lÕè*æÕÁHæÿ~0@ÛÌà@„@ d|ؽQ˜OugíX• œ{Ö3dbÂHCwO4öñÃO¤/ 9¸¤rÖ9·Ev˶FÏ'hŸ·[m¸“®£PKµ”e”[sPÃÅ?™Jø4œ2Û‘€Q¸®p:nÚ4“ÜN&zzF±5*¹-u˜ ×q=ŽÜë³¢µû²pÌÏû¦ï™Ùc~Úë·núüÌÇ=¯
o«odüVÓÝõô©•8égûä2}gæ¸ñ‚ðÕXÌ:‡×³Vjи#îPííq%yç‘–•ƒ@Ð5ýŠH[w*O›©ûv£<Þ¤Üf’I%˜œ˜<Û‰¯š“‡¨ R>-uÊ;?Ñö±=Èk×ãì–êf—
’¾úÂ×o¢Izõ¶§¤ÑÀöaz1¢†ÇC“@Än½2Ûm¸Î°s;®3¶<øE<†A˵»Øz¯ÕõxÄy¢Á¼n_w/rV£’&ÛZ›h* £ÉóôÒ’^]8^¨N¡I$¸¡¡d5Æ•(¶ß~[Î`-è®zõ|‡a±
°XwC@?ƒcªÂ1
Ó1ýwÁÈjWø'Z±ˆDš¥› ÈNM?8Uv#VF<†;Ø` ˜‹~RQĨ¨<KÎpÿŠ’Œ£‚²éû϶üIùÑ‹ò'õãOFêjŽaÖHQ+A—e£Z "KÏÕÜuô¢\Í-Gõ\Ò7–F6É3hÙ`¹‘ð—gŸ“ߨƒë¸öÜÓ¤TÏe~åRáÆ5@ƒ±©úL±X|Š·O(Éæøú9r¹r·d†‘ÒÆäeRZ^N€w¨µÖe9,v»Öa0¬5Z÷¸€N#o›ûP[ÊÎ%ô×ÚƒVa ‹}DCuµ2\ÅÇcX‡â¥Õ‡/Ù~{¢^1rU•N¡XsŒÕ?ÅàÝÐ=ƒÏ (À_Ü9"lÄžk6ZƒŠ› ´’lŒ’&´>Ë^Ah¶šãJ|ç¦o®ïÜìÿuo;·~YXW¨×õÖC@½„ºðL\ ,‡Û9£ŽLʘ‹í„­‘˜uûkŠƒv=¯#öÓy¾é1L÷éD‚=¿W3¼,9ð–‰ë«Î-•°€'QÃæ?=‡ˆF JŒÇÉC ù(•XzJ°ó8Ý¿‰bjÂæÁ-­ƒÂ?S3?yš‚Í¿ª¿W¿=÷š_«j~­B3£AÉ<Õ¶NËp5µzž®A¬ÇØÌŸ\oáXåDkV.#Zj hagÞà÷ÇùEL®Õ_¸øµ/ mŠ½ —iŒWêOx•F„£™PEÚaþD¬Ÿ‚ùR‡ôc*Ã}­H ,5ÎC’£ÜHƒÅF^ÀÚ£þ¤M’Ë=y¸]Û9W1>\)ø{êŸlßd·äx(€É„!¤î¤vûØə՞¥P [¹Þ^0°¢ÜHc=H —cÖŸl9ú-`ß3þDTYƒõq÷îl“=†‹êqë@'õ*ø]h圢§Ñ
~ž’¿èw(š+o÷ìF;d›ìÓG/5ødÝ¡>ñaSn{ñáß„Žzù¢špc4‹4<Šu]¹‘¦îùMa;}8>Ï”z"l4d
;ƒ¾¿ í|„¨£¼líà{'¬$~ú‡o£.‡Vܶ'ž}8›Y1×Y³ÝÉæús-ó78šÆfvÜ*8\‰Å/ûÃoo¾úÃoÞC}YèÑ`I¥š‰ª7Àßl·)0ƯÙÇý›½§M³·c³±B¯9“|teur’àç kì†v™Ð?õTL9°Ëê@ŸŸÖ•³‡ØÝ!<(=¼zþVßþÌÞé¯kêɤB¢‰%Ìí`›ƒ•±ßÏöË ;bW²”FžÂqª#ö1(W9gZµzßÏ:ßOø‰x“A~z¿“‰¨“;(-‡kÓÐ.åZI}*Qèã”—ç‹`<ÃczÆhð¼ræ•Žê)Z0+
8{£QrLîec€äX
d¸²p7\h|ˆðÐxÝÔ±O2KyÞ^h4ø¸á4qü3>7áøÑêæ™qˆí6Oû9ž4ÿ4¼6ä韆ת<±þi´_þixÅÍÓò ß!cÁÁxª¯±ÍŽåùÖ»À·ÞüoßL+áð•xŒÿÆÿNæ§óÆò}Eé6-’ïe´ç®%°%‘.6Ú# A
2±/×%¨C#˜ÛP^4ŠôH ÏÂî==)¼äxÁŒ;7OrœÂ^ -^aÀï8üJŽËºÙ>шé·ié§#Xúµ˜ž¤¥Ÿgé‹ž
Âô-ý…n,ýš(LOÕÒ?ìßãÅ·óþ ,ç¹ò¤qž„³?¨²Dëxó;…ðþ!!±»‘Óq/×iWbˆ/}…ÄúG51—¾ˆwœ±Ä®¾ô½=á»›öíÜõv&qÙ–Asy#!ýÇA¯³r^WÁ/kŽWù¤*ór˜eߔéנüdo|\rü +-~ƒòa†W$GÙ_¤E+L˜ü_m½þfó°ŸCi7ÈÃOjñ#x|—Ñð<ýE ÜÈG£P7_ >6/§HŽïºŠy-®„R‰Ã|ó~‹í÷¢ÿâ:]ïK¯éBéÏû“xƒ/ýØ¿Äá¾uzš j>.wÐ8ÉxtÕxÔóÙ'KLAZt'Mlš˜ïÖþ¢‡ºcò]Ú|[^î×àcl ¶î ÷pD…r‰z°Eû‰I4ϯ¨§w’Ô¾ãe¾ßW<&Z|ó˜‚û¼*ŸÇ/ÔO>Ûïe)±#m=í‰10¯ k%‘¼=¼’cýLm8RQâL”Š"â›$gDL™g”Ï
g"Vk¥`
²ê EI‹Í@ýy5üÎˉI(„i÷CZrZò²ñ¾ÛCiTB‡*ÔCÍl£iÞ—…á¼%<ýù¼=|}Àþ&^é›÷8XïÄXßþAš”ÃwÍÎÚµ7>ÍËßGð7ç{£•Îáá.î Ä}²iûö^7üž£íÛˆ?¶¢21f0ö‚Ùnƒ¡0ª=š5»Qã“’c céy…ÎÅ,'§Ñ¦ñ)­]ÑÂÁdåÀæü|~Å<ÆÕ˜£nmí&FÑú<ÙYÌ÷ytSKìá[.zúÖ£’Ñ#Ïêì&¾ÏòògøüÏâbùÚ‰Áu
öµƒö¬¸X¢ÝÒ²’Õè¡^ÉÚK¼‰Æu¬Î¸›É÷­÷+^´cK%NI˜âh'}5¦«ûÏ3|ioŒ—7„ãÊÅIö¹t¦†Ñ~õìŽí¢9©òŠ×Y«ütg~‡ARŸ<¯3{ヒï<‰ýx¾…R³58(!8xˆÛ!QÃ^Ø~¨Wžgó¿Fàõ?ÃØz.ÆÝà[Ïè?q o=GF-ƳC|_îàå²vÝßûÏÐÆS-á÷D
~NžeçÚHý/ž€û£Á#-Â4êdN£o¹“ ØÔÉZ"€cJ#¶Uq|2õ÷O:‘¹%» ̤‰_ÛˆNèF£vÇ&X¢±W‰½$xõLn9§õ¬SÚ\‰Ç¼(Ã8*Šá“îaã•ñÂÚr΃†·ñœÏžÉø%ÉDÍ=ž‹ÕS¼^ÖÜô=œ¾“F=Iß±Ì׈n=÷“€%Ëý\ïE%ËÙŸ©$å¼0Júµý¾ÅX†‚YP¬X¸¾ç„ÿ×b¥!κ67ž…"©u¤^E4çƒRXP€ÏBÇ”Üþð;'ö1T}—öCÀnh;îÓ+7Ù$õ}‡W†Q&å6@]ÛÐJšÇqkc‡ /ï£`н’ 6ŸLFMÓîš´p0²8p<AwÉìu2øò7þòÖnæÅA:žå{I%‰² ä8:‰ÙχîgÏÞ
fûúVo2Û®É+X±g÷³b»ž»ˆ‰l`…0ýB©ÃmìoaKœ/ÅåFˆTf™œ
V«‹†ÇÆò| »k{?Ö~J[#/W
)ÆÉù4Àš}»1¾ùé?Y·Vf´n
ó7Z¿½z[IÝðN•áÑöí&™¥9l¯h#mi3Òû÷è„gÛ^T³o`fø‘Jßæo9„Ö¯‰Bà‚p×ôÀ–¼ÑC$Ç¡t¶¯ø€®JŽQ$»VZ¯*DN­3qn¶èÂú˜G›³yˆ†Ï„þ[Gñ?Ž‡ŽqÿpR‘æS/9þêO$ü1À*^„ÇÃÈ·
*÷­âÀÓl@Ïc0¾l»-œá“ä¨Dï8Tˆu¬qÐåÍ8üF6ü„e -­:Ìð±÷9ߔҪÑö,<ãê¸/ÄÜdlJrdvÁ“PÅܵœ7ÀW!vfo4Y‡^¦“Ò·…­do`E&;wÚº+QÓîaª…çÿÃÏ
Ÿh€´TîïÓþÓp‘í*ŸòØÖKÙÀiƒäME”TúÒÑ&žµWî€ÕKŒ…¯Pë5…˜*…¿Çا]’sC®òxã¨pkb°$NáiplsaäµuQÂc¹N¢ïu~ê­:\ºqC<`öé‚ÍrgLŽ`˜’ù—ýÌôØ™;hæ=¢ø<þÖQrü·?yJÒÃNÀý¯‹Ž9!L>þ¡?—_ÁâQ³˜-%¼°†í˜óÝ1Ø
·×:J@Žä<jÆEÉ¡ç ~MŽ…Øïø­UÏ,èbd;*ó'ÇæØB)ê£$ç0`Â~FÔðÖMÂÖItÈÚÓ7Ú‰é|´+î pup”ü[?Ü4, 9…ùaãoÇàÒküa`FÉ1;ê¬Q×Dnc÷JD€äpNÇ•11{3)¡í?¢‹4梋Ž„=’òr½C­‘øÙõG¦!j`å0íÂ^¯q»;ðÙG¦Ms'›¦ÁåÉfŸSF:ößÙ™Æ 18f”í¦Ñ§Ñ¿‹!DãyóGF:ß­³û“#@Sf8¾š=·î ÔyÛÂxÆ:Ãð³/®J\C 2\©¸’¸JÀƒËèd‡ '‡l£Õ“á(oLŽ•6NŠqM¿¯VLò¶Ò¦~FZì®ä0`/7Úð\}Î(Ê>ó·ÜªÄW´/ Úã¡ô*î÷­óS¾W~Ê.˜ÔÂf””l;A"ÿè(ásTE=xC_TL1~,ô!ô½E%×Ý÷Ü‹v.wÐc\:SoþÏÓ0ÁS
¥Ï*ÁºÅüMôèM¾ï(^ÉDgN9ü—zšÜZò…öJ‡·/ÕcV{Q\W/øŽ« Y«Bh° ˜n«m®÷g¾óõÜ_>½yÐÃbR`=†èû?LS?ÃÀ锈zu_‹ç*ìÕ«‡#ç8ˆ¦1KTîCŸUšÔ,äz52úp¼§ž9 CqÄְ͉à,¡kYlµ@K†œœÒ˜=㊶_ßMä"Ø_amØÂȉ%{6po`ªhà… vjb^òQ¡r`÷ Ô0_Í!~fkÉ×$‚ÿe4Üqæ|€Ñ°z :ª°±¨ãÿÖx],k4øš;°; žS1Ö£¤pH+ø7组Œ¾ÓÇ´cººž\Yˆ
…u~Ú’NO@¹ßp0m×b¤‘jÓ¦<A-Ì›wo .Œ2²#'¨®°ê"KJÕ“ÄÇÐçxñÙµN$€€»Ý"èåeî9ôá©õ‡VƒÖ½˜Üx‹äŒ>
2À—|ÀjÉ¥W쵟÷®.FŒµ…ðÜž;aŠCÝ’£(Ýe‹*ÄB
bÉéMiñ» ‚‰^Xô¹Ý¤5Û"K«#u
R‰<*áE¥–í¤ß^¶´7Iå"§q—ß^Lt·—@ï:³ºü¤¸¡-ï¡8ï0éÅ{.hЄié˜ÞÔOZú0üPÇ ÌǽÓ-¤Cî} šxæ1sçîzî×ûÒK®©æzÉSB&ô_P2îà×jv„ø‰xÕãF›ªn†â‰Wøü†€®o+¢ ¡v>³#9'R) à4_7>*9–‘¾å1­k©\‚(÷=”KÄŸ\oâìDùB/§~Líd‚üû÷%dÖ“? ™ÕàêõR'3AœÌ©\µüA¬8™ar_œ˜W},ÔqçX†g¹/cöO>n_r† HÌ9!
pQ£¡¸pÃv(UðÏç’ÿï|ƒö)êWcõ=Ï%&_¿_Lž¨Ö3AÄh6ÿ¥Oa)QQ/ç¿èÞ¯¦´KN@ì]»äz,ÝãÇîq´È™0k çZ
»o*çÈùõ Méb' MåÉP9
ÈCŽ?vF40•c÷:ìîÙGçép;ì^ó/°{ï°ÖƒýÑé|ܧk·]é?Ž,<F‹|üRðö¤€·ã÷1x{£'!KX`³A[ÂéØá×èUúC1®øœà#ˆ
¼IŽ*1Ó¿+ÈÃóÇ."?T
Á˜êjd€€‰qXÕ3l5¶¥Ž:FØ¥¨`É™¨ p6'Í0©‰AöqüÆýÜCˆÙV3ŸäùSü¦tÓ6˜3¿7™çætíøï4Í¡FrôŸFª‘é\[ÈæïL‹A^žÈŒ0=IÎåG‰RÑ qΣÜø¼Ì7çŸQQÅDÇÇèƒÏ¤1É9¥ƒž2]ñ ¸ê<E)Põ
ª_º ¢êçª~Qµõ‚¦n*ð|PÊôKÎßïF3ª™ã=uñŸ„=û¶`Óú˜;â
âñº$.?}Çúw¢ÙÚž˜†TMZ„qÈ1 &^±ü,?u&À­°¯p®JÚÀ¹(²:‰‹¯ÚȬ_!&ÀÖ¿Æ!õWࢊ)ÆÞ×ghE°)X€2ƒPÜ‘5é)ÕeD›WB<ƒð{
¯bz¨Â-D§‰—‡œõ¨ýŠª#ºÁ‹;+mq…gO4@è,¬\>4±çVînül{΢Ò&¯¹:½¶«òrbs>q2J8˜Îä1ô¼[ƒí@ic”l¹*Ãu’B€ñE´ÞD‘¢ „ç´ýäË£àszì4õƒÐ;`)€·ÓÞˆú𚘳xË\òS›í<‚~%‡„½/‚w« ®–Çwàîï^µdm¦=ÜeaÓ?m%3P'“RÄó­HÅÙ”ˆÙ Œ±4`˜‰ƒuHËKÕLt°ˆ¢uGu%÷ä©Òi¤P¶RC C®—›Ä‚KŽD„ÚprÞæš³
$$â0ÒЉ;|»&Á$Jò†E»nZl4“,1A²7.QÀK%žOžfà»ëu®ÝÓ·’O@?Üf#“¬n±—t¡F¡ÈQàzüüúlõóë#åÓK·Dú;ÖÁ7ùEúŒýÐÐæ9#ub2[˜T4‘ë²­]IÐNáCü®³Ñ Ýô™{Š®bäÛÂ~Nvæµ÷½¹r3Œš®PÒJj‘øN›öd}D_wø3Ç61]ë[Ùß73Fºu+¿þwÝë'›tJË’-°Áåè®Cò=ö½ >Õ-„·ää™äQ(9~nA´Šª8ò(s6Xÿ,DH"Z›œI]Œ†Ú˜vNé&dú[áð©)âNͼ°Íý¿M:ן![| ìtƒF$Çíq~
‹ˆ8D™¬a@A&#hÞ…V²BxOwÞ}Ž&?ö”ØYÖ¾öÆÉñVo"9³p.úS½û=2tápÒ•8¡ìAzuùh¿ž-CQI…ëµ™IÃÑš‡HŒö+V RƒÞc»„ÿ´õRóñÙÀ‘ϱ"½Ú…^8ü
²õN%<’áÑq…1„Gc™fÇ<S‡âí%F{%*ÓêBËXÎÓïm£!t›ä˜æ»:Óúð”ÔeJ¤r{X›‘D%¡‰eJ´¼$v7•‘—ÅbÉ‘Äõ‰K†*t¬*ô2\ÁØͨû
ñfI**‘Y  GÄçaC豦ÿ±ºÇü$m[r6âJØIgÁÕN¯œ:Sr€¬Ñ‰(†KÏï"$=XE@^r¦çQQ}.§>ƒºÑY²égØ][Ц¸ÉÀ[*©“qõj^Ä í¥º{ÿÅ° ·?Lm€È©keJûVø‘΀ØN:ol%
*€¦j0ͦãm%>B @Nðáôì
nWúÖp.¡==8`°¯K ‡8…ÝW2Xˆ¼–옂ÆKýŒ‰Ý\~ʤí’VY·MJ0áâǾºÖ;•Öt ¤[GáÎ@»OßÌ62Lñ³‡1/bD©´À[&+ì|;P§~)PƒOòmX.Ç%lÅ%„u`7ý‘+t_G«È™»§%Ÿ~XrV÷ôy=Þ§„Wóú1Ú`ÈÛB4ÅÐ^:’HêZ„ã©FË£S¾¾ûy5÷+Ö|a£@˜¨+Õ»W9ˆž8öÁk2êç°”ŒÌBWr…äøöìÌ(9Š®Á,ã†|L>9sb•d±¹ú–aèPæ9¹F‚­¹2.`+‹‚ðxg4Óïu¡E†°ãÃ|ó¶…(“fžÔ(“ú0]¬’mo2äDJK1µ‘M¡ë2¾v>Ucä
u’—sÒvO já/oÒ‘Hu|øèÅܦÿI/~AzW¢¦ma $=ߊ¡P3ÙÀùr7ab}.êtâ0€õ*Ƶ8þñn€ëž„D¿À±"ú²!Æ«ö#í%ˆÚ O¬9f’Ùl¥Å}®FÜ3ê?Ü©Ñ´“©–Û¿ÁÿÑÒÜP#2‡ÊäØ‘JZl‚1
é{×p¤ïê2†×ra}z&ºãK·ºÒ¼Ø"<ÝÐ3µDÄ7>æN¥øüêÏçIÙ­t!f9¥v*§FÛ·Ø÷ìçqX4º%lž‹&w%ƒôH(—`¢ãagÊh_ƨ“:
ó—XÑe©½4@Þgßg°7¸i€›æ†ÛÏçš•9±ê
°¹úÞ`„0ÖÚâ3`󿤸'‰‘Ü|y?îÿÿbwýk„àœý›}¦ý‰_¡}xP¶=:(
xKš¦£9e¯%îkÓ °7Sqîç:î¤àK`f¾mbœrøs¾%îÏ)-ú¦ó‰œÀþFÜÁþ†MbÍÓ¸Nè
]]…×½›×}€×åÃîçugvP÷ŽÏñ˜ULd±„øÍeðQ;Ióÿ5óð0¦]µh¬–dn
l*2RWäìz,kߥÞEíD ©ä“[°èC¾¢›¦ŠÛ盂æX±Ï%|¨6]ƒk¨A"­zQÀ˜ÂôœZyý­ëÅÓÙrÓ]v&d«wó¸(J²ÉëŒ9löÍÛÞÁb°Ò\¿{æÕ9íË5~åîð/÷\íU`¹küËÍï ÜZ,çõ»W¨í‹¾\–;è_.¿ƒö¦a¹ÏüËMè`
‡a¹î­:æûèÂöö§š·…‚LáM›Mz®«œiSåQ]úJ8Kl?^ôÆvâ§lïšø®ýŒ(aÕÖ
ëÇ6}„|ª;u—á®}~˜6¾øáùðs2…ÈDÐH1jøƒ;ÙèMWöþ÷nkiIQS™x^fª¿åêXòà9u5iî¨Ëçâ&OÐͺ‹Ôþt-Æ‘äTh_.w% ÿÓ™éè‡F÷‰óãy—ƒ_a—{FŠ.…çMóçâzŠ‘Uq¬ánߟ/ðÉâF¨¦*‡˜”7üvŸ¹
Šr”•\CYA–~4ØO·–Síºý¥Â¯ ¸C†©¿“ûHÁý»`ÝDøVÇþNr_š‰RÒÔœ¿}ØõÌgí±ëÊôØüÿ‰]û­Óíóõ8ÊÿüÃænÖé!‚@¨UÑÁËyÚsðc];'>âÿÀL€k¢~EU@fºÖ&¼£ÌÀ¥ø~·2æôOÌnCÏyåÒ&¡¿>košò
ôÿ´â©ûŽåÒ5Å¢ÁãytBcI'ôÚ Ø°œØiÂâX9’õó ;ŸüžÔ¯Y+<n Ÿ9™Ô¦Â¤Ëˆ8ö„dô<wÆIÎó­â·[t`_qõ(+-‰¯ -¦ÚÕ@ ßÒâ«! 7õˆphà‰í:=š£[¸3{È0ˆþ+ 2‡úy¹D/‡i<W,tØspéÈ‹E½ùW”ÌGr.ùÞ_ý.œ­Â†¯.¦ª€„SŠcˆ…¬pv£_…ο^J?WèñûÝÆôø×tz|ª}iMܾ–rýâÕåªG&Ñ)Z‡Å$çš}H[jؽÍI3œ•ä×:Ü ‹»õ¡ÙàS(
B]줈ÊÚ Ððᵨ¤ceðÔÕãÔZækÉÚJ`Oø7„#_]ËÅ
u=Öï{†ñõ¨d @Üæ²ÆP²Åà܈ˆÿN?‚@H7øõÕÑh©¯k¡/åîXÜj\ öBÉW†vBI·à=k`#è.X½oÍämú±M1ó±¥›ùØRtëÀt“cÓ:ZN×Ð>ä¡÷åSÂÒN¤ÛOF¯8˜•T#q5Àhgh÷¯(p—§|Ì"©2œ÷›‰©&*cÓ£+ c€°à™À×.ox,]òßî¹<Þ€YÖï®^ó÷åû0ÈŸá°+ÖØY(_›kEd½2sü9Òül—œ-£>¿¤Ìœ $bBg†+$'n?H‰ç;÷"0Od¡Ý€‡å”ŸŒÁtºœÂUËÀÂôÙG²úx˜³Ó!Û³öD ¶§ì‰³(ÛŸÄ<ú%ù\†#ˆT{Ž|G†ð7K‘Ó8„˜‰z¶õã½ÚzðÑÅ‘õæ0%ùnÔ…s>Â#oÄë•ÖÁ…Ãð\©$%ÃC/Zù
Ýó)ˆæê¼Ctòi‰v$SCÌæš~~÷²”dn°vò¤Ì4V;®5ÚÚ—€¬‘…;ЃªÞÔ9h7YڎƵ×hïŠñ×hoŠA5^è¿f>ù‘î šÜnþKÙÂtT@Œ&óïÀQN×Û­Ñþ~ÝñÑüž¿¶F>jÓZ÷\Ø|ŠU œÖŽ}@ì9¦.O ‰ù±Ž×¸Ž9T`‚Fr“=ù.ìB°E²T6dáEÐv•\—û¯RîåÌUçï(±WÂ=LÝz­Ægä¼îÏg<¹ZÇg<ÿžÐ€|ëa:ÜnŠÏj%í2ݱ«½5»@ó¢× Ëpnsù&˜Ž?„³Ò^XÅ1þå½
×|«r·•»!s;¢ŒeЂ}þL£íceR´2¡—ò‡^Ø¿bs!ì¡ù¢JÎGC`l›×iøHrÖ_«ÉèŒÃ¯äeR¤=£AkIj_‡AåQI¶ve#YoJr®ÃmkC’Nçú9™xTú9Mø9\ŸÙöùý
VIIN©K5X#”ä”ÑÉI,¹q5%#Â\uc§®&í¡áVî©Ö ´Œ©T&3•Jh
©TŸ WÜ’ØuRy®?Øx%¦mai ±žË1
CÖ: §÷4z7µÂY¸ë1å\¾ò<´šèµÚ X¢xwdŸ¢¿ç$š„ëßø}¯¤»ïñ¥— ß«ªÈiˆ+Â…,h'ìB,WþÔ ª`¶;èc&Ã~›écCN7íÇÐ4
LÞw¿™ô`ZÝFQµ…mÏ‚>üÂBèy[¨½  ¢ Þ`Àë_0ÏÑl%çvôðJe>
_×1W§ûœ€tÎw´á<3W!SŽ!i¾:oo[¼-]Åœ»ˆä
{a¹›Õ¾hØŠáÇã't›O$?gX™JýÊTêV¦/2TVR<»FÏÎbºïùªPó v?–_¥—¸¹ÁñÖïš'›­\n*Ƈº<»¾òzk¿Õc·®PÌs%J?ƒ~×ÍñbüCú;ŒP—ž»W™+¸Ê·0®òkÇ|˜¹¶àžpÕ}—äNLjvòvBo^MäôJ9›e>ÑŽ‹à¶~Ì¥8ŒÊ1—à0B¼óm2¢q„r%zE=Âî‚´ãipÈ°GSìq!b>rÛï¿s;ôk:ù ÷ÔèPoÈ*Ü;ºQ'9‚=œwÀµv¾ÏJ0ù×q,DÁâ4?´­qzs@ä‚t,D‹"ro
çÆ®¤¹ Û‘I`æ[ºñÌ…]W0 º÷œ;Yýí4 ÜÜoƹ崸¿Ä kÝi6Óõºû“½?óa‰%¿•žÝøÄîbú•ôwÇÁ®lL‘Ü“ìÀT߉k«ÆEôp{tüA®º•œ{š¹•Âч¿ê"•õԧʹ‡žÔSǸ?ÂÆéÂ&]®'*3ñ+Š‚+WZ{k”ÇHw x ^§›ªPlåÖÞ¾87ôÓâ*KΦË}–QÉ9#Ê׋.ærý[ºÈÎô(]/Ž‰4áœ"a‘ÞD .àƒ·4\<Bóƒoê,BóÞò‹˜ÔH"¡äø,šL•4}[„`!C”ùÿä¹!Ù:…1  5CprÃù(>Bk5÷Uö`¿ðÚ`ªVøE`ɬQŠaõ¯×Úÿ~(ºWp^cwOhÇ#9J{"·=˜Q¢Þqd­ ¨¤<¢Â=ã˜-svO%Ì’6fɶϋ1dË“†ÀGøÛ_ÉH’'%ÉÛ$ç¸ic‘p<W¬$dTÅp€§~ŽÎ­y§Ñv5á1òsÚ7Xà<§+Îï(rÝž;>BZÝMZVÛjFeÏjÈÎO‰ß¶hìGxô
9o¿–-¨)vÇëóÔ|À`Ãû¬'íý€9VÄó1XG³M»Ý~iÐá·|!dHÆßÉ39$ßht‘½›Ô8<?f‹£hÆsq´ÍX/Îw1>P­;ã`Eþ‹Û]`u·¯ÐØ°âöÉ
?6ìí±aù+:dÞZ¡±aî¾lKîY¡Ý—lX?5†“Çää=˜\¸º°x£¬9ΈÏU
¿©Fæmjoì†qpïh»cO¯§5ì–ÿ±à®Ô-8Pþƒ µÛ½^;ÃEØZ\dtj»ñ€&'ø‹èbÇ¢h_Âq_ìA¯³¤õ”´£…¸7°:ñÈW¿¡mNï7´Í‰xÃosŒo0˜;ÿºÏA轟ø9püe¤ÁãuÏêBCmãìN¶Ò$'¸éípw2‹à‘Ìw$ÏÀ?Jjö¸Oý4<õ^_êBèWI5¹S™¯lòL@¶;ùjl5MI5»SI• I±ôoÌÈPRÃÜ©Œ²'OVR#Ý©ŒÜ'§°?I,k–'q•^5õ†Á .¿Ÿ†­L郺p?êgÄ7î"²=2“£QetÑsÃeV—ø ÅfƒØËìÛQ²Â$ue+ÝžrbÈ|\†äi=ŸcÜÇÚR
Að³—wˆqŸ|͇q%Ç`ïŤ£ïòv¡– ^^CÅEk› ½Õ¯êoþiwãº(á¯sjñã•~qŽ_ç«k¹œØãVô‚B3¹— Iɉ°:„Àc—yR^'ðF9{°¸ †^
]JÅGMQ™;ƒfed¾=i±fOŸåä¯÷ ň׈ NOb[[Î#V~E¬vë*ºÜCbΟïj^N°·“ä(Ç`ÙFʳǡ¹šE»»Y™=èçi
²È¾È×ýÈÅ6ð½W`¼LXÈ_ŽÛ6_+ŧŸ”X$×úVäú×Ä{ëZ›V—l{":<âí
f@"Û›‰J¯®g÷X` Ë
ºç^ÁV½v(âÁ¼Ñ†âáÎ`³5@®¢P}°±°×[G{|t}qßxZrÀŸ¼Ânÿá[:RQਠ5<Älë#%GÀßð;`TPm8ä%«6g9»©Ø (Û%ª^8jä2X;#qÎ\Ž÷ õØýÈWÅ5wãÉ`–â¥àu4^ër²MÁgš'z9‚\¦€l·!¼SyR ã" á4hK½U¤³¼å)^Cm(h™nºUð‘½zÅLÎç­áähq_‘y”BëV~I1-v*J~ëiЇ á®:;öÚ©½›ËÕmî5ú_jÄî5Yó€º2߉ÀÙÝçGÚùe*;CAÌ#ÇšH>8¶î\ËcS‹gûç_:œòœþ7";¯†ÅzÂKZ×eMYsœÉS:s`rìæ#øMÀzèøçe=}˧ôeQŸq’sBO¾¥°cV8Ñ3õ‘˜'ÇFŠÈËp$f
ÜÞë ›ô—žá°‚$›úO*c
ê©óÜ}÷eÂýíLÞºˆóî€w¹ó®/¬–@w÷½¬wãõ¹¡ËÉp‚LQí5|çCý5“j(®G×ÞJëUR‘™‡½qôºLØùx÷µ;’µëX©‡½ïúé¬3}YD‰—5:òóý""$S…ÄÖõ¥TÂÑ%&n{ÜÞÐï%Ç·}t’Æþ’FóÒKû §óžÝ¦òV¬L$’h#V¨GåE„¼w _ãg—2¶$àeöw×Rf…~ùåÿák<
@=†ÂÃUðxšsUöênž@`ÈÕÉe¬½)_1ö&»Àz/>Gu2…,i;¾ð®·‰#û7|ᤗýñoQ3#t¯Žmÿ ÃÊc€ÄŠÿÑü(ÔEì½
¹‚Ûo^«"DFÎ\ò”hùö>ªçg¸\Ô4ÞÓ+­"cù±¶{©/¢û0χK¼<šüïKØþÒñ¶.’I–Lnz“L¿Ä¼Ý{ö_/GÊKícM¯ƒÕT{Ÿõõû0£~õÇOG£þ½zÃ{XuÀ=KtZ§–zu/¹0«¿zõ/Þ‹øHª3ÐJºJ€µ{/sȸòýó:ÿ‡·}a$M;žgîÕKtwâK®à×?>Y (D>˜ªŸZÂx¿©XÓDõZò+[ÿ®&ÚBÈ^sœBú•¥ÄÌé¦;¾øŠÓßÂ8Øg„ΗÊý½›XÂäP
©ßˆ¥Î}Ï£gé®öÅŒNß²ŒiºÓ[Ú-/iy 7'íÛÊ<~Fïˆò­~fî2¼«H÷·i[M X¨£y‘™ºëO£6gŸÉ:ËÅˤæÙì×è4´ýºˆ)D³+þ‘Žæ‹9V|A%`ÕÕúJP}ÔæF@¨¾x,¾¤BW<â5ÿâ¿Èºâ']É$]IŸQŠùìZž•úÚŸAmÕ󮉙m:{\_<‹·µíg Uß¡d=1¿“c –i<׋µÝ„ŽY¯1¶ ðäxuÅnÝ(žm³BÇóu£hzDÚ£t›âÅúâßcñÒ}ã !¤ðÄûKqð3®’Ô W‡0å07¢Þ¡ÉLÃ<—G¨p:#¹ó
Ô{±7Ã:úüV–¾Ê]yøüVF­À7·~Ôµ­b-,_ °p”µ|èÕ°øê?2²ñÎTF6Èâ‡M_ð¿4£—øÓ…ðp¸jtCº·wÑ3‹uË·Ç°ƒ»äœÔݶ¼Û™±¡}F*füTBŠv3Å:™Ó—ã»™H›K3‘oh×À°K5¿£»^ûD*nÊO„eÈÃz²¸}Öz„X©"Ø,Û[>—®«rBòpÙµ¯»Û8[½\m¨ÒÍxt¤âÃSŸjúÿEP«€3œ'"uo!MÍ¿ÄŽ_¶ÈoÇoÅ×Ð<Ý™ÌպȒsG5]ËMôQh9Þ2ÁLu}5­.QQÍ
>…”Κ{Sæ¨Ð©›å†ÅyCŒ:À¼!¬ ”çfñiù>{E÷°Nêbr)÷9±¿Æ"þŽMW¬ßbNÅÔÏúØú‡ï
Û%j7 68}y0ˆÎ%}ÙˆïÀúIÌ
žë‹ä¹~‘>¬i§P=ñ’Ýÿ k@Û%Ijcà^êÐ-I!4[„ç$£<¨þL(ÚBʃ¶ÃÄbC&ƒŸ†–NÚ'¡ÎGa²Ó0êåÌÄ&/_Éýνå¦`ƒz^FÇÀ™¨Øíø¡·»êó®È%ðôWºrî]Ïìr`”o”oæZËèEÜ¥³¯AÝW©3*W£l 9ùÍä$çÎßt®ÞÑé~Ãû
Û˜•pÍ~ nuG†7Ðœ§ÖÒ=n2A’úÇZäßÔ/ÇØu«}ƒSwžÑDÌ.ªÐÓÑå‚
\)t“ÀŸÙÔÄÔpÙròõ3vF5Sgêµ.?y¾C}S¬™õ=¯#G—JMqtò Éq%†8? À;ƒS}É!E‘ÿÙßœ3‘>¾¬«¯î¼]"U"Ö³'R¶®ÎÜ[
V 9&uÑÚ²&r{uøE±EÝB?Í›8gíÈ"Ñ °•jÞÊÅÌ7ï/lÿúÒl…iQÆü6\øD´w†`šEu2ÀLq­v›º³ñhG‰¶&í Ïß%9#¾ÀøtÉðu«ä`_ð•!9Ï|î“?Z>÷RɹE\=X^…·ïMü®Ä¾^1h§÷ô§çöÚK;£˜…çWóº)ëÛ6fÕ»`JPÑÓj˱~^N§Ö¡Ö Ìã2÷ó®Ãë{öS
 Tž%>{ÇN¼ êÄ^æ·ë)^œ¹Èç}¼¹3è0¯¤Ý44µö×›“C[²æ̶7QœÍoÙ‡öüœ°Dïs÷yè>?+øºÿ©eªÃ]ØÞKw=œµ
ãò01>Gjµ´Òçq‹õXÖÅ£ ÞÍÛ¡cüÀ5uB¤L«A`$K¿ïmÓøs4?šêLK,¡H[þ»¸ãyÝ.D w±‹¡Ï“Ý/ ÑžÃª®1¤œ\0 õ¥C]‘Á¶žµ}„Ý»è¶Vû £¼=ïüPkœLÛɸCå¦Ëy\2õ/ýýb=<Õ(þý…h>ᛇcxŠÉóãÕi_â`„dF+©šóœÐ•n)`½+‰”½/¤‰™hbÓ{ãÈnOK[+¡ÍYåíÂ`!‡ZO_¨!ŸÊï¬>[ÆÆ8GçÒ\÷"ªÖ{ÿïo®¾Ÿ+,¶äö2íÿCaߟ«wÕà?tQ-û¶Ñ¡Üèß_ø:ªÐ¶l'ÿv÷UëÚ½ºMÙßrüÚý¥Z×nÛ²_äøµ[XÍCQáZýÜ¥Tp'艥È×~Œ€=Û»@ó{½í?€ò @½ˆÂR:Þ°NVåä܀f ŠIÊO¸â9ÖÊÛü}Œ®y"h)4¹VIîK!³Z?Ò=1a_pîôËù:b[ž‹Î)›u«uC›Õrè‹¿†Å‡àkIdΛš«Y²³íÏÆÀÂècˆgôeª­ú
il#K^¡ïb8v‘{@W|}›~VW<‹ßtÌëõ9¾â1õ¨(`Õœw;H긽–ǃº©VÛ­e
êÀ#4TÒb3¿^ñ¾žp<~ã-†q¿XÌ Ä`ð¹1­Ž§G?£_ Žv‰¡ƒ
a±¤þGÛ€çr£ðgT¸ÕÃoè&:‚EDøm]ã3º™wÆǪ¾Ë¤ÚO‰e&öoÛ·´Ï,FÇ*n­Ç¿á¿Ö‹ô=¾1 ã¢¸Ž„IüD—éÇuM¾Þ¦ÉôM¦b“‹<´ú8JÎk«Ï•Ñ½WÒj·[Oæ”õV_£Á÷Úd»(—Óû´¶üÝQ¿5×cÆ%ótŽ-ï<‹
Žãm5VT!Dz..Šú·ÌCBX@\Y¦†Äµ‘¯{ÍVÝvÊí]—éÓG%^ö¹:ÌØ–Ã+›«›ÇÁg0,ÛOÿ[„]:W?`±•müð\¿¯ÊEœËeâí«<l®’Ÿñ^\&†’ê½ûu%ÎèJ°xšþkŽ^ÿ5k׿ªX¨¯¸+þ͈¬yhÛûïPRm.a™õ¯Ó[)<HVf¶††Aä
%Ÿ¹\\3A
™i2N)‰ƒ|~$ßqñÎð²6h°ÖýˆV]¬‡ïlØzb®oÓÃÕÿ«êª?TûãÐõMXyÔ
ÍûlhÅ3~lèsÛÑ(ÑÏ"
±ž‰;4ÏFæÆ蘡37]Žj¤I“Õ¿¾§Xlk9"B–KêÉ<Ÿ %t‚áÑrv––~€^¶•øeÓË€ O<ï›)vøË\¸Ü÷¼ßÀžÃuÒ:WÅY S«7~©] X&®éÏŸï¥cÕÆ`ñÉïû-_çÂûë—ï¥yí×ë<JɾèêoŸø”Œ8ÔŸ!_Ýÿµ&Æ ñ<sôâ›B.¼þ6‰<ª–iUOÙ4§l›æ´s·ÍÏi'ÍÖ‘GÕ¶=ªúÙ4ª~<n˜¬»z*I팑Ö;¸­¡påç»c…Kж1TrÔ†‰;5 ³B…×àÿÔ‡šëå(äíËóבÚQ=Xïw‘t¼AAu¶5™è»Y-ü³.eú_¾û”Z4ã«g£ŽF
yžEãÇ2?{ÏŸ
ó·OzS‡áÛbá#O]”l¼y ²ñÑSè ç´ü”W}Þ`š§ÞJŠê"öÌ™ùö6xñ^lêO=Ùv‰O]”TüÕý¤"[Þr‚·ìC·„}õÏúßhWàøõ³.Šv»J|0CŠÖY—B»¢‡Ûg]í~Ö¥Mo´YÌn³tä誧aþ×ê@mpn!^¦_Ãr¾ìÂ[ÈÝ¥ÔºÒ6b«Iˆ­›r±µrnÓ&µQç?©É›¸aÕ¬¿Á¯øú{r¤TCGfµ³Õ*¹t…vÞìýé_›jߘÝÞTkÄΦýÄ2
ó|£ðäñ5R³V3o¦M³Ú+(¶á9}‡Ieæ›Û,üO@f߯5îhý"DuÖÿ†»í‰‹žËæˆKœËnOt¨šì=ïwÔ^|tb£*ÿ7¼ÛºÇ/z ³".q ­wèñ— ¢¶žðmî'l~õbÃÔqCßԘ’c“ÏÚÒ®±>ÖárÕáf>{‚€ÞçE^~ÓzŃ?Ú;ïàhïü“¾BZ¿Â#êi~ZOr§-icfæåDx;Y/k'&yf霻zã Tiú°«öêÆÖ–=û(š/e8Ü÷¨Ÿ,ÖãÇKÝ›/îÍÜƬš'âÞÅJ½ûæÑ,>ß<£S}N~œð™ÇgüñLAÑ|{™n¨GÛLfÀ£:ü2úq4ßžð¶ îƒ÷µœÓ„­õÅxO¥šãÝÒâóEtßlÏí—1åÚNo
¼Çw7ð  µ×b|
ôÅÇteÅè戲˜(^–·=Jš»‘¤Î§ú\Fò%+ã:,óz°ä#ÄôÚWÉ×Bé˵—/ì=j€MD?°sö’Θ‹"ý³¿ -Žîúm'̹ú·öhïÔ|öª9¬ëÈÞ‡âõcv@=¾ÆœÉ—Œ=AÀÆul¼hBØŠ³[^Òýz±èËŽA_«ˆ-]“¢YÆ|î&Å,ø/w9 Îæ^A+îëׄÎz§sHQ‹éàª-"¯x&÷Ð÷íÑÿv<û·á›?1ü\Ðì”ØßÿK~ 3Ô.?é:h{ûçIì øûmkßó˜?9ÇqÃm8Äþ5š¶½ý°Ã°øÂ}íÔä¨7\à 2…TÉy¦¶:ò£0uõV}„UM ª´«úV½ûð˜ðä áN(*´°è £[Rr5j¯‹KŽ'Žà‚Ñ-e[Ö1ö!(±y'?ß•Óy¶•_Ì$ðÕu&jcÛ17<"8M‡™J\Ãqõ ÔFdHE“ZíµF¹4¯i¨5šìòé¸å¦NÖˆÚ ¼>]{’1îì)SZ‚gPM°öÛ«žNß^͘Çq¼Ú}ŸÎÞzÐÎ.<ÄálÙ^œz'+ˆ7¦… Û»ø¢UÓTžxH“¾?Íw¥öGlôs»ßT£ÆdQù;¶ó=&.ÃØ¥dïÅ nϷºj?@÷w»°Pû¿õÝÆ¥k#À½Mz+þLl!«³ósø(~öókìù[îòÖ`ÃhkìdÉ…/ô‰ø ëíåFý!9Ãä': [³K†y¤ÕCùÒj7¶Ex†¹á´^
{MØëÉ
4“á2Ìå\ò¿}—ÌDBKa÷=l–lÕÖÿôV½º`ÍK¼«5Oû©âÙ¤LSuñ‹Æ )h‰o¶Xà³ç}+±  `²üšÒKŒÎ5çÎä‹hwÑaJé3Ì^nºØZ>ý n-yp¥{d.UµŸÒ& ù3Ôò\ñs÷é˜mÌö,ì`È*¦ÏÌçø{jáL>½òQ Ò»SnOƒî°q¹WÅ vmsãlœòªÏ5·§nÝmb³…cŸ>÷¬Uä^Îâ«ÏùrB®ºáXû.·b†¸Ö36ˆ¿Ÿžoœ$o/õDä È.õ˜óÇÊùwšJODd—Öš)éÎàìÒæüÿóÇÝgHÖößûÑôþºYÉþ0o9†þ)3ÓâÙŠ%•пM¶ÔÏ>&
È·ü
ŒRQ'©è®ÀÒjsh©\‘ÞºK*²ü-ÿVzÌZ.WÔ^Íß‹E#¤¢iRѬÀÒ?Ì¡»²ã›¬oA1©èPèoÒÆWÊ0ÓhKýÓûj8{]´œuFÞ.ÛåÜicRwP#÷[pûÖ)ÉIøN#žûxR'D»2L¬8–;··ó„>Ö+• Åâ3Ò:KÉ:£Ø•Ü|EH³¯>"Ý,=„38 ¦ÒãæÒ?"B[!1ÆI‰H)0­Sé±yBhS›¤•çö†€N\aÔ£<;Ú¸ú6h{,´ýt.ÀH€šæÒêjÚÞI‰¢gh»ô,'GR+˜|Ý+OˆPaÂ…8Eõz_à:×–kôûÙÇY)§{lÑn½ß­Xêíe}tïÂZ©±7Îù]*š›»
dÄyœ‡ñ¸žm‰ßót©Ø%·…Þþæ­ÕN(È^Øš9Or¤ÃððçdköÀ]ö&lòWŠÙt‰fÏK‹_öŠ¦±ú4Ûgöó!s¶(Yuèôs¯Q‹'ã
Ô®bã^ø`½7|§õ¨’…7§~Ð2…fÕS$çK½Qr¢ÙNÉõ8½¶RH·ÞîšoŠß#-~Õˆ;mÎe[þΖmUÒF[]v(ý­Â-eYARÑôhܨФ‡B³ê[t*ß ­š$Ç}¸ø÷šâ¿—a펄mž>2˜jàA`
M„y¦Ò?Í¡¿A}„$¶Åç&Ï6«ßŠ÷š!ÝV‚ m>U^Š®¹eØÏ›¤EïÀNƒõ›=Î
Æ–a#§!ä–`Ãý‡:ß±9ÈÀÂÃ`¼AUeï>Í‚ªÓØXá#HÆ â#´ùR£!¯3ätC© vcO¯¤TÅf¦òò“ÚpÇs„nÉúþ`}+v=»~ÂïÒ›Å̶á«Ö_þiU+k@ÀsÜNÄ€p8plma„&õG B§ôÀæ›í¬´^§ÌO=?Éz•l3ÃI—¡F#œ¯xæõï8ûã‚9Úù¬]—sœ4 RýÜ€þ-,>5Ψ k'“¹Øý »;³“ÂÐ6[®2UEÌŸ"!Ösõ=OM`Éæ§ésÍ<w0ÏewN_¾öÊY’-'ÇX¯“6V@ryJ„w¨´19F™)öc6ˆb妮ûo^,ÈΠ»±‡qf¬!JòÃpÞë¨Ö¤4~+”8JÉ9¯&ÝmÇyÈVQàl°MFü?XàÿäÀ¹–ÎÌ©Ò“‹Œu/¯Ðƒ™ëš.¢"1O‡‚¿úö¸Ü¬ÏïÅ@‹Åä®Áúºo‘Ïâ"\²0ÇWàPaâÖh¯´±„ÕÑχh~¶½È=͈"öœx|~ùð?wÃrzmij§ïÎCü>J_%åí%)‡°3k< 3`>™5Ð]Wzè ) ¯D
ëb¤H—a hÅô¶’‘€^W'°2Tü'‹*ôæj{³\ª-ð‹¤ÑÜÆþuÔc_k;Mä‡Y¼r—¶~ø¹Öv&®D‡ÇËCê8ø÷C< œÏ³u‘ûlžKÝ×Êü“'omÁ{Є¼‘z/ƒ8dÓk+uü 1fŦtS&¦É™aŠ}&,æêÖsÚøè
œ“b1+Xå®4eâtÅà¬TƧYä}JÒtX× ¹TN“³Ìö2ÓÝYê\_3¼?‹è$[Òú»½£þ³¢¤›•±Øv8T’Ó¡ðç0ÎÝØø€¤jWüöµŸ”A©Í
ôíG~ƒqE—1òû,P®‰.×e©Ñï
îa~æAÜÆš,
aíWâF ùQY56\?ÊrÔö‡Ü8ÊrÌö°GGYŽ³àúµ?°}‚þÝD Å-.¼ïl‘ÿÂtæUcM–­ŒÞ7Ê<±Òv†=ð>×àXý‹èÊ@A…½0 üùè_¨½,B®ºûž¬íX:Úq™Ý†!Ï>2«<Éd¨­–|ë±°îu¬Ý†3ÅÚfù3^¥xëˆÝP‡.®v( þægVåÍ3çôgú‘”f.dÜL«ßJe¸æqL
Ê·l”ŠÆó-ÅRÑThæ5ø
Ì·¼Îñàwá²ÿÙ“w‹‹¬ožÎ\Š .á=ø×ê‹#öli$—ËzϽÿA£°åu©;I߈l|7Vz¸Sä³*F[ÖKz¸õ‰ˆð6#³”3œÎëµ;Êak›/­Dyán©iw³OæY0Í?/²Å—wÿ4?Ã¥5Ídit¦4ÔuzÞG¥Î»ÈCÀLªÐp*Û²í'‚¬˜k¬QÎ, ÿD=™lgáÓänºN($WÃTÊ/7õ ¾dšz»àK!ó8ù±ÃHÂO;02jwjñ›M™5Ý‹Ç„#¼ÝGdXd\…"뀿ŸÈÛíu±ÒF³¼… o—K‹÷éNo€+£!ìßÉ‘ÖéRðÍex·uÓCÙÙÙòŽs'p?–´´ßÒ.ÓËÆ’¥rsP+Z÷aõ)aêq“gùdÈ¡wKJXß& DÖ{·þ¾‚a fiñ4—ŒÍ@ÅCFÀœ›¡0A ŒfÀ…ö£}Ïjßw/ì»,önâGämyG¤…Mø‚¶U
Vw0=Ñ`¿ö
üÌÙˆÝîÅ/mpæKnß´vmåÜI8_G»:N­ÌérÑV\í[¹ZQ+¼îdƒñßÀÿ§
Ô¾‡ýÀ«ß_Ðà
¸CØ¿ä!ÙñÛ$Ç
­¸•Ø1ÞŽæsØp‰UÝ9µ]Ocÿ\Š•6ò×t%+ìÁB|¹N¶Ô } ^tÒ€ÑQè„*g–Y{û=v4:SKZ±”­Î·XDhã5èFæÖ”“o|aÀ”IÔ Ã9Y§ ‡&1Òþ™ë3±…“ý®b¿SÜ`í;‘4!ŠàñÞ v¨¸36œYóà
Q8Éi‚Sl/›Î8ÀȳFB‹0X¿q¶¼‰ãÔÔ…Pªu¢Îì0qffÅúŽÝm*F
\í+â=t,·i5ŒÅs_#1ö#´PÉi¾IÀ¨×ŠQÿ ìL1~,$ä®À\·fºŒs¨.ËN²ßLáì_Ò¯Qÿ)èÓàù>C¬ñNZ›ÿ½—_òÁL.ó!ÛøbŠÓöc+Qg2¥•ˆžùmí0e\Öø"“÷úˆQ×ëºL"ÒÅ´èê¢VêÄ žê¹É"ˆÇ” ”ú2QͲÑ{E¶<¸”ÌÝð½H ?BÂ"!*!a/»
J„„=¥ö;yH’™ ÐOPh¿(´¯M¡0H«†B¿‹¦c ô˜,¤ÿ´Á=.‰6e\1ü¤é‘§öwK`ÉìÏdö‡E¶Ç"ÛŒ›aà¬q®<.MrÜEhwjÿlŠ$Fúrý¦â²BvŒàg§Lfkë\C§{Ô¤ü_ú ¹gjZ¹)À`O$û 5Dnôt=GåYëÁ{Nà1§¦‰–§CùûNbùI«Qõ²ã+ˆº¶Á#—À¨'1Öá‘k³hC²G'+É28]G c\Øèä0‘µNdž®YÁo–ÇE+ÉòÔ>ʤHy\D\‰<5RMl!,‡gmÔD6·$«Y—¦~ ‹B2ÈÛ=[üXŒxò^›®ƒò·3xaµ®Ùëõxïô—Ï5þ™˜ÅÀ.*F9}¿’‹Øí?Jz˜ÒS •Ókìjhü®¹1®0`DåÓž|D8ÄÜŽoœunÃrWáxr"ÑÆ~˜B€Õ¢ô¬ýº 8z7Å…D6þx¦Þ©±ýŠªÑq‹àØ*0¨žŠQ}Ö‹ú¶%fêJLC¢—OÚÌ/@Þs{PéŠ2Ìm¿]
‚¹
6VÈ¿äG—ÖFäO@}+ª_ó3ŒùÓašö“žïž2ÍKižÈÃæNûlM‚I®§õ°˜ýçùd+Â&Ù¨›Bá=0…`¥§jåmè3"sª×ÿŠ3&À>¥G–Ù•[í¶ÔE³–Ï»-Õô;³Æm9,ÑãÄ÷…Éç!¿ñ½%¼‘b¡XHt¥× $¢Ü Š…|¢Ä>"ã@ái $ŠW­ãšAZ«Áňº:ÚRmMáß肋ø[Œ†`!Ø‹adа¢µï$”lßäúÖÆ}é~"ôÝþîÃýýöWv+°¿Yúý
„ýuEFÈòyÒ¨wÊkÄ]
€-…Õà·Ã}½vmZ ìkÚâ÷õµÛY¶¯aa¾­Û‰=Pé¡æð}Õg®™÷zIÎgürÐiNä:¬wóˆcɬyún%/‘ß>Ä7‰³”¹L=eK5q»Ço©ž›W‚Qâ¡|mê
n–Š"ãó#C OÆ[jæžÄ#z³ñ |³½,MÛ„è¦v¥àï-eJnX ¬zf¬ ‚8K!DÛ÷6vÔ2«`¾Fkºrs­¢äÖÀxÙ‘‹Óõ¥l¿°<œþºé‚"ñͬœ:Ò‹-bÅ2« ¤Ú‹5´á×ÒP¥`1+áh¢ç@ÎÜ­dFÂ)–~Ä!ÈܯDáe#{î~XÄŠ¥¾ŒLüùdþGs¹eŸQŽ*€_s»ÚswàÛ -
$ºî²UÃÉvåÖȧ\Y‡å&”Ì—†•Ï6à~2€¿Ñ„÷§ä¦âË™´?þO¸Ž‹ÿ7]àwŸ0Rñ
¦Œé¾„˜0KœW¢rrùÓ%Ðx6~žá¦eîöðOÛhÕÙ„Nμ«®æó|00›ÒE`É|Ý`¾Æ„^u™®jÉyÿa€y–@ah*(XÔžßÄ%¶Òƒïvâ
JDvBŸ)—
™¬Ü¢ÎÀ-Ѹðx,ÙlÈ8wZd*úiÅGú7{™
w`á¼\½j›A+¼ÑàW¸
çåÂæ:¾6h2'ßoΣ‰Or€ÓÂÑ*büš;m
œG‚m‰íÎÀAXb b®£—À–Ÿ¶”—5l7{<b»4ÆÌ.ð[o¸sl6ðÃHT
æ_~:Ð%ûKãÝؤÛç|d`ƒðJœ¶L/aíg¹zan™—ÖòŸ½{1>Xª„·ä°Õ>Œ*z[58ê MÌ"Ø9p™£Xb=aéöˆO¯ :Kiä÷¥>fúOØ.u6
´2Ùž©ãhm8%h‡@~hÀÿè+“¦!?é¬Ì–-û%ÇʼÏkf÷y¿2MAC†ùd:¸Æ¡gîÖQ’#™Ä³–3Käô
iq6>Î9¿ÿÊ­  >¡å'PF ôÄU~‹ˆÌÞ
²C*½äi˜c¶»Í›ÈÆå}_ÏÓÂ.º‹¹M¬>çyLNAÁp`IĤ¶&ÕÉ 8þõ‡PíAac| +DŒ¤ f¶Ü8!6[Nß-mÜ)§—IwØKMñðÃñY0^³4Áì¶â±°@ w ¥le7Bá7ã¨Q»„Ð`"cIŠgѬ2‹åô
žE©ˆð7(™Å.S'¨‡Ü …@Ûî;ˆi@EÞ}©ÄÎÇf²l…’ÒÆzcc¶œ­º†_½=gA>°Xž”âšà×Rl,O5ò™mˆö¤>ì•iq4®;œ´º’#Ÿ LèNŸÃ•äaôyEézq}çô•6zåmÆÖüàROY×SYSŒù©ÀE3ÅÙ‘ÏÏâصï…$$h ³X‚IK¸—%k £ŸNß÷œõgÄn§¨²8~¢X xžÐÏ‚ù´ ˆþ¦jó—¨0/LCÍÜ'-s?KS,û={Øêk嶲„«µ„OH=”È@ð1 b 1ßÅ*Ö*äP…‘Ú÷’3p, þok7úYøDŽeðWø0vò4`)9?‰4Ê@ËEV@ÉY@ ~5}|ÀÐgÀEÑgÙÇ}ö6ièsx2Ð"Äšâcî¼Ýf8à v&ÉÙðr”uÍ%ØÄNGïÀI)„çµHaŽô\“îyþ7qÖFâítÎ¥¢ÛÈ¥BÚX*[JàÙ=¦xøáøÔÀ‚ºRBZ²î€³V‚ˆ
gç®:;Ðœe‡äH4±cv:{à¶l`bPä³ÁCvâ"“©?OÀëf•ô9ÎwÖr¥t1±še¬¦ç×±¸ÌéÐE¶<!WªÓX:tŠ
X¥Ær2>eB:Ù±¾vŒ%e¡úŠy¼›zÕFƒë8¤68¤³ ‰üNÙ¥ª9ÿ6£¼-?5H;Z!x´ÊSMÆü)Áù©f
|kí|â“cqôˆ«äþ&a=óÓz„Ú·ã+l§ ïb_êâ&®Ç&,»h
¾m:a áËoQ‰¦~ÜÄèBËNÌ%Dé<Ø„·}¼¦À™$N»É~7–mÌSr1î<?f¬.iÖè”ä*õqê;1&%BÉiBºíŒj·‘¨”‚*{
´=X eÇ*1Þ¿DðŒwéµ8HɧØý›pþ8žàÊõÀÑ|Ù"è¢V¥þ4¤ßÃÒ]·›ha<oâk8J\t² Ç²ˆ+¬‹ge
¹èw¿Ìû SÝÍ×U§b¨¸löOCò;½8Xæ¸Ü0a '`‹|¼“äû£Žôœvâ¾1ºØkà;‘ >Çý²>`òžƒ‡xÏ `xxƒìѹ»%ÇáóÚžö£Y5Œìø@âõ· ÔÎNQû´Š}娡×-4|ŸÉâÄ0£½+I4ö'?¶Ìp–"L%ç“hŸ±ì7³ý‡~¤ÛŒå !ECpJ<Ͼ}¢Œl)öߎx°Xð2tìëw"ï×úŸútúú¼ëfŽÈ±Ï
ã—)Dô™ÊõAwêħq·¢P?hnŸ7òj_b
¢ý°Iµáúÿ2uª´ó£¯#ºL{1Ï-4ZĺӖí¶üf0«Hg>:«fvªT”Hqv bˆË%8&mlÅ9IE“ŒRQ ÓX6ôú™”©s]ÓG› …§#±üµ-ÕT73B¨õ¢hl¿eÚ"¥
xºÝ""lÁµ¶bùjÍ9—?=—áÏÌhùz{Ù`´«úà—õVlªq›kœ‰¹˜=k‰¢þæšÜø¤ÌßÔéL^‡‘¸=¦ƒ…â&åfnú}
üG}/5d‰Äî|Ý+–è¸CÓ¶á!®'xX6Už…i8þ*õªöÙž!O%ƽ}½[y½Y(øäå‹ðÇÌ5%¸ã"|µÈ8°Â.½¢°®+@ÚôJ–pĸ]™ið9úI‹6áãÄ»–Ø®a¶—g¸¾a©©•l¥ˆD<ïN ‹™ƒ}îsƒ³ÝÉ×á˜Hì(GxRâÑÍÁm©2ÖðÔ'÷;‧º’€2/@;¤ ‚½Q€MÚK"²6ú(±g_U.eÏסœ“à‚‡q§“-rz±gÙh<VÅJæà ËWdWh9K¤Ú®”›M>ʽ›èïOÖh‚€
8±ä…öñQ[Ûnhèï„$Wj p¾€Å‘ù-7D”'
L[ìÙI×Ø"\·‡^÷lƯIÓpI†!S5‚d™Éù.~…§qylY€N²)`’Í?£P²©’
czMz¦ï?ú1¹J%Ñž­kÃä>RçÏä>sŸÉ}¯T6òÛÔ)¦¶´ö¶¤CÑ¥Œ<Ñ!7kd÷÷Ñ?¼¡–^¬ó'𗫨Â$føA67HÓb£1^°ÑKL"|2¾´Ü!«™«F¬æ
=Ù9²¤Ž§AÑHwÃ|gâ7¤@Qx(|@Î^g‡å2/´ÿR0V§3žPï’>obþñó‘_a礅7!-²áa£5m°vÆ÷w:ãɉ4ˆuv~ÝBÛ:?oàâÜ‹ü†?}­ üsýùHšM Ž]ôY-Ì.¹•ðyŸž:ïáC¬G|ÜâH¯®.ð_¸ÛÅ»¨TP;y9lÊ^8aˆÁ¬çÊï½À¸ò‰#WÎÎÿÛÚù% C®¼®RœÿQãÊw®|‡Æ•÷ï€+/ö”¤óí$‰Øq¿É%lóãÊùÙÆZn¢Z%lƒc˜¹›¸òçÊ·xÆÝ$¸ò$àÊûÓ}Ç9V ®|7råI:®œúºþ&Á•ë¹ò£ü¹ò-ÿ®<ÒŸo$®<:®Ró¯n×3PÙÙÌùrq
¢ã#sõÛL:sþÐ"T8žWGè8íùêÓßiuLÄzÉIþ\s”PG2~WoG0ó·#4Å{>ͼœ!z|#D#u„¨—
8m->dåt"o¥gµ >RóZ4?âFå_›$9^2_ÛùÚD®?ƒÎÐ0/ø½éi°—¨-çѾò’¸hœVTÏÌŘÑÓ¥WÉœýº2ƬD­d·àLžÅy€-0Ë´2×zÏ4åÆŸ“~¡C}ò{'wu¸~×!OJ<¾Ók»8K·’{’ùâ©Éœó\¯ËýrÉ]3òõ<ËÏrm-[Ô¿˜ùHu$ñó#ÄéæÎ:ý…Cç‘ïAp‚eo¼“‡ÙIägi<€«ún#ëôÿNcx§¼S_¾i¸è÷¥ŽûU‡kýn½žÁ-õ‹ò@dO|’ yó$Λ¯ò—ÖŽ%Œ¡*çÚ³çKxÞóÍíªzfÅ(Ö­í+MÅŒ)d'eüÞÂ:Špd1?¨?ˆœYƒÉ?J¶”IŽU˜¸M™7@™8\I6:‘9ºláµñu¹ãz½
óa¥¹Ú¦g ©íš§Kg”2‹•ô-ÂßEïérj#
‰F9#ÀÚSçCÒ÷ £8?p‹K¸„D
çÎÃôÎÒpr )"\BþâïòßDÍUÌ®U{8}C$gt¼ÕNµ¹üÑyŠp6‰]ôit¨õ{c {O)߬œcðlÆo‰uyw®‹æYÓ'Ö³f¨Î³¦
_ša¯³ÙÞ«}E‰ÂÙOxÎ]'—+é5ÞN{W/9»‡Ë–h²÷6ß­ùIþh˜Ÿ¯ÐæëÄäO]çï+ô8p¼µ«¡>÷XñTÄ  ê• vî*É@MÓwCâ÷Ü;dwWÉý±×òü`(Q ‰{¥"[•‚„=x¯á^–Ù¸3t—< DŠôPè'(´_ÚצP¤UC¡ßE_Ì]¥(óJà[†GKr´2½}éÈœÆþç
º¶$3ç•dæ¼Âœ^q=þ ø““Ó$Ç&R8"½±öâ~Ûx6àæg‰ü§uäÃ2Ióay9Ž@ÐzŸGqüq®Ï -R‡hú¶o|8§JÓËt¾dcÒôNR[GaLø¤‡"–ÈzÝÅ]–:òãn5x¹'Í$ò¤Ñ9„Êf™ 9–‘ÚSóœé9r•çš]ÚÉvC æAãpâ’ØʸOŽ´18[´kH
‚¼·ØrÉÉÓÈwíƻΠþ[óÌLf- €‘=:5ÀÚ]IÅù.ñr™ãÉÝŒÿF5Y/SÆú¹×|Oë%mcZk¶]ŽœRrØèÔ0ÑælãŒ3´öE3é¬4Áj`LŒ¡íBAz™2&Z¹³ÒÖ˜yRåÎH¸‹I‘¼É±1ŸtFCqf”ˆtì€Âµd=F´<f˜|çpÉ¡ò)¦š04ÔP‚ÔÔ!kAú.`b7=Æ`½šK–‚h_ª³ÁÖR"|)4ÛÙ1ÒÆùýat0´@ŠîÜn©»rn¾Ì^b’[핆8¯±¾kS ¥ {æ2>@¿hÔwá\aøcÃdzZ.-l¥Kú€š~ú›­ˆ³YÛy[§†ä!€¨‚ED^%k?€JåöÖP¦º¶·ÂΖbóáLút¼À™‡žášëoBFËfÊø×@bG‰7ý
’óñ ú?G‘éF‹øt× fq8ÝŽ›˜ßô/€M~Q…¸ÑËAt€;áNF´i`~päÙõ”ýÊe‰²}ôe·‘½i€<;ZZü²g+²í3¥Å!tsλ„/¤Í ó³SœÃœÈ&{/îD–p]{¯ðš ’Ùyß#Ø«!U5Âü¶’~îÜùö¾^ßè#_?3lbâØd͵ã<ó"›ÌÆUßzñq­Ü~\i8.8V©i4=ýàâpp3©ù6wî@{‰¹'uЇgrv¶µæ+Gàuåó”e¯>—-5‘p¸€>%Èc‡ÓØQÄRÜ©n¹ÔÝI.upŽïŒT¨è˜!ês-„Ö*0¢Ç¬f§8ªßŒ|b%"ýæ/˜Ïµ÷š>H½?PƒÔ@©’Ómâ Êø‚×ð˜a|962dß&`$;Öâl%|Ï,_<TGkŠËîñ\ËÖU¿Öë4Z;KÎoÏñÆã—(ŽßSȳFíG—†
0Ã/p%÷ÝÛ´«}PK\S7.//óê.‚üH,7ÜpQWréÍ׶‡€c7൴s¨`út vô‡¶_Ï»®áçÿÖV@xˆ…à®›0bE³v‰¤ ÑãÄ®h"gû^ù.Ç<>OšoÙpn¯]5fË·!má;Iÿ¹«i)²lPžI“O‰ÈŸ
Ð8†íµ+S4zyúôf@˜Ÿæïâ™´PqìdÉ1„”0Z­-×ð³OwQ΄µ_?ý]”ÖlÎÝN—×ÁÕÕdþ
ƒ‘É©alÒìNìÕ¤aÅX¹ë›ØÍHír5Žx»I“`Z®‚YØ›t0£¡ìDàþÕŒ&b"[¹5už5…HCiVC'³ _ ˆš†Ãgb¥IaJÔü1!R ŒR"”¨‡)¥<)Z×"È ;Û¨ht¡W-á3ÕŒcͨ\FL`„‹¢ äx
(“’²å11$ÄÝ™D·3Çô‡ÿc­ƒ ‘q–hçÕÚ~¥HŽ¸“’Ä~…1ЀõËvÁ—9Ç$À
ÃïÁ°#cFÒáüÅ4yÌ4›eóµ™!9®Å6'j0PŒkþG[!¾ ùâBü¶Y
ñ·Äb”²fmÓ‡ÆòMzÄõ-ÚÖwõéïÞhñíÿ•ÐÄ‚­‰º+EøÎKL³Vß•¾ú¡ÍZý-X
úp<ÚÓš˜Ò&0ÏÑþdùA$bêÏt<Ðò
þQy:~j`Oÿ«ðèMÓ<ÃUÚq-n$Õ§vêé³>dDt:=Ð3XBuñiNüðxS?Ô™ßy®úï‚ûóP•¶ZQÛ•„Ú²^{¾?á5¢¦|¨¦ÓÚ6<Ø_lâA7߃;ú“^¦v#_ü[ø÷*í~bG÷cýî¦Ð¼>ÿæÿzp(Š+ÿoî>Û_»xï•Bµòµÿ}À÷û³û€·÷oðSƒvðŽ+þõ}@TYÒ}@ܽ;„ }šgq?Œ".¦‹Ë‚}¹Ö:êß_̺òâ—øeÁ1í ãƒÛ_|$:ÕÉõˆíîÚFèPN@±¸™þWýn½
ãÓÔ›}÷u—¿¿Âë»dØ»ý%Ã7/÷ŠK†µ_w|_p?žŸ!½/x÷RÝ}ÁHáÿT}Ýå’É:ÚÞ˜aû«<(ïžsf¼Â3úÛ'X¯fÂû1fÀÆrm;é~¾PVWrwÖöò …ÐÊLN筆歷Ø%,ÿÜ+ï>SË\Çó·`~?ž/½ø$@À»v(M’ÍænòÇdJ!T/x—cxý6þùš?÷`¾"]¡Gò-Çñzr~æ1šo?º(5XÒ“ô2¾Ç/×¢™ÛË£hô6¼t|TÔV¿
ÂÙ6ÑxÄ¥ÿ¸’Ú3zH{ÝH-úœ~áG¥ñ‚߃‘Üß—Pðµ[‘¦+üZúÀßz¹©£¸+˜Ÿv9šƒärùà¼r=æ#ÁøºÔªí#—¥F*<q£þ?1¬«ÂË©¨\ >£ùÃOè(Ä°¼è‚Pb[Jp‹g—'ÃŽ‡
Ò^.è^Lh̬ÀºDBiqs¨TKÅÔ&W«œ0ý³o#ÕY1Ônõ‹gQ)"—ãoWÖWz½Tô<nS¾©»Tdê‘oêjßf´7™lÇórÏdX§æåž`½;/·>ƒñ¯wååžš øþê¸v~#GEmýàÄÚM¶¿íeëxӛǰœšP»?» ’ÑR¢­;6[n9“a{›.·œ`{¿ÜRŸx¿ƒx2ë肾¨ÔÝjtáSIc%ÚÆ£¸Íå¤ÉÞ¸ Ü•3¬%ï–!’ÃÈ6Kè-ë.óé- ]|®y¤ZÃð þµ7ÔuB{+ž«ò‡=(xì2†i÷ Uï& hÏffstÎF@z +ý‘Ù³ÝAeðë‘'Šqí€_>1~í†_,w$»ƒ*àWÊĶ~Í~ä¡'ÜAUðë>«íiwÐa¬säVã¯G¬»ƒjð×Ó1Vw~=üÈlÈ­ÃO? ¹õØÛœ;•_=
lô¡ë§/kÂ;!w•ÆƇÙ15¯äøæ´0QìäXA0ç¯pÿí2½.W×úû¸<(;¦1+W¼Ý+9îF#kÜ¡¸qNSt—<{Þ 'tôÎ…ÈÀÝ×ï“N#&fz¡½¤Å^éìÓê-lßë˜h©{Ÿ%âbÂrŸöBjçü®šçÔy¦*½3H§¾¯ïåõ®Æ1#4È40Ï\w ŒãˈrËô'¨úÿ·S¨Þ̦PÐ~
êH†´<Ôíìó ͘&BV‡ý@›¨’•q{Ý£Ù¨¤0ÝŒºô?õ÷`³…„u(¶ƒÛ»_tG}?žaÂðžÛ¢ñùª©F@n wINtú+ a¨´M¥ ñÒ‹·±´@L»™Ò»e²V‡«eLvÏ°„Pi1Þ%ÜŒ»R<˜Z¹üë8¡ßÿY£ßЕ†õôge*xú=}g ¿;ÅŠ‹½×¢ÀH(‡ÂÅ¡»¸3nßû´’ÖÛþõÖ]µ‰l].4\Læ£Û›ØLAÖR‹üSÏ|ØÈÞQ-®çv
Eã+
–î¤ ú×DÿÂIr'±mJbÈ+)‚ý‰d¢ÙRBùú7–þÅÇè“ð”“F²ÂÃØŸáìÏ,ög<û“Âþ$±?Ì’‘Äîà&13F3c$Í`ØÜ$ͨa®A½ª¼]r.B6¶ØØf#Æ@Bƒ­•¶G¡L´QÄ{{07ƒŠ)2ÿ–vç`
¹¸8âä‘îqVÚ·UÎu¨·¶06§8÷ïX#[çcFöŽð ¬>˜ûmäàïÊ|YOü¯5šð<Ó¢¹ñΈ—é:u«¤î¤kxª?[®ðð“aÿ=k!m«h”g¸pX/^!·›Q¿ñ¿!‹«²¾ßÈ +¢Ë¥ÔX~ çy´g{•Ì
(¿ªÝ{ù×ýOàýÇþûþk{´Ç«_"ó[ï–2®ABAJ$*Âòü_°Ž¤
Ö^¢éx:ªÊ@Z¼å<ú¨ ñ|£äx#HfÛ΋ó2Ò<ëÁ¬œ4ÏŒ™ÍH3Páûi*ü`6£Í1iëbd ìn#Î{:úm ça’.Ë¥¡º…m+Ã]hÆg»Á¼&Ûg´Ö®Ü-ÿf¹¬Rú9Œ^ø¹¿ãÎÙjÓRçEùGÏëÖžòGôóK³Aãž”ÂPoqà
ªoûßß‹p{eQ<–x¦6àI‹tÒ6í-UâwHN¯‰9ðõ$Nù_ÉqÂä{UÓÚ].eüqWe¢Õ^jrVÚÎ(Q‚ã­Ð‡Üâ(õ˜„÷·ø™u¤¡ßË¿…Ù×60˜Íú?œ™›"ÛŸo?|à¥Y‹ŸàÛag|ù)´œY^‰÷eò·eË=Aà_iËèz§þ$¼*LðªDڧ߂„•R‘íMÌ1}…Ì9R8…ôB(´

½#
½Ý¦Ú§ßƒBk ÐjQè]VÈ=Ž™œDÙÈúÊ®…²ˆ²ï·i0Ú=Žhd}e?CŽJŸ@â:Š.™-ß ŸA§"ájHøÖ³ø“wÊw€¤/!éQÄOÛFH(¢ùGø¹#~…·’!ï+Q7Ô…)
ý+ß1²6CÙM¾jÅúj_ûWË;ÆkJ˶¡Ç^Q¥|Ç0÷8¢sòÔYîqŒ¸ùEš¸H€ F
Yd -ÎÑ8ÉÁ/‘r-GŸ®Z̉c”1Žîð8ÿdWÓÇ—Æ6$2EÔCnxãH-µ¯+!Û(Ñ„Ca+:
BÎøouå¤ïyî¤ËF€\ÊI—:uã¹yµ·á¹déÍsäA"9L\å´3
}픇ÚÅ“™<¥mœ–)ášTf-”sóÔÏ 4‘θSŒ<g6¡:>Ù²$4´H‹¾ö#œHQ³AhS³Ïøa¦+3%^&‚Idå8
~AÖ)!ð³=.ÂïE5К:¶Q°Â¦Ø0#§ð¿ôâŽ0ê©Ód[ä»|£Ävy<FÉFqðŒ¾Hw^$Erš0vÀ¡ì‚ÿ)v>Æd‰ég„òÈI¾Z§uQ4†Õ•KI±×›B+˜$"9öàÕI¼\Œ?Λ¤Å€¢|PÁŒèŽZ¢¸ìï C¦^8¥oÓÍŸÔ„¹,/cã%ª®ÒâOíÍoP@LÅÓû3–ÿ°ñÒf7w—öêI`ºÔ§ü˜Ì÷̹/ó•û)üÒ©Ç;h9
[þò\û–ûøKÈÅ zy<À>±<æ`•UÝŠ+ø#æ UOý‹`Îò¥|^ÆQ¸òÎ]¸ÏË-,DÃùÚ“ü–M˜’d=•hš—&˜È°éÒS~6¼=Ã5¶>—s
±b&)ËË€*—ñ›-®±ÆD|A]¦RPbùj„kŠv’–:¾bvÝÒ¬„
õüÐÙ.<¸Ýµ€êÓWCýw™W^c¦w?X<SBCá>S¼!àâq½¾
k¿o÷D1äó¤þíW@ÆIƒêu<cV€¦C÷Œ3È$ñó'Bá#ö¦iŸé‰fO®™i„¤"âþc5%<c»Ü'êú|á£
Á§&±ub%WÁYbxbç_¸ËÛ8èҙ𠽉â8@4?´OìN.…8ŸÃ9BT+Ii0£´Zß^ïR…3<Šë]ÔüVí¥a 9H©aÊÔ°ø
k’>ªãâü¼gPçö;±/'ÂÕ–Ùr0Ñ$95–Nœz5RŸÔ„øÔñ6Ò+ãFÊ©#•q³äÔYÖNöøêÑ|ºÞÀÇ(®7À—™YB)N¢ú©ÃäƒÊ”áíìV·†0,¹*@w ð¾ð÷,ýIœ7ñTMk5ªs'«`Þ„)@7„®0„øƒ’cE€NCRâç½xÁ$(ê
ADQã$N*>ö°m„êž¿üV0Å[T+¨žds~‰ƒ°._vñçÃ×!¼[¸—ÂFÑË;J‚b¶õ®A3Fg¨þŠ:8ÓÈ:¹& ˆý”9t/QN@œ×
eE¡ÊÚøµ¶ýéRMºÓµ$ø§«_kåµZÄDâ„™ž‘œŽZ¿)âÙò:ÏÓ°˜ê}8"^ÝÙhœ},Â}’€ÚÙ˜qü8ìªÿñöÈ$s{¿7®éÏ-º•¹ä·Ý]Åv§Òv÷Û]ÒUlwußL¼HYÞ…\º…¢5¼Æ¿á¯Dõ԰G(Ò^\‡¦ÏŸhï-üC§Ã!9ﺠu"’clm{92<¯ÀF¡;$ÚsR•þ.!ÙÁD…R§ÙzbU]|Ƴ×P>O¦s,y#Ÿzl¡Áá‹ÁêÀ]¼ …u}`:Í>{j¡ƒçÝAMMì&ÕþYá³ëx¶56o¤ÁÚO*ŠÅn:Ñ>+eGÑ@Éù!ê”)‰5ä¶è 6½’c”Qç#•…xÁæp6Ø®†¢šFS®’œñ¡¨ÓÄqëï_’}!Pç’…š+í}$ñ„Étˆ[uÁ´µúY \’oÕã˜×¡+*(èLœ¿Áá¶Vé©Vü?ÚŒ>ˆ’“M>Ê°™ûÇ¥A#Q’€æ`šÑ?m¦ì‚ô ÛUo1R|òä÷.”WàÌSÚ2þwðóý ’'2o¬ñ—5ºq^È“Ù4ÁO¢W¿zƒÂÇû
õR'è®ÅAŠY4
k32 Þ{ÀŸÿCïÝÛÈƸKÈ\›…cz×€K*¿ËQ{¿¯>’kÏÁáó\wT·×F Ÿ}o- ,ݺ‹exL›`¼k?‚)
’Õ®„¯h°¥ž€ørëS›IŠxÀg”·¹×:yR}ãzSç·})¹¢§­Á»ø%
W !–ô2ž‡tªÝ•ãª›¹4»àßëm†´¶zGÓ$%çu^v-¡k¼‚<}£õ_Z/TÐAû?^hõªcÂveæË‘± .žåÄûÊÀûæ—ú‚T”û¢¸ÙíÊ02Eb‘E‘É%—åchY/*qò“é—åÕüåóèWækù®Y,wi¾óa–[¿|Ë})?=²^ÎwNgY¯ä/ɲÞÈwÝ¿òXÎëìö‚³${5ã”{"³ä•7»±^¼Ën0„º¥^§gɱŽÌ8J»NØ^‚p_¿õ¶jA¼%ç=ä'È^‚ZîšÐ’7jˆäØÞI‡"4e¼lö´tÒ­@jkXŽþ8¨7]ð¡ S¶ ?SÚÉTcÚ'þi‘ˆSÞðOÛ‰ g'
ÏäŒÎ<e`v6d«›õ²´Æ¦±Ñ¹šälôr»ü0Rc¡¿Ðñ±ÐÚ´sèhØgÚL’ß’Ô¨±BÆdEÔ©­í—¢§XªMÇ, 3þBKZÓ,Š"R÷7Ÿ^ƒõšÂ3ìÉ€ËÛãÚ?i
@<4#ÀpÐ#Xt;ãpCŽ7ŠP+ï…R´¥D°ôÛB¹ÃQvSd%q$·Eý„kù‹|ʾÍcßë•©¶ì¢Ô$¡b?:1_YÎ#Dú|ÌFêxõ·šÙ¨Õ_ƒz½¥µ#ö&À©gåùV/-/ãŽ~€Oý¡[ÍÚb¿ÙÄTò[¦-­¬Ã(hŒ³/-Ôrvþœ7ÑdrÚ¬×t±^#ýÖßÈqáÄíßà¿°^M¨Xùæaöq2™ùô ZœÞËsôAi4c;ý\/S¾BÅN¿…^Swí‰&6ú!fÝr=ÒÜÑr9÷@zolå|äêFZ)k0_©~Àã38õ¿_ñ|¡ì×pRð¸s‚œÞÒJ>Š3$g}O¿Ê- òÎ`
z‰Zõ€<#¡cZÈ€zömÆ´Œ#H}‹!S'bW|[f»´ñBK¢Ð*w_Ž0ß—t‹”"SÊêõx¢£6혃ä÷ópþÉM­:{ò÷ÄÛejÖ휡Áðdí×4þK^Ž@@âR|•´è! jzŒðÓQ*0.÷ñzpîï,±¿¸_a¡Ôªä,0±;óøòºg-…úÓ-zã{!Àv;w‚‡Ùâ½%™;Až’‡)dá4ñ”Ç‚tO|OŠø?öž~“±©9þ·‘„4vQÍ­í´ß ,Ltu¨ÐÝ÷þÀäO"`À¯˜øZm—Ë–7v€wò`ÿë.iº¿„ý&½ÚßÝé¾ÝÿÒƱÇsE­¯»óð"“üb9wmHª|S$mÏ„ŸØ€|÷¬¹ªÏYÓä ~…1Wxm´Ã7ÃléÿŸ¯áu!hfq®¢sr¤-MÿÖióVìðI°ëíÛÌìE0è{–'D(ÉðÕáÿ?´:\kuØÂùðxÙb¡\ úŠÆèQ2hìá+'Ð@ùƒn×H•Önc2Tiœ4¬ë„áöù¶öo¦±ãÖØ…­O.Ó{Ž«9°ƒMA ’Ó¸[;y&ùä‡_üñûô^§[NÎW5sd(PáçZÅUÄS]±Á†¾ÖÐ*¡óo2à‘“'[³ÙÅ°{1ëñ1Ôz¹äØØ
= üðì™ÖøtºRx :˜‰
ˆëØÎó>ºA—_Í|©ngpÁßÁÖÌ`h
q*"9ù2w2sØn•ßš!0•úD³8‡|Â϶vìÐ
tÄsÈ ‘ŠëPÄÎ^âa¸±‰Fíý™ NûÿaÄl‰žö¯<Ó!135YuJ³§ˆ˜Õpb¦ÁÀ°Ëñv‡ç´ªÐOÅ,mk´',¼KröÁ ƒ[ÇÀ×­’³û
„¯Éi8+Þk|«¡ÝüÏ\dþi4'V¯;­©[¬á¤ntÚeËÇ-¼I†3o’N
å8:¡7É–z1ÇÓõ­~Þ$Oxµ•‘œÓÏúaQr-I÷úá`ò*‰‡4µŸ‘7yˆÚÏÈÃÙ ¿­…©GÏyõ¤ú¶×XчѰÓÇ_1—Rƒ8ƒ‰#bÁ·”¯èl~£ç|4¹¦ŸÓ
YÎHͺKÛ„¾<ÓžÂ<Š³[vV'¥<~šéSÄBÓ>
“™üw†/úìNmÅþËNë·Ü3èo±!÷ýMr\Ú¿jì»:´ Ϩ•¼‰•Œ0sð|±Íßsñ9zöÜR¸hý?õïæ²óN³†‹ÚLõáZÎÏt9>} ˆ›KA”t¬ûJ¾‹1¼é/æ/¿IH©N³\]L<‘UÈ°¯iÂë«ùl‡A¯7,óCÕ02±°6Âf:,„/ÆóôBßûÞúMˆõŒù»Õbà@Ágwžt·;?B",°ïÝ•dsæ¨q¿ÍEG<þÛMhu®}KIÄÄ•È?Üúú©VîG7?Hðn ÌûW8tÓLÔÒáûûX5Ân’# oùwÃ`Ѷ<+±ž†å]zLùt¬üê¿û9¿ ÈøOò³9vÖçVR[ßÊ`v&U€žÏJºÃ.(ö÷¿  °Á–%"J^„„¥"J¸ÉÏö’pï(ðwïH6ß(´\ZÖ¦:•¼ …V@¡7D¡×¹SI²ŸSI2:•¼e߆²o‰²+Û4Ío41dt*YÍVÐ?d:•¼ kD:•|ÀÝT˜SÉt*ù’ÖŠ2ƒ…k
ÀÿÇœ'±}¤qYŒ#)¼S Ðg¢Ð§¬;™\CxÙ¼c:¿‘ ÃäI³ÜÉÌ
$™ùtÞ¡ml‡ìsa×™$çoH4þÞ
oüÝÚÖ[Á3æ¼ÀM«'ˆÄ[«ÎZ†¹åd+ÆSgÒ—ª˜ŠP;Ò{QŠüS[¸hÚ^ ÖŸ×µüS]«àý}Ž{p†Ò! )÷îaØ©o z{*$‚Ù·sYL}å4 …¤¨h4#NO?È•¥Ç#d¿…°Nèlã..­3r$òˆšf^Ó5SËÔuPYŽßò73hAˆUâa³´™ÕžÀóh¦%œ¨ÕÓõ®¿!ÊN(Ð^Æñ¡çÕsñ¨“d·ûEF}Ÿoª‚íëì|ØD§ÅÎ<Áx©Ùz^*£¶C^ªø/@3“=‚X½à!b5]àç#ÿo:ÎéÞêb½Œ ŠšUMH†¾G:€nÔú\]õd=Çœ›ùUF®:´9èAå
©=éD Ge¸´‹Iñ4âä)T©]AÆsÈÛ=/-¡õ£Kà±OŒ8øºöœÇgµ1®Ñ«‡w’®ðZ]a¬ªZð¾Ê“œÉ^Ÿþ_m>..LÞMN;´û@ÅÓ3Sw é8$y§ñZþgR}¢áÿà ó@mûYuFnŸ”d[y¨Åßåôfòs‰?Ž»ƒ§‘½j¿u@ÁúXkàšõWžs£ªÔ”ýžÝ —ÆU–ªkþyÏÚYÚØ#[î¹ ³×­!ì"RϸCÒV;ºÖºl[
¸/á]‹¶ü÷N´ú\[­>×Ö·ŽÈ7›l_ükUÇâ@uèNK,ºNÍ1ä"Ý^}¼ýbnýÇ/<j?B&¯à´›vLaˆÐÝLŒ#眱’åR´Pp•#¦¸¤%¡˜¸D&£ÂRÍ”PÏP_‘åÅ|ãÕÒ_Ê_ά™¯hV‹—ó]38ÿ–¿œY-2_Õ¬¯ÑC\„--Ë0ÄÑìp³ƒ ›•™Çý‚¯t¸¦æÀFz^<'Þ¤™8~5AÙ–'¿EhØ];wrîTIrõftŒcK!òöÒÖ{0ú¨Æ(Z·(ÔšBcf-drͶÐs|)ˆÀ´väc–ŽDÐÊml‚l\¯Î¾<¹B(€«#d¾\´âò7:"²‹é#:“]¦•frQ uןjR;}Ô–ŽiÊ}´&<C§'·Õ0nqÑy?
ñ‘Ì(Ä‹âÖÂÅ)Ä
¬G®Þ²<äh‡âU@»žë
ñð¢)Bœ)QÛ’¸c5íɽ°•¢Òï‹z
]šþÔ[nµŠ+ïß©švOr&hJ;ÉÙ»cwØdæËô,eǸ@w¨Öë“Gƒ‰<ò‡˜È;´ê½\=½ëÛKÌ!ÈÀŸÔ¹è|i¥uk³¸ùˆÎÚà)ÀwøÊ\vÄçÁêL;‰Á(N¶¶Ñù([iÖÏta62qA™j'u¨Pý¨=Öô'pn³ÓÔµìMHÚVÃ/9÷àè6j‡†&e¸2i˜´¸ëI~ûùÓu@‘H&Ù›ë4ÿ‘CuíôýÕ}¿#ÌË.·cg_Aÿê«L'•‡ÑþÚÊ¢ð[Üv¬Ñó¤ •ë·ÍëÂ(àÄïˆrÎÔ sù‘M@5ÂêÍ-l‡9Lz2þÒÖýÝjmM>ý“>Er~Š¶íûŽëxÔ1à.ñ€‡yØ 'º³þÑõ<éCçÍo?É
®tRû×Ó”0&µw¯A€½aî|šÖ^ºVB¡•\hE=êñ^fÌôï’¬6X¸ØÃÌË(¹KEY+ÐÀÌbÉYÞ…¿·“•ùÏ¢&#rßNüœ¾|(ãeíµä6ËѦ m¬‡Œ÷CýRß!ºÈ²¨HÙŒ-bâ&97e$%Å@JdAm¾…7J!³H|E3Wÿ‡E7l {&¡„61}Rh=Ó.˻̶ŸÂjÈß ä"-Út~ï aq•Ùç#ν(Ÿ'm¬6–>zºCO¹LÁHõ >ÚuÕŸkràvü䟶ÓJ‘ç'ñ«Ñh½×Þ`£+20…|œ´·è#ÁXZêÇÇ}ŽæëÊM¯ñ·š ªÉÂÒ{ý3j°óÌ(†Œÿÿè>¸½n¤‚Ï£óKöŠ-ŸÌ”w„VY§ËYÕJfõf|»@N¯QÒkžîu^®8÷ç#;)­Ü•ÐR1ê<ç¥ÓbÃè9Ÿ~ߢvJ> Ì›ý€A>Uz¾Ÿ¼+ngé‰~Æ_ºž’ÖíÂ'ìä

-^aÚÉ2³HíNW¸îNý¸UíÀ'Ð}šs”mÕòï<&|áÚ{ˆ[ÐB>$|ƒÜª•¨²û±ÙšÕX °>Œ¥]÷Åÿ"‡ão¹/fç\&-­áÇ35"DøZç #Þ×3‡/ÂD_öˆÁ3¤ß?‡a|Û`|°0Âí…«îá…eyU„¸rS÷Nòïq%rfuTèškÌ;ž/Yo“Ïá=¶
›ªØªÑ<ø—è({«Ñ Q>>E'ôæ¶T3O(Zõ¬æ·“—hìdûÌþxµ‘ôÚµï³ôøÜθ¨¿—â(…xÙ½aìeï WBw}àŒþ‡}.-®G²6¥J±Ÿã˜l‡ãJj;gàøË­wÊßKE‘!® Æ¼¦NùÝmjy`¸kB@y²±“ÝrØXûsÌ]> mŸš âz<——s“÷2ëTØ]‘‰ºkÅrXÞÃå–-Õr¹¬{‡YùÌ*tÇë5/#W‰xÿ«qÄês<þˆý/cí|ŸDÀ
TÈYªŸ²xà"Vóþ¹Ä’êZˆðòø´öºhÍø×EÃÎíþñ3(þP²Âè]Ç@ kÆ¡4ðØØl¦@@Š…Úº"_çhlþT;±LƒI
.4®)H_ÖÎ{ÈeµËi|Ø?lŒq¨ÃTè]/è ^û1‚ËJ ˜ §ÐÞõÅßÕ=¹Pqi¤e?Ò;e6RtσÐ8iæðE^k°×EO3‡¹,89žA¬Y‚;×ÏKŒáš{|8ǼHLe•äH¥8vŠe¿¼÷\…ýÔ WŽ8t?Ý
TÁ¹ÈLc`CÙÏþ¬¤¥‘O7m‘î y9¢—þKÉݯØ*ì^ïÓ¡öV `i•pŠf°ÓÚE‰*à^Q„ K"¹Õ@rx÷à3£¦9qøtŒ•9;Zžß'ÛŒñm’G2NdŠGÅÄ3d»-¯Ò¿Ë´P{Š™~ƬJrJ|r»Ò:þg`<“0¸Ÿ®ºˆ…eÙ‰aµÑ‹!&¥3ç{Þ
EÎ/A¶¬G1=ßs›HÏGf¢ÜSÅ>\)Fo|©´8ƒ¢e®ÿ–ðEÖë.ëõ^Ù¶N>-ÿ¨ÅG7»þSž×l”a¸ïøÌõsÉ¿§©¥ãøzà Ï©rz•¬×%§•ä10Z%}=> Rdļlß$ç´1ðͼl\cË*wÐ:¾ÕnË:Úñd3_KÉq_«°ì‡—KC÷JÎÏдÄ^õ°'@NHÉ]éN&˜íµ3{áí¥‘öÜjc¶Ü¹×Nû
ðéà› ]K×Þ12kÜNHX߉?‚m78Kæ
Åõ: ‚æµïÅ5ÄyÕFŸÿä¨NÒ2`Ϋ¡b¾¼÷ŠRyvD\ƒ<?Ö⼶ì \*·Ê{ â0¨Õ`/FØt܈&ˆðüj»ñY#'º(<„ñoŠ F¿kt(ðEPø¤ªÕË‚#JƒïByÙJæºlØEõñVŸk:¤uv?rÞÕØ í>>ŸbtsÔ…ZV¢pÍÈ?ò=4öA;yëx´BËJ üB¶et‚Ä+ú§¤¯’'˜Õ›X¼uØáí­T÷YKï4ê‚ŠÉÉÃ(8œ<i8ÅNÀ^.¸\ÞVÚÔÏH`»R44%s¥³Ò6¤Ð@¾2Ö«”IaB
Rì ÉaöI‘;U ³S®<\E¸òj±´ì„M9ÈX²Å:ìùZZ5Ë@Ž–õâ[ÎÌ÷¼-)™ùÈ€`ˆfX¶üá´l+ÝAÈ/Ðr•i¿ÖÞ£ù¦[Ö³µÚÀþ¬bÖ°³‹×<ýGW+–õJæ¿uˆJ ”d)°á¥•pì4®”8˜¸ŠÐRkĬ %tã|ã$k1Þ=î¥äø…ýÓ9øgÈ9w2‹ Á2îd"™G€H¦:1”eí«$'NN±J8ÎU d>ÔÔƒòþ<dMóL@/& ³ä° %k
odvvÕ)„¡­™•°ú”t8×Gßb[ ÃÅtU–µ…÷…e9!¶mQfPµ®­+ö‹³ÄßiP’G^eð-5êL
%0öµ™ÍÇd¦ðß¡¿å3&„Ð?eBØפÝ\§½¯X0®Dmmßí‹Š/ˆâ;ÛÕˆ
ð°9½Ö`N1‚ößbž±1È/<¹äŒÇ÷Áàž’]ɃIWó&¤$Ó£…±ÓÄ~öÀð¨Wˆ 6 å”3× ~ËÜ 9ß›$=°ýèH…d—tP'ΩÓyùBÏߣßUïßäW)ékäÌõrúuòœ‡?BšãÛˆCyÁ~ñbßâœr˜¢)u¶nëŽJþ[—Uá·u"9vTu5r>ЕYF,àÏ[ˆ]šÿ¦WÛq„TpàÒcëÓ:pl;ŽŸöø£Hþm/Œã¯s^¢XWIXA=‰AZOÇ•ä5
U2k€{’-+éÝŸÒ&ûãèÌ•’s!>:›ñk-ëù}­Íí= W(Ÿ;Y
†¶Ùn;P£"–|ÏŸ³‘*aM„n" ¬úÙX¼?2´·£«O9W
Sº‰âŠð¨‹;aµ˜¿ËŒsâ]›þ>&ÙD‚›YœúXÎåpö!ìòsš‚%½’,–É1ÍÌÞyU&¤0üÍT½aII­'[^Ukpx0 )$m›qÏ•D<—$Æß‚oKzåä0yœÅHk„\!ï²—„Ù+
,²9¡A&ÛÉÉÑ…Õ‹µŽ+™èYuv|r°U‚ùÇ sL¶K5°á1À:½ÏžeF7¦NÁúéw¾pÓ2êW€“ž™«,Fœ‰'ûª ƒ¡làÊÐ6ÚØÕo›h}'%À9R+ð9áà ‹üõ
Šo›'m´,#Æز/í%Tƒó]¹aO+ :ó“ðå^9–UNá•_¥Ê™NCÂÊåÜÙ±áGªœmÏ]fg§àûz’ó^Ò±ç¾
4HA‡‹—EETkù Å{ì ²›nªãͨ¯Œ×áRŒ6"¹>›îå`Y”‘’êÅC»5ôD0T b¾]x&]MOÀ¿MrV =
'®}§ís{¢Ý¥r––¾Gá@†qneº G¯D!7Ü×>{©Ñ¾_š0ÖlëRZÝetV—ñ Üæ\þœytÐ,øõ4 ¶Îá¿
3ïù.‚ŽIŽè¿ít¦zìJa%`’ed†)L±Cܧ3UC8°¢þ€`FÔxá+®RÝÃîG˜iÕrH"ÂS÷÷Áâ¢ò‚‹ÜöuÈj­×/`Z¬™Ôï3ø,ÑzÉñ¾‰í@ tKox¨fÜÞô%¨­Û
Ç=¸U; ë~dt‰ä8€‹<!‰Þ{1Å’iåÁgÀ:¡¶œ¾LíÜâÃWJò0eRûëµ'¾g¦ˆ—‘¢ÒÉe¼¼0`þ•Ì5ì´*á©[IÄ ÝrúÊ,+åóq{CwX­íâJ±çŸh9…r£¿b”Ÿž0ˆÐõæzÖ@
Ïì$Uÿ8DkŽr@î/N^Áx|Ðk­ÑÂb´›xèt×n»3„3·^­- =¦­wã9¼‹­Æ @ŠðH·Ý?Ž¡|/-è¥q¿U]ÆÛÁKÙ
É& Ø6P˜I¼7¶=+œýðÅâDr6edÂFÑœ+Vo"üÊ(áI‡™p%*ê8_ý» jžÝvõˆ–ÃhŠv ½ÑÐÞ‚‚€’µÅÎéÐ΄ÇñØbëí,í¸>ÛÙP—ô8£hËî»Ø–ÁNñájOt:øÂøøøo¸ØøES
nä'Ð1PF®Øü´äDÆNœèq¢­»u'ú  ®&†»¬lI7qfÑâ/ZoÁߊ-i2™Ë¡öÏ°•ê]x:²Ö—[Öñ°fb‹>•—»Y8¦äÌ\c} eƒ{`<G‘-Û±õe„&­Ã<–ûÕïåÌü|:â"ûÖŠE)z­©+—
nú©•ÑÑ›õÞôvž¿iPÿj¡;QÙÖGõªf ”jåYš
ÎDÙá7Ý,ü:¨ïj,é“š¤e–õj]+¨fœòS^×ãa]Œ¡Æݪ%§Y![„véy¢~(®YòUù\‡ÙžÝ¹Ù¯‹/"ðZ$;5âÔÿaªrÔÅyQ#mFµ\n\.—"TÔèT´ê¢2ÊzÂÞc=joºÖë7{S¼7}ÀÞ4ÿþho„ËíM øw«½i4þ-²7ÝŒ?µ7%âß÷íMwãß·íM·àßWíM9øw©½)ÿ.²7
Å¿³íMCðï­öÜ:3Æ—ú/Ú¡rë:s}î‹w¡ãÙwìÞ^ÈÇÌ
tMª¶[êŒù=ìåF5ÑËùêò`ƒ½ÌÌD£Ì:œLÖŽyÁ•nK"&Æv†äòà¡P’‰S8ߊ)CX
‰GÇ[Û¿¿[l0\a*™æ…M›C†ÃKØÂ[BÐøÞ«´:*´BÉŒ@¯‚
|c÷Hgü]z$ÿöÙ{"´"«>ö!«Ôq•¡Þ`H4¬BB­,‹§‹û%»q¿"‘ÄÕË™9½Æz¹xN*ꙟù·TTioznÎe›¾…´¹‰kG*®‹'½5óo»Û(çBըܰm©ÉP²< ë†*YÕJºGî³ä;k™’[´®°Bí[Ta*wèå­9W.lú¹å­†9=6£ß&ƒ´øEø¥éßî0º¦;%5çÿVZœ
?6ãy®í‡v~Ž°ÏrËõ'áзãÿÉ9$ŸÚü¤íkæz¾jikÖßWàP«åÌz>¯ËJÿ†™Ù·!Íþç-¡?ÇŸ³Á"U«#|aS3
/ðÙÃô}Á@q–ã_[ƒ5x˜à÷÷a?œ%ÖËñº}ç‚œ°ðÓÖ@1µ{ñq%YTo{[øˆÛÉ"<£Ù øj9ëLÜ!9·E®÷ĵºÝÖ+\&§™‹cÇ|_­}åmr½ë£'´¯ )ëŒfG’-5xÄ_êæ‹J`$,RSëfàú–Ã;ÚJf˜bPº)I&e¢I†£ž¶S}·\cŒõñ¨õåáQÚ
¥!ʤ¸Cöº˜Ž³Áz…‹Ó½ ÝÑ_|;ŒÁô60œ¡Ê|âv´(EàÊYü"ðF åkv¬’ãl‡YåÔ40]Ql$Y‹†NŸ&ñÙº
?#ÄçßÛHåï9Žëí×Åh™e‹YÄ_°×¥ÁšfîÓwÛ¢„Vß²ß^–&ä}%ÂY9ï¨bÛï3Y*¸ÐÙ -·l¯‘]Ÿyd+³]쎷ìϽ./w»Áz’¹[®”¹?þÀ‚ ™›Ž0igG e?ŽO*mÅ8 ¶à¼Ü#ëJn…ÒõlsÐŽkÛ‘Ûs+ìMæ¼%øúè¡8ÁéœYVk‚}nÞ{^Þµ·ñ\eé_ÁayÎÓ®ùFÛ %³Ìöœq§kv€|pßßòùÐÒüô#®°»!Éò'ÉuûöÕÚÕ`€û÷yùÑHÎÏ7ÙT5Á+4:>ÚÃ'ƒÎí:m=`(þÀÇôóˆÆÙNк
൧|ª-áÕ¾ç`U‹·ÎLïuÓªÏÔ½¨`¨©ý!ÎG‰ö‚y¦Y±EŠ&ºY‰Fqå6üòY´àx&¤„ÙA¤j@*ÔAÓ¡î­Ý&üݧA-l§þmPºKKQfqVŠû‡MtzåÈÅdÊS"íÒ‹Ÿa[³Œ<ª£+ŒÅ$È<˜V¶T~'}+n,óèÍ:Áp7ñ‹aȶgVçþ\)εÊyÝÈkœ’Y­˜^Á\a¡E×äWpŸJ P{©É¾
@Ýö·ËÄzµÔ(øy³Ämê‰)¶X%Ý,×Ëñ"ž<íÊ訥¦0¼G‚Å1Øó-éIkwq{€x/ô;¦×v[jpWXd-ö¸PðEr/‘¯õ›WåY±‡&DØ´M¶gä©/"¾jð‹oŽ»k3»-UüP9â:uAýÂ@Ü^À5ÜÅeÛ@ ýÑïsÂ" =¡ñ–°çN9*m'a—ÅZÛJ˜¤W
“'±Ñ`zÍe…ÁNÀÎ/³ü-]uÎÅU<Ûj
>4o<àyñ[m­¬µ`ëmJO†Ïˆóþæ[45Õ¸"ß"i ·F1½a<Ø9>+ì¹¢¼Üß
¶õøü+ÝVÀ­;CúizÐþ»&¶X[t‹u'*0‚k_¡}ÂV$rÄ‹«$ûõ§lþ§Î"¨£OZÛ·è±Vmbë[†omfDÈ…[R4]ç·â–Å\èr£\UÛ½ÜpT4Åkß–”ŸaDÝC¹¿•Öð¼¦~sªó#PÊ™ÈwçVmõndÍ•áB÷ è̱•¡æ´o¨GœŒcþV7æ 0æÚÚ¦ŽÀ™à‹ˆ>þ´LÁcÜL".Ô{R¼²oÈ.$9žc(@ Ç{[9%µâ`>€RT¥O,»K`ö¤|ƒÙ
þÕž`ÕÊ.OVºËõÎJ¹‡µ—kŠIþ÷ó)“\§T¾ÏiƒíoŒHÍÖâÁ-8Í>r#í=Îè nF ’b6?3úŒÛ £öU=Ú^¬xV£lk!ý ž§íøëŽ&årÏùÍHí”,@Ú„“Ûœ7$Ðimž“uå*·2”Ã!w–”[~…_¿¬â]|S¿R^F ÜóÐ>ðplCŒhoÈv_ ¬7.4ÊdXh³Pï/{!˜@¬Íø»Tbÿ›\šCº3µxˆÁߥÙÅèãèÕ¹_4GB4´²c,f­ñ™º Dõ¶A±´îET¡~2ëþE¨¨òËw¦:Ý:AQ¤gåT~êíÿ¸^ mÖ¸ %³‚¸<e  rÚ·•á¯ÃÆ7¸L¿
úè-
¥K·¤óÊòYÞøCô÷!ûˆ‡³Ë’.ùGè/èpJl:r>KºîG“m¤ÛœóA‚‘.Cú!K:’ƒf~• Î?âêýžbΗIH7 é>ÿ™N•~Ø’nÌ°~¶1¿JTŵþ~`I7í*Ð:¿MTÔA½ÓýL¦£!MŸ
ÚêåDÅJ,êé~eI7é#Ýï,é2‘.é’ûH÷Œ„ ëÁ!Št»e˜žŽÊß`)¯éºû(Ü&K:’Gº–„ÞéþjI×rs?[Ë–DeUº™N•þk²~n߀Ëß ¿“{¥Û­˜k€þ(Ý>Ö‡^§þ7|O¢ò¶Ò;Ý·ßþ}û÷íß·ßþ}û÷íß·ßþ}û÷íß·ßþ}û÷íß·ßþ}û÷ÿÝßÿ2.æý ø

 

I could not post al of it as it was too long for a post

 

I cannot even get to run it on the computer because its only a txt

 

is there a way to download so I can run on the pc and get the zip file you require, when I click on dumpit.txt it does nothing on the computer.



#10 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 18 August 2013 - 05:38 AM

Attached is the txt file that i got when i clicked on the dumpit link

Attached Files



#11 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 18 August 2013 - 06:00 AM

I Have been able to get the ZIP

 

attached is the ZIP

Attached Files

  • Attached File  mbr.zip   2.2KB   1 downloads


#12 The Dark Knight

The Dark Knight

    The Magician


  • Security Colleague
  • 661 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Krypton
  • Local time:10:33 PM

Posted 18 August 2013 - 04:27 PM

Hello skagt,

Thank you. Your Master Boot Record doesn't seem to be infected.

Are you able to boot into Safe Mode?

If you make yourself more than just a man, if you devote yourself to an ideal...you become something else entirely. A legend, Mr. Wayne, a legend!


If I have helped you please consider donating to the Neuroscience Research Institute.


Posted Image
Posted Image


#13 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 18 August 2013 - 06:12 PM

Hi,

 

no it will not load safe mode, it gets to 

 

windows\system32\drivers\classpmp.sys and stops for a second and then bluescreens and then re-boots again



#14 The Dark Knight

The Dark Knight

    The Magician


  • Security Colleague
  • 661 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Krypton
  • Local time:10:33 PM

Posted 21 August 2013 - 04:35 PM

Good morning skagt,

Using xPUD, you can get online (it has Firefox, and a pretty easy way to set up a connection).
Most internet connections should work without problems.

  • Run xPUD as you have been doing.
  • When the xPUD desktop loads click Menu.
  • Launch the Firefox web browser.
  • Please copy/paste the following into the address bar and press Enter.

http://www.eset.eu/online-scanner

Please provide the log in your reply.


If you make yourself more than just a man, if you devote yourself to an ideal...you become something else entirely. A legend, Mr. Wayne, a legend!


If I have helped you please consider donating to the Neuroscience Research Institute.


Posted Image
Posted Image


#15 skagt

skagt
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:33 PM

Posted 23 August 2013 - 09:32 PM

Hi Dark Knight,

 

eset needs to run in windows and when i click on the link to start the online scan it downloads a file and will then not run, it just keeps downloading the file.

 

their website says that it will only run in a windows enviroment for the online scan.






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users