TechSpot

Multipe iexplorer.exe *32 files/High cpu usage

Inactive-A
By Joshua Smith
May 8, 2014
  1. Hello,

    I currently have multiple iexplorer.exe processes in my task manager on my Windows 7 laptop, although internet explorer is not open. I use Firefox as my browser. I have run several scans to include adwcleaner, junkremovaltool, and scans by microsoft security essentials. The only thing that was found was found and removed by adwcleaner, however the problem still persists.

    I am currently running malwarebytes anti-malware, which has detected 5 things so far:

    Trojan.inject.ED
    Spyware.Zbot.ED
    Spyware.Zbot.ED
    PUP.Optional.PirritSuggestor.A
    PUP.Optional.OptimumInstaller.A

    I also cannot use the internet. I am connected by when I try to open a firefox browser it says:

    Firefox is configured to use a proxy server that is refusing connections.

    I am posting this from my desktop which is clean.
     
  2. Broni

    Broni Malware Annihilator Posts: 47,156   +264

    Welcome aboard [​IMG]

    Please, observe following rules:
    • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
    • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
    • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
    • Never run more than one scan at a time.
    • Keep updating me regarding your computer behavior, good, or bad.
    • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
    • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
    • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

    ====================================

    NOTE 1. Use another working computer to download necessary tools. Use USB flash drive to transfer them from good computer to the bad one.
    NOTE 2. Install Panda USB Vaccine, or BitDefender’s USB Immunizer on GOOD computer to protect it from any infected USB device.

    Download TDSSKiller and save it to your desktop.
    • Doubleclick on TDSSKiller.exe to run the application, then on Start Scan.
    • If an infected file is detected, the default action will be Cure, click on Continue.
    • If a suspicious file is detected, the default action will be Skip, click on Continue.
    • It may ask you to reboot the computer to complete the process. Click on Reboot Now.
    • If no reboot is require, click on Report. A log file should appear. Please copy and paste the contents of that file here.
    • If a reboot is required, the report can also be found in your root directory (usually C:\ folder) in the form of TDSSKiller_xxxx_log.txt. Please copy and paste the contents of that file here.
     
  3. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Upon the Malwarebytes Anti-malware scan finishing it detected 4 more problems which it quarantined. I am now able to access the internet with the affected computer however the iexplore.exe *32 are still there.

    Attached is the report from TDSS, it found no errors.

    I am able to use firefox browser on the affected computer, however it freezes up every 2-3 minutes as the iexplore.exe *32 process start up. (I have task manager open and am constantly ending the processes)

    Everynow and then when I get a CPU spike a large amount of CPU is being used by the firefox plugin_container.exe and there are numerous flashplayerplugin_13_0_0_206.exe*32 processes open when it spikes...It unfreezes after a popup in the firefox window comes up and asks me if I want to stop an unresponsive script.
     

    Attached Files:

  4. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Also, every now and then Malwarebytes anti-malware pops up in the bottom right corner of my screen and tells me it blocked a outgoing file from iexplore. The name of the file isnt always the same but it usually is click.biz
     
  5. Broni

    Broni Malware Annihilator Posts: 47,156   +264

    [​IMG] Please observe forum rules.
    All logs have to be pasted not attached.

    [​IMG] I'd like to see MBAM log.

    [​IMG] Download RogueKiller from one of the following links and save it to your Desktop:

    Link 1
    Link 2

    • Close all the running programs
    • Windows Vista/7/8 users: right click on RogueKiller.exe, click Run as Administrator
    • Otherwise just double-click on RogueKiller.exe
    • Pre-scan will start. Let it finish.
    • Click on SCAN button.
    • Wait until the Status box shows Scan Finished
    • Click on Delete.
    • Wait until the Status box shows Deleting Finished.
    • Click on Report and copy/paste the content of the Notepad into your next reply.
    • RKreport.txt could also be found on your desktop.
    • If more than one log is produced post all logs.
    • If RogueKiller has been blocked, do not hesitate to try a few times more. If really won't run, rename it to winlogon.exe (or winlogon.com) and try again

    [​IMG] Create new restore point before proceeding with the next step....
    How to: http://www.smartestcomputing.us.com/topic/63983-how-to-create-new-restore-point-all-windows/

    Download Malwarebytes Anti-Rootkit (MBAR) from HERE
    • Unzip downloaded file.
    • Open the folder where the contents were unzipped and run mbar.exe
    • Follow the instructions in the wizard to update and allow the program to scan your computer for threats.
    • Click on the Cleanup button to remove any threats and reboot if prompted to do so.
    • Wait while the system shuts down and the cleanup process is performed.
    • Perform another scan with Malwarebytes Anti-Rootkit to verify that no threats remain. If they do, then click Cleanup once more and repeat the process.
    • When done, please post the two logs produced they will be in the MBAR folder..... mbar-log-xxxxx.txt and system-log.txt
     
  6. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Malwarebytes log

    Malwarebytes Anti-Malware
    www.malwarebytes.org

    Scan Date: 5/8/2014
    Scan Time: 3:26:11 PM
    Logfile:
    Administrator: Yes

    Version: 2.00.1.1004
    Malware Database: v2014.05.08.09
    Rootkit Database: v2014.03.27.01
    License: Trial
    Malware Protection: Enabled
    Malicious Website Protection: Enabled
    Chameleon: Disabled

    OS: Windows 7 Service Pack 1
    CPU: x64
    File System: NTFS
    User: JoshLaptop

    Scan Type: Threat Scan
    Result: Completed
    Objects Scanned: 266214
    Time Elapsed: 36 min, 58 sec

    Memory: Enabled
    Startup: Enabled
    Filesystem: Enabled
    Archives: Enabled
    Rootkits: Disabled
    Shuriken: Enabled
    PUP: Enabled
    PUM: Enabled

    Processes: 0
    (No malicious items detected)

    Modules: 0
    (No malicious items detected)

    Registry Keys: 1
    PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINRST, Quarantined, [42b7410def8c4de98000c5bc30d2f40c],

    Registry Values: 2
    PUP.Optional.WinRST.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WINRST|ImagePath, C:\Program Files (x86)\WinRST\WinRST.exe, Quarantined, [42b7410def8c4de98000c5bc30d2f40c]
    PUM.Bad.Proxy, HKU\S-1-5-21-3423861454-1642602433-99786177-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, http=127.0.0.1:9881, Quarantined, [0eeb321c6318b482a6fa5b2603ffbd43]

    Registry Data: 0
    (No malicious items detected)

    Folders: 1
    PUP.Optional.HDStreamer, C:\Users\JoshLaptop\AppData\Local\Google\Chrome\User Data\Default\Extensions\licjnkifamhpbaefhdpacpmihicfbomb, Quarantined, [5c9d95b90f6c53e30e0ad89658aa966a],

    Files: 5
    Trojan.Inject.ED, C:\Users\JoshLaptop\AppData\Local\Temp\515C.tmp, Quarantined, [e81197b76516ea4c9fa47ae41fe2be42],
    Spyware.Zbot.ED, C:\Users\JoshLaptop\AppData\Local\Temp\9FC7.tmp, Quarantined, [f108bc92a4d7bf77b66cd79b0ef35aa6],
    Spyware.Zbot.ED, C:\Users\JoshLaptop\AppData\Local\Temp\runrar64.exe, Quarantined, [3cbd420c304b3204b9e794e3f9089f61],
    PUP.Optional.PirritSuggestor.A, C:\Users\JoshLaptop\AppData\Local\Temp\n7946\PirritSuggestor_0605-5504c905.exe, Quarantined, [39c0c38b89f273c3de5cc47aa75920e0],
    PUP.Optional.OptimumInstaller.A, C:\Users\JoshLaptop\Downloads\Player-Chrome.exe, Quarantined, [8f6a69e5d4a737ff5b9a2229e61b04fc],

    Physical Sectors: 0
    (No malicious items detected)


    (end)
     
  7. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Protection log from malwarebytes

    Malwarebytes Anti-Malware
    www.malwarebytes.org


    Protection, 5/8/2014 2:48:38 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malware Protection, Starting,
    Protection, 5/8/2014 2:48:38 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malware Protection, Started,
    Protection, 5/8/2014 2:48:38 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Starting,
    Update, 5/8/2014 2:48:48 PM, SYSTEM, JOSHLAPTOP-HP, Manual, Rootkit Database, 2014.2.20.1, 2014.3.27.1,
    Update, 5/8/2014 2:49:00 PM, SYSTEM, JOSHLAPTOP-HP, Manual, Malware Database, 2014.3.4.9, 2014.5.8.9,
    Protection, 5/8/2014 2:49:01 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Refresh, Starting,
    Protection, 5/8/2014 2:49:02 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Started,
    Protection, 5/8/2014 2:49:02 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Stopping,
    Protection, 5/8/2014 2:49:02 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Stopped,
    Protection, 5/8/2014 2:49:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Refresh, Success,
    Protection, 5/8/2014 2:49:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Starting,
    Protection, 5/8/2014 2:49:08 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Started,
    Protection, 5/8/2014 3:27:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malware Protection, Starting,
    Protection, 5/8/2014 3:27:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malware Protection, Started,
    Protection, 5/8/2014 3:27:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Starting,
    Protection, 5/8/2014 3:28:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Started,
    Detection, 5/8/2014 3:32:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 49185, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 3:32:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 49185, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 3:32:44 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 49201, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 3:32:45 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 49201, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 4:00:40 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 51647, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:00:40 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 51648, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:00:41 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 51647, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:06:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 52166, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:06:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 52167, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:11:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 52422, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:11:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 52423, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:16:12 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 53262, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:16:12 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 53263, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:29:56 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 55164, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:29:56 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 55164, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:29:56 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 55165, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:32:45 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 55262, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:32:45 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 55263, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Update, 5/8/2014 4:32:57 PM, SYSTEM, JOSHLAPTOP-HP, Scheduler, Malware Database, 2014.5.8.9, 2014.5.8.11,
    Protection, 5/8/2014 4:32:58 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Refresh, Starting,
    Protection, 5/8/2014 4:32:58 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Stopping,
    Protection, 5/8/2014 4:32:59 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Stopped,
    Protection, 5/8/2014 4:34:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Refresh, Success,
    Protection, 5/8/2014 4:35:00 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Starting,
    Protection, 5/8/2014 4:35:05 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Started,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55316, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55316, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55317, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55318, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55319, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55320, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55321, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55322, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55323, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55324, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55325, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55326, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55327, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55328, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55329, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55330, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55331, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55332, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:08 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55333, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:08 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55334, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:08 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55335, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:08 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55336, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:08 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55337, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55338, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55339, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55340, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55341, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55342, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:12 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55343, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55344, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:35:14 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55345, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55438, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55439, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55440, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55441, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55442, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55438, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55443, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55444, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55445, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55446, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55447, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55448, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55449, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55450, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55451, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:30 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55453, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:30 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55454, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55455, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55456, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55457, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55458, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55459, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55460, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55461, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55462, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55463, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55464, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55466, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:33 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55467, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:34 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55469, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:37:35 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55470, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55823, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55824, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55825, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55826, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55827, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55828, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55829, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55830, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55831, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55832, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55833, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55834, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55836, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55837, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55838, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55839, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55840, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55841, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55842, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55843, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55844, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55845, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55846, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55848, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55849, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:52 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55850, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:53 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55851, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:54 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55852, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:55 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55856, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:39:56 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55857, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:40:41 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, xml.thepay.biz, 55881, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:40:41 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, xml.thepay.biz, 55882, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:40:41 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, xml.thepay.biz, 55881, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:42:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56193, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56194, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56195, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56196, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56197, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56198, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56199, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56200, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56201, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56202, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56203, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56204, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56205, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:12 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56206, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:12 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56207, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56208, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56209, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56210, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56211, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56212, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56213, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56214, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56215, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56216, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56217, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:13 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56218, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:14 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56219, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:15 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56221, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:16 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56222, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:42:17 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56224, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:45:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 56416, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:45:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 56416, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:45:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 56417, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:51:00 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56649, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:03 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56650, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:08 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56653, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:15 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56656, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:16 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56657, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:27 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56659, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:27 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56660, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:27 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56662, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:27 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56663, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56664, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious
     
  8. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Protection Log cont.

    Website Protection, IP, 31.184.192.196, f5f5dc.com, 56665, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56666, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56667, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56668, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56669, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56670, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56671, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56672, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56673, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56674, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56675, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56676, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:28 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56677, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56678, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56679, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56680, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56681, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56682, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56683, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56684, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:51:37 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56697, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:51:37 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 56698, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:53:21 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56833, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:24 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56835, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56839, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:36 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56843, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:37 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56844, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:48 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56851, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:48 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56852, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:48 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56853, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:48 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56854, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56855, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56856, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56857, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56858, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56859, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56860, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56861, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56862, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56863, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56864, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56865, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56866, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56867, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56868, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56869, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56870, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56871, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56872, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56873, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56874, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:53:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 56875, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:55:42 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57062, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:55:45 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57065, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:55:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57069, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:55:57 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57073, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:55:58 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57074, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57081, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57082, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57083, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57084, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57085, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57086, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57087, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57088, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57089, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57090, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57091, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57092, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57093, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57094, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57095, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57096, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57097, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57099, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57100, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57098, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57101, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57102, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57103, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57104, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:56:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 57105, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:57:19 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 57195, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:57:19 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 57196, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:58:03 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57221, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:06 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57230, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:11 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57239, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:18 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57240, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:19 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57242, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:30 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57248, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:30 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57249, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:30 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57250, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:30 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57251, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57252, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57253, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57254, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57255, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57257, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57258, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57259, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57260, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57261, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:31 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57262, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57263, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57264, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57265, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57266, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57267, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57268, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57269, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57270, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57271, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57272, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:58:32 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 57273, Outbound, C:\Windows\SysWOW64\dllhost.exe,
    Detection, 5/8/2014 4:59:26 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 57306, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 4:59:26 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 57307, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Protection, 5/8/2014 5:03:18 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malware Protection, Starting,
    Protection, 5/8/2014 5:03:19 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malware Protection, Started,
    Protection, 5/8/2014 5:03:19 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Starting,
    Protection, 5/8/2014 5:03:47 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Started,
    Detection, 5/8/2014 5:03:59 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 49164, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 5:03:59 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 49164, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 5:04:24 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 49174, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 5:04:25 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 49174, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 5:19:39 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 50796, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:19:39 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 50796, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:19:39 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 50797, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:20:09 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 50815, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:20:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 50816, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:20:10 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 50815, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:21:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 50884, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:21:49 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 50885, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:22:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 50899, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:22:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 50900, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Update, 5/8/2014 5:23:16 PM, SYSTEM, JOSHLAPTOP-HP, Scheduler, Malware Database, 2014.5.8.11, 2014.5.8.13,
    Protection, 5/8/2014 5:23:18 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Refresh, Starting,
    Protection, 5/8/2014 5:23:18 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Stopping,
    Protection, 5/8/2014 5:23:18 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Stopped,
    Protection, 5/8/2014 5:23:24 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Refresh, Success,
    Protection, 5/8/2014 5:23:24 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Starting,
    Protection, 5/8/2014 5:23:25 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, Started,
    Detection, 5/8/2014 5:24:37 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.158, 51006, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:24:37 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.158, 51006, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:24:37 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.158, 51007, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:30:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 51838, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:30:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 51838, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:30:20 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 51839, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:32:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.158, 52092, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:32:51 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.158, 52093, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:38:36 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 52772, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:38:36 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 52772, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:38:36 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, flyclick.biz, 52773, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:39:55 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, xml.thepay.biz, 52815, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:39:55 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, xml.thepay.biz, 52815, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:39:55 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 88.214.193.174, xml.thepay.biz, 52816, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:43:12 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 52958, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:43:12 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 46.229.172.156, 52959, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
    Detection, 5/8/2014 5:45:39 PM, JoshLaptop, JOSHLAPTOP-HP, Protection, Malware Protection, File, PUP.Optional.SearchProtect.A, C:\Users\JoshLaptop\AppData\Local\Temp\0_Offer_0.exe, Quarantine, [34c9b29c88f3ce684c875be0de2234cc]
    Detection, 5/8/2014 6:04:46 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 53862, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 6:04:46 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 53862, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 6:05:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 53874, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 6:05:07 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 53874, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 7:05:29 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.196, f5f5dc.com, 55753, Outbound, C:\Windows\explorer.exe,
    Detection, 5/8/2014 7:05:50 PM, SYSTEM, JOSHLAPTOP-HP, Protection, Malicious Website Protection, IP, 31.184.192.215, 55768, Outbound, C:\Windows\explorer.exe,

    (end)
     
  9. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    TDSS log

    17:21:17.0205 0x0398 TDSS rootkit removing tool 3.0.0.34 Apr 29 2014 18:20:10
    17:21:19.0479 0x0398 ============================================================
    17:21:19.0479 0x0398 Current date / time: 2014/05/08 17:21:19.0479
    17:21:19.0479 0x0398 SystemInfo:
    17:21:19.0479 0x0398
    17:21:19.0479 0x0398 OS Version: 6.1.7601 ServicePack: 1.0
    17:21:19.0479 0x0398 Product type: Workstation
    17:21:19.0480 0x0398 ComputerName: JOSHLAPTOP-HP
    17:21:19.0480 0x0398 UserName: JoshLaptop
    17:21:19.0480 0x0398 Windows directory: C:\Windows
    17:21:19.0480 0x0398 System windows directory: C:\Windows
    17:21:19.0480 0x0398 Running under WOW64
    17:21:19.0480 0x0398 Processor architecture: Intel x64
    17:21:19.0480 0x0398 Number of processors: 2
    17:21:19.0480 0x0398 Page size: 0x1000
    17:21:19.0480 0x0398 Boot type: Normal boot
    17:21:19.0480 0x0398 ============================================================
    17:21:20.0323 0x0398 KLMD registered as C:\Windows\system32\drivers\96200375.sys
    17:21:21.0078 0x0398 System UUID: {C6A81575-3B8F-08F4-A928-3269BB3B08B4}
    17:21:22.0236 0x0398 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
    17:21:22.0247 0x0398 Drive \Device\Harddisk1\DR4 - Size: 0x3A2360000 (14.53 Gb), SectorSize: 0x200, Cylinders: 0x769, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
    17:21:22.0250 0x0398 ============================================================
    17:21:22.0250 0x0398 \Device\Harddisk0\DR0:
    17:21:22.0250 0x0398 MBR partitions:
    17:21:22.0250 0x0398 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x63800
    17:21:22.0250 0x0398 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x64000, BlocksNum 0x37E88800
    17:21:22.0250 0x0398 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x37EEC800, BlocksNum 0x1CA9800
    17:21:22.0250 0x0398 \Device\Harddisk0\DR0\Partition4: MBR, Type 0xC, StartLBA 0x39B96000, BlocksNum 0x7EF830
    17:21:22.0250 0x0398 \Device\Harddisk1\DR4:
    17:21:22.0252 0x0398 MBR partitions:
    17:21:22.0252 0x0398 \Device\Harddisk1\DR4\Partition1: MBR, Type 0xC, StartLBA 0x1F80, BlocksNum 0x1D0FB80
    17:21:22.0252 0x0398 ============================================================
    17:21:22.0316 0x0398 C: <-> \Device\Harddisk0\DR0\Partition2
    17:21:22.0374 0x0398 D: <-> \Device\Harddisk0\DR0\Partition3
    17:21:22.0385 0x0398 E: <-> \Device\Harddisk0\DR0\Partition4
    17:21:22.0385 0x0398 ============================================================
    17:21:22.0385 0x0398 Initialize success
    17:21:22.0385 0x0398 ============================================================
    17:21:25.0166 0x1584 ============================================================
    17:21:25.0166 0x1584 Scan started
    17:21:25.0166 0x1584 Mode: Manual;
    17:21:25.0166 0x1584 ============================================================
    17:21:25.0166 0x1584 KSN ping started
    17:21:28.0058 0x1584 KSN ping finished: true
    17:21:28.0333 0x1584 ================ Scan system memory ========================
    17:21:28.0334 0x1584 System memory - ok
    17:21:28.0335 0x1584 ================ Scan services =============================
    17:21:28.0435 0x1584 [ 581D88B25C4D4121824FED2CA38E562F, 838FFC4270ED32858A4AC14B389DEA1ECCCAAFC94BEAF683F8976B5F5A91DD15 ] !SASCORE C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
    17:21:28.0440 0x1584 !SASCORE - ok
    17:21:28.0668 0x1584 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
    17:21:28.0675 0x1584 1394ohci - ok
    17:21:28.0717 0x1584 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys
    17:21:28.0726 0x1584 ACPI - ok
    17:21:28.0753 0x1584 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
    17:21:28.0754 0x1584 AcpiPmi - ok
    17:21:28.0871 0x1584 [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    17:21:28.0873 0x1584 AdobeARMservice - ok
    17:21:29.0037 0x1584 [ 7C7E868E1D8096ED08D80FF7712BB9D8, EB4438F3CC377728173E018A763F0D0A8D5BBA4A289F554036D06B24030D2D62 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    17:21:29.0053 0x1584 AdobeFlashPlayerUpdateSvc - ok
    17:21:29.0148 0x1584 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
    17:21:29.0162 0x1584 adp94xx - ok
    17:21:29.0220 0x1584 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys
    17:21:29.0229 0x1584 adpahci - ok
    17:21:29.0242 0x1584 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
    17:21:29.0246 0x1584 adpu320 - ok
    17:21:29.0274 0x1584 [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
    17:21:29.0276 0x1584 AeLookupSvc - ok
    17:21:29.0326 0x1584 [ 1C7857B62DE5994A75B054A9FD4C3825, 83F963D7E636532B1AD30B1E727EC429317CA540F6EB3BB268FCC0B163B67767 ] AFD C:\Windows\system32\drivers\afd.sys
    17:21:29.0339 0x1584 AFD - ok
    17:21:29.0385 0x1584 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys
    17:21:29.0387 0x1584 agp440 - ok
    17:21:29.0415 0x1584 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe
    17:21:29.0418 0x1584 ALG - ok
    17:21:29.0438 0x1584 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys
    17:21:29.0439 0x1584 aliide - ok
    17:21:29.0478 0x1584 [ 850F0C8034225FA3F50D551A905FA503, 8FA1512A821287CFA5371F2F2D45A9120E0500B42670380739E91EAC26A82BD5 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
    17:21:29.0483 0x1584 AMD External Events Utility - ok
    17:21:29.0537 0x1584 AMD FUEL Service - ok
    17:21:29.0583 0x1584 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys
    17:21:29.0583 0x1584 amdide - ok
    17:21:29.0613 0x1584 [ 6A2EEB0C4133B20773BB3DD0B7B377B4, E4CB35C6937C70A145A13E5AE5B34A271B49101DA623171ACBFDA8601E5A70EA ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys
    17:21:29.0615 0x1584 amdiox64 - ok
    17:21:29.0645 0x1584 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
    17:21:29.0647 0x1584 AmdK8 - ok
    17:21:30.0084 0x1584 [ 7979BF4A66EFDADF3D00A052409609B1, BF835AB9982686D50D9038BA94C1C4237B520C80177AB282B16D880D39681526 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys
    17:21:30.0357 0x1584 amdkmdag - ok
    17:21:30.0416 0x1584 [ 7D5CDB0161E91951D3DD99E55CEA4D01, 0E10345FF1B67413A239E1FDA807D0D6CA02AD6CF010982448B4DC80111A3405 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys
    17:21:30.0426 0x1584 amdkmdap - ok
    17:21:30.0467 0x1584 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
    17:21:30.0469 0x1584 AmdPPM - ok
    17:21:30.0495 0x1584 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys
    17:21:30.0498 0x1584 amdsata - ok
    17:21:30.0511 0x1584 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
    17:21:30.0517 0x1584 amdsbs - ok
    17:21:30.0533 0x1584 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys
    17:21:30.0534 0x1584 amdxata - ok
    17:21:30.0561 0x1584 [ BB4FE7889DB9CBBE61A308E99697F53C, 0B6B301EC8C2B9CBDBAEEBC54E3D3E6FE6A3A51F71E75FFE71AE30ADF8FC5E23 ] amd_sata C:\Windows\system32\DRIVERS\amd_sata.sys
    17:21:30.0564 0x1584 amd_sata - ok
    17:21:30.0589 0x1584 [ 5631CBA53F1CBEA3F9E88348E6723391, 5F20FF4F651733A097990DDC3748CD00F3310B0B55BC975FA3654CDA740E0A3D ] amd_xata C:\Windows\system32\DRIVERS\amd_xata.sys
    17:21:30.0590 0x1584 amd_xata - ok
    17:21:30.0633 0x1584 [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID C:\Windows\system32\drivers\appid.sys
    17:21:30.0636 0x1584 AppID - ok
    17:21:30.0665 0x1584 [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc C:\Windows\System32\appidsvc.dll
    17:21:30.0667 0x1584 AppIDSvc - ok
    17:21:30.0686 0x1584 [ 3977D4A871CA0D4F2ED1E7DB46829731, 2AF1C3225994769C3FD25CD7E9603964B035576F25B0B6D91545566E0722FFAA ] Appinfo C:\Windows\System32\appinfo.dll
    17:21:30.0690 0x1584 Appinfo - ok
    17:21:30.0710 0x1584 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys
    17:21:30.0713 0x1584 arc - ok
    17:21:30.0727 0x1584 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys
    17:21:30.0731 0x1584 arcsas - ok
    17:21:30.0838 0x1584 aspnet_state - ok
    17:21:30.0862 0x1584 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
    17:21:30.0864 0x1584 AsyncMac - ok
    17:21:30.0895 0x1584 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys
    17:21:30.0897 0x1584 atapi - ok
    17:21:30.0977 0x1584 [ CBD14F698DEF12EE3557604B726CB8EB, 45EDD88B18F2DE9024851BFDE9DC0CA943692DD306CB3A0822F4A5C0C3D7CDD6 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
    17:21:30.0981 0x1584 AtiHDAudioService - ok
    17:21:31.0052 0x1584 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
    17:21:31.0072 0x1584 AudioEndpointBuilder - ok
    17:21:31.0114 0x1584 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv C:\Windows\System32\Audiosrv.dll
    17:21:31.0132 0x1584 AudioSrv - ok
    17:21:31.0181 0x1584 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll
    17:21:31.0185 0x1584 AxInstSV - ok
    17:21:31.0249 0x1584 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
    17:21:31.0262 0x1584 b06bdrv - ok
    17:21:31.0293 0x1584 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
    17:21:31.0300 0x1584 b57nd60a - ok
    17:21:31.0374 0x1584 [ 9E84A931DBEE0292E38ED672F6293A99, 2945EAF0AC091709E0C5508B45EC343EDE507AC2B08A2D7D64F286D38424CBC4 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys
    17:21:31.0409 0x1584 BCM43XX - ok
    17:21:31.0457 0x1584 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll
    17:21:31.0460 0x1584 BDESVC - ok
    17:21:31.0491 0x1584 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys
    17:21:31.0491 0x1584 Beep - ok
    17:21:31.0554 0x1584 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll
    17:21:31.0574 0x1584 BFE - ok
    17:21:31.0681 0x1584 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll
    17:21:31.0706 0x1584 BITS - ok
    17:21:31.0756 0x1584 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\drivers\blbdrive.sys
    17:21:31.0758 0x1584 blbdrive - ok
    17:21:31.0780 0x1584 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
    17:21:31.0783 0x1584 bowser - ok
    17:21:31.0806 0x1584 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
    17:21:31.0807 0x1584 BrFiltLo - ok
    17:21:31.0824 0x1584 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
    17:21:31.0825 0x1584 BrFiltUp - ok
    17:21:31.0853 0x1584 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll
    17:21:31.0858 0x1584 Browser - ok
    17:21:31.0889 0x1584 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys
    17:21:31.0898 0x1584 Brserid - ok
    17:21:31.0905 0x1584 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
    17:21:31.0907 0x1584 BrSerWdm - ok
    17:21:31.0922 0x1584 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
    17:21:31.0923 0x1584 BrUsbMdm - ok
    17:21:31.0929 0x1584 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
    17:21:31.0930 0x1584 BrUsbSer - ok
    17:21:31.0937 0x1584 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
    17:21:31.0940 0x1584 BTHMODEM - ok
    17:21:31.0980 0x1584 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll
    17:21:31.0983 0x1584 bthserv - ok
    17:21:32.0021 0x1584 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
    17:21:32.0024 0x1584 cdfs - ok
    17:21:32.0057 0x1584 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
    17:21:32.0061 0x1584 cdrom - ok
    17:21:32.0105 0x1584 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll
    17:21:32.0108 0x1584 CertPropSvc - ok
    17:21:32.0148 0x1584 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys
    17:21:32.0150 0x1584 circlass - ok
    17:21:32.0177 0x1584 [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\Windows\system32\CLFS.sys
    17:21:32.0188 0x1584 CLFS - ok
    17:21:32.0213 0x1584 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
    17:21:32.0216 0x1584 clr_optimization_v2.0.50727_32 - ok
    17:21:32.0296 0x1584 [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
    17:21:32.0299 0x1584 clr_optimization_v2.0.50727_64 - ok
    17:21:32.0373 0x1584 [ C5A75EB48E2344ABDC162BDA79E16841, 6070A8AAFD38FBC6A68A2B10C20117612354DF21B4492D90CA522BFB6870D726 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
    17:21:32.0382 0x1584 clr_optimization_v4.0.30319_32 - ok
    17:21:32.0445 0x1584 [ C6F9AF94DCD58122A4D7E89DB6BED29D, CB0E5AE60EC76323585FB86D89E8DB7ADB5EDF6EA3D0B27E9ECE75B8CAA8BFDE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    17:21:32.0449 0x1584 clr_optimization_v4.0.30319_64 - ok
    17:21:32.0504 0x1584 [ 50F92C943F18B070F166D019DFAB3D9A, A997EAFFC1598B1D0A9E1A4475F25418CA8AA6B703B53A71B1AF028E247C9950 ] clwvd C:\Windows\system32\DRIVERS\clwvd.sys
    17:21:32.0506 0x1584 clwvd - ok
    17:21:32.0540 0x1584 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
    17:21:32.0541 0x1584 CmBatt - ok
    17:21:32.0558 0x1584 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys
    17:21:32.0559 0x1584 cmdide - ok
    17:21:32.0611 0x1584 [ 9AC4F97C2D3E93367E2148EA940CD2CD, 530E089E5CF868AECDB2B5548EBE76E0CA98FC74A72897292AB2485734402E3B ] CNG C:\Windows\system32\Drivers\cng.sys
    17:21:32.0625 0x1584 CNG - ok
    17:21:32.0664 0x1584 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
    17:21:32.0665 0x1584 Compbatt - ok
    17:21:32.0690 0x1584 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys
    17:21:32.0691 0x1584 CompositeBus - ok
    17:21:32.0703 0x1584 COMSysApp - ok
    17:21:32.0726 0x1584 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
    17:21:32.0727 0x1584 crcdisk - ok
    17:21:32.0765 0x1584 [ 9C01375BE382E834CC26D1B7EAF2C4FE, B1D1E36B91A3C3CD09428EE3403896F71390A2798323BB406B484D9DB064A219 ] CryptSvc C:\Windows\system32\cryptsvc.dll
    17:21:32.0771 0x1584 CryptSvc - ok
    17:21:32.0835 0x1584 [ BF62FF663AE55E4ED99DE76881C2C0F1, 87018B61B2310558EB9C96887D92FA5ED06B9A4D69999F6B6F7BDD2D486FAA0D ] ctxusbm C:\Windows\system32\DRIVERS\ctxusbm.sys
    17:21:32.0838 0x1584 ctxusbm - ok
    17:21:32.0891 0x1584 [ C6E1C081C0849E08FECEC18DF73B10C4, B5E552F4744C91836CBAF3F62CB861C1D9422721870D11B5CCE21B45E384985A ] dc3d C:\Windows\system32\DRIVERS\dc3d.sys
    17:21:32.0893 0x1584 dc3d - ok
    17:21:32.0945 0x1584 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll
    17:21:32.0961 0x1584 DcomLaunch - ok
    17:21:33.0011 0x1584 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll
    17:21:33.0019 0x1584 defragsvc - ok
    17:21:33.0047 0x1584 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys
    17:21:33.0050 0x1584 DfsC - ok
    17:21:33.0093 0x1584 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll
    17:21:33.0102 0x1584 Dhcp - ok
    17:21:33.0114 0x1584 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys
    17:21:33.0115 0x1584 discache - ok
    17:21:33.0164 0x1584 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys
    17:21:33.0166 0x1584 Disk - ok
    17:21:33.0206 0x1584 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll
    17:21:33.0212 0x1584 Dnscache - ok
    17:21:33.0255 0x1584 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll
    17:21:33.0263 0x1584 dot3svc - ok
    17:21:33.0299 0x1584 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll
    17:21:33.0304 0x1584 DPS - ok
    17:21:33.0719 0x1584 [ EAC2FBBA92E0CD5C74EDF77AD4E201B2, 1CB4810EF1D174AAAC2A2BE724094661AF1C232C18C4C9E8911BBD28900D5AD6 ] DragonUpdater C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
    17:21:33.0774 0x1584 DragonUpdater - ok
    17:21:33.0826 0x1584 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
    17:21:33.0827 0x1584 drmkaud - ok
    17:21:33.0904 0x1584 [ F5BEE30450E18E6B83A5012C100616FD, 44D0577D159FC2BDF4EAD1DC2C7FD14925D075225EF97608CAC52DEE405B08FD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
    17:21:33.0930 0x1584 DXGKrnl - ok
    17:21:33.0977 0x1584 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll
    17:21:33.0980 0x1584 EapHost - ok
    17:21:34.0137 0x1584 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys
    17:21:34.0222 0x1584 ebdrv - ok
    17:21:34.0247 0x1584 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] EFS C:\Windows\System32\lsass.exe
    17:21:34.0249 0x1584 EFS - ok
    17:21:34.0352 0x1584 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
    17:21:34.0380 0x1584 ehRecvr - ok
    17:21:34.0390 0x1584 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe
    17:21:34.0394 0x1584 ehSched - ok
    17:21:34.0463 0x1584 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
    17:21:34.0480 0x1584 elxstor - ok
    17:21:34.0497 0x1584 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys
    17:21:34.0498 0x1584 ErrDev - ok
    17:21:34.0557 0x1584 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll
    17:21:34.0569 0x1584 EventSystem - ok
    17:21:34.0596 0x1584 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys
    17:21:34.0602 0x1584 exfat - ok
    17:21:34.0635 0x1584 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys
    17:21:34.0641 0x1584 fastfat - ok
    17:21:34.0696 0x1584 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe
    17:21:34.0715 0x1584 Fax - ok
    17:21:34.0729 0x1584 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys
    17:21:34.0730 0x1584 fdc - ok
    17:21:34.0748 0x1584 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll
    17:21:34.0750 0x1584 fdPHost - ok
    17:21:34.0769 0x1584 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll
    17:21:34.0771 0x1584 FDResPub - ok
    17:21:34.0800 0x1584 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
    17:21:34.0802 0x1584 FileInfo - ok
    17:21:34.0823 0x1584 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
    17:21:34.0825 0x1584 Filetrace - ok
    17:21:34.0831 0x1584 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
    17:21:34.0832 0x1584 flpydisk - ok
    17:21:34.0871 0x1584 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
    17:21:34.0879 0x1584 FltMgr - ok
    17:21:34.0954 0x1584 [ 5C4CB4086FB83115B153E47ADD961A0C, 0C3AB7D04BEB3A8FDE00B0C86E6FE064B1CEBB3E4DE1A29CD27830806FA300B3 ] FontCache C:\Windows\system32\FntCache.dll
    17:21:34.0986 0x1584 FontCache - ok
    17:21:35.0036 0x1584 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
    17:21:35.0040 0x1584 FontCache3.0.0.0 - ok
    17:21:35.0062 0x1584 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
    17:21:35.0064 0x1584 FsDepends - ok
    17:21:35.0092 0x1584 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
    17:21:35.0093 0x1584 Fs_Rec - ok
    17:21:35.0141 0x1584 [ 1F7B25B858FA27015169FE95E54108ED, 72DD12E924AA7273B3E4BDD2A2C581DECE304C8EF3D44EA79ABB032F3F95DCE5 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
    17:21:35.0149 0x1584 fvevol - ok
    17:21:35.0172 0x1584 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
    17:21:35.0175 0x1584 gagp30kx - ok
    17:21:35.0285 0x1584 [ E6CE7A89183D1840F0FF63694292FFA2, 8907ADCF9967026CD1A9D545E2274569F840F1DFF0E407CC77B6A662267AAC4B ] GamesAppIntegrationService C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
    17:21:35.0299 0x1584 GamesAppIntegrationService - ok
    17:21:35.0362 0x1584 [ C403C5DB49A0F9AAF4F2128EDC0106D8, 3C6948B63278022D8182F773C5FA15784514F76C1546118DDBADBA322B962D12 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
    17:21:35.0376 0x1584 GamesAppService - ok
    17:21:35.0460 0x1584 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll
    17:21:35.0487 0x1584 gpsvc - ok
    17:21:35.0573 0x1584 [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    17:21:35.0577 0x1584 gupdate - ok
    17:21:35.0595 0x1584 [ F02A533F517EB38333CB12A9E8963773, 1F72CD1CF660766FA8F912E40B7323A0192A300B376186C10F6803DC5EFE28DF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    17:21:35.0599 0x1584 gupdatem - ok
    17:21:35.0669 0x1584 [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
    17:21:35.0675 0x1584 gusvc - ok
    17:21:35.0707 0x1584 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
    17:21:35.0708 0x1584 hcw85cir - ok
    17:21:35.0752 0x1584 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
    17:21:35.0762 0x1584 HdAudAddService - ok
    17:21:35.0804 0x1584 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
    17:21:35.0808 0x1584 HDAudBus - ok
    17:21:35.0829 0x1584 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
    17:21:35.0830 0x1584 HidBatt - ok
    17:21:35.0839 0x1584 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys
    17:21:35.0842 0x1584 HidBth - ok
    17:21:35.0855 0x1584 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys
    17:21:35.0857 0x1584 HidIr - ok
    17:21:35.0875 0x1584 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll
    17:21:35.0878 0x1584 hidserv - ok
    17:21:35.0921 0x1584 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
    17:21:35.0922 0x1584 HidUsb - ok
    17:21:35.0954 0x1584 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll
    17:21:35.0958 0x1584 hkmsvc - ok
    17:21:35.0980 0x1584 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
    17:21:35.0987 0x1584 HomeGroupListener - ok
    17:21:36.0020 0x1584 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
    17:21:36.0027 0x1584 HomeGroupProvider - ok
    17:21:36.0123 0x1584 [ 2A8B93A01621E100A578E83C768AFA2C, 6637D260AF180D1F200D219796FCE6D524FC6BF57C0CEEF9E1B3616E85865AD1 ] HP Support Assistant Service C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
    17:21:36.0129 0x1584 HP Support Assistant Service - ok
    17:21:36.0196 0x1584 [ 6A181452D4E240B8ECC7614B9A19BDE9, 3E458A737DA597DF007D278E9D81F2BF259AB4B97A4C188CEDAEA1F144B1074F ] HPClientSvc C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
    17:21:36.0205 0x1584 HPClientSvc - ok
    17:21:36.0296 0x1584 [ 33761EBD9A26DE33BC83DD2DAFEC4513, F1A397D6B72F998A64B8BBAA292C13E8354D2C1BE14B7C46840A512AA3BE1770 ] HPDrvMntSvc.exe C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
    17:21:36.0304 0x1584 HPDrvMntSvc.exe - ok
    17:21:36.0393 0x1584 [ D2946D9F020AE76E9CEF9B4A6DF838C0, C29CE594879385DA12B8EAA90B258905827B613839CCD820DE49215B68676995 ] hpqwmiex C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
    17:21:36.0424 0x1584 hpqwmiex - ok
    17:21:36.0478 0x1584 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
    17:21:36.0481 0x1584 HpSAMD - ok
    17:21:36.0532 0x1584 [ 2BEC76BDCD1BC080210325E7B5094834, 9CD9DF5C974C20F38423B07063A4F44E533B3B4EF39E01AC701C04BFC5F3EC53 ] HPWMISVC C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
    17:21:36.0534 0x1584 HPWMISVC - ok
    17:21:36.0585 0x1584 [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP C:\Windows\system32\drivers\HTTP.sys
    17:21:36.0606 0x1584 HTTP - ok
    17:21:36.0625 0x1584 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
    17:21:36.0626 0x1584 hwpolicy - ok
    17:21:36.0662 0x1584 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
    17:21:36.0665 0x1584 i8042prt - ok
    17:21:36.0708 0x1584 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
    17:21:36.0719 0x1584 iaStorV - ok
    17:21:36.0903 0x1584 [ D72BF0AE484F88399E8343E821C10D6A, E8D78E61EEC80934396F233565DB5682B2475867C98F09C3CE3F906373A5C1A2 ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
    17:21:36.0967 0x1584 IconMan_R - ok
    17:21:37.0054 0x1584 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    17:21:37.0060 0x1584 IDriverT - ok
    17:21:37.0138 0x1584 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
    17:21:37.0162 0x1584 idsvc - ok
    17:21:37.0205 0x1584 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys
    17:21:37.0207 0x1584 iirsp - ok
    17:21:37.0268 0x1584 [ FCD84C381E0140AF901E58D48882D26B, 76955FFC230C801E8ED890E32076075F04CD6E5EC79E594FDE6D23797A36B406 ] IKEEXT C:\Windows\System32\ikeext.dll
    17:21:37.0292 0x1584 IKEEXT - ok
    17:21:37.0308 0x1584 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys
    17:21:37.0309 0x1584 intelide - ok
    17:21:37.0326 0x1584 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys
    17:21:37.0328 0x1584 intelppm - ok
    17:21:37.0349 0x1584 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll
    17:21:37.0353 0x1584 IPBusEnum - ok
    17:21:37.0361 0x1584 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
    17:21:37.0364 0x1584 IpFilterDriver - ok
    17:21:37.0400 0x1584 [ A34A587FFFD45FA649FBA6D03784D257, C9A2BCD4E2A5EB6E320092A3AFD5737ECDCDA0B83EE42314A23C4978F2974767 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
    17:21:37.0416 0x1584 iphlpsvc - ok
    17:21:37.0425 0x1584 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
    17:21:37.0428 0x1584 IPMIDRV - ok
    17:21:37.0436 0x1584 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys
    17:21:37.0439 0x1584 IPNAT - ok
    17:21:37.0462 0x1584 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys
    17:21:37.0463 0x1584 IRENUM - ok
    17:21:37.0469 0x1584 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys
    17:21:37.0470 0x1584 isapnp - ok
    17:21:37.0507 0x1584 [ D931D7309DEB2317035B07C9F9E6B0BD, 13AD84172ED8C6153F8A98499C01733B74E48464CE07D099508E38D409913ED3 ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
    17:21:37.0516 0x1584 iScsiPrt - ok
    17:21:37.0563 0x1584 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
    17:21:37.0565 0x1584 kbdclass - ok
    17:21:37.0594 0x1584 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
    17:21:37.0596 0x1584 kbdhid - ok
    17:21:37.0615 0x1584 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] KeyIso C:\Windows\system32\lsass.exe
    17:21:37.0617 0x1584 KeyIso - ok
    17:21:37.0644 0x1584 [ 97A7070AEA4C058B6418519E869A63B4, 15345C2D6CA159BD498002974A0BD21CAB611124D85E3320248B47652AEF23C8 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
    17:21:37.0647 0x1584 KSecDD - ok
    17:21:37.0662 0x1584 [ 26C43A7C2862447EC59DEDA188D1DA07, 5363BF87E650FE2010ACA9417D6920FF4ED752256FF47732882E9B2BA1ED154B ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
    17:21:37.0666 0x1584 KSecPkg - ok
    17:21:37.0703 0x1584 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
    17:21:37.0704 0x1584 ksthunk - ok
    17:21:37.0746 0x1584 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll
    17:21:37.0756 0x1584 KtmRm - ok
    17:21:37.0852 0x1584 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll
    17:21:37.0860 0x1584 LanmanServer - ok
    17:21:37.0883 0x1584 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
    17:21:37.0888 0x1584 LanmanWorkstation - ok
    17:21:37.0931 0x1584 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
    17:21:37.0933 0x1584 lltdio - ok
    17:21:38.0012 0x1584 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll
    17:21:38.0022 0x1584 lltdsvc - ok
    17:21:38.0062 0x1584 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll
    17:21:38.0065 0x1584 lmhosts - ok
    17:21:38.0093 0x1584 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
    17:21:38.0097 0x1584 LSI_FC - ok
    17:21:38.0109 0x1584 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
    17:21:38.0112 0x1584 LSI_SAS - ok
    17:21:38.0121 0x1584 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
    17:21:38.0123 0x1584 LSI_SAS2 - ok
    17:21:38.0133 0x1584 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
    17:21:38.0137 0x1584 LSI_SCSI - ok
    17:21:38.0173 0x1584 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys
    17:21:38.0176 0x1584 luafv - ok
    17:21:38.0245 0x1584 [ FD5465B876D55534117963FAAA4B9DFC, 63A822A1EEEC42C30CCC9477431E310E3D360489A68BBCD805124681F21C0B6B ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
    17:21:38.0246 0x1584 MBAMProtector - ok
    17:21:38.0374 0x1584 [ 0E08BDD7326E657D59DB40BAD23D8169, 428C6CCCC0BB540DFD35847776140D60C186B9D2D14F0ACCD1A4D42A8877BD98 ] MBAMScheduler C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
    17:21:38.0421 0x1584 MBAMScheduler - ok
    17:21:38.0492 0x1584 [ A8E7F3DB083EB0839DFC1C763CDD2594, BDF416E360A52130B23B029C89E6406A97FB0516C52C7E63B94CAECEEB431A2E ] MBAMService C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
    17:21:38.0518 0x1584 MBAMService - ok
    17:21:38.0617 0x1584 [ 6140163BFE9D8F2DFDBA088ED5521C13, B7B501F0D1527A15B1610D133E97AB431574502F0553734009627488D0007595 ] MBAMSwissArmy C:\Windows\system32\drivers\MBAMSwissArmy.sys
    17:21:38.0620 0x1584 MBAMSwissArmy - ok
    17:21:38.0665 0x1584 [ C49915271600CFC2305FAA4271D0002F, 8412989C50579C79F27E4F9B178B2FF944C8F221AD70D213279D888F5449F868 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
    17:21:38.0668 0x1584 MBAMWebAccessControl - ok
    17:21:38.0843 0x1584 [ 49F5B235EDC9C6AC0ABA44737B190317, 096D8D583ED024F1B3AD30DD5EBA38B1FEE518166E157C0E3890D80687181F60 ] McComponentHostService C:\Program Files\McAfee Security Scan\3.8.141\McCHSvc.exe
    17:21:38.0860 0x1584 McComponentHostService - ok
    17:21:38.0952 0x1584 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
    17:21:38.0960 0x1584 Mcx2Svc - ok
    17:21:38.0988 0x1584 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys
     
  10. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    TDSS log cont

    17:21:38.0991 0x1584 megasas - ok
    17:21:39.0037 0x1584 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
    17:21:39.0045 0x1584 MegaSR - ok
    17:21:39.0146 0x1584 [ 123271BD5237AB991DC5C21FDF8835EB, 004F8F9228EE291A0E36CE33078D572D61733516F9AA5CFC832AF204C6869E89 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
    17:21:39.0153 0x1584 Microsoft Office Groove Audit Service - ok
    17:21:39.0203 0x1584 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll
    17:21:39.0206 0x1584 MMCSS - ok
    17:21:39.0233 0x1584 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys
    17:21:39.0235 0x1584 Modem - ok
    17:21:39.0264 0x1584 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
    17:21:39.0265 0x1584 monitor - ok
    17:21:39.0296 0x1584 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
    17:21:39.0298 0x1584 mouclass - ok
    17:21:39.0333 0x1584 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
    17:21:39.0334 0x1584 mouhid - ok
    17:21:39.0350 0x1584 [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
    17:21:39.0353 0x1584 mountmgr - ok
    17:21:39.0403 0x1584 [ AEE4E9CC59CDEB55B1ECB0E596E796BE, 674F6F38D86D238AFD6223E03A862F8B43DD8499FBC2D4B7A04E510EC5EACF3B ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
    17:21:39.0406 0x1584 MozillaMaintenance - ok
    17:21:39.0460 0x1584 [ 05BF204EC0E82CC4A054DB189C8A3D84, 3A9F79E3BBC4F9E1AE8C6B4F6353B21474A9C0A19AB79E2B3EF5C9784A7E7AD8 ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys
    17:21:39.0467 0x1584 MpFilter - ok
    17:21:39.0486 0x1584 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys
    17:21:39.0491 0x1584 mpio - ok
    17:21:39.0551 0x1584 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
    17:21:39.0554 0x1584 mpsdrv - ok
    17:21:39.0610 0x1584 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll
    17:21:39.0633 0x1584 MpsSvc - ok
    17:21:39.0645 0x1584 [ DC722758B8261E1ABAFD31A3C0A66380, 88BBE073E2CCD1DAB4656DDC53D5161E8A91D035ADAC1465D0CEBA86F1BB6D9A ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
    17:21:39.0649 0x1584 MRxDAV - ok
    17:21:39.0685 0x1584 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
    17:21:39.0690 0x1584 mrxsmb - ok
    17:21:39.0719 0x1584 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
    17:21:39.0727 0x1584 mrxsmb10 - ok
    17:21:39.0747 0x1584 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
    17:21:39.0750 0x1584 mrxsmb20 - ok
    17:21:39.0770 0x1584 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys
    17:21:39.0772 0x1584 msahci - ok
    17:21:39.0790 0x1584 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys
    17:21:39.0794 0x1584 msdsm - ok
    17:21:39.0827 0x1584 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe
    17:21:39.0831 0x1584 MSDTC - ok
    17:21:39.0860 0x1584 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys
    17:21:39.0861 0x1584 Msfs - ok
    17:21:39.0871 0x1584 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
    17:21:39.0872 0x1584 mshidkmdf - ok
    17:21:39.0906 0x1584 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
    17:21:39.0907 0x1584 msisadrv - ok
    17:21:39.0961 0x1584 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
    17:21:39.0966 0x1584 MSiSCSI - ok
    17:21:39.0975 0x1584 msiserver - ok
    17:21:40.0017 0x1584 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
    17:21:40.0018 0x1584 MSKSSRV - ok
    17:21:40.0113 0x1584 [ CC8E4F72F21340A4D3A3D4DB50313EF5, 5D3EDCA713DAAE4F69E87F6A8315976932576465FD06064E54C036B0167CAC86 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe
    17:21:40.0115 0x1584 MsMpSvc - ok
    17:21:40.0134 0x1584 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
    17:21:40.0135 0x1584 MSPCLOCK - ok
    17:21:40.0147 0x1584 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
    17:21:40.0148 0x1584 MSPQM - ok
    17:21:40.0178 0x1584 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
    17:21:40.0190 0x1584 MsRPC - ok
    17:21:40.0208 0x1584 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys
    17:21:40.0210 0x1584 mssmbios - ok
    17:21:40.0223 0x1584 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
    17:21:40.0223 0x1584 MSTEE - ok
    17:21:40.0236 0x1584 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
    17:21:40.0237 0x1584 MTConfig - ok
    17:21:40.0265 0x1584 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys
    17:21:40.0267 0x1584 Mup - ok
    17:21:40.0310 0x1584 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll
    17:21:40.0324 0x1584 napagent - ok
    17:21:40.0377 0x1584 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
    17:21:40.0385 0x1584 NativeWifiP - ok
    17:21:40.0450 0x1584 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys
    17:21:40.0476 0x1584 NDIS - ok
    17:21:40.0528 0x1584 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
    17:21:40.0530 0x1584 NdisCap - ok
    17:21:40.0558 0x1584 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
    17:21:40.0559 0x1584 NdisTapi - ok
    17:21:40.0591 0x1584 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
    17:21:40.0593 0x1584 Ndisuio - ok
    17:21:40.0614 0x1584 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
    17:21:40.0618 0x1584 NdisWan - ok
    17:21:40.0640 0x1584 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
    17:21:40.0642 0x1584 NDProxy - ok
    17:21:40.0661 0x1584 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
    17:21:40.0663 0x1584 NetBIOS - ok
    17:21:40.0684 0x1584 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
    17:21:40.0693 0x1584 NetBT - ok
    17:21:40.0707 0x1584 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] Netlogon C:\Windows\system32\lsass.exe
    17:21:40.0709 0x1584 Netlogon - ok
    17:21:40.0747 0x1584 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll
    17:21:40.0758 0x1584 Netman - ok
    17:21:40.0804 0x1584 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    17:21:40.0808 0x1584 NetMsmqActivator - ok
    17:21:40.0826 0x1584 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    17:21:40.0830 0x1584 NetPipeActivator - ok
    17:21:40.0864 0x1584 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll
    17:21:40.0877 0x1584 netprofm - ok
    17:21:40.0903 0x1584 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    17:21:40.0907 0x1584 NetTcpActivator - ok
    17:21:40.0925 0x1584 [ D22CD77D4F0D63D1169BB35911BFF12D, 85B1FDFA02E1B8EA4FCB9B7EEB687C5C448697FC7EC9D178C5A2F64D2C9CFEE8 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
    17:21:40.0929 0x1584 NetTcpPortSharing - ok
    17:21:40.0957 0x1584 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
    17:21:40.0959 0x1584 nfrd960 - ok
    17:21:41.0006 0x1584 [ 5FF89F20317309D28AC1EDEB0CD1BA72, C8C22C9CA58D18A72F2F348297DEFECACCBCB51447AE6032456FB5E1364E5FEE ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys
    17:21:41.0010 0x1584 NisDrv - ok
    17:21:41.0083 0x1584 [ 79E80B10FE8F6662E0C9162A68C43444, 3A643C8CDEA0C2CAC8FC503463D23560683F4457D4FFC06B1EDDD265D09FA807 ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe
    17:21:41.0093 0x1584 NisSrv - ok
    17:21:41.0135 0x1584 [ 1EE99A89CC788ADA662441D1E9830529, 6B4FDD74BB81E12BD4B25A3E8AECB0FA77FA0075D454DD1D6DC1790ADF1F2AA8 ] NlaSvc C:\Windows\System32\nlasvc.dll
    17:21:41.0144 0x1584 NlaSvc - ok
    17:21:41.0155 0x1584 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys
    17:21:41.0156 0x1584 Npfs - ok
    17:21:41.0167 0x1584 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll
    17:21:41.0170 0x1584 nsi - ok
    17:21:41.0210 0x1584 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
    17:21:41.0212 0x1584 nsiproxy - ok
    17:21:41.0289 0x1584 [ A2F74975097F52A00745F9637451FDD8, C681DDBD3382C477C2A030E828B5CFB529CB57C7847BD9AFF25E2A5E58B2DAF3 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
    17:21:41.0332 0x1584 Ntfs - ok
    17:21:41.0377 0x1584 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys
    17:21:41.0378 0x1584 Null - ok
    17:21:41.0414 0x1584 [ A85B4F2EF3A7304A5399EF0526423040, E45854691BA6AE36E53C2922CC93FF13DC2D84CBE7FE13A2F0B1CE1C16D1D158 ] NVENETFD C:\Windows\system32\DRIVERS\nvm62x64.sys
    17:21:41.0425 0x1584 NVENETFD - ok
    17:21:41.0459 0x1584 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys
    17:21:41.0464 0x1584 nvraid - ok
    17:21:41.0474 0x1584 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys
    17:21:41.0479 0x1584 nvstor - ok
    17:21:41.0539 0x1584 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
    17:21:41.0548 0x1584 nv_agp - ok
    17:21:41.0747 0x1584 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
    17:21:41.0759 0x1584 odserv - ok
    17:21:41.0789 0x1584 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
    17:21:41.0791 0x1584 ohci1394 - ok
    17:21:41.0848 0x1584 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
    17:21:41.0852 0x1584 ose - ok
    17:21:41.0896 0x1584 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
    17:21:41.0907 0x1584 p2pimsvc - ok
    17:21:41.0940 0x1584 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll
    17:21:41.0955 0x1584 p2psvc - ok
    17:21:41.0984 0x1584 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys
    17:21:41.0988 0x1584 Parport - ok
    17:21:42.0022 0x1584 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys
    17:21:42.0025 0x1584 partmgr - ok
    17:21:42.0065 0x1584 [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc C:\Windows\System32\pcasvc.dll
    17:21:42.0072 0x1584 PcaSvc - ok
    17:21:42.0095 0x1584 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys
    17:21:42.0100 0x1584 pci - ok
    17:21:42.0117 0x1584 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys
    17:21:42.0117 0x1584 pciide - ok
    17:21:42.0131 0x1584 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
    17:21:42.0137 0x1584 pcmcia - ok
    17:21:42.0157 0x1584 PCProtect - ok
    17:21:42.0285 0x1584 [ 1B7464E530D6FB7A9F94613B33662EB1, EC343440BC97E4C3320868B8EE22C3983C8B5F17E4545D233E2274888FB960FC ] pcregservice C:\Program Files\pcreg\pcreg.exe
    17:21:42.0292 0x1584 pcregservice - ok
    17:21:42.0311 0x1584 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys
    17:21:42.0312 0x1584 pcw - ok
    17:21:42.0355 0x1584 [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH C:\Windows\system32\drivers\peauth.sys
    17:21:42.0374 0x1584 PEAUTH - ok
    17:21:42.0473 0x1584 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe
    17:21:42.0478 0x1584 PerfHost - ok
    17:21:42.0692 0x1584 [ 9542D9E09AF0126CC3925AD4C29D4AD5, F8DE27E2DF7D5529E81CA273FE31E2C6EB2899C72C57D73549345BDA70554660 ] Pharos Systems ComTaskMaster C:\PROGRA~2\PHAROS~1\Core\CTskMstr.exe
    17:21:42.0712 0x1584 Pharos Systems ComTaskMaster - ok
    17:21:42.0837 0x1584 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll
    17:21:42.0874 0x1584 pla - ok
    17:21:42.0918 0x1584 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
    17:21:42.0930 0x1584 PlugPlay - ok
    17:21:42.0961 0x1584 PnkBstrA - ok
    17:21:42.0986 0x1584 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
    17:21:42.0989 0x1584 PNRPAutoReg - ok
    17:21:43.0019 0x1584 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
    17:21:43.0030 0x1584 PNRPsvc - ok
    17:21:43.0088 0x1584 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
    17:21:43.0102 0x1584 PolicyAgent - ok
    17:21:43.0153 0x1584 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll
    17:21:43.0159 0x1584 Power - ok
    17:21:43.0196 0x1584 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
    17:21:43.0199 0x1584 PptpMiniport - ok
    17:21:43.0222 0x1584 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys
    17:21:43.0224 0x1584 Processor - ok
    17:21:43.0263 0x1584 [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc C:\Windows\system32\profsvc.dll
    17:21:43.0270 0x1584 ProfSvc - ok
    17:21:43.0282 0x1584 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] ProtectedStorage C:\Windows\system32\lsass.exe
    17:21:43.0284 0x1584 ProtectedStorage - ok
    17:21:43.0343 0x1584 [ 8717FA628A749175A7EF127DF2C012FC, 0BB5A9CD3F1691F9666D779505B7483A024FB7660EE99AE95DE20085B744493A ] ProtectMonitor C:\monitorsvc.exe
    17:21:43.0346 0x1584 ProtectMonitor - ok
    17:21:43.0383 0x1584 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
    17:21:43.0392 0x1584 Psched - ok
    17:21:43.0519 0x1584 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
    17:21:43.0559 0x1584 ql2300 - ok
    17:21:43.0648 0x1584 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
    17:21:43.0657 0x1584 ql40xx - ok
    17:21:43.0704 0x1584 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll
    17:21:43.0714 0x1584 QWAVE - ok
    17:21:43.0733 0x1584 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
    17:21:43.0735 0x1584 QWAVEdrv - ok
    17:21:43.0748 0x1584 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
    17:21:43.0749 0x1584 RasAcd - ok
    17:21:43.0769 0x1584 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
    17:21:43.0771 0x1584 RasAgileVpn - ok
    17:21:43.0791 0x1584 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll
    17:21:43.0795 0x1584 RasAuto - ok
    17:21:43.0811 0x1584 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
    17:21:43.0815 0x1584 Rasl2tp - ok
    17:21:43.0840 0x1584 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll
    17:21:43.0850 0x1584 RasMan - ok
    17:21:43.0875 0x1584 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
    17:21:43.0879 0x1584 RasPppoe - ok
    17:21:43.0901 0x1584 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
    17:21:43.0904 0x1584 RasSstp - ok
    17:21:43.0943 0x1584 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
    17:21:43.0952 0x1584 rdbss - ok
    17:21:43.0970 0x1584 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
    17:21:43.0971 0x1584 rdpbus - ok
    17:21:43.0988 0x1584 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
    17:21:43.0989 0x1584 RDPCDD - ok
    17:21:44.0024 0x1584 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
    17:21:44.0024 0x1584 RDPENCDD - ok
    17:21:44.0045 0x1584 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
    17:21:44.0046 0x1584 RDPREFMP - ok
    17:21:44.0084 0x1584 [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
    17:21:44.0090 0x1584 RDPWD - ok
    17:21:44.0130 0x1584 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
    17:21:44.0136 0x1584 rdyboost - ok
    17:21:44.0266 0x1584 RegFltrX64 - ok
    17:21:44.0327 0x1584 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll
    17:21:44.0336 0x1584 RemoteAccess - ok
    17:21:44.0380 0x1584 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll
    17:21:44.0392 0x1584 RemoteRegistry - ok
    17:21:44.0480 0x1584 [ 085D18C71AB2611A3D61528132B6501E, 2AD2DD88EBD8C498E3043CDAA37E83C69F7FE2FD6B65524F631527555B80C112 ] RoxioNow Service C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
    17:21:44.0493 0x1584 RoxioNow Service - ok
    17:21:44.0529 0x1584 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
    17:21:44.0534 0x1584 RpcEptMapper - ok
    17:21:44.0564 0x1584 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe
    17:21:44.0565 0x1584 RpcLocator - ok
    17:21:44.0599 0x1584 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll
    17:21:44.0614 0x1584 RpcSs - ok
    17:21:44.0666 0x1584 [ 1F5E7AF59B390261A85F5BEDB1BB88B3, 8A0B23EED74475E6790EF03E54B53BB964A0EC08ADF28BD6AAFA9CF6BE6F20DA ] RSPCIESTOR C:\Windows\system32\DRIVERS\RtsPStor.sys
    17:21:44.0675 0x1584 RSPCIESTOR - ok
    17:21:44.0719 0x1584 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
    17:21:44.0721 0x1584 rspndr - ok
    17:21:44.0769 0x1584 [ EA5532868BA76923D75BCB2A1448D810, C1489714C9BC95BB76134E6B8F28C5A3D044E9B2857F01BFEEEE7C8A25C74E7D ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
    17:21:44.0780 0x1584 RTL8167 - ok
    17:21:44.0849 0x1584 [ 508D997A5E9F400FADE6C85251BF13DF, C0DD6B7821E8ADC25F8C7ACF855E2917B6CF8FF835D14674575BD150A8DA9DEB ] RTL8192Ce C:\Windows\system32\DRIVERS\rtl8192Ce.sys
    17:21:44.0873 0x1584 RTL8192Ce - ok
    17:21:44.0889 0x1584 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] SamSs C:\Windows\system32\lsass.exe
    17:21:44.0891 0x1584 SamSs - ok
    17:21:44.0943 0x1584 [ 3289766038DB2CB14D07DC84392138D5, A7790B787690CC1A8B97E4532090C5295350A836A9474DEA74CEB3E81CF26124 ] SASDIFSV C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS
    17:21:44.0944 0x1584 SASDIFSV - ok
    17:21:44.0973 0x1584 [ 58A38E75F3316A83C23DF6173D41F2B5, B0A8CDA1D164B7534FB41AB80792861384709BF0F914F44553275CF20194F1A1 ] SASKUTIL C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS
    17:21:44.0974 0x1584 SASKUTIL - ok
    17:21:45.0011 0x1584 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
    17:21:45.0014 0x1584 sbp2port - ok
    17:21:45.0040 0x1584 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll
    17:21:45.0047 0x1584 SCardSvr - ok
    17:21:45.0069 0x1584 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
    17:21:45.0070 0x1584 scfilter - ok
    17:21:45.0123 0x1584 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll
    17:21:45.0155 0x1584 Schedule - ok
    17:21:45.0273 0x1584 [ D2E07BE7F46585319B764E459BD052A1, 0D5FF56037D94D7966233909C7F6DA37DE106E5BCD12A580CEE814AD4E3A9C10 ] SCManager C:\Program Files (x86)\SafeConnect\scManager.sys
    17:21:45.0285 0x1584 SCManager - ok
    17:21:45.0333 0x1584 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll
    17:21:45.0336 0x1584 SCPolicySvc - ok
    17:21:45.0380 0x1584 [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys
    17:21:45.0384 0x1584 sdbus - ok
    17:21:45.0419 0x1584 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll
    17:21:45.0425 0x1584 SDRSVC - ok
    17:21:45.0451 0x1584 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys
    17:21:45.0452 0x1584 secdrv - ok
    17:21:45.0469 0x1584 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll
    17:21:45.0472 0x1584 seclogon - ok
    17:21:45.0486 0x1584 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll
    17:21:45.0489 0x1584 SENS - ok
    17:21:45.0510 0x1584 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll
    17:21:45.0519 0x1584 SensrSvc - ok
    17:21:45.0544 0x1584 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\drivers\serenum.sys
    17:21:45.0546 0x1584 Serenum - ok
    17:21:45.0565 0x1584 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys
    17:21:45.0568 0x1584 Serial - ok
    17:21:45.0575 0x1584 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys
    17:21:45.0577 0x1584 sermouse - ok
    17:21:45.0613 0x1584 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll
    17:21:45.0618 0x1584 SessionEnv - ok
    17:21:45.0624 0x1584 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
    17:21:45.0625 0x1584 sffdisk - ok
    17:21:45.0632 0x1584 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
    17:21:45.0633 0x1584 sffp_mmc - ok
    17:21:45.0638 0x1584 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
    17:21:45.0639 0x1584 sffp_sd - ok
    17:21:45.0645 0x1584 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
    17:21:45.0646 0x1584 sfloppy - ok
    17:21:45.0698 0x1584 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll
    17:21:45.0709 0x1584 SharedAccess - ok
    17:21:45.0738 0x1584 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
    17:21:45.0749 0x1584 ShellHWDetection - ok
    17:21:45.0771 0x1584 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
    17:21:45.0772 0x1584 SiSRaid2 - ok
    17:21:45.0806 0x1584 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
    17:21:45.0809 0x1584 SiSRaid4 - ok
    17:21:45.0837 0x1584 [ 8C4F0DCC6A5100D48F9B2F950CDD220F, 7B66C259BEBFEA527BFEC2B69E8224EE2277CB736EF9E0F5A92C932657EC8351 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
    17:21:45.0841 0x1584 SkypeUpdate - ok
    17:21:45.0856 0x1584 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys
    17:21:45.0859 0x1584 Smb - ok
    17:21:45.0908 0x1584 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
    17:21:45.0910 0x1584 SNMPTRAP - ok
    17:21:45.0937 0x1584 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys
    17:21:45.0938 0x1584 spldr - ok
    17:21:45.0989 0x1584 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe
    17:21:46.0006 0x1584 Spooler - ok
    17:21:46.0183 0x1584 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe
    17:21:46.0276 0x1584 sppsvc - ok
    17:21:46.0321 0x1584 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll
    17:21:46.0324 0x1584 sppuinotify - ok
    17:21:46.0362 0x1584 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys
    17:21:46.0374 0x1584 srv - ok
    17:21:46.0403 0x1584 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
    17:21:46.0414 0x1584 srv2 - ok
    17:21:46.0473 0x1584 [ 0C4540311E11664B245A263E1154CEF8, 63376322BFFAFF2F166AF3FDD3F1A346C21FAE21F406F659F8630779D1D6525D ] SrvHsfHDA C:\Windows\system32\DRIVERS\VSTAZL6.SYS
    17:21:46.0481 0x1584 SrvHsfHDA - ok
    17:21:46.0556 0x1584 [ 02071D207A9858FBE3A48CBFD59C4A04, FEA4DEBAEC3465E0C7C1E8B721805922F6BBCB96A60A193B11688F4252F4B89E ] SrvHsfV92 C:\Windows\system32\DRIVERS\VSTDPV6.SYS
    17:21:46.0594 0x1584 SrvHsfV92 - ok
    17:21:46.0652 0x1584 [ 18E40C245DBFAF36FD0134A7EF2DF396, 0138A68958112101A5D3BD94114F320CE80B0C9A93E009AC78DE7415FCCC7DE7 ] SrvHsfWinac C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
    17:21:46.0672 0x1584 SrvHsfWinac - ok
    17:21:46.0696 0x1584 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
    17:21:46.0701 0x1584 srvnet - ok
    17:21:46.0733 0x1584 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
    17:21:46.0740 0x1584 SSDPSRV - ok
    17:21:46.0762 0x1584 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll
    17:21:46.0766 0x1584 SstpSvc - ok
    17:21:46.0854 0x1584 [ A6B2EC3A2B6AD7C3F7B2F3495CADE4C0, AD540FB4F300731DE403FB95F110A0F3DBA25917A91EAB23966286DD88C98D17 ] STacSV C:\Program Files\IDT\WDM\STacSV64.exe
    17:21:46.0863 0x1584 STacSV - ok
    17:21:46.0979 0x1584 [ A87A39F9B42D82F5D60D36BB1D3CC9D3, F609CC721B898B5053FE34B24C94970453BD57441F9A2C93D4F77CB297D56169 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
    17:21:46.0999 0x1584 Steam Client Service - ok
    17:21:47.0032 0x1584 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys
    17:21:47.0033 0x1584 stexstor - ok
    17:21:47.0090 0x1584 [ EBA98394A7D58F7552C52192BD8FA7E6, 4238870E50132E87772300058B37E36973695CC1A5E62117EEF4B424C6A137E4 ] STHDA C:\Windows\system32\DRIVERS\stwrt64.sys
    17:21:47.0105 0x1584 STHDA - ok
    17:21:47.0170 0x1584 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll
    17:21:47.0188 0x1584 stisvc - ok
    17:21:47.0219 0x1584 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys
    17:21:47.0220 0x1584 swenum - ok
    17:21:47.0268 0x1584 [ E08E46FDD841B7184194011CA1955A0B,
     
  11. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    TDSS cont. last one.

    9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll
    17:21:47.0283 0x1584 swprv - ok
    17:21:47.0384 0x1584 [ C447977ED2A4AE9346FE3A0579A34D7C, 35A8F13AAB57549BBC1457AD86F44FEF2394E55841A1D6D6C5E029310E02F377 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys
    17:21:47.0422 0x1584 SynTP - ok
    17:21:47.0513 0x1584 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll
    17:21:47.0559 0x1584 SysMain - ok
    17:21:47.0597 0x1584 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
    17:21:47.0601 0x1584 TabletInputService - ok
    17:21:47.0631 0x1584 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll
    17:21:47.0641 0x1584 TapiSrv - ok
    17:21:47.0663 0x1584 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll
    17:21:47.0667 0x1584 TBS - ok
    17:21:47.0784 0x1584 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC, 12B84828F4E3B8AA3CD178AF47CF1F172A35B74C0C9F5F72EEA06451816B6E27 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
    17:21:47.0835 0x1584 Tcpip - ok
    17:21:47.0984 0x1584 [ F782CAD3CEDBB3F9FFE3BF2775D92DDC, 12B84828F4E3B8AA3CD178AF47CF1F172A35B74C0C9F5F72EEA06451816B6E27 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
    17:21:48.0033 0x1584 TCPIP6 - ok
    17:21:48.0065 0x1584 [ DF687E3D8836BFB04FCC0615BF15A519, 7C5B1E72673B4299DFC21E869F0FBB28198CA54DF4F4AF7080005F2D82467784 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
    17:21:48.0066 0x1584 tcpipreg - ok
    17:21:48.0091 0x1584 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
    17:21:48.0092 0x1584 TDPIPE - ok
    17:21:48.0116 0x1584 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
    17:21:48.0117 0x1584 TDTCP - ok
    17:21:48.0149 0x1584 [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
    17:21:48.0153 0x1584 tdx - ok
    17:21:48.0166 0x1584 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys
    17:21:48.0169 0x1584 TermDD - ok
    17:21:48.0232 0x1584 [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService C:\Windows\System32\termsrv.dll
    17:21:48.0252 0x1584 TermService - ok
    17:21:48.0269 0x1584 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll
    17:21:48.0272 0x1584 Themes - ok
    17:21:48.0305 0x1584 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll
    17:21:48.0308 0x1584 THREADORDER - ok
    17:21:48.0335 0x1584 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll
    17:21:48.0341 0x1584 TrkWks - ok
    17:21:48.0394 0x1584 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
    17:21:48.0399 0x1584 TrustedInstaller - ok
    17:21:48.0415 0x1584 [ CE18B2CDFC837C99E5FAE9CA6CBA5D30, CA302C2ED6A6BF4670BAAA4F5C14C0238CF0C80316856AA0DB053F4D593033AC ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
    17:21:48.0416 0x1584 tssecsrv - ok
    17:21:48.0449 0x1584 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
    17:21:48.0451 0x1584 TsUsbFlt - ok
    17:21:48.0459 0x1584 [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
    17:21:48.0460 0x1584 TsUsbGD - ok
    17:21:48.0487 0x1584 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
    17:21:48.0490 0x1584 tunnel - ok
    17:21:48.0498 0x1584 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
    17:21:48.0500 0x1584 uagp35 - ok
    17:21:48.0532 0x1584 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
    17:21:48.0541 0x1584 udfs - ok
    17:21:48.0574 0x1584 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe
    17:21:48.0578 0x1584 UI0Detect - ok
    17:21:48.0595 0x1584 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
    17:21:48.0597 0x1584 uliagpkx - ok
    17:21:48.0637 0x1584 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys
    17:21:48.0639 0x1584 umbus - ok
    17:21:48.0657 0x1584 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys
    17:21:48.0658 0x1584 UmPass - ok
    17:21:48.0695 0x1584 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll
    17:21:48.0707 0x1584 upnphost - ok
    17:21:48.0743 0x1584 [ 6F1A3157A1C89435352CEB543CDB359C, 325B46220779C5FE3B6F19FF794474837FAB9675D9C98ACB68CCE47B1CFE5F12 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
    17:21:48.0747 0x1584 usbccgp - ok
    17:21:48.0790 0x1584 [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys
    17:21:48.0793 0x1584 usbcir - ok
    17:21:48.0814 0x1584 [ C025055FE7B87701EB042095DF1A2D7B, D7B34B6C2C5BD3C8141895AC21BB637EA5E3C4F7A85EEF4C4C36E6BB2045A3D9 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
    17:21:48.0816 0x1584 usbehci - ok
    17:21:48.0863 0x1584 [ B7037444DC5138FC7D3D3968B4DE5C4B, DD9E3E40766A3F3B708DA341B7280E447788218ED677E1A24EC0CD04B04281B2 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
    17:21:48.0865 0x1584 usbfilter - ok
    17:21:48.0896 0x1584 [ 287C6C9410B111B68B52CA298F7B8C24, 98900C08FE662A00DF8B37837B2BEBF9ACB7989C387AF36B2109B05A4F462D4E ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
    17:21:48.0905 0x1584 usbhub - ok
    17:21:48.0934 0x1584 [ 9840FC418B4CBD632D3D0A667A725C31, 776D86A032DCA2842EF7AADB35473193CA80547223EFAA7F110F296C377077B0 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
    17:21:48.0935 0x1584 usbohci - ok
    17:21:48.0962 0x1584 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
    17:21:48.0963 0x1584 usbprint - ok
    17:21:48.0996 0x1584 [ AAA2513C8AED8B54B189FD0C6B1634C0, 02FEE0B756AA559C29477A19861AC16D5A3152DC3C897C7D466423438B6A5E42 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys
    17:21:48.0998 0x1584 usbscan - ok
    17:21:49.0014 0x1584 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
    17:21:49.0017 0x1584 USBSTOR - ok
    17:21:49.0033 0x1584 [ 62069A34518BCF9C1FD9E74B3F6DB7CD, C58E21424718729324B285BEE1C96551540FCC3FD650B2D10895EBA48D981E25 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
    17:21:49.0035 0x1584 usbuhci - ok
    17:21:49.0063 0x1584 [ 454800C2BC7F3927CE030141EE4F4C50, 10901E62DAA70657C499AD590DECCCA6E46FDDF4A193B2F19279E1B8ED7B1E44 ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys
    17:21:49.0069 0x1584 usbvideo - ok
    17:21:49.0115 0x1584 [ 70D05EE263568A742D14E1876DF80532, D49D7B60EE30F2398B8B532F4A4C3F17535485F2BDB9B14AB600E2A4E3F12A6B ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys
    17:21:49.0117 0x1584 usb_rndisx - ok
    17:21:49.0134 0x1584 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll
    17:21:49.0138 0x1584 UxSms - ok
    17:21:49.0160 0x1584 [ C118A82CD78818C29AB228366EBF81C3, 00820F3065871DCBA52A27C7F73BA470C4F2CB26EFB7F76FEF8B1207F81B284D ] VaultSvc C:\Windows\system32\lsass.exe
    17:21:49.0162 0x1584 VaultSvc - ok
    17:21:49.0176 0x1584 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
    17:21:49.0178 0x1584 vdrvroot - ok
    17:21:49.0212 0x1584 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe
    17:21:49.0229 0x1584 vds - ok
    17:21:49.0314 0x1584 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
    17:21:49.0316 0x1584 vga - ok
    17:21:49.0340 0x1584 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys
    17:21:49.0341 0x1584 VgaSave - ok
    17:21:49.0356 0x1584 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
    17:21:49.0364 0x1584 vhdmp - ok
    17:21:49.0371 0x1584 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys
    17:21:49.0372 0x1584 viaide - ok
    17:21:49.0386 0x1584 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys
    17:21:49.0389 0x1584 volmgr - ok
    17:21:49.0425 0x1584 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
    17:21:49.0436 0x1584 volmgrx - ok
    17:21:49.0453 0x1584 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys
    17:21:49.0462 0x1584 volsnap - ok
    17:21:49.0489 0x1584 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
    17:21:49.0494 0x1584 vsmraid - ok
    17:21:49.0600 0x1584 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe
    17:21:49.0650 0x1584 VSS - ok
    17:21:49.0686 0x1584 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
    17:21:49.0687 0x1584 vwifibus - ok
    17:21:49.0715 0x1584 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
    17:21:49.0718 0x1584 vwififlt - ok
    17:21:49.0759 0x1584 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll
    17:21:49.0771 0x1584 W32Time - ok
    17:21:49.0810 0x1584 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
    17:21:49.0811 0x1584 WacomPen - ok
    17:21:49.0840 0x1584 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
    17:21:49.0843 0x1584 WANARP - ok
    17:21:49.0861 0x1584 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
    17:21:49.0865 0x1584 Wanarpv6 - ok
    17:21:49.0990 0x1584 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
    17:21:50.0027 0x1584 WatAdminSvc - ok
    17:21:50.0113 0x1584 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe
    17:21:50.0157 0x1584 wbengine - ok
    17:21:50.0244 0x1584 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
    17:21:50.0252 0x1584 WbioSrvc - ok
    17:21:50.0271 0x1584 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll
    17:21:50.0283 0x1584 wcncsvc - ok
    17:21:50.0297 0x1584 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
    17:21:50.0300 0x1584 WcsPlugInService - ok
    17:21:50.0333 0x1584 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys
    17:21:50.0334 0x1584 Wd - ok
    17:21:50.0394 0x1584 [ 442783E2CB0DA19873B7A63833FF4CB4, 09254970265476214F3187CC22A4F9C7C2769D419600E83FBE302C3A103E527F ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
    17:21:50.0415 0x1584 Wdf01000 - ok
    17:21:50.0451 0x1584 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\Windows\system32\wdi.dll
    17:21:50.0455 0x1584 WdiServiceHost - ok
    17:21:50.0473 0x1584 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\Windows\system32\wdi.dll
    17:21:50.0477 0x1584 WdiSystemHost - ok
    17:21:50.0523 0x1584 [ 3DB6D04E1C64272F8B14EB8BC4616280, 9138642B1C19F895D4ECFD930160C80FBF15813CE63BBF4C899842C300FD3026 ] WebClient C:\Windows\System32\webclnt.dll
    17:21:50.0534 0x1584 WebClient - ok
    17:21:50.0604 0x1584 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll
    17:21:50.0629 0x1584 Wecsvc - ok
    17:21:50.0641 0x1584 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll
    17:21:50.0645 0x1584 wercplsupport - ok
    17:21:50.0686 0x1584 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll
    17:21:50.0690 0x1584 WerSvc - ok
    17:21:50.0728 0x1584 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
    17:21:50.0729 0x1584 WfpLwf - ok
    17:21:50.0746 0x1584 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
    17:21:50.0747 0x1584 WIMMount - ok
    17:21:50.0766 0x1584 WinDefend - ok
    17:21:50.0775 0x1584 WinHttpAutoProxySvc - ok
    17:21:50.0841 0x1584 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
    17:21:50.0850 0x1584 Winmgmt - ok
    17:21:50.0958 0x1584 [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM C:\Windows\system32\WsmSvc.dll
    17:21:51.0012 0x1584 WinRM - ok
    17:21:51.0078 0x1584 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
    17:21:51.0080 0x1584 WinUsb - ok
    17:21:51.0142 0x1584 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll
    17:21:51.0167 0x1584 Wlansvc - ok
    17:21:51.0329 0x1584 [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    17:21:51.0389 0x1584 wlidsvc - ok
    17:21:51.0427 0x1584 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
    17:21:51.0428 0x1584 WmiAcpi - ok
    17:21:51.0459 0x1584 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
    17:21:51.0464 0x1584 wmiApSrv - ok
    17:21:51.0490 0x1584 WMPNetworkSvc - ok
    17:21:51.0523 0x1584 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll
    17:21:51.0526 0x1584 WPCSvc - ok
    17:21:51.0551 0x1584 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
    17:21:51.0557 0x1584 WPDBusEnum - ok
    17:21:51.0585 0x1584 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
    17:21:51.0586 0x1584 ws2ifsl - ok
    17:21:51.0609 0x1584 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll
    17:21:51.0615 0x1584 wscsvc - ok
    17:21:51.0620 0x1584 WSearch - ok
    17:21:51.0746 0x1584 [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv C:\Windows\system32\wuaueng.dll
    17:21:51.0812 0x1584 wuauserv - ok
    17:21:51.0851 0x1584 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
    17:21:51.0854 0x1584 WudfPf - ok
    17:21:51.0904 0x1584 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
    17:21:51.0910 0x1584 WUDFRd - ok
    17:21:51.0950 0x1584 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
    17:21:51.0960 0x1584 wudfsvc - ok
    17:21:52.0003 0x1584 [ CE8CF9DE9CBFDAA318BD04D8BE3FCADA, D0438DFD8A196BD55140D89AACF74E47893AF42771CDCC93970E7CF6E9E9C232 ] WwanSvc C:\Windows\System32\wwansvc.dll
    17:21:52.0011 0x1584 WwanSvc - ok
    17:21:52.0032 0x1584 ================ Scan global ===============================
    17:21:52.0056 0x1584 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
    17:21:52.0095 0x1584 [ 9E479C2B605C25DA4971ABA36250FAEF, 1D1D5CE908A6B17CDFA257A46121D7C938B56277B0F5256FBA29DF93352EAA3D ] C:\Windows\system32\winsrv.dll
    17:21:52.0123 0x1584 [ 9E479C2B605C25DA4971ABA36250FAEF, 1D1D5CE908A6B17CDFA257A46121D7C938B56277B0F5256FBA29DF93352EAA3D ] C:\Windows\system32\winsrv.dll
    17:21:52.0152 0x1584 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
    17:21:52.0189 0x1584 [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
    17:21:52.0199 0x1584 [ Global ] - ok
    17:21:52.0200 0x1584 ================ Scan MBR ==================================
    17:21:52.0218 0x1584 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
    17:21:52.0719 0x1584 \Device\Harddisk0\DR0 - ok
    17:21:52.0728 0x1584 [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR4
    17:21:52.0737 0x1584 \Device\Harddisk1\DR4 - ok
    17:21:52.0738 0x1584 ================ Scan VBR ==================================
    17:21:52.0743 0x1584 [ 27355C49FD6DF2112929DA970E9AE736 ] \Device\Harddisk0\DR0\Partition1
    17:21:52.0747 0x1584 \Device\Harddisk0\DR0\Partition1 - ok
    17:21:52.0756 0x1584 [ 290BF59F0AEAEFFE56B1FD772E68EB1C ] \Device\Harddisk0\DR0\Partition2
    17:21:52.0759 0x1584 \Device\Harddisk0\DR0\Partition2 - ok
    17:21:52.0825 0x1584 [ 63D5B6CDDF4C6E800757292007BC37F2 ] \Device\Harddisk0\DR0\Partition3
    17:21:52.0831 0x1584 \Device\Harddisk0\DR0\Partition3 - ok
    17:21:52.0894 0x1584 [ BAF404B89E850D34CBF9A308D9D6B680 ] \Device\Harddisk0\DR0\Partition4
    17:21:52.0899 0x1584 \Device\Harddisk0\DR0\Partition4 - ok
    17:21:52.0908 0x1584 [ 3016B13607158A5C9FFFC3ED8F48312D ] \Device\Harddisk1\DR4\Partition1
    17:21:52.0912 0x1584 \Device\Harddisk1\DR4\Partition1 - ok
    17:21:52.0913 0x1584 Waiting for KSN requests completion. In queue: 41
    17:21:53.0913 0x1584 Waiting for KSN requests completion. In queue: 41
    17:21:54.0913 0x1584 Waiting for KSN requests completion. In queue: 41
    17:21:55.0913 0x1584 Waiting for KSN requests completion. In queue: 41
    17:21:56.0964 0x1584 AV detected via SS2: Microsoft Security Essentials, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.1.522.0 ), 0x61000 ( enabled : updated )
    17:21:56.0974 0x1584 Win FW state via NFP2: enabled
    17:21:59.0825 0x1584 ============================================================
    17:21:59.0825 0x1584 Scan finished
    17:21:59.0825 0x1584 ============================================================
    17:21:59.0854 0x0f90 Detected object count: 0
    17:21:59.0855 0x0f90 Actual detected object count: 0
     
     
  12. Broni

    Broni Malware Annihilator Posts: 47,156   +264

    Go on...
     
  13. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    I was forced to uninstall Mozilla Firefox after my last post, as it was causing the affected computer to continually freeze up. Since then, I have been using komodo and have had no problems. The iexplore.exe *32 process is no longer showing up and my CPU is staying pretty low, only up to about 50% while the rogue killer scan is running.

    The fact that I am not experiencing problems after mozilla firefox was removed leads me to believe there was a problem with flash or shockwave or another firefox plugin. However I am continuing the analysis as requested.
     
  14. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    I am now getting 10+ dllhost.exe *32 processes running and taking up all of my CPU. It is nearly impossible to perform any actions on the PC. I have not seen any iexplore.exe *32 processes thought. Still running the roguekiller.
     
  15. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Update,

    I got roguekiller to run finally and it is showing as killing numerous dllhost.exe processes. (Its still doing that, I think it may be stuck). Iexplore.exe has reappeared in force.

    Just wanted to say thank you guys for all your help incase I havent already. Sorry if I ever come across as being short with yall...its a very frustrating issue im having as yall probably know. Just glad it happened after finals week
     
  16. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    My rogue killer keeps getting stuck about 60% of the way through the scan on: Policy HJ hijacks

    Also, I was looking in the startup tab of MSConfig and found two instances of pcreg which I don't know how to remove from my computer, but I unclicked them so they wont open when my computer opens up.

    Upon doing that and restarting my computer, there are no iexplore.exe or dllhost.exe processes running on my task manager and my CPU usage is less than 10%
     
    Last edited: May 9, 2014
  17. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Scratch that, they are both back again with CPU at 100% after restarting again with wifi on
     
  18. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    As long as wifi is off and there is no internet connection when I restart, no problems occur. Rogue killer still wont get past policy hijacks HC INPROC.

    Running MBAR now.

    Here is the log from what I got from roguekiller before it froze and I closed it.

    RogueKiller V8.8.15 [Mar 27 2014] by Adlice Software
    mail : http://www.adlice.com/contact/
    Feedback : http://forum.adlice.com
    Website : http://www.adlice.com/softwares/roguekiller/
    Blog : http://www.adlice.com

    Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
    Started in : Normal mode
    User : JoshLaptop [Admin rights]
    Mode : Scan [Aborted] -- Date : 05/09/2014 20:24:17

    ¤¤¤ Bad processes : 3 ¤¤¤
    [SUSP PATH][DLL] regsvr32.exe -- C:\Users\JoshLaptop\AppData\Local\Etrrtion\dcv.dll [-] -> regsvr32.exe KILLED [TermProc]
    [SUSP PATH][DLL] regsvr32.exe -- C:\Users\JoshLaptop\AppData\Local\Etrrtion\dcv.dll [-] -> regsvr32.exe KILLED [TermProc]
    [SVCHOST] svchost.exe -- C:\Windows\SysWOW64\svchost.exe [7] -> KILLED [TermProc]

    ¤¤¤ Registry Entries : 20 ¤¤¤
    [RUN][SUSP PATH] HKCU\[...]\Run : Etrrtion (regsvr32.exe C:\Users\JoshLaptop\AppData\Local\Etrrtion\dcv.dll [7][-]) -> FOUND
    [RUN][SUSP PATH] HKCU\[...]\Run : rlfvxb (regsvr32.exe "C:\ProgramData\rlfvxb.dat" [x]) -> FOUND
    [RUN][SUSP PATH] HKUS\S-1-5-21-3423861454-1642602433-99786177-1001\[...]\Run : Etrrtion (regsvr32.exe C:\Users\JoshLaptop\AppData\Local\Etrrtion\dcv.dll [7][-]) -> FOUND
    [RUN][SUSP PATH] HKUS\S-1-5-21-3423861454-1642602433-99786177-1001\[...]\Run : rlfvxb (regsvr32.exe "C:\ProgramData\rlfvxb.dat" [x]) -> FOUND
    [PROXY IE][PUM] HKCU\[...]\Internet Settings : ProxyEnable (1) -> FOUND
    [HJ POL][PUM] HKCU\[...]\System : DisableTaskMgr (0) -> FOUND
    [HJ POL][PUM] HKCU\[...]\System : DisableRegistryTools (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorUser (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorUser (0) -> FOUND
    [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> FOUND
    [HJ][PUM] HKLM\[...]\Wow6432Node\[...]\SystemRestore : DisableSR (1) -> FOUND
    [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
    [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

    ¤¤¤ Scheduled tasks : 0 ¤¤¤

    ¤¤¤ Startup Entries : 0 ¤¤¤

    ¤¤¤ Web browsers : 0 ¤¤¤

    ¤¤¤ Browser Addons : 0 ¤¤¤

    ¤¤¤ Particular Files / Folders: ¤¤¤

    ¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤

    ¤¤¤ External Hives: ¤¤¤

    ¤¤¤ Infection : ¤¤¤

    ¤¤¤ HOSTS File: ¤¤¤
    --> %SystemRoot%\System32\drivers\etc\hosts




    ¤¤¤ MBR Check: ¤¤¤

    Finished : << RKreport[0]_S_05092014_202417.txt >>
    RKreport[0]_S_05082014_203630.txt;RKreport[0]_S_05092014_170917.txt
     
  19. Broni

    Broni Malware Annihilator Posts: 47,156   +264

    I need second log from RogueKiller (after fixes) and MBAR logs.
     
  20. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Roguekiller wont finish running, it gets frozen, how can I get a log or fix the stuff that its found so far?

    MBAR is running now and has found two things so far. It's running smoothly as I am not connected to the internet. Will post as soon as it finishes.
     
  21. Broni

    Broni Malware Annihilator Posts: 47,156   +264

    Let me know.
     
  22. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Ã?
    ?•æt Ï K1P)¨ì^žË_ÚÊ××þ=c¸LøoQ‰Û°¡¦©ÉÅN½Ð«ö£ ϼ䚜ƒumEq/î›S)nj[ď"Àti¬R¯ÍŽ²Ëf¢ŒqÄ—Ù¤wøÔ—˜£ä(é‘ÆʃT°ÈN§M¡œAȁä`쌍DFpôK±9G‘¨±=՝¹§˜—Y+\HV/cž«ôc¡üRQVvF³Õwª;O¹d–=ËñYJª#*èA¬{ØD–Ó¤· ræ;N,ßf‘ß)výŒõRO"WÁß "xÞ1 GIaêVwðwÝàˆ‘½
    b·|ÿ2<ûQƒ%oUÂ…uèsÑÄnÞ´ÅtÍÏ ƒ£Å*݇/S߆ÚÔH¡ø¨GRm:¾e¶¨¢øÈ’õ9¼[“XÕ5~ uÚG»]¹»m»=cGPð‡HTýΪºNš·±ò9“NÑÙ£w“7¯-VŠ£UK©êöô^ÂŒy™¾åV„êC_˜d|— »¸o‘Ú¢PeÐùµÅa<äzÖ^)]Z(H1p*Ѿ
    Ì‰†ƒþç 7oÎ/ò·Ÿ™P°>yo# éÖÆ(efiáÛ¡Ín½Öm\¬©ÿz»Éšü9)‘¼~b„÷¦_t’\š"7]zXn·ï2l¶í¦|”Õ:yÖýMdD2æ\f"*ŒgÉÖÚê˜ôœ/"=TU6.Ìrs,-˜’ÑäuߺÈpÙ$üH6k\V3¬lé?€vøíæZ½žª )L/ƒ×)+Fò»*p2–R?Gèþ)ZòBŸ´èC‡t°nl¤€(êjMôô«Tk/øBVɐó[Vò
    •õ»À9ZM¤Š÷
    ⿽JgÚ+ɱï„ЈpéöÑÞþ6Ũ-‰x§•èÖ e*j…zfR'$PSò÷q  —„1#³yBdk½¤Æ±¥É—‡jÆ„¶†‰ùøëŽÞå;©FÆì•Ê,kzÞfNa|á*eiX>}6Œ]JÀ½¹mÒ4˜ÌQŽœz—%sRÎxóçg´|VÅö|¡pC¤hÓ˜[\XÍÜô£ŠêßšñÔ”Žßä~eAFÃ…;“¶ÍVSì<H=—f‰®GBÖüYYw‡!Ûž¯±6?å©H—)ò½Pöu5ÛI[«›Û?PÖïÈG’´©ß·
    òê'x]ñôa1m1‡!ÒÄp·9Œ—KÁxÖ]»ì´G¸¨Ýq2ÔÏ‹xѸ>xì›kÖ¯1·K¾fW4úJKŽÑ;†®ãÌä™z‹Â¿ÒTs ¥gÜÂâšpÊ¡ÜÖu-‹"×┺ìº>æÞ0å9BUÞf;œ²u*~–ÔTÿM~®ie)Œå³ã'f*«ßŠÿ"D^Ó\´Ö`P‰ê°e¾5/¤ân7Zz´Zïü@kJg È$…6*°ß.-¿{¾>‚*{Ÿà
    ƒ«èŸ®
    èY«'9ÒÆƪJ²åz
    B"/ÜI”ÛäâÚ?üæBµ\b7ÒóT&ÅЃ`0¥äìè{[Š åï©
    —(˜íXý¹ÞMÏ•}üúñ°Õ¾ýüLäÒõfQ+…x†±‰75œy€`ùô-&tÖTQ¼Û7ÕJY\߆H0Læ1ºªhªém.Š®&õêU0ÇĦâèEßäšCö‚ 0Ü]›:µµÀQ‚Ì[rÒÄsW¶°ñÙ_wƒÒd¹ØŒ¸&»¥U“‚®_m¹ä Ѳí£RB¥ÔvþÊY_ÜH³b—UtŠ[Ý·õuûtƒÛ2C Šu¬K:ø¾(€hIà‚B§ä–ãä0ž±ŠÉ¯Ä´Ÿ)—˸R,Ç.Gµõ±rKÂH-ìKq6ùA³{Û¹}{k!½ @ÝFu%; ×Æ&$¨9áŏ2f•ìqIÀ÷ÖÊ=; ¼R5*
    N°Œ+!þmë›fÝA0Û? {‘¬°¤+%¢yB«Ðÿ-÷(«â¡D~»ã5# @)ë;´ÛÅÕG:³{¸’âŸ8i|ÿr‰ «e±2ýÁTƒº»-¿ÄÄ…‰ —%^ŒÊgqŒDèšÄá,k!8îg ÚK9<à,
    6›W¤*݃ùj€žŒ¨°Ùòr^±1‘ÍÉ{Ç>—-Ù¨…—¯®y
    ‡cžÛ£3¼Ï¾Cƒ~°&Ë- |ÆÅ~5#&?^ð<µ$,A'W<¶p;5ÔëM42¤õÆfäóé*S‘Ú—.‹Ÿ>Z(ÙæN¼~+]íK^ ÎE°Å”à ªNé‚« {Ý` ³P8çýò?Ý¥}U1ªWª9T¾ÀF°Ì[eR³~’{`oíÜô½\Z(+Âö1†7DXy.;^±ï¹D?̤ÿza®Ìmn?x˜<"ã7õWë’È|wîÊºlô,ÅÛGQ_^o´œ7×å<^ü<ÈfMŒÄkÞÊó”8…ÐoUÐLùá腁7sÉ5ã£ÎÃ7þ=ÖZ¶om(³/úG×¥µ‚ .}ÔUb»÷·ŒFB肳bT¬gæ‰oCc¥SÝwöãIÈrM’?ˆ:ˆ÷â½BÓ ª‹8àiQøÐa·øɃG;Ø#+~º¬ótªQˆÈ®é§€² dQW툓A’ðB‰ö jjHöSЮÖú ÀƲš¼ƒ‰Þ̘›-6ÖZV4©mÐ…Ä:x7íl“vy[®ßµMåætîÜv !ïA:0¾.¦6h(™fHší„oö ځ˘FݺN;k¸n÷}·$ÃSZâˆ\Õ³®¬èèöômU°t‡ 6ÌÁÕ0μÑ[g ´·ñNÏ œoäÁ¨‡áX1Àäc'¹P÷¶"Nĉ8ƒ‹"ÐbŒ“c捙è»AeÜK£ï‘ë Y>
    r¢>œ1æÑú¼œe Ôë ²J8>¢°.z”·ÌTĉ#êµÄë—ßµF×蜔Œ|Œ Ë\yòSH ºÜÏ&ØÓ#+îõ5[ab©)_ÍþÌÆ’l«te”¹@‹ ÅTï5Ä¢W³>Øu±ÎŒXêOå~ÜÒS·`UibrŠ<c4ãpŸRÞ“ürY6‡#òªÀÂ+o‰áåìS{G;Ç#ÂuÃÓ¨ÓµnÓ$5y–M,sž±N¨e^¤;öZÒüês=P(]¼ ÕÀ¿ˆÎ†ÒsoŠ …Í³p¯Û§>
    ê\\õ~5÷Ûð ž*dÄui’+Þ:ìlrocOW4¥ ÍD=˜Q$!Ì2ðÐéábf>U^†ã›ÈA0ŠBT¹_Âh×DÈ‹I……y\lÙ…dØHEG
    CÛ! ª5ëCÕÑÕnAsÕò‘^ªjŒ5<DsŒŸÔçŠÈ}†_ñkMiŸiz¦$Ç|Íëá‚hyà>="ïÕd‹Íb½‚ã>Ãí!šm€Å«ðó©ª
    מñltTzÁ/4
    •åîùÎWt奾Oaõ“^çCÌ¿°a¤òd¬*+PŠó÷È6—ìñŒf÷½‚’´#ùÛc\§;_YŸºJÙ?ZùËár“FG@û¸Í<k1Uñ DZö[q؏:ëyð>’],ÒEÇXð=¯%e¤vŽNЙŒ ërïs¦{6b¿šf‚/ÝCl1f?Í)ð ß>IÛzúýo½£b• °½k®(En=¹•ùš e-¿Íx9Zú…ñýÝg¤±÷àÕÑxX¯?"'XڐH%kTÝõʳT63äd
    çÙEÝD֝…îŒ~N"èNýȁÇXã,,ULJ™WEd}éÖØŠ—Íf‚¡lF˜–¡HöƒÃmÃ"?SÞ¬¨«°#ð׳7-Ïmðoë(„ǽìrᲸ‚ÿ9ö™ÿcJÖâD!à&™véÍ–lªmsDpü鞏* OÆ2xå±Þ‡‹gLè² ¶ëóy¨v40 ~£>ï÷}ĶTUð*¥µHùcO¥j³ªhQÇîìHoˆ×3ìÑ8êÃõŠµrS•‰‘í%©½{È‚<ÌѼU+Þ~ ?ºù|Ža†H1#ƒ¡óÉ53A5ÝF¸erú÷54Ž nÀ> ¦Oaç¥]ØùW¼»;ú¿ø£!¸¨µ#ÈÄ&|¢@8ï»=Ylª%nœLͨ>ÅéuèK‘»àJØÈìB% ½~E:WVdÊòp‘ðZ›Ü¤²Bÿ”ˆ
    N03TÇH½ç:!ÖJŸe%Àï¾åZPTp’¹´R¼ †¤#ýú‰<ççOñQ…¿úDóÇ1We
    Ø:šæ \aøøQäJ
    ÛaúÛƒ¨Ã·â½Åô`Ü•Ø[Ÿn?¢&+»6©p.֞Ǐçt¨æ†‰(õj±~d!˜EÂ6ŒMýn†À"ÐÚ®—ÜàR»… WLf'4];³FÛþ¬¡×”%'æ]„\Æ‚†öY‹/MÐZ̽?JŠwáݶ(T6¸ê1+±QX@vOÈ‹—eòåNvÙÖrŪp¨¥ ìP$ä¿h½¤ÝI7Ä£1Š«`Z–nUu«aj:‡‹øU‹™~åCF¤+ɱSÉWÓø®Øƒ¬cüH¡ýÜã”Z]¢vÛÕ˜?¹±2tÉ]j#ËèeƾÿÄý›Ð•©~5À±ÒLÙú<Ç"ÛÐQgÙƤôc®ºZl¡‡‡~e ]gÇ´‘åS8 þA>
    íæ‚%«ÌE.Іʔøo ™’ßê/’~pÙJRüõ¡B÷xÿyœÄµê³¤åÿÍdïÈܽ-‘è¯M¥wm[_qœUžèÜ¿
    ’½FŠØ†°-/8(›Ch.÷ñ÷‘_å$Vù̏¿PÙ—›|¹ûGVã‰j*+Èó°ñˆúÁ?ô³È*ÇLõs×ÆŽ´Â‚TS)яAÝTO)
    ôE|z1î˜Öðw¬ÌÍ‘-ÍÄ;Ô‡Î!š Ò‚’~CôÑiH
    EYĵÜl#”‹ïOì©ç3¯†›* ìº,ÒÐ:N‚<•Þü?¯A‰YÓ9eÇ0OÄÒhñD°A©&„èši75°ÛÄêÞ´<Wh՝ð—«'I>\ÈÐüÅP;ßkC
    •{¬øʹb40ùÚ r%C´µ-@ähL Sj°o~ÎmÞýµúKGŽÙŠù”&„Þr QB¤ømÑüÌ*úÏ,l·Lû%ò[èLöõ™A_¹ï€ø#¸‘lóã¾n5hÊó‡Æ‘³ÅÙ¸tÅ“µIݲ
    6¸C—÷¶ð ZÄåµ8z˜wOšrµ\t%YƒñgÿËÝÐVÍcU¼|Šwbâ„]`}‹ÀjÔ (C=úD¬¬µ€%—ýL§Uâ`¹ˆ$ªŒ^øÎè7Nkõn÷Ô"u.=ΉÁÜjÐî
    ™šû ìN¾’RÆð~
    Š´]ʉÂ
    w/‚Qè\}ýI÷hÓ4Q\9ÐæF=m}²–ÕQƵkò)éÍu¿ˆ#Å®UYìhâ¶N%”0
    9ùœT¨úGK0½ã£‡Šµ°ÜÅat¯QD÷wGuÔ9^{‹êF
    .a€j6»¨å?<p6,#5#ÃòWD&6øgÇ–Ÿ§nÃEgxßÃô= Q”Kt¤ËfÀâºj%äY$Í—þª-ýØc /íò‡9\lèÌ!}Vä
    ´Lm’êò`åüú-Aÿ4Ô-F÷€ÊŒ#4oñÃíìËü)Ù‹‡,z4Ù>䐌€u€vOCWù?’>Ä;ŠI„¯à.‹óQ.KбO Ü @Ï$U4éFãcºÛ@EÖkÔYìWÃ^(s`
    Üê¼ËkËrš©ž3ôK…›G„B|-¬6›°a‰äº¿Bì”éÍØzI8SÌv)ØßÃô(Dl¤«¤Z3ÅIÝÓ¹+²a—¢¥›9
    hr@ÎÞˆ[ó*µ²šy¦P¿ÇsÙ«C”r‡YKPåUàÚ~ò¸„p²3m;[´72aYj‹º‹NçÐIŽgt:,û+€ºs¤uɡ¹¦Š"˜Üs#ñÚ, ý(ŠsŠ"mñÆúsþHïkãÏ_Öm}µ;±Á^p4j§VsKìe“O—b"e°†Bp¹IêT“§dÕmG7á )ìž0AJ f© @+娍âYtÒöt;ßékÖÃ23ÖJÜ’?UVàIِ»[¹&í[w)ÑÈKè±ÅHp«I– ®»ü^1¦ìÕç“ŒÆïIÚ‰˜SZŒ»çŽùgºH$²¼Ý££H‚à%Ûúþ—Œ¿½Sòâ¦}0ÈßA>†À!¶äõGôni‘Aüo½©N*WYB'¼:y`!Ë×}€³lB´Òe2ŽþabÙ®Õ”hǬ!ýuo}âð.†|9ŽÚ÷…Û˜ì|#ÜÚqE/vù¥êw¶N££å*X\Ä”Ÿœ~3«‘×Lnx\›«îèhî±ÓŽØ’¹Ý`‚ÛfúÃdIªÖ
    ۉ虦Iè {c(ˆ¡
    Å% C+0 ́øÊûJO†¥f`7Zš€ßHƒÀ"Ä-lš´Q ;,á$vPÀ´’†•ZõWMÛ
    ªÍnž¿{\ðš(Ô4Š)Ä‘›–0ì”[jHÁƒÚðˆU4â“}tÅnCª]h“ŠB@Q(qÁ®v*ˆYÄX(ПŠ²[Æº@$—
    EŠž9SäÑÊælÛÝ0Ðô;L,*BÊp
    ¸løûZÕPAÿÒ‹%½¬’†cl—9ß)âÉÖVˆ¦‹¼™Ë±~š[ÜêÂn”9$òeøŸ[춲„Ïv{íŸçXus#í€ÍA¿CÀFšœÒ
    â&ùHRÞÊ‘§ioNĦopkâ\£e¼VÍñAˉÎ~qâ2ä•@%©lK
    º› üE¨„߈”vbkÉ:Z=6Fï.
    È+½Ô¼ºŽÌ§Ø†ý¶!¸‰µ€É~‚òÜŒz}ª’€©Ý
    .š„Ø©(‰K{Á£è›q¹UšÏí[¥×ÑݵaYYë
    Ê…ƒêm
    ”9¹qYƒ]Âym9]ÉSqìw/Ä“–A7·LhÂsXÔ”¬¡!
    ƒÅá²Äãc-äñnÈ îéØÈÚ#!¾
    Ù¹éûl¿¾t³”Ü›síqFbNÁj[[ΔšNðEÙø¤y@-¥'X©"$¢ãjq8Šžó‰§ŒlÇÄ…®»áô²KêÚzL{¼“ó‚ñ¤¥"÷ñ» ¾Œ^Ÿx‚ªëß‚š*Ú|ð[_±ÑY€ü›q'<&Œë\ôˆòç6×%:zoŒû9¿‡›ŒúÉÒšŸ˜\(é0fþ'6“
    díƒþ ì-Ù÷*—{¾îJâä²®Ù•zl³Zí|ŒÅ¿/R%«£z`%c3œ£@†`2Pë—_õt=2‚ª…º€ô¹»´QH8ßp÷dòQçP¿;*Ñrì³ &Q'))˼º|b•÷µ>Üì@J¯±Ê²^¥w¢‰gߝk1eîDB´Q·Ñòú˜šÌÐÊï)?°Ž¸êÝ`;fôB¾•xøîUà©<
    1{YAYŒs{¨%Hü¦Å× œÏ]’žûêÑšï)°¢Å<F³éœ…Ÿ>™“\ù†‘ŒSLDúÂn†áu½2 ?Õ!½OìŠ>}éít ^á'×O«±ÏPöÛ\’Œ×«,jâÃ\5ÐÁ)’q(#Z#ŸòÓdÕëy¸“•Oi•ö¨K@ÎaòJý.¥€ˆ] ž4Û&o–|ø¿Þ‰ÒI&dÈ0)+üžÄÃܹ¯OÃÖ“#;øhËš—æúÉ=d hEÓeÿ4ðßØW“/Y‰=¦¾ÏN¤-ÖÓWr"@Ú‹¢ÊúÌ[èÒ)‹ÑÄÌOÆ®ÝQWË4dÄ._Ì Î}»Fèe-5e¡|LÏÏ̤"l¬ñä{áQRl•Åo6}¹˜Œ/™-Ó²ndÀŸÜ¯üÙj«Ýu50,N['Xá ¨H–µöš”´ÞôÓÒò†ÿ9H9‘tü›€ùڻιS
    MÉŽÛM•^¯Bõ‘ÞU]4{óŒÄ¯Ñp1øÑ35ÍÜë€þêxŸ_˜‚\• Û‚šÿ¥¤Ì‚
    ãÏíã‰)T_°:.g·Öøƒ5+%Sþ #Þf3RÚç°WëðÛÄ¢çêžé|º3¨Šûl»~S,~ð·*L¿É
    qÁ«æQ‰q%¦7êèÅÚ© d=±×XÍ$;Ë’îìÍ âNݯGúè »_!ü«¶× ¦_óLõ߀•§·Ïùoã8ÕÇÝø{ðˆ• {

    ^2¡ÁÙx±ž1ËÞA†Tn['•ÖøS¡(¬ŽCâK€2á—°úÉJ¸£Õalq.Q*EÖõ=üé÷J‰½RŒnK"ú§„e–aÝÐÿœ×xµÝ«ÃÓ0åW
    !P˜}#’äÝzÈÑÄa¥v!׬@ ô®EÌMà>» ¯µ/ùBç¤G„)is
    €»
    )—ãI{’ ïÆÄ…ÞÿN×|VÔ†öFI?cÛåρd²†ðŽbŠDY›G‚Çw3Nƒ%±_<X:–Ž$Æ™øm%ØÄ
    È™\1ÄZÇAÇ)ÇËV´ÿ¡)³íuò$¢°²I¼–¹Ä¢È趤I>w+!Þv/¨É¡k‰øhkZåNž%!;8O!ß®Ñõ€Ýç S䊡êÐñuEsÊêÒbSñ¯º×ªnïçzˆeß'•<‰zßÑ@Žš‹’©°Núr‰'m‰MqÒ«ÈNO$Ç
    áþUêZ`ZºˆFó½Qø(—›®Œ¡ œUÄ‚N£Ä9§Tèî·WV§£ülù5^¾~êVí fº˜×„?Ÿ’’f´'=ßZðÂ-Y
    §pBáayŒ(+Œ õÇZùå½ÓïDg±“rÝ’¥/v.ãFhª(lúáà.PêÕA?ùÞ{$ :³õIÎœàêI“{¦6CÙ ‹qZÐ
    <p~þYKŒ¯×÷¶yGÈäël;÷¤¤²cªh3> ²ÐUM¤® úZÖÖ)Y!Yr€%ýªLE‡8Yƒ
    2Þ÷!Èú~s1>¼±Ëx™Æ¤ï¨I`øŸšw½͹G<Ÿ¤¡êd¡û*ç‹£&¾ÿÇ‹à]ØA÷Z/ƒÏRúbçX/ @{…é¸:lñQETð™á¡7™XRô¨Ì‰æÔK’ágÒ#øȦ»B ø…bEáí5¯"#q–ZÏ^Š—´&fwŸwi…a?+¹ÈIù¸x_à«öñJѶ[´®“”òG5ì’Í,쉅mˆ÷¬Î}ûËHõ=Z¹5Ù5:)ËW”bHŸrlËå¥+:±öõmù¾Äð¶÷9ÿIá=ßËÃ÷øšýXSbT"4@ðÎMnLL@;»í¸d\†•ã4Ù[®æÑú8ÆSk˜Sàp4"$ØÒÌOkƒ3³§ 7’‰#åׁŽÓH63hõòü~,D‘@FÛI(ÿºGäDØø7€ÿÕÇü†G;Æç²éɇÛ¦Ä;ì©V#îÚ&µ^½.¢R'D½œ;"탹.[޲ݹÆh>cx¬²Œƒ&â-)¼èQ…ƒJŠB€WcËÙ-»á;¨®àôÌ?
    Ù8®Ä… ©0”cìL·fu
    `åùéZ»ÜÖ#‚-E_ Ázcï 8)Û’ÕXÀ9@{CçwÝ]¤2ÊD6–:À¡ÃBx’~ŒÍÇ;¡7¦¶
    [e¼UªÊJäÌÑ®.¯q2Â?`NK0«\ŽþzA·é§léÜn¼ÞêÉw
    ŠßpÏ°zDóuÃsŽç÷ÇÖú£y¥ëh¡çÚJ1Â\óu/¨ñW§s4ØûßùÜUE2÷‚¹È[<I›«NÒ;jÉ"
    fš…>k‘r 5o_„¯ªè¤«“6cÅë§æ³Ü,þk®5¹6Gc5§Š¬˜ù×iDÝÿlžŸp˜†ˆ,%šÜà ˆjM(ªYït¿H ÁS%/x>e"Ÿ/|m$éÞêʆcH³½ÖÃó³@ò¡Ô…chùÂÃŒio Ê`3^Q©ÂcS@2ÈDj½
    @°kºþKeƒLÛ…_Ë÷ 鈽<s;¹‚|U^q‚\BùðNÌëOCwWDµ`¼4¶c@ºØ–pƒÊLïjé)CìG
    VÁ”høl;×us©)m^‘çÞ¦ÆáÍ£š5¶2l¥Œ§=ÝBw„¸\@6×ç¿håä—”ÄÈ£ŸÊeu°;µ,^#¨‹ ³º¶è\…0y@%À0‚I“,àÚå¹Æ¤î:“´àéøνR8Z~6µx.(Ô®Aʶ—Ð'¡·-ít×@Çéïoll«
    ŒX0i¡Â¨pÒ¤qh¹ßS{CGJÔcÆQà2'ÕA`a^":mìOO\ÔË°‘1†âj:¦âv0t¬¸.îÌö‹l;*¥›Ð
    ©ÏyÛ_¥gÝÀì¹r›Ÿ„](‹T†‹I]Õ :æÄhX{œÔ<b7°qÈsÓ¨†U¸£O›GZu,ˆ„d:1Eÿפõndzzy»ILâꎃAøvMÈ4ƒØõ³«ŒGšKþ•²R´¼Æc+,tòežg+{ê•_$ÙhÚ2çü{ä颓þ#pz)º'#w’ç<È6¹ÂpBÇ‚ 9YçëT]J]Ñ´?#Õúä6Ù)¶·[Ž¾öVƒˆ_Èü$Oÿã‰öUœë;E›Oô£KS)’$—Oòîˆ5#”Çâ0 ÕºAHOºªò¨lÙôe½ÓC³.Oíq¤œˆ¸²^Ñ-„7Æ™ªp‘amØO#šzêæM2¡XûBõà àŽl…R/<O=)¾fì°F}$ì1(íÜBJ|¡»<óA–þåúEÞdÉIúCp3ä|¬LÐ|º‘«´õ¹N÷MìÏó$Ý"Fu`y¯ÏW5†Ï½I’ܼo…,®½ 4ʨ áP³æ‘ÊÁ.µ¥I.ú¸ãÀ‡jš1ɦ.ôœhîmWÕ©2DM¡Ô¦ålîR”j¡™ÀY L8Ô´©Nð±ˆ2bŠ2±´–~)ígYnySèÞ(t·$Pôä#}4)«yT=?Ä
    )XÀP›ÙzûŽm>§žO¡¦)*ÏÌ{¦‡ÅÛ°(øÏz¸Ëôwd²I‰¢ò{(‰dØn{&ÙäI‚ôäŠ0ÛëøÐ<ópÙ;ï¹ôÎ4àʨšÝöãÑrNñíqY4Ño¡h‹¹jÞ¼òPþáÚæh³~m¢I#¦J¼üŽÌ=sX«ä©,ËÌoUy¸xÉ¥¢m´}f…r!ËÁÿÅNÏl¾DÔÐl^m.Ä5T}–3L™Ry•Ù)}¼ãK%ãëYiI*µožRGapó¡ìfj£
    öögv—Í%Ùs€ì[ëÌåÎï0Îúl/·|é¤ÇôW)¤ôåìK*òÀP%¬õÏó¾,f{;\Aàï»Ìîì–Núò>£·3ž_ÀNÕ÷ëtÆæ@mØ©À-M„ÒÂÂñM säåJYjJw9£¯z`ê@눶ê%îÅs
    CóV”ÝâŠáû‹I© ¬´‰ßž#®}ßb¬’ ;Š‰ÙóÆéIÝXišvkóQMÔ¶Á(xz!÷wÊÙÜ®twòl‰hkP£QæÙ8™ÚïŽ,á,ľV'Ì?ht“•¸EvE„ Ö±S?^(݃_hê"W¦‹eYŠaàó°W<V›2èŽÍíÃ<ÓŠ‘!/Š(
    µ3׳3>²¡ñٻс;†9dy¡M¿ò÷S¡h}ƒ†Ý°lƒ+í˜@ýõ`~Eúü¼qçbÿ'zW$Ã×\o÷½”³î¡\ÜÖ!½j×
    b¾ÐébçiQ>%N£I»—´yÓNÒmX°¢™á“¿$Ÿhèþ‰nœî%#rtlË+ÈŒ§Íïþ> )ÅÆ#»ƒ«:O¨óï$BìÆO´…ý¹¨\—øÔý„QÏ¿ðã ×Mø¯xLPB<G‹lPû(q‹8”÷Èþ ,dr¤ÓïBHÄÕ¤V¼|åÇ'hç5ÇbüüGãoÔŸÔ~ßÔ‘2£~‘ý<ÐSNøüN¸a}¼È‚Nÿg \ëÒX«ësj°Ê³dªcy…оó ¡õÒ“Ù±iDªk·*ïèf´mé°á™}:b ‘h|d‡¢5b¬–ô
    ý¶ øÒ4ÖZfSÌÒq¡ÅR$mÕί?àЁÉ% žN*>E%q n[ÃÙ‚xW\æLäµX‚WÜÕ è=î¯ð$žÆÚ¼$J- á‘cÆž-ÙªÄMæ—²@âO e|g«»¨× ö z¾»åñBé¥ 0Fg¾Í]Y¥¤PíºåG›päÔÕµG]¤D/Ÿ„)Ú•gµ#¤yÔB²”ºSù _/‹«±‚³ÿÆð)H¿’Ý´ÉAÅme¿ÿ»ÐÁçÌ}o6ˆç®+ 1EºDÆÕÈù…™Ênb1f¥—*"ÌUOi`gVÄIÿ¡{ɼœ`eÞV9/½?2{ÅýÃÕẤ&I¾À9NDÄ5°•îIÆìŠÄ1îq›å¸›%ý|îÎ%8ŽF'©p{¥IW.ï@àWØ£FD24¡¡V»èË~»õCgs¨Áç“ûI"6Jí&Þ inxá{Z›1É¿®€ÒÓ4Ð|÷!8gpµü%}ÐþIzt@×
    ]¢*Á‰WÞú]ª;ÑSh>Øòk
    ¾‘ âdNÒ^Z~IÂJ%»îY†ðUo¾é Ž\«sƒ+}ÆF¢rIý¬Ð¤ý ¯¹ÔWÃîÇ÷uâ
    5lv3Ê^Nß}?‘F Z'·ó6Ò¶ø’ûuÔmŒG~ßÆ
    N¾&¿c¡€ôW†éÔx5~åRƒoˆ¾@iA9ô`‚¥rSŠ->¥,ðœ}œfs‡ÿTu·ƒ‘Ê„¸í²
    œÍâ~cö?¡†diؽ[*ܘî
    3¾§

    ôËt#Ԃŵy׺_é?‚¥RNYî°
    h3F”é^éf|U7“^îo~ŠJ<:7A˜IÅÞÒ6ZêJf4SÓUwÕþ•¿#ÑüE~ÒSœP“Èü—,¯ªn¤Ê.Ù
    ªØD /|‡VG±Û¬©è^ÑkEÍd…ͤ3Z= –r´³V·pHª†¹hK@ÿÏ*£ 9æÒ`ÊÕøÚ,ÿÏ´~\»×A¬ ã“5gÛ¿€aùÈÝ“M÷ø Gúfºú“Ó·‰RÜ!ñ—Ó3ÀÌEz2Ó!Núc³˜ÒßJ~}£Lw>ž4¬¬½"Ž°À20êhÁMÜÞå!—Wy…쏕ΨÒ, öl+ÜG€wIsz¾wObZ×äèö¦óÅI>æ9ü;Á áB¦U£’Vîj|Ñõr@…Gº L¶-§
    1©u¯šöÛ4О»G!00Œ0D’|c%‹R ‘‚¸ý±¡] n[¤\†|¨çÓɦš¬5ór0_¥ýI¹èÒ‹ðŠÒ[â9°6ŠJÉKòŽÞÑ»‰Êc˜Ÿ Äsh¾û0Ñ©úÀäH 1n¡¸õžOMÄk8¿Ç)ò23ý¾()ÌÎ{õà‚0ú¤€G±bTs3<KjÚ?Þ÷¼ë’›ãqX À·˜Ž©?×oêÑMwväiMh7Φ¬‹uÁ_ÖÄ’üðHОžVcÈj¨åFµÑ[ýRÈMcÜj6tÒ¼¨!QïÁ[^÷q„‚•.Á]þ$(¡ðÉÒíšãõÍ9&B z`Ü<é:™dÕnxu^\®ËEl$ìKø^#zˆXeÀ“=þI
    šúÙÓÿŽ_â'XDõA°Ç3Æô\ÚÝ·™~ÚMÈXåLü£Vêsí¼°‹"6(ËõÖóë™9üYJîœê5×o£m¡ê!¾J5
    ¾ÿÒæ¬=ùFÊP
    AcH/ˆ#4Š;‚£…÷~nô\ò´º
    æÀ.Äßk¤Í7IA½Š™Qžb;1Ÿ
    ´:Iµ`ÂÀPõ𚴁\}îó›ç©qõƒœãh™)(Ïï#gÐÖϐ×#7kõ“¾í°æm¼T}ÄãÁ%ÂrhœO°Mí¯ä/qK{Ë@Û $‚ê1³ ®’P‘&x|ÆlOf˜
    uà„U‘ÏGÉ%ýŽ~´°ñÛë„YèT¸fO0¶ˆB̽ìéƒ cLMõMÎjÕTXSR¼[ü’§îê}d„ZHSžÂ9þÐ%çfè*3õØ´øý•>öb|÷•½(ŸÔå R,µö¼Á^ñéŸý¹]H> ÿp&ü €P8´ù9¡èy1Ú$žíüµÃB!¶kNûs1Cü¡Áé¨z¤Õ
    ôäS¶{ ƒu
    ¢T¥ûñKªtÓa«fWšÞMzJ–ÀßçJæ¢aS]vüV´s¼ú!§an‰S붧·ô¬KîŒ2p_u ÖGýlŠÓ‡Î5èSáÕJM…[qjžN䎿ˆO±“ Ÿ¶#Ùž*ô7ÑðÐy¬Úø‡KÉ8FYâ]€£H~;Öf¹b³Dxþ}qþ];8MCÊÏ¢o0è“ÄÈräÎö^
    ¢ëC,…~ ¤þuŸtðI¡´ÐðθŠú"…Û¤B*XT3(¾×Êfr€¶·)ˆžM ñiZü+U‘‚Pí"Ïϱ}úȘø!W樓$XoäJwŽ' I»Q@].óU·n7<~T$¿
    ãíàø–
    Ó“‚•Ûàˆ‹J–Ü«uàLÒBZA`ØUéS]]ÍpsO3}yø_ì½õ÷_9õ©ðýì߈Ý̯Éà‹SÓêÈ4E^hå-
    ªQ®x7 @È3ð·-eBD¬Ê%á`~ÿÁë=“ö¶ ¦’PæJ”7ǐ.a¶–ˆΨ¦7«Z^JÞå5î®ÕéqÔÀ²(ˆX¯AÝÉGR˜7|7{é›ZF¬ Ä?FÌjõW=ƒMmGÿÄnåãµNf3Fg™Âv˜ÆzûùDqFØÎúIeŏ‡½îÁ„t‘6YŽÃMu\SÕv’K¢)öîW¿¡¿†C
    ªý°
    "à,Ðɯ`;]ÓÊ)Šõ ؉2•›QR‰5Š¾¶ëspp¾àëÞ±”0ÇOhMÅ3Q6S¶ØÜ—ÙÛWšÇ¼XŸÐ÷͍ö8‘G©à&Iː§–Ø÷ú‚›IÊü–¨ÊÕ[s…R’~>ƒTó#ƒæ"2À¨ZùzÔÙ×qÛzþ¿ÏçKS²ÒîùAD`àáB·¡Y¨Æ¡<fßÑšxǬô.ÅœðotH _ÒÂà+ƒ:p:j=\eÆ…ß„Dy è/Z˜æ¡9f=«O*)1Úr¿²l²¡nôüŽÈ5›—3V dý"¦ ¨IUá_ÏñA_çiw€EÓ†kÆH8aÀŽ˜X
    ¤(/V–Ã_,7ÎrÍp:ÊÈ:p%ˆêÖîvÒ¦–M¶‹®ýè ¢M€ü£û'Ñg׉-:\³ó’Ù[š;bªãXÛx°ÈˆÞ×Û-

    ÷³Ã0ayHBoZc¡,vÉ{:ÑDz]w.¬Ë·=a Xÿ1˜à+•"k¸c?¦Ç
    ótzø1.µó5×ê~ ¬0,lo¥¡OD§êAš\Ù›F?D]~¾¢Dºöùß“I" …7[C×¾¿Íü×X‰Ãkî;©q«Ù˜.²Íy')O?ë™>³SJRǍª#r=êÉ‚ón¯Gßï£I“&À¬REõ7îŠ8‹¥ µG 'I!©†˜€,À¡™³îƒŸPÁµ¥üðÕCC
    µ¡÷¨îöD׏7³ù”EgS”óø.™ ëÏèeõ²R¨Þ÷yí>Üþôye¨2ú<øæ‡C³Øª¿ØÐ0øF‰^s8OZð3;R^7p£|0²êþ}ÖO&¬„óñ»yEîá“7Ä
    ô-d-Ô‹AÃves½ãVTS_îÝ/g9´Ée®¯[z„ú~qýOÇI ¯ëèRƒ—£G×܉±®Ð5>¯"9åužNºÇdâLáŽþ ./
    ß:Þ`ó>`âk¨J™Dãë& 箬°s}Ápâÿ•5ë"R3fo?¿öSíupIñõ¨ „2Xß…Z›JsöÍû7ºqΰЉ%S2³²acñw<!y]´Œæ÷{í¥¥rº5ú—6.74«c¬¢”å@äù¨óóI
    œZëÏgµa¿2©—þ†Ýþ̼nRo÷ýøzh/5Pá]·QžµIWæ¿ ÷XxUÂLì×0í†Á‚cë·®š»å¸¨o"È_.@ÎY7F&¡ÝÖ/¬Ý"3²FDüC Ü»Ô #œ¥ºÛéÝKÚmMRtsõº¾”wó¼tÓ$6N®mNÇÐo×à ›k'+°µb6·êB<å=ªSõXÚ˜,>Á”¿’ ÁÒ!D“Ìè¥>Ó˜˜_‡K¯w&+v¤½ÚŠÏmn—(aÛkA".]£\|b ·ªhra ‘£Î÷ºeTF0µ`½› g7k¶Ù²ŸY-oÛÀ¿/sRT
    ämd 홼AV<µg"è $X†ÉXê Þ„‘-ú!lH…Øú¨ž·ý¹þð‡•©…Òc|«r_«ÛèÕUŒCH™¯Ê_tŠˆ,Ý?')(ÄÆ
    Ù~·–m, NwèÐèï^%óO¤úGì³ù9q"FÙI‡!IÔrÄbw ó-r`C`º\ª<}ÿÅec»:¨5"ªÃÍjþˆ¤¯ÚBùq°'÷u”6 ´ÙI,ê9™s8 |“׉û0ëÓ!9DEžqÿ·&nvtmMŽ y‘ Äj=CL!rŠ¨Ä'Þ&`ÛÁ÷&”FÃD¥ïAÁè¥J¤TÎAíš%Q£ÌSÉ~ûcø»r‡k5ÙÜg3¦Ð—X j™È·
    ºc˜“=Ç_iž[„¡P—CqÔ\€vK…,#û»©`IŸÑ¡¤rψÆA˜ü–cúIù²˜þO»¹ôFºu<fÌ…qZÛ¤
    퉏=Àøqce÷CxÅ3P;|Pr^´Ú”¨qfõW ëöÊJÂr«VÓ'TÄ““EÇÀ{ã8\-1OŸ=˜GŽ›qJHV"ä÷J^*ÀS€!‡°†¦ÅFÕ
    Ú'îÊç
    `nòýÚM–°@Eôpo¶çzX}Ç5üϼÌËDÆ£¾\’Éäͽñ4ìöýSxÇ0Í ÿaàòAp@¹½c±AZ0|^ü23—óîaâûŸÝˆ?Â+ÁF¾©yM¨(Eª&½
    ÌX“Ù0o†¯#wJ>Þ»
    Ú…ÿlmüäîÐô}ì”[<…ÔËm·9‚WîZ¾xÕÙÀZl1}4y2g• TÅÿIÔl¼Ìño儝H¶ÿ®@ >då?æ•r+WcƸŒ¶*€…ã}n@rüƒPÜ|´ê|“0‡$«=ÐG[rcŠ ¯Zzvˆìý›
    Æ (w?"_|ÂU–:
    "nÙÛ9&Û~šc=ø!Q£·ì½ñÓÕ„É„T·ý¢Rn5¿¹wf¾•~¡¨paU*µ“Ñ‹=-ûÄQîvU]6úÅ^bÝnOEGbíQûöÌóSF¡Ý.IªúŸgÖ½ào‹`R‚ËX`Íá^Ôˆ~H£ÞøÇÅ‚¶õîŽL,’ñQ9gošZÀhK$Çô¥)I¢öšI„YZ†’¶—æ™ì|~€1~o¡XY JV†,s3®u¸J'ç#kuÞ½5jлÊvÕ;ØŒÄ,®™½8©ôÙƒÙo]"˻Ћ')§Ö5G.áåýmLޥȜùÊbb¸Ç<‹²v´Gp¶Tø¯R—ûó'ƒKQ·‹ì›€VÅa‰wUÏ ðòo@È¡ÿúFUxCžvL!ò[µ˜Û—…¤™o2I·ÊÇ°Àr"ÿk
    éþR²ü& _[á´é¹C«î]vÞ%[÷Pkt1¬›¯§A‹¯NEªµ~E ÁX"Ë£ìeY²õEð§Æ½+@à±óÉÝOê}Ü?N`BEÄTÑMÏU¯~öÞjwæð Ý_øØ´±r¦²[ÄnÈŠfrDš—ˆ´XÃ~<v.ªìÃO…8TˆmÒËo+~×øЈøoˆ°ë•[ÇNÈ» )lÎ{-Þ¶µ
    ¦ 5y’è+†ˆt[t3^t·ðøõ¿ P`ëºñé;‡Oæ²”l>ûŽj–f)íI}ÚŠRRON€ÿ:*I©Qo§voàæ%¾=@³§¸îTbs”Ÿ?.ãÓï)%N7ÊÖI‚öábéøh‰ÌFpW}»üSé ˜€ØúPÞBM¯ÝD:¹ U´WaJD„l€b‰Å1© EápVašÍ#…ŸT8¼’F±6£.1óv;pf‹h¡±‹î¨¿yFØÑ—Jv ßώ׫0Æ®ÖïºoIáRNåtñÆúäËeU{Ïñí¥]uÖœf’ì •È¿Ns¾TPÂ^DÔèÞ¿êüøÌ&d‚è6þj$_ά™Ý|–Q´æ¡ä;Þƒ³Ž<qsmÜ2sÂ4ï%³ß
    ÙßJ&¬.Š“ø ˆ' –-ÉÏÊŒr^!Å/ð|°ÙZ¿ýü¶©÷*>yÖÝRÈȁ4IYð;#Ñê±f–¼c‘ªm\Ïl‚÷™F“²Ùù^=gÿVúNB?mhëW“øŽ:Ø&„øUÞŸzL>Ï-ÙÕš4“F¡Lœ1){oFC;9$º·u÷AdÏZì”yH¸\³ìÆÐâLžÙr ²îPÒÄ-}W8à®Gõ±Õ‘^ñVÎ;'wQ©±{ÿÃwT›27‡E{écƒ](¯ø®DLüß6”v?$7Ü»ó”Θa_7r½È³Aõ€ºñ7Úº•^ 3¢æcurEU……žjÝå>TrrõXÀâïòEà—t_>|æÅ°çõ–õ™Œ'X>¹9–{jAd6Lô"X„ò`™óq‘eQì(•s+R;-7@þpšZ¾»ŒcTt¡?`A™£Tºþ$vHõŸ§‘5T¨‘;÷UÐR Œÿ½Y𖍃Žô‰DåŽX㧖‘¸'ôs™¡X ¦ÜýF¡ë/maHS¶ym½—šILb‘Ü¥)Ó=lûžCÖô¶êÛ>l6‚£•\V‰Ö1òïžxŸTN%¨B±Æ=$ÏtO*Cø”ê%v¦©g›Æ.é^ÅHôÀ¹.^PÄJDPÑ>EEηâg…¬™EHúæ‡x`Ë’§æF©ôõœ.o‰ì2/Ô–Qg¨~¨¬ÑNLèó²ÛtßÎÚ½C[hýáœ ?Q—‡ÊIÀm‡˜ðj uFfÔv|°ÊHPcé$–,Z÷ˆ_¤¶™ÞÑL ÿ¸NaM©\p¸?A¦>Öì$ 6Ÿ©>T‰lT†ZÒ|é®Ë+ZF ¦}Ž{ˆ¾+» þ¡?1[4 ¥ì<ÖMõS¸ÙŽi4žæ éO$Ħ$¬RwDîö@D·èDH.pzZl£`nÈw7…ù·H3³A"À
    ´æ7´&²Îþ«œ÷ <‰H:‰:©ùZfMïgËRøöÕxx§Ü3ÃËìzÚcÿþc¬1RvRV#
    òêò›’;æ
    ³7\«Ã²^0ݦyÿ]™¯ð¥CK;r÷™¦³ÛW)Âj¥pà!RcÄIñ+ñ‚=y“Oëóü¿óYæã߸wËð$Þ ùF@㾬*[f§,TtáB(ºÐN¦3GŠCñC±
    ¼Ì@^ç³W¸ý6
    ì»%%”Ö㉚ó‡‰s#ô*Ytnl®íMO¥þF*ž° f³Û¼e¬Œy£Žñkm‰’F(Ä~øBè‘Œµ`¿Í9Ò°›Ù‹ß%§dÝÌ–üjtÐ[❊Í&*’\va¬¦Â\¯/IJ}´ðrcagU¸G€:ñÌéþ%U5$¹JÒp"@ Àf$}͹¦0¾À¥Bõ$›Ÿ+-•?jPÿ¹âŸB©_"’-
    ÇÐ6T§Ç¹?eDÊÒ^!Ë[!Vãu‘f0"è›9\)IˆGå3’yk&¹!ÎPŠÂ ßT¦ŒøÆÔ“×Tîÿ“Žíáu¿ ê;ã·1㎶kJøÈo;<ùív`f´Ê‚Ì
    :™×ÒyÆÙ{tiK©ßÍ ”jZâ¿AcfÎÉ‘áÚRlÈ2×JF±wŸ'Êòz˜¥PÕa1ë}’Õ™@ûš‹.QKÒˆ¥
    »¶¼2åzÄU0m Šå÷ã˜ñ:Rɇ-q|utv÷Ìd M¥È¬ÏßÀžº´/òH¡OŒÉÈ>}˜à`Rš‡ÐG¯õ-€®u*ô^\&c¨F7Û¯Û¡Ãçé1{73øû7`1--Â)~ƒV /LívÃÌñfºÏwõ±E0ˆA7QiÔ¨ñ¾6…âusŽ›Ä-GòçàÂÝjò•kµ†nc ]Wð«P‹ýǧtyE2*â• 6apŠh,¥¶ «lT2Û®rJ嶲)°tH±¢èô*O"Ã(2D#qK g#/’íO¾ †N¬qœ ¬æ—›ßÎû3þ¢/q™®2¬çRo€çË;ÆÌ93%rý"¿)Þ|}ÉbÏ©q.l3vhz€J§Ï^¨Œ&~M„(l`Ó‚;RYiÅ´Tñ).Žl9Ïøùw«fÛ,ÄLè–¤A¯«L+<îU–¹ü§ÓôI%õÛé)}…t%îzdê¥jBÍÏ ÆÞØÒò,×lÝ2ú¢G‚F˜Òý†ãz‹"Uå{_Ý:A¤÷fò î¤ëížjm9ÚÀÂ¥ÊbNÏÀŒÓ¢R,“/);j=0ŽˆL=IW6€ ¾€å‚Å-…1ym™Døí(=Íë,ΫIØÊò0ã`Göš^«)-»]ЋBN‡°O>“æ‘Gù{õw˜ÏØ{\™S¶‚p„aÞËæRqƒ1VwÄ,Íá^mHî]Yv}o¨„éê5HÃÛÑ2¥ŠR[ˉrÛV$î6(ÓJ¨=*²Í8)Ãô„2=þ]ªg™ÔI£Izçefsó9Dí‹ð²-„å>Wγà2šÒ_3t_g @#ÑÂŒ*oëž“H‡²Š2C¿UçV Û/m¥»û3¡Vÿ;
    Æö=•é¯¬E~)Ý“\¼Ã0O—ŽÈ…rÍ[‡†@Q•hÀ²PaZnŠÏ–[“Kص´ì$-OØZÁìªßÎÇ©|yvüŒp Ë¿Ù¶&}Õë.zuŽËæ|u'ÏàéÛ!ËÙY«uÛwd¾„æ[ð|É™t‹ÚOîîuaú*¹”ÅåÏó‹šß d7WGWK×Ü_5|Q™WO?¦D`)½ 4´Ö uŸG—Wfé@0 Ã¼í®œ.×´¤T^©Sd +’ŽCßò=v՝CÅ©J†Ö«ÿG”
    Dœ]|JVyF*Çd4OG€7o}_K+¹-5qÑ¿Ža&¢bÅðï]×ó‚K
    ýXç…êí\?‹áÚƒ—hÛªšé y$¬s+@C¸qRó4–Çš³£åy>ùó/·`™:p¦'xªÍ¯ áòßè,û¤ÆüØC(náæþTÆŒ´¼£ŸÃNÿTý!T³Wë¾&^;éŽ*ü£‰ñ@?ì™LæìÙdŒAj‰GˆXçÊ°ðüâ]x„»)!ɶBøñ¡juRË•ž§–Ö`ã™Í\„³¹Q‡
    {®W±TÕ‹`:r`è"›2–_^ªª†¬ ?6$IŒ§€ï¿/Ãµšx
    g»Þÿ O0-=ϝÿ#Wå;*È&uÃwo_inT!´[„ÙÞÅÈ¥±Ø(ÂPó/«w¤;êÈ «¨krŒ7Ë-äÆl|‚{˜ YtR\çÑIåK?îg~qØ‘n‚¡Z"ÍÊ×¼+Sºô5ð⫆î€éÔ<†êå¾1'€CP:5$.ËÜ2Ÿ- ¦B£; €‚p‹°ÑPÌ}èÖ`Wi‘)\\~Ù Ç?—IJ¯¼EY£ü±d™ûY¦àå‹u²)QÎ>eI>§eE$Óë-ϯÙ%{Ù£â4Ì¥
    ”îôJ}p&“(Y"è×vµI矆ßÖÊbCÄzÕ%äÑÊÞ6ïÓ¡¦0B0ÜôJ£¸#Y*šnûOàI3ÿò½˜ì Ž|Ô%&´Vâ«®þ@Üdƒ¹NWC½Q‡A^"=q>Æ_¥žnFhÛLufØ5>[†ñÏm,AÕ^bMKæ’Œžehh‰êè¡—Ö+#Þݲߕ@˜,±ÛIˆ.}Ø[Gšøêï6ó/ßdg¼Ó§:—ªö+cëD¥äÂ
    àþÝ‚¡UΆtóSào¥»àö™O•Ì™òÄ“óñxªé_º'Þ›Étª-¦³!<†ÂPcd·oZæ²çj¤Àºìœ®èƒ[ª>Å íÚPGv—]E™3”ÔîÃìý›4*®Ã}`Q³,Pùjçtán¹×÷‘yDÏ·‹[W.Í=8*ºÍx” wœ 5íUBí$-̝&2+¦LÁç'¸¶s õÝãÙŠûŒ3 ¹žŒœÔ.š@ù©óWí àLYàèER:ŠÐDQ¦O»öÎÇ©QHåZ$Úª0°Ô
    I¡–d•\€CÕt³—ŒIa˜õNÀÐû/@Ø•‹ßYM¿ÿèÓIñW|+ôúÛmKeQăÁãL@oidó„z¶æ§1œ«ðÉÜåq›ô>(ßxbg:2çIäۍˡ‹œh(ˆ¨°ãÈÊX+,íùK&nÂŽC'?$B ‚é¡\D ‹)Ó¬¿üÉÕ§yÎMö`]£‹[q³‰äÁ=ÈZ"¶¾ú´LÎm謬±ð›ÐöJ§UH2ÓA
    äÝ8[zÀ…ÕT,Aã››§9œlÐNx“ñÇØ’„Ý·ÿs8 li¼«î•Pށ‰6öã6Þ¦…üã}¼ô.
    ·¼Yd– c·aáÍ
    %Ø5ÚÙ1Ï1(¬’)Õ™ÙìnU¼ë–ð°©G%W+uîà8sÙ-ÂV7þ¦ùÁ£ŽX"Í7Δú1ôcÉoÓ÷#ûeTfJ*—÷¨
    ,t;T¨íJ(”ÚR’²ºb†¸“ŒÓ„Vr»Z1nœºï€Ä€ÌôÐQ¼[ DÔÒ×}·z-k‹ò°²‰âO‹«A
    NÅÅQ–ѵÿy2þ»s²®Q¢ RýóìÕ¥¶®0)§ÛDª¨.÷Á°(–Ä´£ÁH
    æ˜Jh~wc †çÑd„°`¡LzÚ¿B‘‚3ËÿV¼žžŠ…«¾Ñ(ñ†wõüÊI:lu&í4WíXÄÝÿÛðÁT +K‚Ûø½g¸G=}°I;òmU]™P½O%ÀÕ¶Ø-”jâ-Ÿš(®Jè_cS5»>8*‚ÆÐGØ4j¯˜RR¸´y áÁ«®HíÃûldc.Œ¢×ҐÓoòëе÷?~k½á„æ@¢üu/T`é¸p'„K¹X‹(«å:ˆ‹b‡ CË<X35Ï_0L
    ƒdû«Å¡x†¥~¶ùª‡mlü£Åo×”3a%ÿ£ëð˜ Y0Ln¶L:³r‡ø„K —;”üuIH4 òã9C@úÎ$öâý¬r¬üš‘ ©¹ æõœ|–¢þ¢˜…W·ó4^¯ÃÕdj°¯°zÀG°=!04ˆ9²"™±V¼Îqfñ5±w¼ÉïÔµÚâ)-ÉQŘØÀÏušó°ù.–óô˜Ýº‹Û“¹R
    lœèÒÉÏ©6¾ÞÁãÄñ*¤±5<‚3`ùf Ž)ý†›2E†K¬om”¨™{®tM$àHò ò èuúø5¨Ò:‰ó0;m|ÿ%©Dé–¹ýQ®ýà<;Y¾œåC à<ÊpFAuµù+,•„¿…£«ŠŒBISU‹ÑÉHK:IðkÈ}R f=D½6¦0oõB=p„÷œ8T'ÈÌE½j"¶‡\~˜ÏâTÙ{Õ/âIèá{öÄ€0*øyçse\˜ödZMKŠn—wŸ$¥æ»ìÃM?ÖÓ¦1– š¬·²œ)‡JZì{’3
    F½}Ÿ)5Ðf‰rè™Y+tUСң¡”µ+w(Ïe²Ì7?ý>0GÙ<µ‚|C¦oÍûnáÙÜ)Ì>‚-ÎÃÏ\yÑâÕ¢Ifuþ!höZfhÿ
    ó-ûúQœ)öS7 P¬u3i„ÔÚTÄ‚€Éf1>ñ1–I=jÈŽÜ¢¾\¯eæ“é§y³‡ûÄ̳<NÍ;EÈdvW}Ïœøw½I‰c(—
    eߘ•j+¨å¤¯¡æüU‘U¯Åk?žÀ¥
    Óˆ÷`«,_}°Œ Šrß'›G¼ÜųÑØ“2ñh"Íħ"C®öãÄ‚™»\õ)w î²@5Ž ‚.%b»Oã~“öù"¿ý7{~Þêùy¨U¾²tZ\?lGá»s9“ÀÞA½¡öìÉö˜a•”DOÆC®üTò=Nï΀„5Û· svÛ¤ÔYÑœ*uÆ6Ä™¬H ãàF.ˆ¤>K†Û:øÅQ¥:Ä•”vËŠ;Î<2VþâX”Ä’(•|×&2¾1èx9hè˜|%±®²˜ÍY ‹
    Øö§,h8ï‹wÕR€›Ä"ùGóã‚Û9+h|þ!K¼¢B3—ÄhrÉÚÅQP{*“‡‰õ-ÿ¼ôècý‡¦¶þÍ
    4ª-jÂ=_ŒÕ¹Wp3*S
    Ðy‚ÿ¦òì;·Æü±AïªòeeÆfŠÙz^¤ûQ÷PÌÜmøüÂœ†Ø5nõÐMôx<ƒË^<~xgcs½]ÀQ,!\¸•£KºZ·T®?jCQ
    ¿¦3[Ù¨/—==<Xé´ücNdp@M¡„jCî]ÿ~Ù6GßPÊZKÆ“·œg-ç.“¿7®’«üS%Q~Ö;B¼ÎÙf@¾Sú®µYØ(ƒë™}¾PÉéߟ|ŸUG׶Jž?V
    ̝ÞXplWfT¦=ÀÂÞz•v
    эY9Tp@í£.6¨ä2ŸçáåãE Ìæ~0ðÅ Á÷Þª|ÞÏ9¬CÓ’#b©¦Õ:
    v#)ä÷€ š}‹ª“-jíºÏÓš‡”ÖY†•¾<Öâe¦¢qNæÂê.—µ¬{!œeû$Rƒ‘ºÐ :w[\À’˜xy¥¦Ù
    “ 9”0a¾{J›9”
    Šãµ#Y‘é ¤eÏDpÈ-- 6ÂË+çç&¥9a(3úc5¼ÒoÒÔÜ>NŸh²‚ÓØzƃŠºgε]ofð‡Ãí4Úk| a«Ä[ÿª)‰QwÝíaLe
    4lQ«ýèKX·è«Ö@Î’µ—)e¤'D*ª“íqHÚmŸŠ.ÉWàU“WR†žg¢ÌÉ,NÐ8y¶KCòæ™âêÄnó•Ö°Qì2J…jõ-¨äßÂÈ’Íï—rÔè°¬¿æCw¬nxÚz.D»÷žÈ)Øõê9z+:sdõ˜tá|¡ÇŸC ÑÕÓoáŽê¼Ä,úà
    ŠÝ%ÚArE©}¦ŒÀyÛ‹£Ã
    x`8¯ÙWH•Y8B2 Ù^Îz†{1ƒ|‹`Ó:žgd|DÞM+‰S¥t¤|·êT“W‡tó¾0IÃ0ÚBPîdÜæµ3÷Ç@£œnÆÖ"—ß)é́ÄKYUÇÄXYýƒì Ê\ͺ'ât¿‹è…QÚÓJõø!PâX%OW…9.)óžR+ƒz䏪t¬˜Ž©*8â6š-EÇH~ƒ¡aG„B_"ŠtÒÉ«ã¥ˆÑýÛò\£’SÝÈzh’„œ£è½eúoÍÃO#e›f«$œÌžf¾<¶"sm_†JA»ª ¥I
    ~N≠ó‘
    'ǘ¤½•³õå
    ô«g*)Ç]íöˆE
    çÝM9þ–¾tÀ!Kï‡6Hœ¤LÖªë@I©Ok%Åux¬K¼à/}“ÁÞ†^¯–®‹V"ê2?å墚jÊ(sɁ>űÉÓª›ñyLŒ3ÿ-IÈQLü¯ÂpšOijšwÖìM”K[.«Ü¯6³šÒtutÔÛl™ ³¦qó¨©I²É+œ˜r‡Ü‡÷˜zHq”EÊcŒÒȘF–ÿS›Õ&
    ¶LûçR1_Á.£Ìò`«â°"qqgØꯖÏ&ö×Au½}Mï„IY†æìwÃrûrÙÉ<¢
    |°«tí35^»w—$#n2-ÝéЂŠÕ†ÆÿJŒ„?ŒÄt…õ ø‰“Nñ³ØÞwüñ5OIqÊÏŽ¿«êÕDÁĨ^¤Ö$˜‹÷I ½½Ç9Jû‡©Ü7äë
    Ÿ˜{Ç.˜œöžIÅTlXx»M¨\G_šÇƒ[K«]"ÆÚÆfrdº~%Ô[ØÍ'Ú ¸ª%K×Tž6.À™ìw)Õ²…8G6€Ç…’˜±ÙÚsGß”œ:/fË~ÔáƒÐ½0zôìÖ·#r‚Rîœm3H¸¯æ[1@¦UŸçB͏!ÍÔË%£ò&fB³IUJbQ¹/GXBeò;¹:õ†KC1ùÙƒ;g¯›],Q_‘¡É“ӕɇۆ0WEL°ñŒù:OïtÝWAMÃ`Û§\Hÿ¡<_ü±Ñ°¯Žë°§.ŒàÿõìZ)ýgGZ¾¦|w³~µV&4ÍÎÆHʝ#1œêÌø•3>
    k9&D(y‰Ýb,pLK4WXNEd)~“]€&Òeíxz£ŽÂÉøZâ¢MCC§ê’š·ªáóê\—@$ mKÆ;{Ì™,þã-ÞüÑúq¼œœGĵ¨9Å›™ñI~Ր–É`©ìÞ:þyƒ;«O1‘
    %¿^'%ÆÌîˆ
    ŐkœÓô?µˆáªuæÌÑ_¯húÀËM~ÎLŒDfE”¸[3éۏžŠ"NâoAÇ›£ÒŒ"~Ii°
    Ó~yÀ(·CìT”«³×uì7P=£P˜#~P!Ó“Á"¤Ò§ØW‰ÑǝP›àN,RÛ#©Rüõ££€ L¹\·]î¡ ëHJw×ý
    &(0¢?(Òƒ÷Xysln‡å¡I(˜r¨1
    ‚½¤r[@ãÃO£#{Ôïf®óª=#CStµfÑ´4úË‹=
    #BqÌâï;±¹¯ÝZÿÚ}Øt
    >Õ>oçZP¢*üÝ)m—èÇüð^ä:È‹kU¦p˜¦/Û ƒñ(Dº!`V}¬(ªWå—,UcqHX|bŠóKSë=EVÄžœØ¬tC˜ÇIì*px—Q_5ó–—!D„Ž¾æË\Ý^ÏÊNÊ@0EÇXU²í¼&¯Ö;Å~å$_Åu}ùýùí²J88hoOT-Yyûpü|>èã©Ö¢Õãm|»9/,SÏ–);U[ ïâË7Šo©È Ô.mh¦JüCëÀú!~=±?s”4áF*Múm¹]_k&·F‹™Ý˜…;=?Ûw<O¥^6ÞM·m½ávŠ¥wqiz Š1Ð/9!”%ZŠSôl(ò1Ìî wëçt¹_9°SÄ×oõÚùv—‹d´a.b`ü#Š†ëÇaƒü.¨£KÔÉ®\}Ÿûf+n–,Ï<îÓ¤¨’»Èùòm]ÓòÝÇí§5·§jiæE;ÆÜ€œMö5ÈA+Ó%ò©õ´ùÚ72DÄ×°LŽáßÕz¸¾9,fեþø°bñq>l«+ðyç—ÜU¶sF60wä’ýµrÖ£ú´Ò‘ðñÑ“'?4»HZ×8o8 s·ªh@èCX)ªȩ6ž CnüŠG(I‡_eHò”&›ÞÜe:™˜<ùêLñÚº–d<É…¸—t×BŸ¯ ÓáSŒ8>#2Ãúširì\ò6WÄ!·–¾À½§äÒWyä:Í^Cƒ-0ORT(7XÍì8ëDÝ7Ì¢pß-LŒ›TÅ]ãÐvÌ×m“\_›±rlO'ç‡<ýAw§5`ÿñDÄ3#[_‡’#é”h©Ç|)8ºë]º´W•}€Ü ùÐÅ Ð H1h ót>ê?Ö:~p«±Í`µ{Bœf&AôA™Cë”/ZÉá”0 <¶fp[Ïœ7æ<Û&ÊÏ‘8¡‹•q·gÓÈø‚â-ƹmßÅ£cX€±¡;bŽ9õºæ’V}
    <_,H´›@¦Ö^hûˆ„¦Âž0ÉàkoÅôGc°þ1‹-ïm÷Û_ÍÅBýyvÑî–sºÓŘøδnҝÑDïUìö-)DÈ«êéóÖûò>¿e-ŸV6›Ú=7Ž¿Š9vãÍâ¿ùŠS”8hÊ…5çRÒk.gïT Ø~ÌyÐ;yfg-gÈSÝ’ªÀÓ`¨àNPf†È°º•haZÇþï+Â…–¦Qk‚„p™{ݍ×åWrO!ÝÊîmÁ¡óŸãwÉ>ΰ祿PBïâƒ*ì׶Ì.ùÈÎX|ïå¶ÉôZ"Ð×*̽¢Ýí nkûI‹Ÿ½g´«¢)J4°]ë’Éæ±Ýì }u¾×Äën0‰y‘–Yaí†Ê”:-M&VTPºœë7
    ŸÊçÆg}úªØÊÞç¼Óô ]ÃU–³Ï
    NÈ×BýP˜éH䑲ñwi¸}”ö¾[FžYÒ5Ôâ7ˆáëdÞg3y—ì¼kAü–Ï„O7hQø¬ÁÃ!]ñ›©®—ÞÊóbø`Žï/S€ÞË&$À÷fÙp[Cº›U—IÑ£J|Õt³¬ø‘³¤QŒ‘ëŒëÚAØŸ…6Ï´:Ñ„Ì%ÞMoÄ=ìçm…žž_Ö°³9Kâ2d{¦kg®† ´ io¶ùÜÁyÔ1[z»gw8Æ$˜”sóuU:"aËI2ÂUƍS1eÊe×0•z¯Ôb!rÇRFTûò¦ˆ¶üãa*;X®MÞOsØaösi¯IÌzâPŒV‹`;ÿXïYŽðÄf|{v+ú 9±[½^Šì°F¦'*V)©'¸Ðô©;~Ó´ T§‘Šh÷ÎE•ãâo?ïÞ³¸gûÝ(4CIÚ$«6
    ƾ|Vʾ¨›‚F)<ʏl§vED]8
    ¾?š€õŒ«+ƒ3l?/@fS¢ÃºV+
    Ö
    aÁ‘¿–¬»“Žz³F‡ivóôkÂÈW½/³å&¼zåß׬–™D+Øq,2Ù.[ð‰aZuÝ”ƒˆÁUÚ7
    }IFÖ€TÑÍLŸEorÝ)ý"Ì؍J‹³™^Òûé1gèÞ½Û,»k졶©ètõ†]ä u䯜—ðn…¤ÜV]t´¹Ý?¼_SµsššÜ©„ÌĶÝ`jº‰=‰¿w¿ãŸ*(,è1¢–€µ‚½ù \ÈáC7¬öµBRê_OÄI¬@þ»·1zñUÞ‹!cì?¨¼Ñ&u|~~°µÇˆÏß65¦Öª&ÀG®É%a¿ÆðSíJü4'óéy’‚ŽÇú°€„Õ~Y űAÛüe›.öûÝëz5AîÖà†Ð%#g#áú%*Ƴï@ìŒÜÔÄ®sŸ/ª4uþ ù¶Ú•L¹¤¬{Bâ5AMOÀÍ¢{ù®yþìA¯ý§‰ÀvÐRy¥_òïDu{/¦v©Ä›”3ÅÃæ7íF §r:¾áÁyÚÏc¬8ŠRí®u9~OR¿yï;Fîãw"'f0f«±¹Ö¡üt‰‘àv! eƒmBĹ™=ºêí²ßÄx{“˜Ðqh«‘IÚµµvËç| P(`§÷g‚.ˆå|[]ÒRë@¨ò…|€¹›ˆIヹT+y¨ðÈb=»-)10˜"Q™šêˆÑ–”„hš÷.·MÖ™¯Ýçòæ×/±âQ5Úh‰d@¢pQ\±ñuxˆÂ«*jû¿d}n7ã†«kí%¿]‹ ¸ 5Á’oh[ÅSke4ËäɶÂäâ§*i2UÊ"5FÏýÂ¥ytG Áü=}g„hrršX°&Us—¿†ç`ã6<qXÊcÏŽ™{q=‡‘€¾ÿá-Hý
    5º£®ùÄe|Ëw;8Fê=ÆòŒè)‘ÝRl—MÈ‚I(XüW÷¦®ÕT¶– ÀŸì,àc<¼µl¯Kæhh³vÒ,s…xD³[q‘ë‡Åý.]AéÇ8~˜È?XÔÿ9ñ§žþøÔ/øÏÙ]ePÂkã¹ÀõGãyaÆ8øŒ

    ¤ÅØñÛd¼D©½„cà䐔„æEóyj&„”ãeÛÈïe1XÈ„Vªy`5 Õ~ȼîÞêÆ1¨}}g ¤ÜÚ÷®€":Eƒ¹b`ᬟÉڐo°Ù ÎÛyz é\áÒzHGR2Ì?zB,µ‰Á¥®ü€á9h®¹©™©¡Ëz'~ýLËå`«¿³$û_J%h„I°Ó¯‰CI?|úø…GÐ8«I{R»¢ª×!#¹I•‡5ŸŒÓ¢]ÁB-dhPåÚeòÇTRHé7¨»LÆûLaœõ®˜¯2‰Ù4¹N³ wi(cð=ÉQr¢\› 랍ý^Äw›Óa‰l\ÍƏÈÛSŠ‡§¿÷\@Ù¤Æp8ªúEò”ê¿vó
    8¬êâgÂË}¶ô¬¼±‚Ûv¼û¢Rù±¬˜eÀ¾·Äê1Ï¢´]õ*ݲT÷™¨-yí·M°8ÿ…ÉIœca’¤rh’ôÛ“{«Ñ…ö6Ô¶¿kuŒ¹
    ïLáçâ@¡zn÷s ±UDê—%²¬ú]{t)ì¥|þƒ
    qïÞ2õòtN_j#ÕíB÷É&n¿ç,Sqy–?WÊI4Œ{æ;
    tËD¬…0SYÿC)œ&šÎ"cRˆäšÈ#ÿ•qÑö[êPV}†è¦Î(ñ%÷ÈOcƒáVïÇÝ+ó$*KE/,Øó<â"”=&=£¸ŸùámDowÕ\.pž\ÛV¡ËâF‰G3â^”¬Q¥T¨-ÛÔ!6PKÿn…ršøS4¶š bÂZ¥äá dæû@ýŒ‘2FmV]*†"ƒ³Xà‚Sß,C ©5µ*f!«P£nÙ“õ-&Ó“vL+Iö&™ÚŠûCagüû¢3¥zê´{7tMðýœ¿æÀ,xŸTÿýÎñµsö‰f<ƒ(¿‡®7<Ĉ&¾OÏƒ&GõŽG8mLª‘VÍÙDóÓ˵^4†¡.ôlÁÆî2Ñl>$ÞÙØKvB…ðP\$ÚÔnš¹dÊåQ‡
    cäêgÕur~rÏçÛ´Mâ

    ÈSlŠ, eÈ´<q~óìV2¸â¯W×ËQ&®³˜”÷|2’mô„¶Ÿk~ÞêÄ2Œ:»èEU«Ä}á„`ì9æˆÎoÿ-ù?yüz^œ@‚d‹jóü©_ê%š„“˜u–3cÅú7ò6㎜ÿ.s>†ÕNó0uÓñ»@ÝðÒ²w'€Su¹OÔøÝ]}ßïÂØojÝèŽÜ7ÏÇ«2h«øLþD”Ǧjr™,ˆP_RÇ°Åc4?„ßïUÅ!q7¨|ùò“”yà|ŒæÚw†qHÝ׊¢tGe…é|X©E.C3/wÔI©^ï¨CL+£‘¤S¹d¤±<AÂðEl-¬€˜¡*Ë\{+¦à„¾žÔrxÒNïZn€°Ò|àrEáŠÛµþbêW”ŸlȤ’½ìÄ^3X1ŪàWZËÌ¢…ðp. ¨ùþI¡%§Qå÷Rt—~èK‹°¥.V‹k h«‡—üTFî
    ×7h¹§ÉðåùeÂ.7rŽSG–,ôh(º…¹t×|3ͱIK3š]”gË)gþ&É›aëV
    D½¤”x™Á c5Jè¡!#éz´Õ1Q$ÛE/šZ|q‡¹ûŸLñžnâ`ãFJ‰DëŽyóÏÝ@7ï®Â»9½îílÌ£"Š<A×ôÁdµÞøúN·shè¨ãÍ}²¶ sðA¶¦FqJùAÓoá1åý°¢ÓZ ÈÅéÞ˜~D[X!J†€t•—5›=PQb…”¦î™Õ<ÌË…6~dc€hu½G\6´H}9/™Ç,‡_ùÄMôKG=ܼç+´ÑË«wlüà,(¦_Ԑ!-CYÁaÚ&
    ”˜ÔÀýKÏ8xïŒÂò×ß:]1å*…뙁÷äæ®dûŽr%;ŒÍŒÝßo–ÜIé3}%%û‚—0ÁËr áëÒ¹Ùø+ñˆ®O.nckêÐÓï¾À›:¡ñǦåĸXS8&-ÇE#:å1µÃËìÔGj¿µ'eÒÔçyØÒ80 NÛäNm%„󮜼˜ê7D!„n•|<7Öò€-“ZÇK"o␻eÚØjKm4ÂW¢15Ygþ`¾y U~&ò‡SƝ jµ2"ŽøÁÖ\« ° h…ÖGycéTÒ€¨ªh]U${ò6라ŒÍ„Sàà‹'çœóÓ83ëj
    Ÿáe¥
    …2{â@ˆ‰
    °3ã„îyEŸã½ï4AÇ€=אÐî~ô£<ì^ùÙç;¾µ
    NµÃé¯9ÙÜÓE¿:eek:ñm3ÓiF_Zù°7°Æ›ï+ÏœÛa¡fù*ÉÓ#qð¾Fy‚~1…‚Nž
    a.®Èý;8ýGÂg4F\kÝ$LPhKNšÍ'ã46ÝJŸËID¢.üýˆÅ}Æ“<
    °ÓlÊ75‘‡I«•›¨jöf•0Ý#µDGïm¢„¤²Ú?©›ÎD÷u\²×¡¾³ù¬vŒØwÃò¶ˆø;F˜Ù”î)©{¼\PO¾œ ‡}%˹¦ç"ÛÂë*¹K1Wû‹}Ÿ§_+„÷¬Pœ©Bð4~ܯ7¼WMlpØp" ës<ÞÙ)\'¿ã›Ô:ùµÑ±
    k«ê£ jXmbï,´CX>e;vYnîpí‚nšå#d h—Ö[^Ï#vô}6È°VÕd65JÒŠ•"tÔ%-IÕBè»äœþòildÙ¢¥„Ü ïæ¿Òz.ò檒ô½ £„Ò õYIô4»Crá_ÆÍc*5UÁ¨@¹ó„ÇFEâå ß};«Æ–žƒŠâ»2X‘öþ°þ¸€¢ ¹±jöþ,°ÂµR·’&³Ø~Mà™»+;åê?oVoffÅ¿QOÌ
    ¥J°·2rCÎjÿµl\ó·%“¶àž¾7Žx»YÐzâ±\”5xË>êŒ%æðÌ8e"Ç@$´ÉªÊ~èb¾"üÁ‰:WâÙg¤6P…€Â%XO’ÛŽOÁ¡dDžˆ¦…ò×Ô{4̾ŽQÑÅgçý܇@-Àºvðö+ŒlÜ}9åáe8$T5)Š“«Ø(û=7 8:õ»W—{–SÔ.äÝÌÿ‰qÜ‘MƒŒVô?Րè¼ñuð]—÷dÎÒ°aSǯU¬åÝý*bX(Ð
    ýï`JDO7ào&ìsÝ€9þ)÷GRôt´5§Ëš»HÕ2¼Ã"¼ötÎÞ•þ„¤(Œÿ‡ƒ´5WÏ "pD‘T`VÆ•»Ïì·ÖÌ,!µ}Юf©g»ì7”h62=/?åv$†-°ÙûaÁ@øÓ%»oÖ“!Ѫ,®>ª]ÃêŽÂc3”Ghyâ%½ã«€^uè̹Ñówÿ!ÑX”6‘<Örð™É–†¾ü& LXN|¦CSM¬9¯|…¦}úÄ|¨ô‰úÀH•I¦ïºâ¦õ©fºÚT¨$w»xÓU£¯Œ+û¹ßE@8C´gÌLÃöãNÍ¢êò_Ú.Ö{S5¯Í–ý>#U^{Tœ€„Ïs^ÿÖüùµåß>¤_›+ù0I’ÿßdˆÚ½¸äj ð}o†¬-¸Mg‘Q¦ÇHƸ4Òb÷ŠSŽDÒWÇÿ4¨e®|úàú9m;ÒUý€¯»‰H€&§ ™ß`xõï,<„M÷0²\j嚃—1.ÃuY™‘'õßÝ<öÈ§Hk)ÊÝ
    ³ƒÿâ€w‚]ô ðNïºyZ¬}“vÄvʆè‡ëÎpÕÿ×%a论}¨„k|ª?I:>g—HAÉôì}«AiµLàVNÏ œ²«µ¢Å™39ÙȺ´°yP _¬øÃå)K„{+ 5—("-–º%ם"ã©pU’ëÕ…Èíç¦Éà ÕÅxì_vzRåò‡uÉí*,Qîü÷"3€–ýˆ†&÷nÒçò
    ÿà-”<lÄ $”ê³`*m4O_5i6ùî¶C`ýIØ}óÆk:óBV‰§²]¢çÍä[اæA£TÇÛþÀBuÀˆ©w
    @5Kvk ÉÌEÃÄ€>³DÑÊ5S˜È—’€Îô~áì(Ž y|ãaUÜ6YífXÓT½¤öÓ 1(íÞϬýR:ôZîÉ>«+ëù³²ÍŒï.M€æ‹ù ?U^*Z Tˆ3º’qžïR0î·M.«b¸¸À¦ÂŒ¢YƒvÍs±E3Rº¨£hd±.\Ò<!}B¾žðåQRªþƒ©ðã4}ó!õyë__™Ròã6.jÈ.Ôœ#ªªÄœëo™7ÄO΃B™yˆÆ0±²K‘%báʱVrÈæÕÓâ8öÌ#8›©Z'Ëä´Ê:A¸fëvÆOdø/xRaìꁥF#Oý\ù”½êÍIaEc
    GdJ˜C»Ž«BþÀÓ°†–¡}$ ~Äu8cÊe7Ýwá¶ðÓgÊ·³
    Ð8æ½Ô
    IÚKr[ÁªËÅ* ÉTM›
    L9€ØÐþa`±–œÙY¤üïâ}9¾D{‰yb1^çÒ(tsM^_c›è ¥ù*‰GÄ:*#†b1½l|FxsßËöâó”þ ‌¾(שè^¤¤á…mŠ«
    ZH˜ÛGGê-¦$”)ðL¶7Ç_Ô“y”ÒcZ°X@}em‰ÐXbèèá€<M´øfûNI«hŸ.¥¢*½ÂÜwÞ©´Ý–Kz{OGyIÔˆOºµ¢žzp¢£ãom½ß³oQƒð¸¼pV]ì1&AèèÀZí›oS»®Ò?êZ£•Z ã[¸ðç¨H}ÇÒèÅ\–GË7RLó7ÓÖœÖEƒ<þéÝé$jE%‘mFz›I§ÅÒÿ)Ѝ%Ü<Ò}»î=‘|„.âõ¾V0¸I´„¢>¤a!c0ÚM‚CÁO ±™Æ”\ís¾ŽÉÈVP̍ÄQ+Ë MAenpc’“6v1é)1³¬Lž¸ÞøûÀ‹Ì`§§ùýT̼¬ºS÷úWþ)•©ýwª íÕ‡}cµ6¡\»t˜Ue]Š4bªÀ·ºG²‹wX,A¤wI¯5‹ãE)Ÿÿ~©(Özf¤¨cOÿ¡Ží7ajzJÙI'Öè#@ÞLÿ;ª¹pµDù‡
    =~óÑ-Jí,I)šMk¢ý*ÏŸs= —ïØ‘Â\úë Ñž¦¯_øü/EH1Sªç®€'¦1qG–IË
    7ÄÅPs«¹û
    {ñxÞSÙ,:õDÀÁ6(W¹tӏ.çhÜ‡³r–³G?DÑd2º
    Ät®¹Ç§MÛÃFúrÇVÜ l0å˜ryQÅSì1˜³tvþ²Âv¦ßÑ/Ï:ºx?€È•Xôt*‡¦0ȽÊÚRÍxÅVx°µ~SEkjN®wDËò´ó)à*¹£»…¤³ƒÞ8¼×ýÆûpÝ`'Êp~F-[Ù½Ê]ìäÒ»Š¦\º=ÔV©˜H³‰?™£M¦Z&s©±€sm|+я.Ÿ šÊÃÀíÆ NÁk< z#.NÃPh%®IՏ@-jã%س(ã}¥e(M
    Ü^´)yýýîNoºól?±Â£àIÀ¾š¯æ额m¥ÀÜÛüÑW}h<ulj_¦ˆÄªŠv·Rñg÷Ò6ÜJièonm¨HKñò4NLº€…%©;nêâG2'•lðªc~.CT¹BSD°XÍqĺûl˜Â]ˆ|׆&PCCœ&|X9Ç)®nðÃÛË[Û+ºC¼—´è…lú.·+gÄ ²N–Šœq¹"ÌDRbœÚO¡Šü³Çç:ÃÄÁ–Þ¿è‰=¡-±îž++¸s#9¢³=Ÿ›EÜTJÓ\Á³4 ô6lc×
    R|F÷væË[å¶GU¼$@K’’W,E»ÖpCr¥ûò=ôÔrAdU€Ú”Wæ+&fÖh:‘k|åNÔ±ÃÆYÂß<üëYÞ4-’N„Rrú#—æîÇAð¦§t¼ÕdâüëËS=@%845,èhø+)ÿ.u¡™T¼ž¹`C
    †ìèzįÕz §Y«±_»Û²W|
    ·†Ääè2°=â(lb8¤FŸ7jÀWÀw"…2Š¨ºöì´0¿ß5–]`"ÿƒøíj
    '‚átÀ0ñ?ü–‰%ç³'6HÓ&7”l-ðÊÆÑaÿ8Ç?mr»“Ö^î+›QC;‚7w˜*öÿ#á9Š:ÊZIÍOµ±eN“* =ÈË9Ks|0ÄÙ„ŸÒTkŠ b7Ò- *§unq»Dú0œQGÖ$2_„s£ÖUþ¼7§%µÒýkÒ´° Ä8s—«²“!Ì¹•J‡ÉûVÓúè!§ñ?—¼#tÒ{¤ÎqíÊÒõeùÄù²Æƒj*PÍ4D-eQùÞȐ0Ë#I^5Ó$³ÛO›o:4n¤ù°óB•|¯4D
    ßÓãš^Ù5øÛD_ê
    FÔË9֝$ÆòK44 ™’ðÙ*áÒèTöqèè%ÙüÙ`B¿Sp½¥SMyuò]GÆ>Uˆ€uâj!15¾_>2â6“*ÄÃRÿ"T{?%eJ‘=jDŒ®Ûƒúê»],÷߬Ðu·µÕ¬„;l£%ª‹ö%^¿Ãªb¼çü®Avf˜I Æïã•‚!Ö!·çr$0[Æ×dïî#©çaCœº»Í‡¤rÎæ:¼UÂAôì¤4,@ÊÅŸei·ÙÅ•`|‹ö2^Ó™Íúïj™‘&ê{ª‰8{¦óÞVL*©„¡·þy9¸±G Lš·2³³~¡sVÒŒUçÑì}…ÒdP—NcQø†HÌUäp/n
    (ü”סl} …:V%Mf;o/½›öÖµfÅÜ OÍËãJAÀÝSË] !g¦dvº`›
    Aß“Ÿ+)îƒê£d’ª’¿ãõf½äœõBŒh;'ÔMR(“o($ \†¤yQ»TFòÏÃ"Xàë´¡f;1YÈš°Þ/‚µHîû¡Øœô⿐d¯ÞÁ{Z°4Ó¦QkQü´Q{ý¥²Ç:!ë…ÖßÞûù®=“€e²èK}^ÙåX2*¿Êˤ›¹×Z^17Ó‚.ïo/]!$€ˆŒR‡7¸ðjõ[¤W,Âíóà]¦ªF.)zÍʍ‘ +û‘)¥ªÞ .)5oG|.]v%¸MãPϏI°QœAë‹ÕÅçœS`B/ciF°Qš^<ÒLª©u³¼Š3fRó14q£þ/z< 0šu<xe‚D:ÁjR€Z@ƒÞÝ„QÏH>«ÃµKêS§þµ#øÕÇ×›gZ*
    ðٳǡ’ÖãŽZà±KW嬕ÁÆIÝ‚—x·,³G+(ð¤Ð6¼'u
    r/w̐ÁÒ[C
    o}VQÿ‰æcnF¤)=#•Ô‘¹/íØ;’ê„M¥î¸÷-ö¥Š 1jô½ý¦šënÁ9p%¯²VÿÎ&+L§1z Q‚íMŒvQÜ–‡m—ÜfWiŠCj"õà±
    Ö(4**$²õY™@k¥½MGf3˜”×_?í”:õèxÛýä‚ Y˜å“«šlÜ…E¿-¡D¦@E€A”«¿ÂVd7aa„?õSÞ³^ÓùnHz~ÃïZ!P£XyóéKJ?ÅäãAlüøç{å«ÔƒUlÅG%v_¤I“sìQÚ«ƒú®MuÏpÊÆ@µ¥u@£‚ “ˆmð¡IcM¿oÚcÈMÀLhei7qxöP:å&®mt¡ªriZvWœäÁÀ’ÜWb6Úÿ_—|®³3Ñ8=>k»_ðžÏQ‹yl3Á‹|!©Ñüir‚DÀ9•F!aö^‚عZ¦@«¡Í’QûJ;åð~oŸ¦Õ@Ä>8úñ8-@ºÔeù
    UH–eȽ?¯oj_i†CqŽ õ›€C@‡²+üû(¤ûN[¡åÑ•«„Îf¯SÆk9x)=sŒÉ©†#|¬Ë½@LZ«á†°¾:Ä&¡ˆÆÿþ ¦üsÝµÆ ÃJk¹–—ÖMcŠ Û
    ùËTø¤É^•w!êUL!¨Q´}^V}–<ör}оû”,G4ÈŠ˜øá{–^¯TVx¶85 R«Dp²ñ¬0ˆÊo5ÔÚ¶^oÞ§¾B–Rîňöwt)/§Í·ù¨p½cGV"Xì0B¶ù§Pˆ×$¼Ér¦¬Añh±[F:^ª‰°¶….1–YÞÖ祽«x¬eKõÖ GÝùV-‘¼‰ôÉG§=]N±n¡Š¤•2¶ñ`à¹ao§â¿µ¢b …Ïr³g‰ooÑ#L¿àçdïÈ㆓¡:0H¦ÖÌŠ…°óÿ°ÇÛÌË¿¹k
    D¿¡)?Í–*¼'ù}1J"í°¤\ŸÀ„;ÁÒÀûøÖÞNÁ»Üeý©Ïðb íø…é¤ÎfoýOþé&fcé¦;£T²šÛï]H¦'ýª7ÆláçÖ £,¯øŠì~ZÉŽo¿'è³î
    qô>¾8cË6Š°a12ª²rƒá4(ƒDµúoP¼g©Œ(k>ßuÕ‚a%¯†&#6…x/‡Ã^VŒñÇ÷’›MôæšÁ9ìÑ&Mã•gc°óG ö·ŸYØp©äU"•d33mŒ½sìŒ.Þ¾Îgi3Ÿ‚‡‚Tïª2Ú.Ë)I÷yÞÎVÿí$üÚa{Ä–ÜX$‰;kãK”~·CñXĨïôG1
    p¿rªÛ„rMº?$aq°>ÅŠÖíÿÅ‚Ý1«å„Q½Aí´?’ju“%~&ªÓŒa¿/UÅX?!Üv*Zÿ#¤=ƒÎ÷yBË
    q†âÃœê²5è]úÖCt\hö¨v1gšëÞSÙtÅç,ùt:;(Ú検÷FÝ*>•µ7Pó«çHÑæ87”EñP‰Ü$å@5/µm7«Ä¢0·”œ>B:Q}LgÛ ^ÆC¹çNÇq/½ÑJ0#Îлڷfƒnê—¸:3ä¬Ñ›ýB€½iTn¥ž
    Fµéô:•Ü\‰ 6Œrbß&ß˝ΎšfSk;
    4Ù·+M…¨Â’ÿ;X€çÉUa)½B>‹·@/=ð
    ê«žÔÞ›(‘aÃ7ÈædúÆt¿)Õ@^Á›$gåZÁÚ‚²yçúºØGúåx-]üóä{c¤×n fÓ,ALFf…ˆKÁ¨¢Iv¥®™j‰äÍ •Æøë£ó¡CŽ7¤[\;1~€Q¶±¯ôêƒêÆzÿÐ9îUæà=‹MkðAF.Ÿ\2‚ŽàtäÐö+OƒöäÚ*©&>¾Üÿ˾&ÐY» ›·¹ýÒW›àk›¿²8Ÿ ©Wq.†6ÔŸ5éVš }wˆ'pæ;opÖe´E#˜•×ɾ®´3 ^¦6ÂWL€²]@{<8RÈLxZ™‹ô'÷»^0Bv,'à’Éq1Ù
    X/â¼ fa;Ì4ÚœÕ[éW¨`‡_8CI¦óÎÉǃm2³‘‹ÆÉê]¤½Ìóe=I±AÓB{ätû¿f<&MŽÍdPé@ÂOSõ‡¯Â·=pÓWFc\<5À*MYR7aùvŠû]g¦„dvbˇªG¢òìÊÉ™¦ÎÂÓsãŽW8×ÆCa‡%Ü)Óˆ½F;Ø-¿G
    hR=O¼ôåÜTÌ¥WÐV1»¢¤$' +½R©m%ÒèÖï͏ÔÉ=õeVíŠu ë~ve)ÏÉ/ŬuÖñQ±7¹Ù1ÑX‰G²¿ç“ö0
    , ÖÕÔÔƱ÷ÁI§Ÿâ«´}Ÿ¤Y™j
    Š‘zyÌÜ:¨Vòb<—=t;Hº†‡¾è¢#];Æ7Á6òÙp[tÚqXcÐ9ã<Öwƒ0ÝȲ•fÿé`[["a³…0Ë杫Xl•°í£ŒÝ
    ìÄiXgJgG—mãCdiysô³ÜÖ€ß“r‹Xš@CRšZþÞzõ1Ò\<ßbó:ªqJ,ËMLK麤0Fu©ÇyéшæOAO †µ—[gt(N ω9à‘jL(Ùe‰:Íæ,·½<7i¢wíЮ² óT¹ˆe¿ »÷y·‰±¸7Z
    o§|há4BSRNÜ&Ú8ž
    wö-:Ñyã¹J¶„Ü…©3üËB¸è²£Ï‘B#JGÉ¿Ë#lqôԐüBýëJ6¾¥ðŽéࢪ¤*@mµ]ºÑ«‹°bŽ¦_ùI"<á¼Ö<‘
    °Fc2ƒp7ÒÂý¹R«¤€çGPy|l¬'«{_ë†ïí¬LD¢ì5¤78ÄKùù.aãéô˜™‘½q÷À‚× ç‚kkGü„¹“y`Ám*,‘¤FsÃ}ÁN亩£—Òö¸r
    #ãéNQÿ7pîBž6Ó°ÉžçÝ-Ä_†Ì ØI~]¬5`G}p-ð´îéƒGyŽô®æôÚûÖÄîY!¼}±à³u9˽-¿ÔT²¡†Ìª×Ù™²h’;'6t…ß3‹ö€7BÇÒ#¸ê˜X~ÛÌEáa% K¦5ÅN¨hxaí+ôðqC(„Çì‚{Ko‹$LÇÆ Sêp]N@à‡((sÆßnZeŽÜÖ¸™ìh uOë £ûXìéŠÞæŸ?Co»ë4vÇwÁ{'8@Æ=lþÜÆ«Ž"\ªŸò587lPjq¨ÂûOÚJÐYQCY¬¿ïxS¨ÀrY¤ ž¡—#ÉéRMZRõņ1w‹¢Yk¥¾©ùÌíÈÈýã#Úc…|Àªcège¥ã»
    %;ñ‘Ägù¯y︫zÎÞƒ°þ×oÏ™ ‚äP0óÞ~èÀÞ¦}T£í¼:KdËÎË Ê—†•úP£<¬í¦Ý
    èºP)JÊxNµ²l/:ÆL•ó¤koÁ¯ïbX…ÜÞ$s¾þªn….©>9—ŸÎA2»Ž¢ydhx͵îífÄK»áTœô}=4i]Ñ‹vgþ62{aôÃoÜHiÊÁ1FÌ7áçø“ÉÈÃ|D¨-
    M¬ÛÏÙ'·fš@æPÿNSàj‘œ”œZ‡¼WmÁiwåE©þÇigo}d=BïP
    í_²)«½-ãsüç8g³Â<ÈC(¿¼)º1›ÞhB¼Ú‰*]¥ÞJ¼D›9mf·¿‚5
    ……ˆqR‰÷u´¹b¹‚?@ 7™ë8,¢¬§GàØlÐõŽÑÒp¹ã|rìž…Õ[|›q¸¢4‚ƒå$wÌKÕ b°¿`b»6É3ÞÔNšÉÖ÷·ÿhÃLXáTõ>ÎZ9@çÔö²hÍ}ègðþî` ¼ôk4ëp¤9“E¦Ï]»}|wg*gyöK_¤nå7«¼¸pOÙZ.Ðòçb±UïòˆaSP¾À Ã$ ®ä”S‚ê;Û¨—=•0&¹Ø#…½=Ò59|RX ¾RR±‘m¶:â_©S3Õo¨ !VÀ!jiþ}œ^T±¡?v ŽƒÝ†X0B Ô\
    á'NUT¡î !û
    3P¶Óø¤¥=Õ¼ìež'lÛ¬‰w6ÝNîߢ1]®8Ùr2©Ô÷Î콸yójo¾ÇjÏÂBãýæ?cT¡=,}k¿¸`§QþÒQðÜoFî7“%IpË.ÑÊ
    Ð¥‚ôÙwº”›kI×[
    ×`N ï^Éœ@“ò”IDΏ؜`ó Iÿ;ޤ畗€î†"øF㓝Ú/{MD?ß»UU¾‡Ãm¶ú!t‚N-Ún|Cû9þ¹YŸ
    ï2×@W;WmœMh
    á
    èQOyÿæè
    )p£À¡ÙÙî¬Z鹫_¾ZJøï‹àÄrÏ N±=;èC$Äço—*µå±›Q û ˆb^\y>Ry‚¶Šfén‡¬ûàZ¬ÊÛQ"4h8TäP=1f9‹píQŸ‚õˆŒÜ0Z¸Ä0®Ú÷c‹Y(FóáHSÂ( ¸lPŠ9FX:ô ?D|ÌGüî’ë,ÓoGõYÑ ÊbÙ2‰r»3ògÝ*’ ¼kD6ü8Œ)qóÀ‰kDOx_ìD¬ÑGdiv“ån–TEèózr+dœqjÔl9]之lÃUK 2³Ì`#d™tozT3?ª,lìkhj´pRŒï{Œ'ÁwM¤sˁøO:îox{¨;¯™²LӍP70.7p˜¶âù¬0Uùʦ–l ùÙ¬‘)‰óü®ñŸm«1fƒ2‘`°D
    ðÚ§ ¼½ Q¿±÷¡ë´¯¥»^’Lv4k r8^zµÇ·ëéäIЙ.¢¾ˆ¤mÜ;È v8øÀJwNÌÝW÷öõO…5½]T—aÌ_›Ž£FzQÄfö[úc¢I$+ÖlÜ+h
    hÄ¥4ù•5w»É±¹p
    ÆôîÜÁ€°÷Isº›¼cÞ`Á;-îR
    ûŒEÊ~ìkß`"n’¨*E P#5mï™RÚcEt_Š~O>‰{†q¸5/`5¦çÏ;—Z<MKDjýæ!G:ÑÙœmporü/ÕÅC-qÄÅ{Ÿü5jBØ…§¢t· *÷„Sçcl4#o(k¾tWojídå</e?Olìév
    šÍ)®;Â÷ÑÏ)àóGî.Û™ f05«T¢˜R¤×MT·"§Š5‚×${¸œMÁ; 8„ŽÖÊñ韑äåñ 9-)pzk÷Ý”Ø^’ •€úŒ
    "I‰L%÷ý>tÄdk¯«Ï7——eè)ªßÝúåþ¿ y]m6…†›(FäÉy·ªy®ów±µù¯ B¡Þ»‡°æiy¤YÆý‹7ö2ÅRíÐó<º«ñ†iM#ÕÄ.+ØKéñЩë\_È|™)9+dbÌh“çà°¨ôó
    ¡[¶X€Ÿ¥ü®eP¶:—÷/: ›CÎþ»39ä?Ðþ¾0Õ,D]u<¶Ç½Åˏ¿—IÛNÆ‚¾:h©"±¦kÖú˺{è›.óÊÃÛ«Fƒ€8
    ä¥nOOŠ–LÁ,Ô¬IÏ×PÛ‘’,XÚt:1ûIN¡©¬Î¹ÂµÆ/~}™bblW¨W€©q÷FÀP6…`J9ÂSËTMx"ÕÀoMA‹wƒ¤–bwƒJâç}%›ònÔÜCªÎmRôðgè‚:¼ù'êÄÍ(®’LŠÙ©Þ“à¯|0©&ˆþ•öIëئóO¤¡®°•¤Ç³N•jNÒèfkm`vGr'Žr²ŽhÿP•>ãäz!çxÊ þ?/?,³ø˜^/Ðë#mi§¡ÎÝúˆ0†#î%'ÌgW FôÏ}yiôy݁‘È\œÇ pÂhµÃR^¶Áêuü’ztñ|B]sr8[2ò»N’‚ÑL¡0ÃÜíè63û¹‘å]" ø3ÙÃn“qï0Ñ8³ƒ›JŒ%S[‡6F ÞTûz” ÒÄ«yÔÒæ—/ge8<ºõ's¤I–Åž$3šØ©¢¼óÿEæòõw“ºÂ«ÙÒïó®’Ô°é€{ÆÒÓ7&8eJ'X9‘Û6àÌŽRŸï!êÆÒD[I“{n]ƒ«Xö8Qp˜Å#ÐÌ'Û'0ª¬W):7]ý)( å,¾9£gϵçXû–XµVugOÙŒ tþ^ ›¼ !HÛ|6G
    Ó\¤zÿM’É Ðo)ôè÷Sòæ ̐¹`ŒmXÛòPŽÐóYT‹H8
    å¬Ýä@`&^í”…4ù×cŒµ}†â>ó3ϐÿ
    æ|¿hhü@4q¤ØÍ‚wsÓ;xœf_Â.j9Þú§sYøΪ‘Ï@•nšz&Ž?a4Å_b³ã³Û9þ.®s»ƒpl C~ì+ jȾÁ¹;À/Û=´¯¯IÏlé¿rUù¡¬ä
    ¬âÿEеõ…8]LÈ0†‡/n¤G~ãtŽU÷1énfc?m¼A‘H¸†[»b"jƐœ8í|Äʝ›O@W!?×ߦZb #2!#n¸ì6dš € ›¾ú±Z¯±2šaòí‰Hâh%»Ó–ö¦YrZ†€¿¤`b1¿"w¾äãÅ^%XÑP—‚Ÿs®ž~-<[Ĺ ò"š/å#Vœ—]qrUk訕XX)á0¨8=b}åJš²¢ìÕÆYÎǧj;ƒhv¬÷ýÒÛ-ÿrœäø´`tâïøJZ„f¬`‚yD†¬¤½Xrï–Žÿoóš¼&§·ÃÕ66Îöz>Ö¨5Fª$g‘k=€0¾ùae¨nl.Ã?–=j’ôrÉ|M®é;2ÖÆeh:²Ú+Êíì-Ͼë?²?U¬2à«ukfNÞ°wŒÏ‚NŸ=UûšÿŠµÂš3e[RWù¶ÕPIxïÝåéߺ’ˆû_HVŠ„v»2ø¬œãN+ ?Ôë%Xç©9ÎL”Y&•jsžÑVoyä¤YÞ<‹p@ %Ùî8~¨"âêk^”4O]„}«ƒÛwbÏ{Aÿ ?ªÄ&WÏ÷Øj<†´÷¥
    ¶fci”/×zDGJ´™Mì=QÄ9w$uÍô3Èó¤ì»wÜÝÃú4oOÍÇçJíN.p^¬°z%`ua$ùûÅõèJM7Ž•j°‚cÚ½(*»r}FgwѺø&üÊ
    5å“
    ½!*ÀCŸ{zE°4ñu€>£ÿÛZdžû[ï}ezÿƒ"[ÖÞ$¾b”óãn#¹FšÙns³IÛ?/…ߨՖÙAÓ¸Õ“¹ÉG´]VÉǨæ»Ö¹}”µ€Ä«R<„ž×f¿tþ-tÕîòˆ HdÉe¤XæŠTjM-iUvŸmÊÕ×?dÛ!X5¤7P²
    à÷
    Ô3ÁmÁ°`ÆŒ#\ŒM\í}›`çq¦›î‰]GEáºÂåüΣrRkžÁ/7f´ ²prú¹nøßÏ™uóW0ž®Äß-9»l†Î±pîmòg—H} I\@`b¤e eûsíâË}!ë˜ ¬ßÖÁƒ0£TpGh´Uì
    ΔÄA‘ÎÂŒS0¦Z†f’~Z7ÖjyCN‚FHa,Ì6ëð¯¦@œ… ½1M+&•G|Ï,à[%ŒVƒUu׳‰Yç)®€üÂâ¨wæ€æ祂¨º2Tj ƒ9ÜX¢d娻ñá>Çe’-WÈÙ›Nâű@+ŠÅ>${Êäh“•¢ÐXZQâöî
    à@Hl
    …Š£]üüýÂåۏÚJR®8í“Fe5JYV îIZ=b¸¢>J^¬tÜ3‹•ƒ°<Ô?‚ƨryØ©¶ªv®Ï¼²ëÐ1´Ê›•±DpÊÈTÆ3’غþôO!Dga
    ùsIÉ`®ç’-çSåaÎíBÛ ºC˜*ý"˜÷ ՌŃ€ÂÊsîªwy”è¾~d'¤´00áðŒá6ÌPø‰J„»9YÍ¥^t<nùØH¢Õ>™Î«ÒqÐ5C‘ÿЉc±™¥¦=£»¨Ü0J|Y±2'SºÈ\[Žr³,!œømo}Üo"Þ5oôEû£F#“ùÈ_(–2 hvzW‚οùêʬµ»«:«qîDÐEä2m+<…SÚ˜|”O›ê~0¡lÅLdbþz;‚ÚI‘
    ͵,8{ø¿× í暨ÚçIR•}þeE‚Uáv"°O㐞ýK™ï÷¦‹SÁ=—ä<]ø
    þMgW«ËOä}½Ú¿&šÎ².ãpÀÔ `õ Á䐧k˜ÄϼÇFB2µuõJ,©M¼Ï¹…÷öNrÄ{}óˆ˜Hƒ
    sÇÈ<ù ûÓ¥ïvÄP¦ë夃 k £I"1$š¥ölzK7´ÈÅVB›F"ÃÈÜ@UÍ
    B$Q
    kˆpÖ…‡£_î,wÂ9 nÞ^žm%"e´¡îÈ4Æ×s&áB2-óŠÿaç&«švG >Ó‚ j˜}™™D·ìâÄI/ôùû8.F‰àœ|µS8 ”Ñâ©bDã±ÌÚµm¥ÈånðÅù®}Ëk^ä"’é-&>b’9‹ãµÄbð7ïã_^_i'"¯Šºä ½'D§ê2zôÚTGéX #Á“á–GùÚ‘á¢vd8ûFEá¹J‰(‹GC0;.@¿¶p.
    ¤åp{‘Ü•gICÑ9—_4“±ÓamÖ2R¬^„!Sܐ&˜D×Íû÷l¥qÆ$´ ¢/5ž&òxC\&WŠÏ 6™|ü¢Qª” îÚ"+>ÙïPÂ{UÍN¨Egeú·Qò‚Y¾Ê¹¢¤¦>ç;?̾Hãè‚Ù·eÙê$×Ý V}ͺ¾2E¡”Ъ5ÔhgÊñŸ7ü£â ºLÍ‹Œ£˜¦y´þÜÝpGõ>•ó·~HÏ6¨jåóÇçGwþ¹¹bE[2µ+êZÃÉÒYà×B~“Pã|¬ÔwªáMI֍bEè½
    ác>Õ(ä%@ÿºY™uÙ:p/evsÔ(uiÖ–tlà"„›’Õ¦dm=5„¾¼{ ëk<‚±o¾$]ßRíø5Ç=L½üžæS‰oì¹/1ÖKUÄ=êžF°šs‡: €‹}7où{|ñ Ü6Úyc~×ë´&ŠBdÀõôD¨üO[MÌïÓ4åÆG‹N ú¦›øåôhaj
    r:\7€¬´›qKu郑µïvÆîüÂõýqQªgeºN»N׌íÛêríÄçA×p%û”q“˜ÐïÖù Ä.bïk~Z¨$~oúRF‹C„ž¹òNU*¯]vkò¢ã3ì±ö¨`°“¢³½ðÞï&d Hʾê…Ûƒ3ê
    3ð3°0éEv<ÕSeS>Z)ñ`vS(8RëXò™Vóqò0«HF!¾H –Œ¨Úš´µÚí4‚Qò?fäʁȎ£â¶’–B³¥Ý)ȳ|VŸI¡uÂìh2xõéc‰z35)re9ÍæW|9çÀ*
    ¥ÙWôð‡È©nhIíòKu¢øžQtŸA׊¿ßÒ(¬±VðÝÐW¼õ3‚Wy©§û±sí
    9ã×0Byb;òÝkIÆ…Gx~®žæâÔ»— #‰9ÓòXQ,\:Í€2¸ÛÈê¼ïºu‹J¢‹G_ôVÓ2¿¬c$^(J&ÔÁÞŒÄ>ãUŸ>(@Î͏-s9×Þüñ»©š@bÔzjy_xPƒž°I6Ä°ÒLJj!ᄉWƒ N³b«;µ5®
    ¸óþ!dìÓmå³Ùõ;ËQ ‚Ç,©(ªÏÞ&Í¥†ø ïFz£™¼µÓ^M5èæVOÑä.šI=›õœùˆãÏû9ÒÎ2d±Þf"
    VψÛ,"Pé€'’–0«`u.Zá1½úøð9pOõg¿tê`ÐÛìV˹J+•[òüRÈŽsñ¤O¬¹ë`àž¹j^eíÙ0I]GÜË»uL‘L^¨2ßòGvþðáuyìí?GÂ
    {ˆÕÎr]D1C¬‹¥F]Ö;‚þ„25‹vÕw×JÆ:µ¥ªŒ»Ý±¦Ðáã&gÃë(´ÖÂIbf`9kwk¬:ËóãyÎÖ6ŸäRvu^79Ìêå¡Œ¯±'øtæÓC’…š™¥<×#Ñx)ÛïÃŒŸD xX&¤[`•ZŽÔ
    ‡ì`Ä6‰n_‡
    ´Ã¸Ç’a€¤Œ°%Øek¹>ù".LK Ô
    Wí.š—ʶPä¢S¤y´oÅ^Ï+3»M×çÆöÿɸ´@XàÍI€Ë-d²§pÉvš^Kb!©üx»šIz£ýÀŠTþ]Òƒ¼™P²hòè›”|
    œS°äýša#7xùÕ9óóôõ:ùT ÄåüƒŸN«©PËSs{u“ƒþE€0r¼ôN¨ÊMì>°ŸiOé¤9Rë›2ù"¶³˜XšÀÉú+b´3<‚#ØV6c¼à·Ø`°Óf
    €$këdjP½Ü9VïÈEÖ4Ï0ŸVR2ëþ–,õÚÒãuW€ãX4‰UüD>Œô°kè6†,|úãito©{ȏÍ#—ÛíJ¬´â³AœöãŽ5£ üó‘u)î2P]䁐[§ýˆÐÌë–ä¤oŒïÛ!üª†>vôÈŒ±ï~$?Rךk÷š–¤ÐµXùGÛepíÆS¦ÂãÞXÐÎMïF±•µ{Èvµ:šy à[;4Õ[§øV˜€†Ú<NR<;¥mñKjQRz
    ŠÇWs Š&µ»g.µlr»bø9™²¼9¸Ä…ÅùÍ
    ¹yB®–]㱄Jy˜]ä5N Ð’zÄ:‡G*“Yýó®1¿àLà „ãqÑ*j"ïwUMí`‘
    hc½~9L윀EHž˜¿†´´LOt¨Ñú› û`áË‹·[„Þ2ô ƒ—sÓÔ˜
    ñM
    ì+m î©ÚUßY¿-Ç5p¦=ªŒÞ2ß]
    Â`GeíXdŒ(k
    ˜Œ„YOT»!nY]¡ÞñjÖøü‡$#Cùq4#¼ý=™‰/˜óÜëz7µø™1¤Œ¥bˆÈ=6e[–¶Gèp´h
    £ 2?Ûøŵ/…Æ¿Á
    âq¤ˆ“j¹ 5²–/€¬¯ÙæAµð}HÂ+ÆnðñÑøû¬jÆF‰Ã®Yæ?&*Ä
    ¸±æìsV›ÎyË“µÌÓõÿòð†çV >£ˆÞÍ}é~䜈¤lƒ/\=‰$Ï13R¯q‚Ý;ñ)Bç# Ðe
    —IàX®«¤Š«9öÌùzdßô˜¶ã½‡
    ‘“KÂ`‡é”SÅ mLwW¸‘îxYÆ^¦nkŸÁý«Œ=h´ ¿ž%{¡Ÿ€Üw£4u~ð†¢‹æÒÜÍSJ°[;–ZÉ¥»†ÀcyEKgpK´ÃrÜž
    o¼{㍧2óÓJÍ|oiÕ5´Œ‘§hžKΣjVÝB¡þÅsRÈðèÙ» éM“£ï3;*ÎmìÕð5C7ÿuCp@ŹV‰xE@Ê°¸ŠI„«™yð ”FªyÅÀå YüßnŸÅ)áQnø¤oùî4ß/NÀ›õ[I–¡‘/² ógæŽF"ÿl¾‹d¦¸¹ˆàœ–龦¾ë`¶úÛóË÷?±GçÿB?$±xqÒ}§–iw’ڝÿÓXž% ¨lF8î)«¢oª4nöFìqX¶
    nš.
    ÁÂ’(œÅƒÅõnPž?ìÞŒõ¥/§³ 3'Ê•ìvºÕ>"KöW—`F=¨å‚|™³uúæ¼É©ÇóúýŒ’L¡,ªÈv0zWbþø5DÇIz³W!ÒO‰#¤*õ8×u…ZÀ¸ ›ßP{à<¡í³¢Ë«4—ðóª¶?/%:‹ÌasÍî™l… 2.`âöûWôQRØû0•Çx9VvĬ³ Þ0Ì+ƹ“—ú§\:0Xl;Àáz<^tbw·ZúSˆ…Q°€Ê©ñ.‘7C2Je®5pl®ÆêÁ<LÉ*ýEð˜ÅB܋»&¬ rÜ|˜|šwQ¿R‡ú5›üÈR<aǘL?g\}& ûÞÑàסÑ+ ~h÷NZ¶½‚rX®ËTD7ÆÒ0¨ŒTÙû¤P/hÿåvµ;oûpM8Äùn¡ë¹+%|1ŠýIJêMýËqÂñØ®ðS7$+ŽDT+›¸‡žt‰• ÙÑ™§ì
    “ހϧ:dQhõwòn7'°îSaÃÍôµ*á«çžˆmp}F*݆Æ(Á3‚ÐY§«Z/Œïë õ¤µy½´Þ$ÂÚƒBOêù(6ߧ¢‚Owe»ÒSÝպǢlI-ƒ<$úá¬)x×)®wñ&ͽ]<½¬x\„XdZFA}d‡HÉã^ár«ñ‘ò2u ÜOº,“}^ûßÏÕòúLÏ‘>¡¨à¹[vÑÕ`
    ß¹°’»‡-óÎØúÍ©Q¥úªtÿw‘D1Q#ý"
    OZ“LIΊ¼Ø_‡GFËÓ¹GoWèåÄ–T|œ’zOñãC‚y:.À·#˜Î!hÚÕu#ú[í¤1…‡Êk ⯕׎ ªØCÞËk[çÿ±9ã'žwÖÿ®Ì,½b£5V•}IWØÕYýű@`n+Ž¹ÇÏé8ïvi¢4÷Ó$!‘ÁËhnáá…!~ýÜ_&°N³KR0nÈç#Ù«Ùܝ^‡ïÒv…ŠµSÝظW3´,Õÿᢰê–âZâß›ŽÛ¹¯eg¡ñ˜Á"Ư½~·1y‰V¶CÀoðl6©óê7!VÆÖh2F¥pV4틇†¡f>úlièýî{ƯFÐGm³ü´d@>Å4Jøèû9cn·-!À…1ŸpEƒ"D2íÌú9jÂŽTö5jqBÍkgN³|U‰kÛ}&?ž>—¢0+k„¡Ê£ƒ2Œ¸IúaYþ°¼¤”…¾ýŒ°êÁ¸8ÀöÌî-º‹Uàqíç&RGS2xL46
    ÐÕŸûY˜ÎšâãA-ÜùŽE-ù2 J.ª8
    mò'oÐÞŸC Ë´£“î~ÜŒCéÄÏÏpo»peú°¸ã=h|Wk¨whR¨¿$O ¾þ¢º~÷ãµÚkÒMn‰©¦ÜU€É¨‡´ú×ß{P¸ãÅdЀð*©ƒF™ø$Ýw¹Þÿš¥d£‡;Õrý™ÅþпÈÄq¸´ÚÆ¿’ !qqØä¼Å -›¥ËǍHo ¦aÔ”h´
    p˜o¥&Ùâ}ݶ¸t4£¢ÊqWX»ÖËx.9زû¶y˜ô¨uöˆñ(N 3°œ”PVXçýÅ0n$î˜ñËÝúAžwfTæ%~L§X“¨ÞA™ñÒ.§8ÿPƒÖP-êÏõÍmêëCÅ$;Z5Îöì¥Þ+0•æVÉTÿIÐM¤õª¾éXG†ò›ƒ+‡9Ž¨_™4ðö6æ›îþ"µw\ƒ®ng¢2*HþÖ¼T2*×—Ë{ûˆ%z§(û ×ÄUžrÐÐMÔ>-Þ51µà–Ôhè¡æ«^öŽŒ$Öæ±,‹muˆÓñsñ TŒ‰»a…ü ¢·Û€L|ÏÐõp~¥1ÇX/ö挲ڛÂõîd\Tèé
    6_ö!mw¶ÆßÞó{²¨?Øç¶_¯9Š(žê½ sÀèÄkˆ¹ ÏÇbðüáwÍ{hjeQÑü³élãUß,oJ%Xú•0`£ í‹=ÅŸýçëå¢Í½¿JÒB€þËÉóþcHA%2c˜/Í/€G9TÄ£ÏùãÙö,xäQï3‘A7
    3Z3â€,>ýS4d‰s%glÆY~ps0+7¥Ø'’H5
    ÛKb¤ù¼[o0’¨¿k9exê=ÈŽL`yBx—aÚQÿ’EDDÎç.ík÷ðX 'Àåɵ—wBn@ŸŠàðK¬#§YW¬ÚݯJ+p¦rkáôöš»gs‡]öBÑ™’¦¥&™‹ˆð%>ŠÏ¢Lëb«Q„ÑTÏÓ沘UDXgÄQ±=}mœlEJfx±t¥³`çtý0v[êIÛŒÜÿ \êÇ,W%ým„Ϙ‰[(ë«t•Qz;ÿÔsõ&vÝéGŠË”ÆaÅ"®Iáàaî¥p/“>^;ñ´Zy¼ qÿÂ\:hâWO‰¶°nO8¥õÄÉ¢ Õ¤8tf.u(P|„}ځ´ÃÉ3Øéê–âàÀ涩–þô“[NNÞT&µZ^G¯Ù·ÖöÄ÷ü:áÉé¿&çÂÜÚ¶Yÿ™„0
    ‘¬CÅ?è&Ôjêº„ºžé¥Óð C`2‡Äëcðezw1"°’¨+<дE¾ÐÖù ŸÀº/ðƒçÂêØ͇€3Í‚¿2ú ³õ
    B¹þ»
    9€éá±EÃ[q] KÐ `¶ÝÛ7G°5ùQ
    ›¡N&KÝ«áCpÀfûϹ!ØY?š‡X89"\Ã0õcGۋ뽕;…yylrK˜lÆãÔ[
    oóñ°EE›~x/? îؼ‰4Ü,žç½@W™VU®)lx
    8WGäîDƒÌú‚UÙa
    ýæ˜é¯z
    䙵€/·^€%—®È°RžëÅnYv:WY𶐋6§öŒÍ;*_æ³ÚÇ]¤úª´^4ë y͆Ð(Í2ïÝ…T)Žk/ŠÎÞ;ÓYT
    'ªþ€‹BšUC–ÌÜ.~N€3ÝÏÊÓŒvóý¾J¬”³/ñVK#±À%aîfS®ÕŸË®z”)÷˜gñ]¶gséXGv«DÝH«ßÞ]f1뺾ʍ41µ :¹ž6j½)>èx"›œfÐQdC5·`XDìÅ.:Li]8&MT©÷·šëŒò/«ß /§·Ñ|¸#5Îæ±{¡ÉŒãAÚg´r¦êÊgCììž‹î0—”ðtªã“E÷ 0Ñ$Í
    ÿ‰ÆDƹ_jãw>š/éöo–Þï\»Ã@Ž8Þ¿»O˜*WÉ|7ëì0Tà—xUó<wgÎ(º œ+™vk!âH94l…™’eöÍNð½ý.T Ô€øܦßëäÄfoÄÀVvŠ\ÂÎÌ<(á·ÞwµU³ûÁDØùGì%¬{’Qd¨m.¸Å“‘ж>zæ/C¢jIOOáNL-’am½³•h…™ÌaU·”ŸI@yÀT(@}ö*ÇUžIß×%öþÚ\©ÐÄñ¸¢È—_ƒc©Måc¿¢Éó‚e%3WMSõæ ÉLµ² dDI%@%쐵Ï_~E¢,wÿÞÊÊt}aÃÆ\Õ±–gÚÕuöÒ95waå
    «Ñe7¬Þݤ…¥%‹,e«‰Ò9ŒV½qÄï}£ä<1tøµ
    úEþæIlàú $Ú¶'¦„¯…ëÂÃÈ{3Ö`®5¢÷|)‚(Õ¯úP,ež³§-£ìg#~WÀ±S‹þoˆè%Qè[àF2KŸ@0Ó/
    #ñWÌ»$Ì'rš²ÇKÇ÷î.îbªnÌ÷+²D¾™dQ3EµDœj]vV:xªÞIiTÑæ|·;.Fr´Ïû¿G«Åˆ4”§ÁÄ$˜râ\Ë}ºŸ0[U©I(×E‡ØXMØùKµÄNü˜IƒX’tê°t¿`£ÒF{€µml
    …©X&Êð5ûï{3¿dÝ Õ—H‡¯‘˜îð_à 6]ºÐ2[r÷˜àfQ?‡`¡í‡£7»å’@‚€ò¤ªCød‰fó¨Ð$ô,.w“¼J`sáñ)ˆˆ8 ý;óZÑPÃœòÓË‘æ@}Aâuµ˜Pä°+Ν%÷2RÇ”šŒ‰¯ÔQøéÌ-óH4Q±ôZ½ŽMP (ü3s#è2<ð)Â3c½þ…Ÿ¢÷£R•Ág[-96Ü7FŽ²C^êtgn}×Sšœ9åkP_Ãu×…fÂ’¥<Z¯âv$nN;ôâáÞßíû/F$Í;ί
    A¨‚Û„é©F…˜þ…£÷Uˆç¨g_³/öäaäÝ¡jê¾|¦ˆà0žÛlx_Û¿ŒÕŽåü4ÊÏg‹£pˆ8s¥Ãƒy"m}/Ú4¹7Â-#"ôgÃY“IöðÍÓÇÍÿ8Ñk‡Umxç»7Žñò÷ÃøðkÝg¾°'øܸÒ63iӝ°%fÓoÎæhv”Iæü3o+F8â–a (“‹‘/ "ŽZôæYW®˜ÜWÜÄwmG….!)¬Ûµ2Œ<˜ ùÝèZàÎàQ¨Â_
    Ÿ‚TÚZT3„?_V"nZ‚H{©çA¬L*ë´ÑÐXî´’õ"3ý¡Â¤¨;ägàßåBV'$ ^SGüö2áŸ0’w?ÐúñÒáQJ-á KÉd7üíŸáž\.?bô‡]9\žßãe/ÓIª~¹;ÿP´žV—PÚoV´u…-¼Ž—2Yö÷³.(ÂeK÷ŠýaÜÏŇȰž«{Ô8}Á Æ,ëoêªç™«ZÑÊMLÕ“À€8–}T+ÿ’•·IsNØ<ºC9'9;¡¼•ÖDtŇ;õËᏛÄð¯?‘œ;÷è²9,˜x l\*æaO8`—Œ„¸t´™ŒÄù1‘J›46À8ïÆ %6"nÕLyÌíËÖ1j£|»=2[˜Íw¯oqÝ"acqõþžÝ-ÌÚJžG‘Ëv×ôg ˜M]nÁx@BwvrZ®×©×8íû±Æe\H®T)ðÇKߤºÀlãÄ)áí’§gjþ.fúRÉ
    iDÆàMÅé/»áfÀš˜>îêxŽ"Z>T,"OÏ
    ê‘]hAU|gZèÐé»K´c$äÛCÏ%nËîZØb—÷îæ² FjIÑ·OW¿œSº¾p_jªÓ äQúË(ÝÝ–
    >Ê®íñe„•EÈ›‚SpSÂC¼ˆáOñ¶^Æš”ºƒåú)kO.ù)öfŒî^ÚÂÉÂ
    o9Fä{%@¡çWì…NaêW:È ·xû!9Üp×»yï±PÈE2ZYvÁ20çûq{"²äÖ/g']½¸ÝØê1¦•¹¥ l•ÆãŒ,c^sw\X9¤`Ç+¿H ¡®U¸•Âõ,Õ3(V"U êIµ3?EAFhCš”͝èºm#m¹œ¦qR[¡•„ª~™V¤ÑÍE±´DûÚ±¯–ÂTT<çN)[( K÷p›xõ—Þí{,:ž%÷(؝ŠJã€ÄkêÏÍFçÓß•/‹¾À>n5+˜^nõ8³ÙM?ìvdµÁE~…òðç¶J(
    Í3íR–Ëä$bß¼Ä\7ƧÙ{ÿ_K“¢ÂÀ1ù]ôù©ß6(Zñ÷²}¹VÁñÿ?ÇË«õ#»K{bDo_4ÜY~ÒªW”¾(‡‡ñW…ï¯úK|ÅRÿK›Ö>N.|òoØÃú‰Ï£Ä¼{,çôWó;”6ßw´¤
    ùd
    ipq]VÕ»áA b©þ(ãÌg‹Ž”ç#Nh’¡›èk¦ßIõªûÞցFÆõ¤BFõvCû;½÷EªkîŠE.0¢DGÉ1ìpß`òÖ˘.–üö>x*hœÆíÙÝÿ¬I¥;âgt¦,ûõ$v3i3!ÅZOC%2Ô
    é-B ܨ̴ɉGlL.ÈÌ“¬?¹dî°Ÿ!»G}vTÇ7ÊAf”\d<[‹ÍhŽ]ðõHà9„w°|Ác&ÅVöØQÑ\\¦þ+®z-F±Áå„Änꉙ¼í1ãžÁÛ¾‹F·„°—.-”³««õ
    ÀþËȺD¹ 4¦8™ Eë”&û÷Õ)î1<c£ö”«ý_5~!ì7j|ÕÛG\ϺØ‰‹ed5GŠâ¹ˆÃfˆ+GZxì8SÓÃÇjas‡-„ôÖÒDÀs€ñ9–©}w\J TVB‚›EüðúËÏ ©ë"³~7îS=¹6§ oÄSºPXIGôê#üdêо’¯ý¼DÏ`Hy-MpÁw
    H6FnAt¯ûßöK<TGV„–=ÊçÉ}ÕU›ê“'<@˜€F€:8£“mŠÐÛosã÷|]üeÄø;>,NžhLl ò†8âµýšvÁDóy
    Ær;ÝwI?3¼joüZyŠ…MºXÞ·þ¨
    ôô‚£y‹—-2³ÆXUâÎrQšÙãéµ+’ Fw N—Gó¢QÉõÈ¢›”_Ü<¡}Ë
    ]«h†dSènóW¾#=r£”§qH–Ë]ïOÓ•0o}r‹Q5;„‚J«³W™LËÖM<|,zجÉYT‡;Òü=8–$Ro° Ù/ݳ©°èB_™¸BtY©}À+ƒ&ÆT^ÒÎ}Ê÷˹2s!ƒ¿ïÃë`Žþlú¼™¤ÞF† ð®0¤,SX-`éHk‘£œ\+¾!Çî)‚zîšbíß?Uaˆ(û›\ÃÀížþ4zSÞëu([C6 {½¦™WPå(†Ë¥œÝe˜#f¬¥œRÈ>"ìRlyx*¨^¦’ IÿÊíI€`Éhâ³n"ý†|‡ü5Õ¸ÝngÖŠÄ“-äÔ‘ZŽº»Å ѹÑyAÓv=[ÚŽsŒÄƒAÅ*IžW1œR ~¯v>¼üH]\e8€¾öí(ÛÔH€süÿéÁ Q
    ¼j±0¹ß¯MN áUÞÍhËïU dê–À7^.NÕZ${À<[Á_bZ™’:õŸ¦2]s“A
    ã‹bˆÛöU
    þñꍖ"ª
    .'ž@öÄÛ/+,VÔ{òÓ¬/ïYèÿý’œT’D/òË~ö Òö$öTóʪnfcXÐÍ€úÇío*¶:<gjÕ=mºÇE@ƒ8’X‘CP_ËTö¦ÊCZK}X:ÓYåuý¥ð"Jî¤ò+€î
    8l+ñ‰–øök'äÜM¬1["êpºo㸠BÃÛ2í)öCñöý@ëAÜ´á™-þ%¥Vñåâb
    ð}'å"í¼yð“,Û`ÙÿÄÅnª<Œ1“ƒ)rñp+l¡ >G1è³òx›ÍÌeø;ûÍð¡Gƒ~*ašÄ^z,ºni»m„FYíKܼU_ªä5ãB_߶èãm>Îâþ؏Va|þT˜8å.Æ… JÐÝ+7Ü”ŒšÆÅ‘áïÉŽEb¾RlüЋx9“/råÇFúšãûs“—‡nc%
    ãÀ–'()e-Ó0`%aÜ5R©ôž”#Il®úEˆmyÞš3·W.D‘Ö©ý3†ÆCŽOöEÔQ™'g)4JZHÒ;[šûN†PÙCº!`Eý»³5E`Ï1û/ÿÈÖ”vÿ–µ¯LË"—o*³Ýù‚ÔüFqá!ØåG¸î‚=€[a2‰$S,6FbÏÛ¹"¯Ó‘⍂„Þ1</¾:¾±[½º=°>ýSªS4ù3l³g>6£hëŽs=˜“c[Ó²…*ç[¿…&ð
    :>u*&σ4¦Ù’Hƒ|/«o;~ ©ñþQó:eek:+“aœ¥ƒeîÃÀ-ÃÅGŒõÀkñ>^ÑtŠJmZÃ&s+âÇΞ!q$Õ„µ|Љ.¶W}w–gÎ~
    ÿŒ}N™á[\W³3¤‚?7ûWê¶ÇIЈƒ@McºØû‹ø~øÄÀ'¯¹!ÕWÜ6!™o½ò£ =ôËn[I>Nà ÅùæöI;Içò/Š{l”9=#"y£a¢/b’v£€ùx3øì%õ ‹ƒ&h¦`É•ýÂ©´¶zçÊ
    ;ˆ_±=Ûkö¤xå¡"Kn‹pàç¹{O°)д™¸NÊÏ'ûC‰Ü~Ì8C»|Û%fþ÷öс,h°*ÿŸc¾í ë9m€y#¨ßNÃ7g›¡ 2b$¦a6ý ŏƩH¼ãC-÷‹Öƒçò<«cÐn©á “ÅïÛ1ˆÁæ1QF®žÉcˆ„T¥nÜÖ§æDfwQ‘
    è`ÏÕÄw´ß˜Z‹¶Ò`E ÛbӲᯤĊ¼‡y"šú†‹[DÐìK¤Æ%]¤œÔ™«K™›
    k¼™I†ž¡‚×u½®6r„©!B±ÜÒ”MxùNîjÛ0©GZ ¿øº$‰³®4ÃÒÑ`h`ƝÇû},»,ÈÇJ†ÿNV’ØAÈ#€ÅÖNpò9ôóºkª°õ—ò[žƒé<cű‡Ö¤ž ØX~J µ%såáš!yÈ5¾Ÿ.|?—ØK0èE î¤t‚á7~¤ãúŸ˜Ñ@Ä<¨8i±zý s{û½žcƒ¸r{ÓSÒžq¡}Ýt
    ÉŸÉ›•!fÎóȳwÂJ†¸?âò³ò\ì€_Ñ;á0‹‡7–À1íW¬À*òpe8©CZ“¤ì”
    Y¾Ö~ÙïÙfâ9…]ƒCÊjmUЀS'IZpfe3N܁Ռ܍ü¿IЬ›IÊ„ÑpðGt¢¢oŒ¤IݏRé;ˆa‰£S$Ú
    üÜéŸcŸ¢ƒ©Â€÷ýþüéÅö͆T…Õ—~Âû+’VÜðq±V¿Î\V!xÊsk†"_k÷Ýa+é;¶×}h©¬ã¡sóÈéƒt‘6¬ç±÷n-€Ê; 8ðh2›M &I»4qy»6% sRÑxúsb´>«ž2Ó•5 ÿÅç•Œ
    ¥ ©¢ß.¬§“âΟñÍù!b¿Áן
    ™ýË”f˜©”gÇ*B®‹p5à“¦WÅ^¡=ŒxÛàâ÷Æ… KCS¼ F‰}eÝÝòýÀì72#VäãðÃ9"&¤oÙw¤0,ÞI¸þª¯Ü §q~. ÿóI@ðWYšÏãÕŒ¢;ª]ÆN‡¬¯„ Ì©cwm
    ð!„6×[-œÅÁâ’‚’ÓzóÂØï³—ì¯@/Lr©Hš«¬ÌGgr²Æg3E’ĽÄΧ†š¾”`_T9õjˆ¥<湇våf¬“*±—”dI3Ø¬¢ãB\YHѾª³ŒÉ1ã¹tÎ0‘/¢ÈevÁÖ¼…TتRºêÄîû æÀ¡Çp DhµåêŠÞ^ƒ™÷(£q¾¦ÂgK¦
    }î+þ‘rF¹}°çpšÅ*Ú¿ò4¾Þ$à>Å—‰Aâ†P4Ý€LZá4ã
    ˆï]L¡m?˜B±•Ž£5ÚUÎ+Y°"8V¯Ö‘¹Að
    –عū“É÷žr¹+G?–ˆ[‡“³xÂ^ûjM½
    ª–»DÒ,ºÀá3?hÇ©‹Ñå"ä5kPöá‚*ÇC5°Œå͸(ÉNÒŽ#[fó³¥q–FàøœíA½Ø]ï“ŒIÞ!ÛÓ̾ÜÿeJœÆûgç¹x ©nOÛôöÈp¿eCbsdò\b’¼ ßùíh˜*³,¤J‚ƒ'×°äbäü‰RßÝ Ãž%(û5µV@1Ò¡rˆü®qWºoÁ<9,éAò³X]ìY{‹~Aº™”Ø·QÝ9ƒõ‹7¹>óM›¯Ä»ì_(ÒÄ£ÂgÔËÏÐ%ßُ͔ÎM¿
    <N-aþœ§Sn…älÃ_
    oÕnñ±FÁ²^ËîJ>c²P NyC‰ W|¥Ð«2?y¡Ñ$/Xˆqøµ…½()j$CT³ï¶é))ªÛeE‰7?©DñxÞ§‘ñÿòÓ„ºóFõˆ{¹~ Ô€<_ãÇ
    þ~OÒIÍÌÞ/D‡æÔÏsbàÙ×Àåí`3 YìTò
    V¢¶BVtÎИJ‡@êk¥÷Ëáf-*ÀPcö"¡«‘<˜¦ìL¼¦‡GÛñ<EA껲j)Œâù8úeÎÝ“š¡namÍMs±#Çf<sOoy0*»ÇœQ[¯ ‹½`KíŸZt/÷L£ xƒ&iQ@¢¨äÂŒÍQTžqøçÒê íörxWý Y«Ìì\9*M´rK÷žB¹²h;è½vH5Âgq“#õ6Úé=¡¬?Áî†)1¾uœ˜]H©> 4&îŠÒ›–D&^ù£üc ‰_\ßÓ‹+yó¾ú?bº—³íUgÏ]ñ~EÀ(»ä{m™(åÇž1ÅøÊhöp¤&pG˜à¥¼–q#yïªo$-î»\´-ÊׄDˆ+9èx1º’íôèðŸÂ]`ù8ÝWC¦nŸKy‰e7¼qíqws
    Uƒ0÷¦°XÛJâëÓ›wÐ]žF¨ÖøÅD;³"©¯×nÄVÿ*HŒºŠm²!WRî>hÙJ†»A ^3G
    jô°ˆÔh.À—… Ã#Q˜8ÊŸ
    Ñ1Ùoí&Õ¯ºå'λ¸WSµ’_§Y½)óé¼Ôú :Eú"iXübCГâ¾*,bÀ2 ¥´^êîê…|[»r•@Ænaª[@¾Qâ B-©ÎY)–`¤e¾È–” |ß¡x·Ð
    VÉÓöÁ#B.v»ºàÖÎÅdBY"6ÉXW›»ó‡"™hm„qkÖ§˜¼fÉÎƬތuÃöï$I¥`åƒÆIïážÑ$5-9AÒ
    õÌ|l‡9ÖW!*žbÉY…¥)¦å'Òz}UMuNã³å¯CJv¯A"HÉ\ÎE@|ñŒ]lù>™4m’f¢Aé°ÿƼô!Õ ÅÂò»ìô³ó²ãGƒƒ!\q=™“d¨–<#ûg†Ï”&Ä™ØH2t!èå23Ö®è Úæ»™0œVã…ÛCؘI«=‡½KsFˆ´÷bƒÛl©ò°Þ£Nqæ~…ž¨Jt{MM JÀ [ Ú–Ïr#ãPhMöq'yxa·g5S„oÒm€räs+_L#ÝÝ«Û]”oÛQþëÒ¾^“z¢
    S2ˆ2<ƒ÷TüšÇ¡©mÚÈ֝ϼìrHAãô8Ý4ŸÚOŒÁFhj2.Zk”?¼ÂŤ’‰85=œ†å(bÈw±•âø+àH]nº8âÔY_Àc·îE‰›K{eÒTG¨ÑtÉ#-€'Á'4¶‰'Z¬ŸÆœ-–ì–1#–Pø•´KØ€«[âûICtoÓ,ô®Ki×î-Y¢©‰ÒM°BÉÁ?ûl]¦UÎSò®Úwš„1œÆÑ8¼ï®ä+IÒ˜\צ;̵0? Æo…K¿˜-N“×¾ƒ\ACgØ=ûxÒ\fyÖVÉš¢ÁÕY—J;+šŠ ðtfç¹5ˆä…zGÏ»TEžþ²ÞÏh{º!#ÑFÏôôÁ³Î‹âDï§ýI%`Y´ý Ü·äfkŽ±Ç õëí‰ 3
    ©4L”ˆ:dèL¢ÄùœÕö„¬ÞŒ6ªî„V9¿˜¡ÒȾ: ñ¡{Œ\µ×_‰¡ È0ã);[ÀØ]ȪÓ^Œñð ›@Ýx§Rdtio7̘–Hä7™-§X¢Hšò‚ªòxOèY@: ženDñAcÝµí°/X\C¥2YÚµv ÷Ä|Ë*/žâ)§…Ìç‘Rƒ„ÑÈRûŽŸÂ/ÿ1‹P¯“KB#úè2oTâB5:©šDd@ÏeÉox¸Î^Í`‘ß{®çîÀjW{¿kNÑçSôN_ˆ\©cû¼b<~Ì]è©‹U¥T´†]?ä°.vuM€SÿE¬¸HÈKW\¡º.PŒð>]pÏÞÈ`q«d=/@`}7;ûK>„ÖÜä’1-¯µ/sW¦ô{¼×|O m5ð4pCÔYö#U)Ð9às
    ¤õÝ%%µa'¶÷ø¹YÎÏLƒTž²ìÈSl—/£n6Vì¬rëÃ{˜Pq²ƒýKÆž!ŒlQ—¥úΕd%”ܛșÄÞèegTÜ|¸¼§a÷§£·*¨ŽpÔŠzø‚f0©~=q†ü—zY`b„ª99¶¯—ÿ‚sÙö'_ìOŸ>è7ífª²¥æ˜¼æËÞÔÄÉk· 9 z¹ÐÍ9‘¡¢rì_x©²’ᥠí©8ÚOÍýoè¢ñBK‡ŽCá¡JN3qwÈ`ê~ÝK~¾“Êú‚S‚“;R5Ë–sr<†F+ú4
    ä„>XAF<ŽÅÈø°4鍁wàÂëX)!g /íÐ8›ŽâÉÜåLÊÄk{°ßËVÓ{U¯¦Ó…—³G[ñ+¤_i“1Ì-¬×„$a2hµ\jmS+=¼”ßÞ—:73DùGi)"qå½æ“Í5/—C…÷•þ×u+2ûÀ5E‘m÷ZÞ’—}‘©í¨Ö<–n
    ÇÏéÕ°bssBH{ý1ÔЈè*´Øljœ!EéŠÑ FôR›^®ìá‹0Û|èÅ¢û°3¿ù›W÷ÏÜ[/â÷±•œmªI{áúv1Cwµ «R -¢HLÃˈ˜Àúºù
    èaY:™Eh!eé*Ã.´s<
    [Ÿ²’êQå®&}3Êìö˜¨»— hg²X»úcÏ@¶;v•>¶Ál]´Ñ}2<è%²Ô)”â>A… ’؝èIiJ•Ù]ÐoiXŠºrK˜ÌÖ²¢žr1Zír¤óáUÅÓw11öeHMPˆ.Nøhw…Z¿¾ NöjèTŠL5¡ŠÓ1u|—Ú%q¾×ùôÇÉïÄÒgîãÑWÃJ)!3
    ÍKû÷Ò¢^±ºŠ;æ ä
    v-7ÂþIªÁ°Ãw
    €…Vßn°†çéÊ×!/
    BÎêàw2‘yT›ðV%’¡ +öŸîÅÃʴցº"’2}¥s€÷" L&= Ã2‰üÕÝܲAÀ6µ:ºâdVÌ›µ½3½ ¯H^b³W¾*&t§¹•/Ì@¯S"~2Ü¿ ä¼t[-V¸Úní\…Äûy6zѯն@Áô_ˆÁŽŠ}®=´ôR:4«ò¦bh@k0$¥)á™ ß¡Ñ2nÁªmt£$Í~u
    ³üŸdb†„ÒÚF–ð.áÿ›RÂgbUN8׊¥©Á8¦TÝéh†óñé*Òµ|ªP®ÜÂJFèˆ!,jÛÙf‡`¶÷\§áº'‚‡½”¥¯DYì¸.ˆtAÆ"nÒÔ*…tÞUñºNÈo¥§}ùBü„p+ðAŽ}(ÁL³XÆÚI¡#S¬ÎOFEC’½Q÷ϐ9Ju2¨WdŠ}TíƒnŸ#?Blª;÷J«©Ú¦¶&G‰ñ§
    v¿-hö##cnÁN5‹—À}ur ,™¼Rií™+ñÎl$–Tï÷C‰W#:¤[¼£¥yÀ¨‹F3H?Gûj@-H%;äB\š²…7ÚÈÅØ'÷Ìïe¥¡¹"ÍZº6*Pª•qUCä¶æÕÿªµ•XÇ™„sö…Ä]¤ÍŒÒ—¼³¨Êî&ÉÏ ·w¿uP¾$3ìX½ý
    é½ÀP3ç×SÑmÁ‘@ä,`¿>È6éýS! Ô„õÈÌM~àYôÏB¸OUü^«„ò€~K`åIˆ|¥/|³öOªÕgˆç£žÝ4„H…<¥e ¸lsQB¥o⍯dC©tæ8BËfÓOÔ¾²TXÄ"m|)•ú°/¹óªç+m±Ìš2_î
    c{¾Ë~Ý\@»[?½J}ë…ëû À§ÊÄÕýg¸J[åRÞ3º ßö^.
    7®*P»ðÒ/M8¤BÖÙ%’[5•óã„NóAz¹áúIë! åý¬7Èþ?]YòÙTÖ¢ýH«¶#ã#]Åõ ¿”U¡¬’jkþQóf¸T¤ç+j«ÔÒBQ^Èm£ç‰Ã²×7d1É,ôbcIG&›ç=V}^tIò{;E›ÛSÐS¯ðÕHBâØ].aýx¦Àÿ뎫üQÈþ‡.⁛'ŸsÁÊó}}¤rí\;ñÓ!hxÎûÉfnÖD#B|2ú˜Ñ÷]D°!$Š¤Ï®ÉIWÐL\Õ„‘,)¦ë—|ÜV@R4#©2w~o¬c}ÕŒóPË×0ãðÔz¶ÎgsË÷÷nýŽ
    :vå»ãÉwÇØxÂYóoÞqÕ{5´Ï¿+r-ÝàÕ-°¯ÕGº¼X£'d…˜«0ï÷¯Å´g#áÎ?Èœ¥FJ9T6O‘f×Vº+l-¬
    ÏßmoN¸uÒïrBu{w´zá99¬À´8
    d.’©~ã1uƒüÄBqdÃ[@_ÊŠ5§‘ÉP•ð€Î_÷Ç)«“ë§0¬ÇM~ÔøA”9Äm©.ãÁRÿ+Gs=Ú)ÓÓ"ýòæeŸ•çßñ7¯–.eÁš¯5×ße—ª*ß±djxz3•i3&Z`HÆËg†1Ý\MîkU)qº9/Ê»±™ŸÌ¥ÏüôÒ í9KGXõ‘Ô9¤–>¥ç¶PþōMQ\Xk|ÁÌ™è0
    #è5÷A&´5åOyxß¡<%x{*þ,¦6 \»ºÈшï¸wàšOÊð„ÁzVµCYÈ<—CJ_EórRȐ1Œ›ÑtIÚÕÄ󋦯l”Ùq
    ʧ·x¸´¦b¦‚#p]FpªYá!ÝrÇ—–ŸC‚6fPl7©éÌrp<ºC}Ø/CV< øŤH]“¨c궪œß39÷
    sÖEVJ§}Aµ¿*ÕÅxC%?@ž«ãÀEì¹òÆ1Œ¼4/aY%ê/ÑòV¥YüsŽ yÞw
    ØKøCt'PÅ3¼ý;¯myž‹™IÎ[½bªèõfkq$ŠŽûþtYõôÇÔ‰’ÅŠÍ€éÍЏͽ#£Ðê{A€žÖº4:ÉÄ8&¼ú«04<8K´Ý0”¯!·Û6;ïÿ~ U¡ Æ‹Åèxð'ï#û$¤H¸ ó«íÿHÕ½øÔµª?S¡É¼æj6]äƒÒv˜ìg&Ë܉ä IDÈ©,Qdx¼Xȝòõì^ªê‰Bÿó @G.¼4wqêñ–LXÇ_ÌVg@0ÃÊI¹’ó^‹•ë½'®>Rï¦lo%µ©À Ö ì³D·5‚vN]nWOˆ›Ç’â°Œl€#*%¹™bÛ*6Ä b=|àµã(bx€äŒƒ×™þªqT%*øøq`ÔYšñjò.áyÚoËŠw×K UÚß7¥*ÐR²ƒÁ)hôÛú¯s»¶œ€ùîÐ<W7pì}¥’Š_2~’:!÷óË´Ñy™êbfFUßÌç>’Rµ2¢{¸ö.§¡¨²2”"ì"ètoŸÛ²7V·÷úˆL`¤àÅ¢è
    *Àk€±½åqM訑*pݤ8¸3Ÿ\.Œ“šÀýù]¦æ*P¤ª»'ÿ£>N"¨:ÐÂ0Éë_^‘ºÅ{mK¨
    ¼z_âýü{&‚ëO:¥œÉ›É0ùiW3”ä5<ÉÎ|
    ïìe„mìîcÄ1píû·ö¿h/¤/ÀµÎâv¶•ÓD
    =d‚¼ÔÅä©ñÙr‹L*q¥)Æð_Üñ#>í¼›½z´J«DˆïQ%V¾‚wSÞì`{Ç`w×ëIàA¤r^Q"íDˆ|hˆ‹áõ2”#P’ÌM‘˜WJæ‰0ÀŠ.z0×(Ë0/ú˜Ë©U¨<x1+Ä}®XÄv#Þ”›$#<9sæKÙÇSôkYuùP†WQiÐ&“\ßqs_ËæÙ{(0°ž[¿Â‹‘¯Nþ€EK'Iã_ì
    EøÅrú
    ô]©gÒ£3¨ˆ&Ô}¼>6RT|Q¿WÆ€(œ[9—êvæ‘¢é¡3—Fµ…ˆfu]¡ DëÃDäËÃÛõQ~ùàjNrÃÌ,%¡B0¾¡ÝH X½³BØ–RŽµ¤…!D§ŠA¨0S\®m½j„S:5®Ò¤ü©Šé tÃ2Å5âlâ OútÕSLG›Q-ðÅJ±·Ê3Bm ØÖpd±Õž÷õ)®hÛK“Fê}²·Æª©s&˜Ÿ!ÝQÑúµ~s#K®˜c¨šLZÿH¹ÊŠ7`3-½„Â=4SÀyÚk©ÙV£#þ¥¤_Eq˜Q§‹?˜A!ñsrÜ)ê(î܁lÃ_uÕ¹-ü&Þ!‚—\þ+‘î&k1ëV·fnÊd
    Lk²tžò"1›îWÚÜÀbý»¸$I¢-‚àwò I†e”ÂýTÂ}
    TIÐgaÓ‘äC"hý.V+«ŸÙ”¿½ˆ
    ‡DŒA—ïÙz®LòŽYˆTN/—B%`@ÅUwÏ+m›Úæ ´žf`/‹}áØF¿Xº’¦¹ì.Dù°šFÂx 2êŽ\H Rw6 €ÑêÙoE–?bS)ï˜eŸf²ó¢;Dlõ>ôHÖű®ëzR |C.,x"‘ÎÜGùSq‚rV÷ê‡ÚÕ*¬ìÍùẄ¨$?ùHÅç:?}€Eõæ‚7ÐZp9ÆÓÏÐb6¼ð¨¥7‰ýÜ,É4âc,ðf7l¿\•„e]Ù3æB^½)_g¢^ÝJÌÈU±'×”ÐôºåÜ7ï×f4Úçu¢§lp”³ChîœÊI>çUu¤_“78#ÎXËÓACçëʽ7ùž© ³D>ÿ®Š€?Èý$§ÌÈñš÷R´òÁ^Â
    >EfW&Ÿ_X®,×Á}šð
    Ž`dÜY˜PÅb“ÁAš,¯”òæž…[ãZqtê-<}íí©žÄ€¡sá}K]%ý!s˜Æzÿ«»¡»íÑôj^JŒCÚ?ù“¡æÛ@$]Ä\Tä´wJ¯aÊü“%H97 Õ1HáO*²{2¸uTøÓÊ-7ë½=¹«>jOAk°nàÕh…ywíÝøúÉÑO»è¥{+{—!jÜõ6zŸ|ŸÈ 6+èÄÊ·ÊRX;üx8ËrœY|W’0'3…bÝŒ™Ä$l‚+‰T\Ù@Œ|“ׁÄP8Ô7nCæ³û›d÷~rð'Õã-åêËBÒ¢“‘gŽa:;üÀBntS6O>VšŠàJÒ*tb±gcù!Ã÷ø0‹0XW pël‘ÍCì‚hwVpÉÁ—¢XÊZаªËÎF¾áÊW†ÚF±"‰lÕߝ1„%ãšÆ¦‹ÞÔë¿ÎUÑ2Lº¯(ÞûÌM¿…ßšpy¸;ÕŸihu¡nïò0ȶN%®Ô«GwNþrÿ<aIÖãLÁΆžUÅF=],e·Õô˜](5i0Ø#bu¶IaøI¦öD;ÜIàÆ$óªDü=vcí.ÎÑ<O‘:wÑ1™R‡vY·1Êâkdz&îOw¢æÃлøšã`aS)JéÞ’ÍSÌ«‚³í›6:ï^—ò·—ÜàáÐáBôw:$=‡ñݲŒ Ö~P¬#d2Æ£½Ã~D¢ø¤¸¬`›‘â´!o4ü½*5TÙNò{/cOÓ`²dš‡OÖÔÑ> àjííÅwýÔ¤§æ•‡ "—=d1o‘kâ¼.sÙ9]½k°‘u<]T7JR3V2Vè]váƒ.¦µgm¾6)ð®îxÒH,ePÏÜÙБ³k÷P–ð¼TÓBoŽÚºøñú™"ìFªïeÇjㆄË@IšŽÕÇf“î”~æ^ÞxññàXZ쿇Àjf(+.´0Â¥Pi|ûºz·HùBIQÝÑ´¨aÞ¥ÖÁbšòˆ¸:Lï/Þø“F4=aŠ63ùÌÛÀžÊa5Ö`…³;àùßœ]ª´ý@l0üHf¶„ÚHù¢ÆçS>ø°“@ú¿lvù’ÿåõhSĘ#ê,‘ÕUYlëÙaRØa{j&r,™*(x8Êf’†Ô”Pö.Ä™R
    Êð›…gK½Ôsâ]/^?-TÊÉ.–Aês
    kß—©sÌhanpö <[Žr»í)€´ ¤b÷ðî³5âC—ž ê™3z¢ÛÉŸ›¸,áHÅ).ëj]üÕo¬ÑDÙV,Ï—IÖÎñ…Œ3•˜Q¥˜Õ‘y(;´”–-mHX/”BXÔN͵•“”_½Ò.ݯp–o¡t#l0v™õbÞŸ‰õep¢—ùŽ\(µmä|{ª"nbèÈIØâ8ÄILj‹Dê (p †ôÕõ
    â|ÿðŸ=à™‡+ÌKw÷ÔŽá›š`‚Õo
    ݲHƒí¹ñïOë'6¡gÆ`jp\°ÒéuQ¹båÙî×40F!Éàû‚¥”¢gÚEËŸ‚™ðC!pŽ±yÍŸxvˆ`I אM+äGF/=ª:˜·üÙÞ.R»_ñgðáåR~5^ÔáZ˜jkðjÖisÁËqmÙ„——&nd\`š+QñUëÔR¢Òðâ¹#‚gÞ¼šLÇVk^l!ð³'fxÆq¥PØ ÄË™“1Ò¦u]‘RQpl -tM-rØÔ“Á¿&c‘~Þª?(Âûç(ºþ$&—8¢;ÕlA~? ¾ICZ¼&ô}¯oä¨ QÇ`
    œÍ(ˆ{òͼªiPd²BÖš×»ŒGÙ£î2…Mêö6G»âKÖÑ$DV¨p¼¶Iâêã¨
    ̺0|Li§:ib)™Mù#›IˆŽLt5›™¢-c§ 0väu5(ÙD›‰/Ò$ÊîóQz^÷ûï½8a ¨zF¥ê³žvoÛ‰~ÅÆ!“x%Ü°\fß5˜M|é(ì;jŽ·ÁÃ,ãIÊG7ƒwý&9ƒˆÔÍΑù6šËe~£)ïìÑî;£w
     
  23. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    That was the MBAR system log and this is the MBAR log from the scan,

    Ã?
    ?•æt {Ý
    Ã\áëWáÌóÕ„w¬nÉ!òyI¤ºÛ@7åA»$©‚PPëô\‘wÂÉ5wX’òPø¡ç
    PþU°Hlû*,'0Š»ŽfMìð:ˆaÅŠQJˆjRsyš9ùW+lYZ—Ù™íÌ‘ËjºjŸÅ|³æŸbÎʃÑCš~0È*yÜ¡à
    F
    ·£n+¯V+‚Ë0Y$Nl¶û@\±½¥jc²|ô£‰’ú9Ç{ g8×Ø)›ë%€óþRú;2uß%Ü3$9Ô'Á*Ï‚¼K‘¼åÛ¿mú}Ïßû?=¡]¥ºÆ*s̾PÆóêv ¾pÑ•¨ßæ÷³òÓáIÓÙÑ¢¾¤·ÏÏpZ©È¥Ökó´‘ò‚ íªIµ›3º|Ô:²¶´fD /oŸm¿?-ƒ%@f(tãÈPèú.’DZ^möŽ¢xì@»ð˜>Šö™ø‹‚ÆË[áÅE+VÙÉì¤ÜÅ÷r ¡-«`ªÏwò‹ç'²¦€ÿ?$ÕÁ+ß_bbÊ«"Ž#ÓOê:¯½î7³0É$§22iý䯊Ia56Ž€BŠèpÁ󝋳MŠ nÇÁÍ4}øv„o÷ÛíÇ4RùZDC”HåW1EPa÷ÂhÚq7ñËám¡zÑÖ³.ÛË»ÄföšÕ9ßÛØÏ_C©Üx¥OÙ`j øû Ùb}õXJ4&w Z9PËUÃh%/3‹ñPüÍ2øñ•ÀvvViGµáVígY…E®W;²K¹n²=·”Ò¤

    Äîªøºô¤ªöãÃ,qYžJò›Ÿ¿;ZAwnP3<«Æ?ˆ§´þ)'Ç… ‰LŇdN·Ù_[n†köGÁ% I¹Þà/zù*ÏãB}ã ‰WRìMêD*e·ÿ'Œ/R$§D#Ãåënå¾,³
    ÿø±|F¬ÌºÃ¤ìIHVJ½sÿûë^%cñ0‘Aºäú)dæž*TôÄücût*NóØøÖ¾x³Ué9×f„Þ†‹@bÙËïD&……:#ƒœžÜÔ{×5Wh~¿¦!ä÷Ïxà) [¹¡…TÞ¢bj¾4Ÿ<Vðv£
    T=õ݁iwI|ñ±te-IÓS.³ás|I W†ÛJKŸ
    3ˆ>‹â<™Ä]‰I°î_Àµ+Í>ññtóÿìx¡T“”zð¬&ƒïÊýA.‹“ªGþS×Ph‰ìMR¼ß±ì¤ŸO¤õ)-óqÕ>1é©ÚÚì\òSœ¢Íðx~g"±z00D(j‹ãÓúélˆ±Ð|}nMlÛ€Íòe:HAĈ²7dR¤µNÚ<-²ð5çÖsÇŽ0¨)þ)Ãg)稫ûí¹:ÊfcÒ>’zÔ?'#MQKZJ§Ý³%ÿ±Áy]…Š~µÝ2䳚PÄJ5žŒ€ë¯)IÂà¹ð*3rœÆ'ïŒ&Òã4*õ{,í.ù7³-L‘‡;%'0!-©%çÀ¤½W˺XNU훢âÂ"xJOÊÚÕÒ<ÌlË˾/@Ð/¹¦§
    D@ç4©ÎÖ¦’+m†üɐ-Ô@A¼=4js,±Êd'QŸ~Ãð@Ü_7¾ÌÀJ;µaÉÃþŒyâWGj
    ,nýÙ¦×þ(9Q³L´˜;6mceJîþXÛêÿ=*üö›ŠÌî¦>ØòªUl‹*‘ Þ›‘ì1‡6ÆŸ02Êê+NHÜyWЧª›W"+ÂÜ7¬óÔlO€o@M¡ÏIœª<bjyG:]ü[î9ûQnÉ‘øò¦d)~¤4xÅAA@åĵRÞè•Ioz^Ë•”mˆp&à‚Q¿þKSڍ®õ×ÛMm²u58ªˆnÏ›¢Øñ7?ˆ#hÓ“a’ļ€á%Ä1ð»qœÍÞø¸VÀ_œ]n>ŽI?„Ο"ÀÁ£I<
    µ‰6Ê3dfᴏ¬\ÛdEüÊÎG¦·)$o£²ÈÁ#`2Ï >ü%½ø@7ûݽ‰ƒpS5¥ÍK½}\xZP¤˜£Â¯nj¾xÛg˜HQU}_ (w‡u5ñÅqLŽfíÁ6Z¿Xß—¹â‘Ú%ç9 ¼Ó"ԏ«tµc„—ñGOùà/ö+,¦zZù—Кvr4앹ðªöð……˜yÊ’1´‘ЪŒk‘YTÁzý78ÅcÜ´C˵qBr8Ö¨¢åëË£rƒ:JC&‚¹ÊyàyBýÄ]ºôî-¦ñƒ.c.ÎBmË–[ʦƒül©…H’ªÈkRJdž,óçâÿÿC¿u;#å‰æóBsÃ\÷tí®¢ÊÖ¸Â*+gxÿ:–Е`ÍÑuI¶V >cèÌö”ÌÜTªŒÆè3å
    ]ÕR¦Tyk+öÿ¬/ÐSîBwnäÌ;Ž~V/«w±[±¹§I9qØ{/¢:sÞ 6În=,§j*j=xZgDŸ1å¿?`—òTVŸ&•Â^¯6ÇϯLS*×þñ:Gá I,=xªuÀ/uNÉ‘ÌO^°‰ÿ~vë¹¢Z¬ g⪇Û2þ±>Þ{ØxÒï±Ëö»ñ‰Äj‚WKwâã
    }£a÷JàÎŒ>8¹õr·±jÓÙ<F_¡âEÞSZõ»d ã=-¦Ü(5¬Tcü]*Wì4Å.Ï1*g\Å/Y
    ®…RY;ð@H¾°—7›À:FZmnå¢b!àÒŽWSöCa™·©ê²I“ä[m™ÊŒáðpÓ˜™L;yCæF˜hjã´Ñ³þB1þ©ò`Ųq)á
    &,;!•A
    è¨Öbàš9W’›¨½ìí9“×ù:ôó©,ߒЯ/û<Y/4œ.PØòs¸!7…WP@–§MPþ…·gdúÒah½ß"qâõ©ÍèÎ<&ê¦Ùýê;m‚‹§cçÒ`RôD¯x8—«è4ä
    Z±Þ¼\”¹¼I=ß/5vÇNu=Žv®ç.Ddˆï÷ö¦,mÚ™é5֝À™’/r4‚55Fœ•§y W] Ád|%Æ€o ž åó÷[XT©îE„IÁzö¶y6°`q°üÞtR—¬5ƒ‘wi“ÚôöXÊ Fc&ƒO¹©Ïv7ñ vRoï&
    *f}h–׃»ô¤2ïž@‡}ÍR4–€Á‰Ej*/’ÂÏýêñ׎é´Ä1e*ÚÈBÕð QåiA®Np¬ª¯Â÷¾§D‡‰I*€EóÙŸã=¯ó†g×ñÅcäÝ™·Š¼S»Ò7ÇÔøðHû¡ eßæžu¡û›9À(Qvò¸÷{ÑJD-¿ÔÝÜ?ŸÞkë[cvºÇc ³BÑ7G¼·è 88ä1JQ¶=´èI€…9‚ŠPiÔ'1qÍC}022L&ÐõÐõ®ÂD£˜€R>ÍJŠî|‰-Äv߉4—w0 o¿|êãé]v(2ø¨€à»ÿžË„»õ ã—Ï$Þ5Z>BüIZ5ÌG&¿
    qvb<’@EÞhC÷Ìáxã"0xF}|OêôÓ „½¸M½˜l^ZqÒ×_‘S#aÁëèSªÖÕÇú×yöÝ}ÌÊÏ–S,_ÌàbUáÄI.rÌÊÑÌG¨zd¯=öÛ¶†d1rtŠzœrÅŸ_»eÈrÖ®úÀ•œ»DøJ¢@TëþÔu„’º8Ç®¯îÍðíËH©'Sr²5ÍHíXwµá<ô&`ä@Oç.eJ¦Ý>ˆ[ôûFÌz1áá‰:î úy†²Po:í‚ÏX&DÆsÑCF$ô
    H·‘(™Ë! @ÖkëAêµ9Ñ[S:ò"KôKÎDb”±,xÔ¬ÞýÍŒY)N°û•%9/ãÑ– ã>?2 ÅZrëJ åtéÂøV ^Y¶ ¨ÅÒ"ýËyp¡½qlèê÷»\Þ5‘'ƒÞ\+Ã
    æ$¬Ñ'}]I…na×Ö°yµ’&“k-¼4Ø]+¼¬F5Fp•¼B
     
  24. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    I'm no expert, but I think that this is the wrong format. What would you like me to do. Also upon rebooting my computer shows an error window that says:

    ReqSvr32

    The module "C:\ProgramData\rlfvxb.dat" failed to load.
    Make sure the binary is stroed at teh specified path or debug it to check for problems wit the binary or dependent .DLL files.

    The specified module could not be found.

    Also just an update on whats going on with the computer now. There are a few instances of iexplore.exe *32 that dont use much CPU, and I haven't seen any DLLhost's pop up. I updated and reinstalled mozilla firefox and it still freezes up with the plugin-container taking up 50 CPU.

    Thank you again and let me know on the logs what you would like
     
  25. Joshua Smith

    Joshua Smith TS Rookie Topic Starter Posts: 24

    Ran MBAR again, this time got a readable log.

    Malwarebytes Anti-Rootkit BETA 1.07.0.1009
    www.malwarebytes.org

    Database version: v2014.05.11.07

    Windows 7 Service Pack 1 x64 NTFS
    Internet Explorer 9.0.8112.16421
    JoshLaptop :: JOSHLAPTOP-HP [administrator]

    5/11/2014 1:10:14 PM
    mbar-log-2014-05-11 (13-10-14).txt

    Scan type: Quick scan
    Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
    Scan options disabled:
    Objects scanned: 282694
    Time elapsed: 1 hour(s), 3 minute(s), 19 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 1
    HKCU\SOFTWARE\CLASSES\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9}\INPROCSERVER32| (Hijack.SHELL32) -> Bad: (\\?\globalroot\Device\HarddiskVolume2\Users\JoshLaptop\AppData\Local\Temp\stspbrp\sxveqxr\wow.dll) Good: (SHELL32.dll) -> Replace on reboot.

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 4
    C:\Users\JoshLaptop\AppData\Roaming\1a573fa.exe (Spyware.Zbot.VXGen) -> Delete on reboot.
    C:\Users\JoshLaptop\AppData\Local\Temp\8065.tmp (Trojan.Zbot) -> Delete on reboot.
    C:\Users\JoshLaptop\AppData\Local\Temp\9C2.tmp (Trojan.Inject.ED) -> Delete on reboot.
    C:\Users\JoshLaptop\AppData\Local\Temp\UpdateFlashPlayer_1aa89991.exe (Trojan.Inject.ED) -> Delete on reboot.

    Physical Sectors Detected: 0
    (No malicious items detected)

    (end)
     
Topic Status:
Not open for further replies.


Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.