[ Príspevkov: 29 ] 
AutorSpráva
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
NapísalOffline : 13.01.2008 23:06 | Hackovanie na accounty

Ahoj. Mám otázku:
Dnes je to už druhý krát čo sa mi niekto logol do jednej hry.(travian). Rozposlal naj kamošov nepekné urážky a nadávky. Kedysi, asi pred pol rokom sa mi niekto hackol na dalsu hru (gladiatus), zmazal účet+rozpustil guildu. Asi pred 4 mesiacmi sa mi logli na WoWko (OFICIALNY!!) a itemy mi schoval do banky.

Ako, mam NOD32...antispyware ani ne, preto uz stahujem a robim opravy najnovsich. Este kuknem to "cistime PC".

Najlepsi antispyware??

estedetail: tie passwordy neboli len take..blbe...ide o niekoľko pismen a cisiel nedavajucich zmysel


LOG z Hijackthis :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:30:01, on 13.1.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Atheros\ACU.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\ASScrPro.exe
C:\Program Files\ATK Hotkey\Hcontrol.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\WINDOWS\system32\ACEngSvr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\StkCSrv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\ATK Hotkey\ATKOSD.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosAVRC.exe
C:\Program Files\ATK Hotkey\KBFiltr.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosOBEX.exe
C:\Program Files\ATK Hotkey\WDC.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\tosBtProc.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\QIP\qip.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.download3000.com/index.php?start=home
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\WINDOWS\ASScrPro.exe
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [ACMON] "C:\Program Files\ASUS\Splendid\ACMON.exe"
O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\WINDOWS\ASScrProlog.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SMSystemAnalyzer] "C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [QIP2005] C:\Program Files\QIP\qip.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: CCC.lnk = ?
O4 - Global Startup: Bluetooth Manager.lnk = ?
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 8933392331
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc. - C:\WINDOWS\System32\StkCSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 10157 bytes


Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 10.02.07
Prihlásený: 14.08.11
Príspevky: 1657
Témy: 22 | 22
Bydlisko: Ziar nad Hr...
NapísalOffline : 14.01.2008 8:40 | Hackovanie na accounty

fixni

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ASUS Screen Saver Protector] C:\WINDOWS\ASScrPro.exe
O4 - Startup: CCC.lnk = ?
O4 - Global Startup: Bluetooth Manager.lnk = ?
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)

inac tam nic ine nevidim

stiahni si http://www.mwti.net/products/mwav/mwav.asp daj otestovat a hod sem log


_________________
Myslenie nemohlo vzniknúť bez reči, no reč bez myslenia sa vyskytuje často. Brie Andre
My OS: Primary - Kubuntu 10.10 Maverick Meerkat , Secondary - Windows 7
Problemy sa riesia tu na fore nie cez ICQ a Skype. Dakujem
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 05.01.08
Prihlásený: 22.04.10
Príspevky: 310
Témy: 33 | 33
NapísalOffline : 14.01.2008 14:22 | Hackovanie na accounty

Mas firewall?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 14.01.2008 18:18 | Hackovanie na accounty

CommanderBomber píše:
Mas firewall?


no nemam, windowsacky som vypal, ale dam si sem ten ad-aware asi ne?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 14.01.2008 18:27 | Hackovanie na accounty

// OmeGa: kus nejakeho programu, co robil problemy na fore. vyzeral asi takto: adjlkbnpq giojenvotjqnejtg


Offline

Prevádzkovateľ fóra
Prevádzkovateľ fóra
Hackovanie na accounty

Registrovaný: 01.05.05
Príspevky: 12424
Témy: 1447 | 1447
Bydlisko: Bratislava
Vek: 32
NapísalOffline : 14.01.2008 18:44 | Hackovanie na accounty

naco si sem akoze hodil obsah nejakeho programu?


_________________
SilverStone SST CS01 | Corsair SF600 600W SFX | ASRock X99E-ITX/ac | Intel Xeon E5-2683 v4 (16 Cores / 32 Threads) & Noctua NH-U9DX i4 | Kingston HyperX Savage 32 GB DDR4 2400 MHz | PNY NVIDIA Quadro K1200 DP 4 GB DDR5 | Intel SSD 750 1.2 TB NVMe & Intel SSD 730 240 GB SATA & Seagate BackUp Plus Portable 12 TB USB | 31.5" 4K LCD EIZO FlexScan EV3237 & 2 x 24" LCD EIZO FlexScan EV2451 | Ergotron LX Wall Mount Keyboard Arm | Logitech Craft | Logitech Wireless G700s | Harman Kardon Nova | Microsoft Windows 7 Ultimate | APC Back-UPS ES 700 | Lenovo ThinkPad X250 - Intel Core i7 5600U, 8 GB DDR3 1600 MHz, Intel HD Graphics 5500, SanDisk SSD 512 GB, 12.5 FHD LED IPS, WWAN 3G 4G LTE, Microsoft Windows 7 Ultimate | Nintendo Classic Mini | BlackBerry Passport 96 GB
Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 12.10.06
Prihlásený: 14.12.17
Príspevky: 17084
Témy: 61 | 61
Bydlisko: Banska Byst...
NapísalOffline : 14.01.2008 18:47 | Hackovanie na accounty

Na kery ony sem pastujes obsah nejakeho EXE suboru?


//EDIT: lol, sme sa s Janom nejak vzajomnne trafili :D


_________________
Xeon E3-1231v3, 16GB DDR3, Gigabyte Z97-D3H, Samsung 840evo 120GB, Crucial MX300 525GB, 2x WD 1TB, Gainward GTX1060 6GB, Corsair TX650, 24" BenQ GW2470H
iPad Air 16GB, iPhone SE 32GB
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 14.01.2008 19:02 | Hackovanie na accounty

lol ja som ten post o fore neposilal ..


Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 12.10.06
Prihlásený: 11.12.13
Príspevky: 2274
Témy: 74 | 74
Bydlisko: Glasgow
NapísalOffline : 14.01.2008 19:05 | Hackovanie na accounty

toto je podla mna uz vazne, niekto bud ma v tvojom pc nejaky dobry keylogger alebo mas zapnutu podporu vzdialenej plochy alebo fakt neviem lebo toto neni normalne aby ti niekto hackol kazdy password.. este aj na toto forum..

//ceknite z jakej ipcky bol poslaty ten druhy prispevok


_________________
“We're in a giant car heading towards a brick wall and everyones arguing over where they're going to sit.” -David Suzuki
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 14.01.2008 20:13 | Hackovanie na accounty

Takze:

NOD32, AD-AWARE, COMODO FIREWALL

este neco?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 24.03.07
Prihlásený: 28.07.16
Príspevky: 4153
Témy: 251 | 251
Bydlisko: Michalovce
NapísalOffline : 14.01.2008 20:17 | Hackovanie na accounty

Eyeshunter píše:
este neco?


urob toto

Devil_SK píše:
stiahni si http://www.mwti.net/products/mwav/mwav.asp daj otestovat a hod sem log
;)


_________________
PC1: Intel Core i5 4690k / MSI Z97 Gaming 3 / Kingston HyperX Fury 8GB DDR3 / MSI R9 380 Gaming 2GB / Crucial MX100 256GB SSD / Samsung EcoGreen F3 HD105SI 1TB SATA / CoolerMaster G450M / LG IPS235P

PC2: AMD Phenom II X4 955 / ASUS M5A97 PRO / Kingston 8GB Kit DDR3 / grafika RIP :( /

NTB: Lenovo IdeaPad Y580 - Intel Core i5 3210 / 15.6" 1080p / 8GB DDR3 / NVIDIA GeForce GTX660M 2GB / SSD 90GB Intel 525 mSATA / HDD 1TB 5400 RPM
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 24.03.07
Prihlásený: 28.07.16
Príspevky: 4153
Témy: 251 | 251
Bydlisko: Michalovce
NapísalOffline : 14.01.2008 20:21 | Hackovanie na accounty

O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"

Ešte toto sa mi nepozdáva.. Takže. To ešte nefixni.. Fixni to čo čo napísal Devil_SK (reštartuj PC), a daj sem nový log ;)


_________________
PC1: Intel Core i5 4690k / MSI Z97 Gaming 3 / Kingston HyperX Fury 8GB DDR3 / MSI R9 380 Gaming 2GB / Crucial MX100 256GB SSD / Samsung EcoGreen F3 HD105SI 1TB SATA / CoolerMaster G450M / LG IPS235P

PC2: AMD Phenom II X4 955 / ASUS M5A97 PRO / Kingston 8GB Kit DDR3 / grafika RIP :( /

NTB: Lenovo IdeaPad Y580 - Intel Core i5 3210 / 15.6" 1080p / 8GB DDR3 / NVIDIA GeForce GTX660M 2GB / SSD 90GB Intel 525 mSATA / HDD 1TB 5400 RPM
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 14.01.2008 20:54 | Hackovanie na accounty

MiNoR píše:
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"

Ešte toto sa mi nepozdáva.. Takže. To ešte nefixni.. Fixni to čo čo napísal Devil_SK (reštartuj PC), a daj sem nový log ;)


takze tu je log z toho

MZ   ˙˙ ¸ @  ş ´ Í!¸LÍ!This program cannot be run in DOS mode.

$ …Š/©ÁëAúÁëAúÁëAúş÷MúËëAú®ôJúÉëAúB÷OúâëAú®ôKúnëAú—ôRúÄëAúÁëAúÂëAúÁë@úęęAúŁôRúÎëAúÇČJúÓëAúíGúŔëAúRichÁëAú PE L i´rG ŕ   0  04  @ @     `        řN  @ ř UPX0    € ŕUPX1 0  &  @ ŕ.rsrc @  * @ Ŕ 3.01 UPX!
#UŃ<\řů· )$  & Đ7í˙˙U‹ěƒ} t‹Eľ…Ét
‹UÚż˙› …Ŕu3ŔëC‹M:…Ňt4N űgĎF*B&2;Âu‚wÍ>űƒŔ‰
$ƒÁ
ëwëÂ5{»í¸ ]Ă×ě L†Lô{wk˙¦á đ˙˙Rř–ôâÂ Vîiív‰UüLü+E.ĺmÇ Űßš}ş‹®Dô†řjj j$Qß›˝µŤRF‹Q"šRj˙ĐP˙S`öXPś–¨ühˆ0K čƒçü ¶|ƒÄ7
™C–4s·ŮQq|tT?Xë[K$$ÇEä!ů~Gpę“ěö‹PĆşá™áoÚ|ôô ué TÚ ·o¶ÔMđl: vë TčƒÂNíţŰŔ
¶‚Áé 9Mčƒ°ĄUě­,ÜPྫxßî ŤMÜQ
.Rhŕ"ě Cű?Ľ|ŇJ Hż‰Bř
ľ‡íŕR^ÜPşQÎ ź
ÁĂ»ĂA‡hž¸řRđGhpł·¬ j# Żá?^ƒřthČKëf řď
E‚ '9ě|Š‡Ăg®x5†)4Ź(‰ş6–Put[Úé¶0ôP·˝˛ôzŇŽáëëÚëŘëÖëÔ˝0:ĐqÁ‚Ĺ°ŕQÖÄP§ť`ŘÁŘPŔ´ţ™ ^;ȃČ˙ëmż ť§´î|ěĆ@jŘ<ś¶ nđ• ü¬č¦ŕĹ»Đz`×ÔFÔܬáhô ˙ íŘ3ËÉůĚ‹4]
FÚĂěd WľČĚs›äądŘŘĐ;–íĂ7Č•Č’?‚ä#†šxđĐč6Ű[‡ŤPPh üM
~̢)h01uam–ąá˝íĚŃřYÓĂi˛ĐR
jß­ů©2Ě•÷ ”…öĘŠ
&ƒ†żÜ°ˆŤŔţą {đţÁó«f«ŞÇ…śňŤ•2Ź\ş…Q,ĐÓî®ç,mT„«rX¤ĺą<ß ¨ ŽrČ°¬´c¸)ş;ŰЧ‰•Ľ
ĚÄ.*pöüQ&źŽŢ—YÁ˝F<
<·¨8ÍwH:–ŞÂd¦/EkMzČUÄR ÍátťtXĚx‹T¬8ź[ Š#:†Rť_e@ţąd’‘ŘÜĐĐźCäŔĐŘaUaźěFČPg¤Č÷.Ž-g&•g6SÚrŔŹ ­z\ňógŕb};-1 ŔŔXnZ §áĄyqŇ°u.Řlx)Üúxđ6»ű§Ěä"#ŕ±T=ětä•hśůF‘źŽ8řÁ˙܇h´Ý™j-
M@ ľk´2guWh$2_dhtíOÎODšu3hŚsJ®\2ą¬ ",ů
hĽXĂ
3ƒô‘üîŔi8p_‡xŤ*›ŃÚj(I<ĐřčŢp`*_>ěRhüŔËŽKš>2 ExŘŠ˝µě$Đrđ‰MÔ@ÜÔ4Mű ŕ0ÔäŘčí€su˝ˆÜ°”sH"2ř ě÷¤éVW¬ôąľ3öyŐWŞ”řĄfĄą9·˙N®lj’43±Ą
®÷‡ýş *Ť™ţG§Ľ@DhZ€đ<p‡gˆC([ĽÖ}ž ö
śl‹•oRZáş‘W(HÁ›JĺHtŤQ& ”o€ČdW„Âýc WëVŤŤř}§ąŞópĽ•dᐌ!±ë"ƒ˝ś#řEt
 x ˙E8äëâëŕëŢ_^«${»7©ôW˛€
jhŃ%÷Ŕh˜Ň"\
Íđă0š\Ô+Ä„ŤrÉ| ŕÂ…řůďÁ l ťhFh¨«°}pŔ`Ҹ­…҈HßĘD€ŤŁPč°
˙+ u§¸3áŽÁtÎ ‹Ąŕ`ŐĽĎą>äîÉ“çđüńühřp‘‚Îś9Q0h;>C|1ŻyuP’ ú-¶
‘Ü•kOĎHőΕH“ä+Š1!ľR`ś<ƒ±8Ĺý>xV.‰…ě*f Ż=¦#w÷iě0Üű
ÇOŕít ię:Ç0IlÄ4öş©ß aÚ†őÎ’ŰOD®"¬€Ňôäqhäč
<ŚÜ7}­5h°»ĽíĚ™Ç;\śfXgäîJ±i’Wü4©˙¦Ź
± 5‰

h5Ď•?˘aAQ
ü_Ĺ%/W<0üW čřýáëpáůýěű©!Ż­tPěđűOńűSĽ‹ÉčERß|´“›˘5ˇ…/+‰Ţ‚o@ˇ·Q÷ˇń,(ŽÚ »ˇżNÁmPąŚŰ‹IÁ*Ľ/P#‹m«)ď1uK‘fMÝcî6"ôŕ˛Cܵ•Řؙ֍†+µĆ6»˘‹‘öătبĄô^r姒¦Šđ•ĐůŃů¦î@…9P§ŤÓwhčW~mRź`bÚ^uA[—t‘¦îs1Q—w± ňôG4ű—ńr,Ř#Ý#G8-Â)°6aHĂ)ÜŔPƒ:îXČ'@6Ţ/L7ř!i$¤’ÇŘúę…Ś8DĐJh;íđ4vTŁ”*đ€ĎĘÍ Ś+Ä7MdL6RT‚7ĺBV.Č07ĽŇĚIPh‚`şˇuCX+tƒT+ŚnhÝЃ°Ż¨ƒ¸+„¤2´Äƒ\Ô© I{.‚äĐřş•!°8´łđ=sP„š–‘ËČÄŤĚ€ćŇş=dwĽn˜KóeX\`.ÍÔFS°JĄą4o FA\8¨˜KűÎ/&FĐaČˆ,8_úÂ>Ă(8őuV8Ňť!hH‘X&ÇÖá¸ĂNÖĚćVá”Ě QR¨±ŃŞ—A ¸ź\
uë2SWą%ÄŻŚˆ8Gv†ÄZHŢ&\ź‰I©ŔđĆ®“JÜűź”8đ­áfčâÂâ
) `M‰H Î uĺ
ÝR˜{ç¶EIŮPöG¨“?ŘP÷`Ěh >‚?Jƒ;CWu%9R@
Oj˙U‹
ŤT4ĘÔÇ‚·h‰Źe™áęšf®¬ř^<t.çäęřřŕüDţڃ—ŚěČ
TÇB
8࡭%:. u?|7 ëxˆ µ›N„BŇ뜪áĘnxS>TŐą[i»UŃ+z,H/v° _RĄƒCëlÓńţîuß ŤDɁâńŇt ¸Á ˇ$ĚŢë<(xÚ Zus@čŕąa=!čA4đ c+ďy6đQ9lĆFżĎ¸ yżŚp$îs
Ś$U(î
ô†Ň~ë®É¶Í® Č0ĚgĽę©ÔňľŹ”Ťx$-ŽUp`8DđwŔc”ń_šƒ®Âß˝4\…ÍhXIѬł{Â.: ‰L‹ýqd{R‰ ëą
Öooh”Q…P*϶˝. ĄŰˇdh¸)•XÚ.ëřÄthӧͽЛ›ësÁbálLłĚ3 \ZÄeAďä6,׶Ń+Ĺ
»“ŠŮ+«ěîěîb‰Ťr~ ‰•.uvB Ř'ąôţ,¤t$‹%Hű)§¨(Č,‰ŃᙹƒkRG0ýs8Żŕ‘‘JZ‹`Ă‘Ť‘c ••R$YŢ٬PőQB®B•mƒ‘Ü>@Wż0Ą`XHQ};ƒť~ë;é„ĺţŰ#Áę˜^†{ďä9h4ĹLJOg śŠŁÓÎÍëł÷ R!° '‹Ż;« Ň 3`»˘¬Ĺ•˛…Lg^•Ćm Ăŕ)O‹ ÔČ–ź[.4¸ Žs­e;t18Őř ŢňBVvęę1\uŻ•R&(ň´=ôĺ•HŇđ©ł… š(Ô<ś˝: Đy1ĺ=đŠoČH×=ŤŤ[QWpîbmľ­‹ę­ÝăŇ• h`J#äěŇľŤýPš¬Fovä¬Ň¬‹áĽ ;F­Ç†)°I*Ď<•R‚ÂJľ|­ŤRl‹4µđ¬ĹçB‡a°ˇ˙„FŕÓ¨ÝPĎp®ń]˘ě™>XUđ¶ÝÇ/+ü
wMĎô^€:nÁé¸K~Ü9ŤRä ×ËsŇčé3Öţźfr|‰„j›¸ý•sÇX^Ý ©Ť7ÎČ$uöđŃ«ł?ŔtvĐ|ž1‹gX.úa?Šô wPîâÖřZR"í˝ijë<Ť‡Nt~>TPćż,Ýî!Ţ{&*7Xđb°P{"|Wm/dĄLŁz÷;B•Hhxßź÷+ÔěፔăRľ\(˘3Ya%[ëÁ…SµÄÜR€&®ŽŕĽôä Ţ čečQŤCÖŰĽŻ
CÇE e˙t˝Q°Q‚UťŔ™ –#l˛V8@a̲„J8áE…”J Đîň’E’°JŘŔJ?Zĺ[/ĽĐŹEřhŕ{đ`j‰Ŕ ĽÇ!Ö8§Ą@Fp;™O©Ŕ˜ÔÓ­„î'ŕüA˙LDŘńŤŔ(Ă=Üôlá4ŠN
Ôé»k:ŇčԐ?ƒUG8EsMŔ/z.«.]†ä Č꜎îUDă5P‰˝lLÓazhEt1=&tƒ¨ÂyQť6C‚·EťKjńŚ>pKČ
Č®íŢNŮńđëŔ$R‹GäNĄŽ˛ř¨ć Ś‚ Lłun«‚SJlěÖ9'śk‰őŤÔ Î,–Čťűë€ÜąŠT9Ťd:¤Â
Ň8Ľë~ .śÄ;łX4íDÝ8r"ňˆôIM°^4-> mĐO
ě h˙?XVW‰M¨´¨ `ߨÁč Ś~ďv«ÚxÖÓđ°ŕ
ř܁‰‹}\Ç|7ÁĎ ŤuäóĄž$ÂôËćű]°Č¦h˜EĚĐěŮR¸Ôo˛™Á™äŕ˜ČşGÚ®ŕƒM¬t°´dב¸.FĽ˛+ŔÄőe’C´¬Ç‚A6˝„€V I¶M2 )h0Ťôä 7*
Ž đ@0A+ôďęĽ°ƒâÁâ0f>ţčhňh4ƒáÁábf[Úł›¶f Á.:pöd‡ş¦Ý^4ĘG‰Î>#Áoř%3ŕÎ#]ú¤µA?Âbšv÷rüŃŕf`6Đ ÁŕH sA/`´Mü¸bđgý{ €>Őtޱť–˜ P „c/¨żĽi‚× áÔőč®8h“ÎeŽé0`řĹ:ÓOݸ ^Sv©Wť`ćvŢ`ä ˘Ç\Qt¸Ě–ĄUŔ°ÚĘ.`Ŕ  "f ĚE(:r¸“ĘĘĽ€ČfăɚġŻÍ$â–ĆÄ 4‡6M$"Má\HUČ!_ŰĘ|Äo<ƒ 2 ŢzßűĘÜ@të >
D{ŽťöE0ÉńEň`p€ Čť ôŢúćČČ(†ŔŘľyđĽPj<,ł
¶°Q+N$ŰJř’JMĽ1´R+ÄG:ŢKľ°ů­T6}«c€´ƒÂ49ÄvXĎGŕۆ´«‡UĽR׉ﶬ+‡}¬MZŞç©<ĎNEL PĄpuĂu @xÄq:íÃX ‰:`0hD‰AŤ.y*ţÜŘ{äO;°pŕP)A*ÔĐ4/!¨3X¤ŽO[ H¨PśäŕR˝HÁRҤř¨ۧ¦˛¤Uţ3ŔÍ`‘Kƒ<­,D9ľÁRC‰‘¤Żሶř6ü[g)ˆFň(4ÓőÚéâaˆP^mHsHHD°Hp“LLd‚~Î D·&QR@GS)Ýëđđßëßp
}đ}TŚÓô‰Ś@RČ 
©Łĺ€ěşg¶/° … Óâ9&}˙ëŢ6ÓôŠŚˆˆ=őô[ôëÇëťh~¦PálfKüŽňp”ŔíRŻa"jäUrUHÁŮ4E‚<>ü%Ď$Gü´ĘČ… ěü@N.—üü„ü…Aĺ6TÁú ôŠÁ
‘}Z
č
BA‚#lěŤJÁ]ě<•ƒÚ;Ü܈ "ŕ9EĆ€Š*{-Ţ<ˆ‘=Ťü·ĚČ\Ňŕ—hś#ÉÁ'4H­#cřm¬ŹµôÔLf߶ŕűÇ„JäAßŽěŹ 3ż3ĐěBţ ¨ĽŰ’ *‹ˆôlfl‹+y·‰Šv˙’ öö2$Srň ŕ ňgCqź»hs´üÚ™,¦"ť$ť”ě蔂.AYH?¸üz@RBĎě5„Š|¬µ×}:ëĂ´W&U|ˇŘF%ßł‘Ąâ!z&}.ü}ŽvńDŠ)Sƒ}ŽŘ …MĘlSË!r@ôŹk2ҵ
@Ľ!ňU<4L0§<É€,Ć€8FöˆˆçƁ99SV>‹ˆ[ ”}ô«#âŃŕÉî;‘ř˝´«{fŹ>~U"ˆŤź4Ŕ&÷Ńô)ZA äłSčĐH*Šß=űćö4Š;Ć| ­Ö_Eľ7Ł6Éf6‹”_Eƒ‡íG;Îu?“†}Ř€ů3ŇŠ”Ŕ‘ ż|«Ŕ1ŰŠś;Ó ¦ŕŤ]KµřwrhsWĽŇf Ú¸‚×Ձ;Ö|<0!ř˛—j
"ąř‘÷ţŰľřřRŠˆáŃë#YA¸×ƒ:řrŮX‡îx%ô•T'\vŹÁ)–đE^[Žđ( 4Vô¶Y39BQ †#`i»Ô3H4Ěn(X|5RůKséőz) čččXl°čEˆüzłG3d©wđ”'‚]ŕs9‡ŕéŕŕ‘Ęôŕ=ĺ
ŕ+MçMĐnĐđL š”Žđ4š†
;&~řčv‹w-(lî^Ń°Ý©
VJĚ~ŚŤŰő/®‡ŚPä‰#żŐÂr‰aÔ|,:|¬Đ+CěfÜpałˆ^Mä8ŹŐxǵĚřŻĐ—–·S{‰ż†o­0WJüót&ĚpŢujÖi@k*ŚÄ ×jŠ )]=0[ ?,h¸f
"‰H…Žčűi?|Çşŕ &ƒé¨čëᲅ Ůé}¶ëyć?#‰ČíČwƒ~”Aę#‰Á §

P lˇŞ‚e„@.*=Xµ ReŮAN÷ŹűÓ]ž¦8Đв༢1 MŕŕŘD
µĐb;EuÓ¬űď§
—ľ
:Átg˛RťˇŇtNňđT®PîˇMĂhĐey+Č‹·ĹQEŞđÎ9uśŹ7äÁEŠM»~÷ĐGĐ"+^ 8^€qMĂfĂM!©V/ áî×%ď
ď´PâÚ=xü ÎŃášzüfŕTƒÁ;ÎëÂhčxŠđ·6˜g±‘rD˙Ś*܆=˙Ďč)‘Ů g?ałëŇŃÔÔjÔ;U,“¦ZÔ ˘ŇĆč:ת0Đ>Ą5Á 0Ě ĚfA4¸ć@Bظľ˝Ő¦ $Šëš^ÝkM$ä(Ôđ§D™-XQ,ŕü©Ú©ß„××?>Í«ŹäŐää}_RMşä Ţ@Wîtuőˆ“Ą0ćNŠ)/č¸"ŮäƁ¸O1@ÖŔ
źFč
Đ}:ƒąg©@ĄŔř€}Śü0‚ŤkëQ°ŇN{7ě)c|!¤Üܿځ[k/"Ć‚W&^‚_aéǵâű.!gô[[+px -ňĺđđîčN•ý™+ÂŃĘäú÷ʉb
}ä|9đůaˇđ'z'<ëŰ 1|zmíäsž TˆMżÚîé¤Wjˇť7‚¸ě/ą{“+6);ämU¶—áęŁC)Ł©JǐěśěW©0
¤¦ü‰.Cä ˛äě·éňĹ|䊈ŢëadˇŻŮě]ˆ˙'ŻlůcoüˆÝ4Z!±“üä
‚Őđé©ü÷üCÔşŽŐ±üGŚą%)]Ĺ–¤’?ä¬^Ś](ÂMU Ćđ…+¤š?ő0Ó HđţÔ0Čś}ôĺđy]Źĺř&Š• Ó˝9nKP9uÂŇk±äóBKü°Ź-‹řż(/|Ŕ ă©ŮJmÚTüô}öě;,đpŐ}ęş4˛đ}&©˛Ă?CRÚ%iz”¨!Î2&ěضۣB
fčt Acl„ÄV e‘4°{W#~E0ë8n ł+.
?87Ůë3<eȁŃ
UňLë‘Äř/ń 1\Íš1$/G; 2qWE*!XPk< Eţ-řiQ´őłä·BôĂ©°§* EĄPĹĹĹ!E B{čđ:ÍńŢö˜R!rˆ»ťA`Z
JĹÂé­Ă(U8/X4u­=E«8&`7§|t‚ř˛ ÄÇTÎ ×hčŠ OX`Ř,i6dR­ˆóWř`ggjNčęÇ٦e)ë~7=íc{7!:jPźUŃ{°·…ńŻë;ĺ˜Ç› >“ŐÇ`[<j
ę ŁĂ©62°u*&¨ňYM:8y0Çĵ+ř˝$=bÂČóTDöÂ-1żüKn
š ÚüŠ‚°ć­Á!˛}ÝŚđţˆŃ5kŔëÎ@Q,níÄÇŽ0â¬P?Rh$ü:Ś#Ż á } ®ěx˘|B|¦\yřřDĘÓ­RSs2HŹĘ·ôô
ČĺXôhhă‘UiöM–Ú7/P@e‰µ. ’Jšf˘ß«kŔĂŹG%î0BüX“QhxµlÁđHčÉłÖ.ë­…lˆ‡ M
4 ŕm2e–Ľű8M`ඣCţ ;,ą»xeaePh°K)ľTG§4µ€Á}ĄZŠˆ„
,ź$AxŚťJA=Ţu !ą4ď÷@T\ôxmIRa<Č@ľuIm¬čËBcBRÜ4ÇŞŹ+Á
ÁĆ4ô‚ËĽE;"ŔpŢ80łLtFC8Cc?0™”,†@řd…A+w–Bh`Ě4ˆ°*wŘ„ZyôýÂnwhŕřŃ•b Eµä8äÁ1Hřpů˝DDş!(…đČlPZD¨˜:GZ´rO…ŤMTlÁ0–Ç ÁŔËagm Áv=>!?‚Ó1ŤL ƒ{Îű=¬§Ŕ
éůDťŕ§Á{)1†ŕÍ”ÂuQkäzŹŔ}ăƒƒ4X5śľaFŚo.~»éCŤT±Zéƒç=oęsD<°CDkƒáŮNĂŘâh@˛[! Č"ŕ´3;ŠzÓC`·®RmG0‚{A!MC"˜ŽGP~9hTƒăÄe(S€Â­oD3ŇŠ ![ —×+ĄK|ęÇčuâőâĚîfl‰0<Ť+Í©‰ ĂŔú~¤U ·Đ!ú;Dž x ŘĺŠL€ßˈMđëh~ď˝KŚ=)WśTŕc0ú}Běětv°ćŠKęp@ĽśB‰‹—:¸—x°9˛”ˆ9Ą`Ť+Ô*‘-ŁçUčFÁřŘ{čŔ<+;GąrůžGťą-^‰
Ţë"ß'ľe G~ôx÷É/gG(̐ϽŮD
‘9#ˆ/#đŻâŢĐâ'[â…ŇuEÜ*†Ő4łÜwgşMĆ‚§-Ňěď9ƒxŽé*Ăqś®OĆŇ$ŇyŕŤđÁábOŠ„Ł7îbZ+ˆt
»ôžz -aRXµ*„*NgĽ!đeA …éÁŻ:D/@N¶Çö1°¬íHkŔddˇkâű÷uřşd¦+ĐHPr6¬@˝_,đ¦©lUŃé°ýăňĚ9sňřŃč9†sŁ”ď—Ő1zą¸h|ŇtŚşá€†nƬĹq’­ˇ ÝŕľÉĺƒ)äđôƒ¸ŐÍP
ÚŕŃŁă.HCđ>öˆRoAVĘŁsŕ–¦
ŔK ôRÎx.Ô,“ä ®±‰5ő“^34@
íPF§ěĺŹ]8°ŁŠôR!k` Őµ8Ť~ ď…at‰'_Ľ¸Ň¶,ě+^@Ë!ěD+&IäŐç¦PĘ©ŁÜĘ #•řsřÜVjäřÁčÜÜWj±[Ľh¤¸.ɤabÖ÷Ůč$®‚Ă–$ťěČĺ@ř´ř.îČřÎôĐč]Ľ…˙řVŕ;Ů‚&ţ—dĄ˛5ß Ú4F$'7ÉOƒă<} éӃ‹ ôCĂ |ôëÚ2bĽ!pPŻĄgvŃm ë×â2…PouŐ´+˘MČeě[)Pß;ʢAB€%žť L%îV…™`…"s‰‚hŻud¤ů1TX@‘K®§\lß+á1~
J夸üü°ü…!>±ßĆŻ]{î4ý4ŠŃÓŕÂ`ƒ ĐÓ–rIZO\u°`súŽÚ‹·ôÄ/9˝r#›dŕ×ĂJťďąÜ1˙Q+ĎM•ďîöŮ`ë‰sˆ
ądŔý­X*‰1uÁřĂR0ˆqT\
áá(2\ć+
Ö
¸÷Óč3·óäĂ4 <c}Ńę‰m Zh ŠŁ đŇ0ŽîÓ-čb¸ő‚¦®ÓcŽ˜4¬`bĆ4&/ŕ?`ĹŇp¸bPI 1†­łY%i„egd°VÉeúqĐ1ŠSëvßäjAw‹gĄ;ˆhŃňHĹŠµĆdŠ‰XËé˛ ƒş1±˘;ŁŇ"l'PÓii8ܧN.RcĘ´ÉG{•{ňľtąl$ř÷/ü'vb9]„jîU;‰
Xp¸Âő’dŮl¸$‡‚dM«ˆî:n™ď8<ń÷Ň»ŹśZh«tŃů\Ăěl hŠ'·/ÇM‡µ°€ůĽcp蚎% ­ëdßá!Ýd;MvhŔhzE8 ýë8Ł“Ł›GŃÚ¨§ťAOíX±xŤČÓ굊p ‘<’;ą ôh¸śhéx ×sîhw¸puź1‡Kż}ŕŢ15ehü˙ŔŐş‘@ŠÔ_Âň|Ŕl ŐĘȱ+8ó~˜d+ČČ 2śĚ >8ƒ Δ¶>$>$Ů ×ë8ˆśü*|iĆĆΟܵp‹€ĺŃáT“V/‹RŰpĂÜ×ůÎ ë1’[6Jt b|/ KŚIäëyčŚ1ąŚi7źy‡Ž’gLźO|!F§&Çîˇpwqs,ńIÁŕ Á7c3Â%UŐ¨ÝAëĹżď7†Ăk,‚>ĺ~RŤ”uśC€9g\ě“CźĺŢv5hČ]Dôö•Ř› Ž~čhi˛›pŢ\ÚČ‘EŚr°p©˙•đUěŠB˙ˆ
đ:á%nˆż_hzěý;‘rŕŢí„Âěh¸ťá>‡=ďęo`;»qNüźh,X8€żű;ˆAŇ÷ÚÍIJŕćî„
8AϸpôѨ¦Đ^;Đ*+QfgŘIB-.Sđ
‹‘Ńî`$¸tł'iolE\Ŕ;ČLgO±fŽ
SËw+ń.4›˙şvşń4ntĐ…´Ăß…]§ˇ’Ô
;‚ďN˛ÁN <±đ- »ÁÚŃ[;ĘN€€Ťžďś T;ŐuxçuTßźDŞŕu0Ç,đqĹjü;UÜ‚Ähh8żˆ/Lá‘oôŘş:ţ+*ąçh |’+ČăÜx?GŮŘě~9ť…îŢ+ ‰‘ˆ˜&y"¦ČŢ«8‘ď|ëH*bETŃE›HMř{xü-Ř,|ao
‹GŤĆv ŤŞ09dŕ”gý$JâÚě×}­†+‘­ +ş´ż šŞˇEŠN$#ţ ¤ŔE2‚:G. g© p* 3
“ü/QĽšt pŽRŤˆŞśžÍ*˝ ƒ\Ţ.B„th\rËZIA|…qlřs@Ň´B;0řřť®ď ršř‹ xđŕń 'ßF—vjôaë®˙‡Põ?s×îęŘUµ
>-x‚-§ĹĎ4ěDF_ëŻ0üM•,`‡GÄxüNÎhDŞĽŔ@®1\ś7R=mĆU:P&g°x=HAt:;%ë˜ ç€íiŽp@±ť®ÇcäŧŚ×je MSďĄđS.M€ƒjƒ 8řˆGr{]ťˆŁŔáńU=K[ôrjË‘P‰uqĎŐt1ÄŚ=2wÇc)€Ĺmä8š=€Źp1čÁg+núË3L?¨wS ;ń}Űv'‰3‹Kh đIŠŇ>Ą}é;‚e _q·Xš6¨G[ĹaF_ő‚×™:×_­âŽ")+°) âĂN‡×ĂľĆńęŃÇsüÁü9Q
n3źçńµj`ąúY ŠĘ{Çf0Ćvë-t-‘Ű1Ă7ňq´ÉńHÇô4DAE­BŤĘqÓÂWŚ/üQhPGűQ™DL·Ä»´ xANKĄ‚U¬ĆK§°%ž>˙bÇ| «Â‹ëF®ăĄ×Itđ+3u•7¦-ŘžŃ"…/™"¸]â •‹_‹Ś
zŁôW¤Áě '13$Ssŕ+]!\G^pNŇX‹"w n„h—ČAĹX*•r1!°ëíāwźnH[ţđÇ“‰Ý,äZą÷€¬°ˇň±â
NŇĚp¦…újpK9ƒŽ
Š‡wlwz6ůµKS»ˆ'µZx_‰3żMş.Ö»ş‘ü$Ś_Uu!ę„Ám›ů2|Xđ@v_Ý€˝:ĂˆZk ´ 1ý˜Öłw7ĄôEFý»‘O¬Ć.¶í–ß4}°ô%ě=€1M"‰Á;rů4€e€Á±);@#K.w€s€
Ż¤4t-¦Őó'ě
´ëčß+tIĺŻ Määé+QHä†Ű5†ež˘ON4EĚWjNř¶¦Ć
tőĚ*ĆĐ@^ƒ¤rUđ…Ŕ1ŕŕ,’+ŕÄŕX­ëěK»U_ë1Ie!E¤‘ˇ­đ Ső$Ă„0’oY¦pI}YÜC.ś@@Ć~Ź¤3z
â˙U¨•pŢL&KšöÓ9Ěř'ôĎR'°¤;wô÷N€:B%ˆŔiVÄĹ’đçVұ>Ďđ śXQ,€+éţƒˆUěĂě,]IĄ9´ľěě+©´kÉÄččHĄ€Đľčč°–ËHžßQ é.‡äÇä*íĚ€ÍéĆä䉨[BŔÁęgÚGRiĚŕŕÁč †¤ŇÄŕŕ CRi+]ĘÜÜ Rií[SÖĘÜÜé.8C •ŘĎŘş#ˆŹŘĂض`HČ $•ÔÔC/$݃™ÔÉÔÂI7“ĐĎА´xp^ŤĐ'Đ!© ČĚĚ Iĺ’ĚĚŠ‘t—ČÍČ'†¤ČĹȇ=’nĿāÄÝCŇłÄwŔ±Ŕ¤{0$kŔ«ŔµWgŤëHŽ§úGŤŐBt¸
ˆ;ĽĄńy>ă…µËAápĄ+ˇ°G‹Qqg\š^) üü©<Ëüüřř$-T,}řF2 ôßôT^,}ôôIwÉ đÍđŇiu­}óĄ,Fěáěäiu]•˙¤6Ť¤›čĎčĄ é´şýĄ HŁäá䘻¦!ĄŕĎş6Ť¤ŕĄ˙W W‘ß\"Vr%.°˘0÷ŮFV…Ń?ô@ âŃTqŕĹËśĹ+Š#ĹČĹŕÉ‚Ĺ%CÉ ©i„í$•ÜÜÇB*MíŘŘ.š>0ĂíÔ} TÔÉ©\1íĐĐąhúŔĂíĚôRĚË#¤2ĐíČȸŕ€Ĺ‡ÄŔ $ÂÄ€ş!¸ŕ˝ uŔ±ŔŕŔ`H jżHş!¸$eĽłĽ+éô`$_ĽĽu%•“(¸¸( WRy™¸¸*qą’Ę´´*´™!é}´0°Ę%CR°0°é&’°0¬Ď¬¤2#}¬¬IeB†4¨¨H*“ 4¨¨Ś¤»d4¤Ď¤1’Ęp}¤¤°öÂ1?·÷ßřƒAuXXz t#ŮÖ… q@uہ0?Y;ŕVx$í“r4*§DŻ®.\$O,o4Ň\  éŽ=ą R'wřŢ’Ęô ô' •ňvôđ đ`°ärđđtŘh-t7b1ˇ…n$uiF˘Ćj1Wí©í#Ca=[XÓ=V7®öu7OVKŐCĹ=1Ú7Ö÷=¨ŔÔľ?7§«ÝZ7h1|íâZő<¤/;E˝›zuÍ} +h†e¦_đĽŢoŕ0ú‚nR2G ˆ®ŠÂOě‹…ôš©ŘćŃ k
Wź 1ôƒéđ„fĆP%yPĎđ ÍBÃßćČ—.›†čęŤÂÝGc]/ω
,ľHńvuÄ…µľ$Śř@€3Đ_ŢŁ"Sy•üEłŹŚÓAH7Ji-°űÉ„Ö)ˆ¸Ň¤ĂU(Á±‘é.ťAá«ŇźƒÉWęCуňúüŻÂ»ŤL”‡íBp-i„ÖÓĽ©¬Š„+hˆSfěvöWNŕˆ¸< T*EĐëSJQŚüR–íH¸eŔÄ6ZQ% “4đ
žŇ7eĺěÚ8(‚¬—fÓIL‚đ~ëđe%‚šaađŐĆ52ČvPohĹľzů.t g:-{čëâ¨h˜M„·Úü:ƒú2kh|ż¬=żüqăěťŮ°7€dQ7ˆ›k(*7ëĄv—Úhˇ1fh˜›y‚Ý1Mh •4h¨€`yh¬¨·Ka܁¬Ex ęé: ęîy'Í· J˜u5‡Âi. ,`` R
ŘâđÚĎlçfuSĘÇű ÝÎBrBfĆֵќ!ĹPOŠe ľOô_Üo•Á4ˆJČâH÷ŮÉ#© ‘'U äIŔŹ‡±udŤô<„;»_®ƒs™Yiâ“N°
­ôÇA¤ Łź­¦‡”DĆBş§M l4@?ÓÍŇŐ…¶«śđÝÖ ˛Ĺ}^Ŕ7¸ zËH ëqjO)x'ö˙ <4ݤĽ }~Á:jz&j”gHë†ű E˛R^K Ŕ0 Ý.˛3ŰfCŠÇB Ťś!˛€@·$&Đ|PÓđ(,kµ°qYÂdĹLUŰT8c-3>ˆŞĂ˛ ­ĆőÂmX‡0ŮűL*4ǧ"l¨f‡"}ŤpŤÂÚ¬çyGł0Ě €Eč8T|ßÖ-đĂ›č <‚Ű~GŇBQ@;zs&ȬŽ…<ń`i‘Š{*(*<dyÜŹÝ·u#ÔŃâAÁţměqĆ’^vFB0;€ţߥQ+ŤÔˇŁQ`ĐĄŕřřöę%ýM
<Š Q0˘í|ź>7€ěVŔëĹÇB<Ą·’~ť°P#$;;A(=xTÜr @AFfĽĎt!‡ŘM F¦ĄŠPHWw‰ ëżĎ.Vë5&ét §cŠ¬ô—č
«0ÎüŃú Ď a!˛TÁ;…ĆÓŁ—q îUvtIşëc2îÇh&"ęQ\Ďށá&Ä]BA1‰Q$fÔ|^…]K3X |QR“ËÉÁ]Nü2ťăą,=ƒ„Č…iÓXŢ,o/ĚĺŇV’‰ G N Y\z I“ŁŚąµ4ƒ´Čř ř܃s˝řĎ:ĺ44\ÜS`Ä
0P’řĄEšî*j >zŢd`˛bŰř‘7Óčd™Wj2 $Rˆ!‘ĺšÔôpăoAbˇěx«Lt 5„Ääldƒ2{–yAhrś¬«‡)®ë )ŔşSňcÉM5…˙Qî€Ď•Á/j=Fôq‚Łp•Wb{±ŕEŘ$zAtSµŘˇŚŤčs‡Śrčččč– Č!čč <Ü˙ƒź­­ßr”űÍ rYýxt :0|Ŕ}üúj˜Í`=\R©¶ÚWPP
ÁdgšŢ…Lí ¶ˇ•n˝rĎÇh‚]Öó`zÖ upâMŃ˝|­Lp€d˙ 7îFÔčQd0:+Ľ` ÔĹZvú´®U˝ŻP˘TXHOĄ;¨Eđ9â Šž^»Ęzř\QîpË´űVÇiGx$ţt†ă sSlBhM€LfóAh5Ĺ ]|%\ Ô‚wźg“űHŹ
¨4dC`bLŔ9˘×ÍŤ`PRŰMQÂPh=¨µT AÁ€Ě!üô\ÇĂ"˜Î1¦˜\ţL ŔAdUřH$äyüôr‘¶â:UTř–‚ üzHŔL3SRˆńĄĎ˛tZŃT‹1śPxxŘž‹—őHYßľPĹ;r•u|/A|+%8
Éżŕ…›h vëP0ęnáG÷đGR“káą‘ys5Çćpođ‰Á)*#-f‰;Źlf$Z˝‡­8lűn°0í¸LzÔtYLŰm™lLŤ`<X/lJ3­=Ăa dřřřŔŁ‘fđĎř¤®¦ŤtĆpVąäpp2t\ ,Pśę˜htP1TIąŠ¤ˆRüó ĄŤh‰Jdź¤FĎoĺîÝö׹j˙hĆĚdˇwPd‰%h+ę ˙¬ŕH¸ŕ.ęGh¨„ů6
čä±ä[MäpQ—üƒ© pÜ~ý˙ľXöÜBH‹¤QHÇ‚¤ß´pÍHA >„@-†9XCDń|Ť}űŢS>‰iBcë»ęTŠ6ˆAˇfÇŔvXC Ą€p=ywö\¶ąÁˆ@QÖKj®Aq*+ÂäŇĽ"ł\ś6î?GŃ ôą[ďRÜ7ŕˆ„88#mgƒ¸S†Őc¦+Ć ć!ÓĽ
Eůƒ'ƒw°ÇcNaÖ_f$–đ‹vë3Ą{ŔřÂÂMRĹ‘tŚŁáíŤ <
Ŕ(oáK|>ěä–V‰Ť(ű‘Ă- t×Vf ˝0jŕ‹7F:ó…,1Çfą•q8!ł±ÔntH5[Y x˘{‰Ť•Öú‘€ük˜Lw
ą•€˙2'2RŕŽt«ŤŤ' lwC®• Mt(‹%ěÎn¤7\u äĆ /-ÁďĄîëËR%w°a”4•8© 5 8g›‹Ľ™Aŕv·ś”ű ¦/t =eźN‚Tą
ż{tÚýˆ…<
*h3Ť­ŚŻ‚au˝0ya÷žď®ßŽhż|*uƒŁTpe‰íĆŻÁ…pie8uÉçą
±A†AD“Ă63Arš0ylƒ#éu1s~xO¸×µƒ˝#ţ57O®‰ÔhÜB4`ƒ€f•°Rßpń(÷K[Ľ¬ŔüĆ,…ĂZşS`+Rźč©ô%ç<#h´ą¦}˝i•Qěí~@hŕů…ĤPů¤!˛ 4´üˆ”äCÚ&¸˜Ľ9śČµĽĄ]0ĐÁf<˘xDçů zŢmŘU¬\€Í„űg(¦čâ|ăĹőëv» G X¨fˆąî×\¤
dh…~s˝ţě ˛Őƒyd |^íBdI[*ž_b ü Ťť§łXˆY†`i®LŚŻJ wLsŁj¨‰¤_.§=J|¬qfpxŧźi‡W*@Á«Ł š§} čWU ĺTćěy§y
ç6č»0×ôŠBT0é TßRđƒş•ęţ"ůˆŤëCÚ–‚ţ"řjěi.i]°PdíPKÚ¶¤î"řĐďŇ>¤m"újđŠHXdńmIÓ\Xň"úOŰ–´Đó"ůjôjôar° n3ôÁźýÈw3ĆAŻRh4}đŁ@P"X éz56SŘ…˝
Ŕ€Źęşu‚¸ˆđ‰6‹ĺëŤD
p<ÁC)ЉP56KÚˆŁ‘ěźý_[Ç@0xV4KÇA4‰gE#OO˛űÇB84MÚÜ“ë°*"•ßp‡rß˝ 6…FÍ^HăIŠLxđÁ0Qżëľ«$ŐT&Jj˙`űĐô¬đśÓ˛&EçŐđVţĹît\7 ďäÖ˝ ľÄRw }Wű?<môÎŇ+ˆ„
LőĚ‹˙uf@há•W.ƒ\{t©tttőíX Š”ŹRk·P_[Ŕ0PÁ>ĎŕŔ@†ąW’<Ń™>pAu-j &GQŚéĽXáČm0Ż:ś5* 5‰JÜŕX\C?Ó»$¬as]ěoˆB-i#_ű8ŕńuŤ•×%v
‰é
×DđëKqĂvb'ŹUwś »tůń)R{{Ć@- ÜوÖďE;[áyôĚ)‰•Yz\Ľ7@Íé†Ý·˘űA‘ƒPxA3Ŕ9•«.€«r^JX9Ťl@ů&i„ˆcŤó¬m5 kě-!Ĺď<Đ4 آ‚-Ě~),°bá5 ´‡Ś>Ť‰j÷ ŢHŻ3<*Ü©+HnΗ˛!Vť m©a[
ľA{·‚|‚~.d`AZł§ců ¤Sn8†7×;&¸®Ů™ŻPQŤ #ůTQ\ďŘ´"&Ŕ1Aƒ#Z¤|§đŔö‚ŻAyÜ4÷Ç…0] dw©>ظ1&®1dqh`ý˜ć DŹ,M,ł˜Ü=•`űel#ĂE㐣‰D4!řoEŻA‰HDëD»3IîµD¤43 îš;s_Ź·•)‚AëÝEŤ"÷Ýö…‘3Ě^`
árÎ,ÖŤ\iÔaě" Gč˘PEÇrÍ]L©|ŕŽę«]">ńµ"NÓ^Ąä·NB !\ťYúŔg ŤT
.‹[aöŕP$*® Â0´B?LˆoÔKhKčşTCçX/+Ü­B)?Ř؈شPé±Q#Uč^ŤŞVK0‘+ˬ7‡ńC0›IŔv!JU쯂¬ŮăćđądF˛řxXđ"Ťš…KĄ-cźvđ»‘ŘuˇX"Ŕ
ˆ*üňžžˇ¸-Ěđ}#;˜‡»„Ô“¶5^*…FcŰž)*KŃŁť¨í)?(ůrŇî‡:#†<.Úö¤- ,N<R9éNim íĚ#|wa»7˜´r4vą*‚7Čöç”
ňäň V
f›
ä<¸b§Ś;¤i“îĆh¤MHÂ"ËrÉ°s
ĐŘôä’I^j,D<•÷ądë|€s¤*Oĺ©j¸aÔXžĘó| kO<Ft•§ňT=˜4Đ+<Ż«<ü"őlT:Oĺ©„´őj–Öµ= >ő Ľ”4–:ߡ·ž3ţ;Mv 5  ó ¤Đďśe„Böΐť’ŁÔl0$h¬ JU RíĄži
˜l6ÔëjÉĺ
ÔÔDđÓż´&1KkŁ_R.5·ƒ= ˜,Ö2¦˛”’”ćűžŕ¸™LĐlš‚/Ě(j%ءÁHÍ~Ç„v’áD”Qt°B
ÉÍ:„†Ťę¬Ă‡˜ ÓŚú1”ÖBĐu5é`¦“bLJ#Ŕ`ŻJÇ•cřƒ9t=đNłp'Ź¬§x˛b#xƒ_3ťo5-Í ¶IˆĚ[WZh{gÉ@›Ř$=wp¬Ŕlk35ű/{„pW]F©ƒőN˘ÇË7Ţ2B…FŔáJ68#hɉáQ]'oXdiüt-ß’‰Uµ´<X±đ)'w˙ôčXŠĹ®!ě 5đ` )Q%¸@”˝,Çb"FäÄľđŘzˆłf–)6Ü$¤îRXW€˙…dĘĚŢą&yhśľ lhđŃ|`ËŢhő k€xzAŽ­D˙ <o#űƒů|
Á­^$ó‹ż
¤‹ĺ8,ĎŚŞD"đRŇŕ‡‡„ý
Žúi«ô„Dč)ĺĚ}ŤŤDWÎ ĐCÂPoŕ°ęm‰$ĹO7/ƒSŔ'?żăěń»˙Ź›şÓŽ$Ô]PK!Ĺ
ńOa ⍊Ř kŞě”/Ľ…ä8 ě Đi 1˨ĐpO4„yýÖ Ű9pŽËNěŁáA”Üźfčl}c“%uj%źžu6In Çů
łéS\Îxăđ `a˝S)IÁV(·„%ľÉuA Ĺ!ŤIQdX{ŰëOŤO<MňjEČŤŻ ‹×°g—Žg;°#2
‘ôgpšŘ…'Ś>S)ańŞ"¸ŤËa%ż˘AŽą‘„ŽŹŽˆwm§ń#3b‡ ă[ Çy‘C×pCďčGąŹrBžÄCúbdŔr mŰ8Ś…0”@XĂX
\ŕæ†E*.i+P`%„řƒ-˜\řkŹW±ö¶I{IĎýĐP׏Ľr Ci¦o
ŔŇRžCpŕŔ§©Q‹Áác‡+J]XA cŤĚ+éx,ń˜,Š†EwžÁ"ZE7zÁ«ôáý vÎĆ
‹TpmA*°*‚m»q”߃q4
OCjH‡ĺűg‹cak@2U,’

9d
ŤěUK˜mŤ1qL#ÓfT¦5)-pŹw\p†’@™ˆ•Ľ˜Ă$)ÉřUýĹ€íL0I, 2řÂąƒjIěě7ĐQű;ĆD
%üalŇëçh máAzˆMY° mˆäOç“Á Ş+aJ©ŚrTQçÂ8"Pg\ú. (­u ­|¦,Ą‡Ý䨁6­dŮn(—@śĆ płŰ€Qś˙u°h*ŕt®|~h äBfaSđ,˘pË”âDvZN`"=@䉰J
[gKe醴•óńň´·Y˜ĄUĂul;·ĂPëĂg`#*-Ăk•ń·´—nÓźQź\-l;ÇźgźrÔĐ
ď í
lĐ%`r^-rTăx˜˙Ź×Äë óh ëóëřëöëĽŃZńíëňëăť–,,ąĂ‚Hç3F$cjŕ
“ Ehä,)®ŃhˆMśŕę*ő`„č]ĘfV±ż÷ZŹa…}»”üĽŐEřźăt#
»Ú±Ř‘€×‹­ˇ<˘w‹cŤ(€č}Ź¸ Š
ˆyĄX°A@ é‚Îu5ígcđ¤ŕë-*6r¸UhĚ[H°CB!
˝ŔHę‚­hŘp„˝ĆNQOóŕ´u¸)ónE^' ¶#ęHÉ°Łl&N›č‚Ź=Eźh nO§{˙;]\řŞ8Łü@ŢՐnL$ Í®GŐLĹ'((~, Řn8έ;0*ßVÁŮ(
ŐhL
r s
dY…(Žl)!BňΈLFtč„LL ZGŚ®bqö
h”!‡Űŕ‰ś” Á+•´v§áj_Ľ”íÄWä
ä
Đŕäá«/u$"đľ(„şü#â=Ŕz›W;hoK´b…+aĂW!čÓh,D±’§gWr24T ·iżWd%W Wt„áŁaXA][”oÚŁÄIĺ?´+·¤k1GÄ+ƒJxÚä+|śń …'ˇűíČ—Á
ŕÝg$›˝ }h'Ý)Ć„
đNŘľ°ťdVľľôoŰžtIŇŃ”Mą/˝ŐÜŮ2ł ĚčpƒRřĐďŃÜş'\ZPŰWR¦
R\€ƒĽutƒo†l~`T‚p0pŮMÎÂ:Í86’Ŕ¶]Á'Í}ŃyŢYc&LÎp~$ŕ˝ČW•mÓXp•á@{2Ąű{ đšäň˘řřYHrÇô ćËäyVÁxpř‹Ř­(e$ĂVpűr{ˆ ű)äŹtJŚÖtaT|Ś˜pĹćvy.@JtÄĂ›Jn[ů‹uqě”zëK]hĐ“,ťO)0śđ™ü@dٶ™{™ŰŁáˆAąôü
ŠŤJ$i8ĐŤqxXňhŇÍO‡"Iĺqüq]Ĺ!_9°]{°1P1
ť­ř°»uL~¦!řMÚş ,@ HąČr8DK!ätD+ˆ„SµÁŻ­Đŕ6śćÁ÷϶»ÁPî=%(¶sĹ\•ßIÁ¶_% V°Á%ÝYƒA°‚%U%WÚ9˘ź(ĆěhhqŚßHMOt§Yą\÷ĘÉľPŹŢ{Đ=Ůz‹“ĆuÚ…©"ŚáÝo łt@h.±€·¬Akd@^íA”qËüüTđp6R€ w
NZűu1hÜw:JěŮ–}K#‹›W{Ŕ\›<rwhض·ąL##Ů›ś©oŻ\rYŤ"ľ'äł?,‚3‹ł„röű`!2ƒ˝wt)‰b"  ŮČĘ|.r÷´rË Á Ŕ[žeŔŠŕűÔŕA`–UäéU®#MXh sK…cÓŽí.{›5ü‘ĄksŮŽCČ,sÜdäCŘŘÜ r€<dsÜ܇ä!—Üps|s­Ş$¦sáŢŞƒ4ÓW'×ÜŇJĐ#•!m”H‡Ťmç¶SwŕYw$–ąw/ecŰąwđYwą‰wgJ)’SgtÉÉt(ÉÉ4D}ÚČPjR`h’‰'ˆ»ID g¤K4yt #¨´ÜĽń##ށ÷Đz‹“#čt^<@ětđt*HT";K>Ç^i uˇÖ,uáŔęÖ0.Sâd++k+4u®¶Ä% ÉĎçpâ7FˇKyŕ$ŕ–ě L—JeT|ý
X]!Ćpů¦mäE…c<ËA¶ !ŞúŹäňZw( j‹Ŕlčg0° €yĽńE¬ ŮŇäk ۈń»©{° ¶ĄÝ3é@ËR˝éw RăĺĄ
čK*•Ś•R ±(±éô Ą!8›x­9 F-$l†B{ÄűČő˜µJ@Hů¬´ń»UrĂŤ†řˇŕ›¤p€ÖBˇ Ą7iuËTŢ´+˙&ƒ[zÓ(ˇqFĂëJ É!4Đ˝…ŐÖÝĄŁ <?L˜ŮÂuTﶭ¶SNhőj@.ÜŃří{m4ĹŢĘ;™黸vq= ˝ˇ#ôމ҉űĹh?fe’bLPĚĄűI„7¦hÁ-¸ƒˆDeLüA BC`÷=ëhŻb7ĆŕTč"(~+śąHŔˆVXČi6JVř—‰ÉÁéˆß)J‹€ĺţ‰ŢN¨Oü=‹€Ě%®†Ś(ŰSëłS‹u;ĂŚŔ÷DµëTZ)x\É2K`t´a[&O>̶KŔłqOi@+’r‹%Ë®/ BW¬đţšAţr
­ěţ ¬\—[7­čGâş*­ŻíŹÓZ#¦­j‹ ·Ü´vě‹ÔĽm“K\­!»ŞDČ@ŕwvU kwě©´@ „%Ľ•Ż!+©RĘąK c˝Óă6(ď%"Ľř1p
ö˝ˇ uß»ú
íÍčnp3QG@şÁÁ; @™Eü@ŕîą@/‰±âáäøpŢJ•'ŠëhŠ ‡c6ţ_#5^ŕ˙Ąšt™y¬,đ ve' ±p{;O…ř©+=4t87ŚRßv «®ßƒßß9ź˝A^Ň4Š
”FěýŠÜ@ˆeëůÝ« s…ýŢŕ¸t@ŘĐ čj`׊ŁŤŕ†¦T#Q ¨A<¸ó^łdl °@n;˝•ŘôâžséixĐRşĚu˛X”B§` i{"˜5hDv-ô°m[‘K'íŽű™ľŚóH$u%M/0!‰ńTi–&Ňđn°§‹–´w úÂělÔV—#djčę#)/mr>‡ uÉصY§Ŕ[–H­€xřŰ/ťłb‹÷ |×}bÔŤ ƒá…É€Ő˛÷µŰ›ŰZ](ô±—ŰRgK˛˘PvŰ`ľŰp;ˆ<ρ˝ µHfu7ĆĄ‚ ف%PČ%ĆĹz0XbÉXÓ‹J(xł^I`V9űëuÎďŮ’LpÜ9‚µ#9hŹ9+V ,‘ß˙·ë yůQë
ë×ëŐëÂcúÓëŃëĎë v ¦ŤwJ÷+\¨ĐŕŠP}•/J&ૃľÄ {
„Ň«§‰Ż çɧ:F^ţ ÖŚ÷#—¶5‡żšŔ
ÂYr0Ľ ŻŔ•iH‹](M+3ňŮŞÇëQK†my¬!rQ{•CAÖą‰”m.• …7’Nčâ_¦
«ŐAţ‰Ánlc±Ń[–o—pKä "`}:!G á$ŕ+굲”po{"::-ű2m7‘©¶#Ţë-Ť‰‚
}Ž Ăđŕűb´gmPŮ›8ˇHyŹë"BĽ<´3ČD˜B§ Ŕ7¨»m}wR­ch4ÇŁOŕ†C6MtOnˆ0”Ž¤NáĎŤf-hiřŇh•›%†Ť˝ăB;ë¨ÍÁ4@°`(uüżî1Ž·"N ţÁ‡ëĂë fµ]ë±ëŻ*Ł‰ˇ—8?W ů!ŘfŘ1aŢű7ô ś6HŘÜ>Ü:íCëĆÜP4 ńá !Ą‹ ł&¬uz0~Y6Ňą÷ńbˇďň}Đč‚s´}
ř~ë"'­Ŕ54ń‹CŘ’ŹŻ÷ Üđ °SÚ¬+QÔvײ`Íž Z!+\JxŢřv–€
äůýÂPt
t6Jűt VňىI'”ÜqT··JĚű‡ŇµJľßĽpkäřDŤ›Ćľ¸CMbŠSŹLË Ňgśî†Źgt7TÜ|Ä
tT˙–·7ô}?Ƈ«hˆv&“\ čC(<ƒÝhĽv•™ďBńIkg6ö‰ŔCűXEX ´ŠhôEQ\ď™=™‡XAf‰—¦ A›ÇK†řŻ–=Ę‘‘ěôwěî10™ĹDDâëiŔ„©7Ľ1ö
ĺhH5¤MÁ‰ĎlEĆ*A3a°“Ă î5=B ©GĆ`^R:A#xŕ.ô5(ËÁ÷-.„ŁTVÇ=߈ 1’wĐ=Ä!dđäĽ>CO˜É©Ô.jĐ:+<;'•Üůů5PŁ!nÔѢ…¸—3h=Î<×ń.„‹Égź$Î3;$ň”.•oÜŹMNŚwž+yđđFhśa×…áYKë×)dۈQ!ąđt`‰%›ńČçU׋ w…Đ3Üw N8·éi®Ż¸@°´4k¸+ŮA!dŔí\.í
ÄČĚGtBLľ[Ŕ|KŤöN €?ÜɸÜŕť
Ę·Ź ĽÖ˙•aëV;—ŕg,‘u
Îăëí$ţľ'h˝Ýuh„ƒ™M=‹aoż—ëŇIt ̧&÷.¸Ů BŃBgÓ:¬őŕâ–ŠŹZ´,+á,Ž[S Q%:Şw­
łô¤±nƒřI!Oď$ŕ)ĺđÖňba8x§¤/bŚ]µ&ń§ŇőKěQŃ4PcMH˝,g`'ƒĽüYôp´äüşT~0v¦•üuś;MôŤ­#$Ł9oěMĄ¬wT@ěôřo”v7S4jNYqI
Ä1@ÍD éÓúiâÜÜI$âá‰ÝÄĽśSAW©Řće踊 *ć^Ě=9%đ‹ÜśBĄ0y-XzD¨ˇ)Šx¶§aÎv0–ŹSÂjýV@çŚ2ĺ s>xűđ!zĹ #ë%«Ă‹A†¤ @Z¬¬wśčpĄRmČĎw› ¸ źH+ÁÂŤčWmÂvŃ`3p?ˇ…±í#kŤu'˜¦ofýkMđÇɸ­äQh`xĚ°o\ȧja NG.äL« ńĚú6|RiÍ° ëôŤQ Ă @ąpíZŕô˙dľQj‰»–vgßq‹bŔgjjr&@ŠS° ČF€„DĄ‘̐‚%F‡HqUŽLµÇ»4Ţ̈WW‚M9‚%Ř;éH#d/)‹;:aâ4›-¨”¬*ݭΡBţuah°Ĺ…PuşA¨ź‰Re‡D°;ď®;§Tno ĹŘÜě%‡lĹ´9ČQÉŕyɁŕîµ yÁĘíPPĹ48yµrą¸¤jĄC&H^<yE'Ş»K¤™•?Ö]”¤RĺŤ]Q;fE\Ówj!;)ČVFę™\ ÔŃE Ć hŚĂxČ Č  R䂆#]¬ç>Č< P]$M$ƦVé$¶ĚÔĂ ÁC@$P] 2UôUé˜2$(ČK(z“L2J(@䐡’z(,C%/9,hz,I‚ä$Śz%‡2,00śd¨ä¸z0Řz˜ •0'’INHD¦Ä/_ŻB3Ś2ăđ{JĹ‹A' ÄCGń] PČe%ť{OÝŤőÇ܃ŔX€± O ›M7jŹaś‘-ŔHÂ6^™ aźú$ŕ ¬µV¬ÍMR(á Ä ˙NAćĚÉľ©ÍEP·&X{x®‡Äb 1~R’U„ ěěŢh Šőˆëc]ĆY›Ţ¸s÷ą$wé2™;ƒú1űźĂÚeĚN,!řxuh(e([ś¤,ěŃ&©Ŕ}żhěŔ<C}eÚŇ©ŤŔ§I6h±Y›g;}aŹLxĐŠ„{ĹA‘đ€Ř«ttË9łář~bHŕú[śĄBďĹ-`*"¸H\!‚)”ÇAî ĹÁmŠÇ …é
ÎĘĘ…ýŤęŤţ<˙łQ%ă
X{­ÔĆhx{•EfáĂtˇDxD4Ú‚ŚKĚ?!5±€k·÷&fŃěˆŰ"éaqqŘ}Ű%o$Ĺňšivílĺ:Ç”Ó5ú 5h ¤ ¬n
‰Ł¸&[“Âś‹/1BŚƤ1„0pFúM
9Ľ§äb |ÇsŽŽťGÁ9X¶Ä۸Ž k;+O˝ 9`5Đt›x"§hɡ{ÉöĆäś0ˆĚ+Ń>[×l+Y_cÔ&kÍNW·Ňr0Źƒ&Ý˝ f=błtďIĄĹĹ!ë hÜkŕč†1*`ÓĂ(ć&dŠŻ\Ź'ĚSżƒ°ěJEŻđżô»ż÷.ŔGhǃ– ók…ť‘î<[ÇŔ߬„›‰© ÚÍ /MgM
|‚v´TóNµ«Uµa*[uü|‚Eۢ‡_y°‡ë2bĘü Ë@â@"1őńhÝÉ]Šëś ĂćĎ ťĄ˛Xß
ř Ë&°äúV< !…ÄiŰ |ą46í ôěU„»€˙ !{
ˆ_,x‹‘.ŕĐVx°ăýě0Ţc^<|lʁMĺ‰ |u6Çą÷p ““xď8 6ĹźżňŔ8lß
^Ś|`B #´ÝQďőŇcI™Ć~ŤśÝC¨/RČ‚

1'÷`=Q~UfÉrpA<ˇ÷Rŕ
9‚ĹRSN‡GÁ*SuO:kđńV átű }Q…âďeĎÇh}źĚŃ°ák
SŢČ+<}.BNÉŤT}L%SČKd}tů´€H™ç(Ëĺ2rôôđđą\.—ěěääŘŰ„šŔ҈+郈ÜOÄŐ´„}íő/ČLíŕÓ;ř±Ր‘íÎŇ™JÔŞ)Ăč0덐‘‰
Üđ‰§çíc ôŘCFŕŕؐĘÜ}ÜÜĺéą“Ř$ˇ ô-HHĺô}äSWÁ*Sßßj ŕ*˘Çü0Ć_|Y~JĆ‹…*‚ˇ ŢŇS 4r~źb„+â$poŢ•p«µlµíďQ¸"ƒ9ę$Ćf!$}đ$ý±Ü(j
%Ş:łµßóďč5Č€T~Óöh0~ôÜ@aČôr SJ.@\~!T2rt~Ü ČEČ„ë
r¤]RWIé ˜HéŔtĆf›q»«ˇxŕ¦1ÔÄÇȡߏ⎠ł˛7‡2]âć>ƒ˝®/jdK)Íł›m>üţŤáMĽëČh 0Ť@©‡Xđ–ńđZrŠC¬)…WĂ
Ĺ›IFZ°řĂ≣ŃÖ›h°~Ű ÜWg Đ˝¶“AČéŽ4k'çµjŢ}­Ą(í—p˧ô„M-T'ž7€ăeűĆVüY cƒů;€°OˇđTÁb”Äš…uQďMŤUó ¸R(O ηZ\Š@Đ3č"Źz“öü+‡ƒ8Ü^™ÓÚV‘Š`Sôďś/ÖźM(YH] ×ü†^ĹŘ6RűPu/· Ka‹Oč&X>Ľ›hĚŕM|BëFŠU˜ě§đ4{íŤÉÁ'ÜŐ˙‰ä(.°#ŐŤ4­čcÉĺüg‹óJŕH8‘ąyÔ” xÇ5!ž…ß>,TX†µćînĺ˝3˙tBĹ?"•ÂńjC‹"‘뵑Q ä2řAx-¤:Řż+Á
:nEëqŤJ-ÇÁŠ@ ď1ÁUÜ+ý×ďô$Ł3˙9íÄGź>‚(/Ô4Ôąń«+. 4°p-QÍĂhbĹřďí’‘«ôřŇőh{¸9—6n•ó¸.˝ˇđ1!»%]ŐĹíßÚx°áf[
¨@of;`Ň~÷aáŢ
©ČÁn”´şMü7·cű¦űˇ-॰
5y`ńE˜ăÇąµĺ,Ű}®ăťŽđÔ@3Ďă>M
Úô±c†~Q.V[ôíŢvŕ›ëşwWŁu0€+ X
¶Eí =€`Řšą”m6í=‚á Ĺ—$4d¶U¸úd!{Ś 4XiSŢĹ4Š |/ÉTPX¸uŚˆ ]™@aˇmNŁ­Ša·&ŘĂţ9ŤSĽ#ăĆX„áä ä°ë¨€"w Tض(\˘uˇ[¨ rbčLůOĽ€wűjKŤ…0Ëěk( €¶ë:Ź5€3¤Px ŕŢQ„Xޘh(
ěN3xv+ÓÔŃe¬ë.§ u©đ1Ňĺ‰|Ý3‹Đ^fDÜ´pë î4Ŕő#pJ!î‹Ťܸn»Ż']Řh6ˇÄ4ŢźÝOl‹
ČŤpf‹ĚfíîÓšt ΀vŕ`L\=
{x÷ˆ¤ŰďăhĐ߇v¸'‹†6Ž­MoçU6ľŤ}P{XÜŚŔ r FW«a¸±Ü+=
vďř2(••„›Ë€Á
%·‹“ ·\ެ d Ú]ÂmąŞdnůFOT
ŕ Wů”PP=óÎá9ÚFď6Éł*·4dL Nś;ű˝·Ť‚P5u>0x–xhŕŰMˆď[3x™Č‰3>µŚ\ë|̵…ÖPMđHw÷Ţň»HvPĺr5®˝•€dŮ+6Ľîńk
QQ{[:ĺ5|ĐÜi+ȶť9űZAQqťtiđ3«)Qw9 k)‰ŔĹ×ĹÇ‘ƒŕâÁ©éq`Ŕb_Áă­pSy”ďcml$#7w‡ŽŐŠ GyjqżĄ‰HĄŐ¸¤/+=úŤäÓ\0ôä~ń$Č…; Ž=nË@ Ýç“ä hđ`Ľ KŁ˝ź„@˜gŰYsxąÓ)¶V(Ť-µFĆ"-ă’‘8%^&ŻĄ÷ ěôÝí˝›Ąšá•á
łôAħß©
­5ěÖnÂĺ[xKÁ&é%QčÁ´‚GUëĺPšÝÓ§A*_(ül;ş g7Mł†‘Ű‚IůT]ř8Fc±ßjUĄCm«/÷4”KƒR4 ¸+-+÷8ĚŽĆtbCÔů8»ˇńośf Î{eä¤3Ŕ·¬ÂDMhTÝÄ;mGhd˜aW°]ç2elÝmě<|—Ç„1”ňĽ%˜śRą’ʨ¸ÄÔr…<ŕě–|Ż¤ü€0€˘íźWvƒř"u/MO@™áY5ĆD®Ż+ŰđCmă,Ú lď?1.  wůÔ‚
CäI©€ß}ě4ĹӐ0,bŕ-FŕT){‘˜&[X©ôŠĄď<cěáëZŘNcŰGĄ·Ąd!Tť°ş;Fh\0§ °‚Í=Hhh[ăw÷‚+XťwťhtcŃqHƒwQ[¨€ŘvÚP·uâ„mąw6X6ßąßhcžbÍŇěíŇŮjhAr.­ąž˝¤·U嘀čŐŤKčsĄş•R·Ŕ˘ŇYJ©îx€xĐĺ˛ßpGĆ›áü jn0}
ƒ§oq KÉ–űt'.#ůé°ÖřCÂË,ĹÚë&aďO6jÍɃ­Ń$Ěłw͘śŞĺ—–>Äyµ§ü,Kč»a)Y#H)X ›R°¶ Ë܃SEO»f,ˆ\˙<N­`°iqqÖpăEn·d’C•a¤€+ůPá#•hřF@ŠuŹ=j4<w ‹±ŻŔejQślBKą=$p« ťŃ˝h”4ŃV}ŮČĆĂu9ŽµËĆ9«ţó€á‰ťrNh¬l´óČ€/ćě–bT>J ŢČ
7€(Ł•!Âそć3ä`H­ȈhÂ:űÁkj\[šBŔ[Ú|ÄhGÜžC®¶ŤŘ»Ł_ľD)ÝŹ lďŢËŞc«tx
™+°EŘŔ®ťísÄ C…ßhpI‡ŕ;üÉ°±`KAˆíĽë9´ äsbÓ (PĐ…¦…Ç•fë¦WĺX” Clł[ ¤Pł'ÝĹ(Ľ8yH"[»µoŰÉXÎlc\— Śő]Á*áđéy/Ĺ&%S%+vhăčQ@!IV
a
›cá;`ݵě˛hLŁ +thTŐíŕŽ„;4`1Đ1>ˇ÷z„"]=@#PDäht†ƒ‘XXăŮA.•ĐaŔ}4Ň=“mđs
6ÜÁmmI:H;.lŁ”W«–+ŤŇťŰMµ0čńhp{D©ošđ%&!;ś ×é—]´Ćp?˜¸LŢľ ˜ sŠĹŞĄ¸Đí°h|‹VňCôĹüt¬Yúk®]ř˜n«4’I§äŁ&8JËa/Ö`îçëx yBK¸;¨§EH#!Ë"ÓÁ
O8ý‚ÂÜbŮĄ‘PőĚăë"ŞR_\ Ş´6đ9±*óńcňś Y$ô2@Ô¨ţ’1śŤ¤čž:Wdh°ŃŁ™;î}›őË)9€ÜřäúŠ-r5›Ť\aŃ›«ItGŠ›żŞşąE›/›úš 9šŔ7µ»˛Ä8Ą«ßŃG†XD˝/Ľđˆ–dđB•;q"@ÜĐůúeŕeľd§yvŢ=4ěÂ[sh'ý9ńܶm­33#IWď'bˆ^ zf
ŚŤĚ#Ž÷Sd;ĘMu'ăĂ<,'O2IÝ·Ş}hÔ”I­°Ö
ÉÄ[—Vó[f‹QRŻúÇyč$NJ4h´4`[b)KĄŤŔ{ +ĄnÚA*hôÉ G`ąmäč-5 A'µ!§JŰ …±uë~>Ö|M,{
VX7ëgóZ%đëLĎ+Ÿń|Ď9ƶI€ĺPŔ řÇ#@ ƒ ˝ü& Uq~ż1§± ůôťŞ¸<!Äž!IąB@ąd5¬‡@Â÷MřrNŃâźôQčőôëj,Äý—ńŽżsďu˜ńhüőđôů¸4č˝ü[#1bÜim±¸ńvEˇi«Ć
‚˙×ĆzŐz˙|PŻQčę4K§Ť`Cô2kiÉ9ĄĹ°0ˇ&ŻđsŹŘaUKAóđSäHđ…T$ČÝ(¬ńŔJ)}·Míj Sc K)×Ge}ŕ”Ż!hřŞŤw°Ç q‰ő·‘ÂcgŚ‚đÉĆ_ĚˆÁ‘±}>5ážń´ú\[Ď~°0ałËhÇ ěbĆAnPe:`C 
ÜĆŔŃKUrr ňŞażőFgéÁ0)YĆ„M]NC ĆőÝňhX« ‚ůˆÁö«ô«h‚ĢL+]ť5L$ök÷ŘDťX•–K7Cƒ¸˙¤ . Oře¬‰›Ť‰KŸä7¬'I{ů0Ŕ!Z^8]Ć˙8tÄ„^‡
€!q/ \kÜŔŇ@üŹ¤PPXC™šŘ¸}/á ás5ëDMl°‰ą‘sŔńgŠ ío…ë
˙ŁRćR·o;VŇ`5ÉéO&é6
k—#W‘8üsľ§XHÁA\‘Gš´(„
KW ŹYHyÓřŻŮP(2iŮ÷Ë!JŁ~čën‘´nn*5ß3˝!'é˙tÇ’ÔđČK—lˉm»7IBO$NÓ{Rŕ#ŢĽ„€¬ď}ÜgM8™Ť;•ś…q1ł¤Q ¬Yď1˛Ť{)ŰT\Řrŕ—á`é &NAťŠ¤!/ŕ˘Đ=ŤĐ!›„ôuDď)‹Ôąˇ!/Ďů×ěČĐ—ůÓµŚÓ mŐ<C˙{ć”Yr·S{>B
ԃ¸ %Ja5,!߶J5§`űČëd ë_“2˱›“°í®ü—ý` ^§ÝL°cqśú€ŁqŽ‹cŚŁWQ'šËÇŁ…ŕŔNR9@ŤQu¤Z)ç›; ®®˙"ą?kÉ•ŠřnMot!-ĺŻqěőü˝ăl×ĐĄ9S ČĂC Ň®ł°˙cđýwWtĹQť¦ZĹŤ[
¬¬wäe+ƒ
GVKI1O×…rą•Łíá®Çâ¨ő_>[Wă6Z(ˇ hpó× ŇÖëwH7±ö%ą©2Ţ0÷Š
D€% Hra˘äĂĽýuƒů"tCj/3pÝD›Řg˝ )ń†ňxĎ@¶Ł_µ›O
ě—”XŁrßt'RlŤ+wÚ˝˛gKűćú$•ƒR(Š
ˆŚi^Ŕł×[ÚF
ü륀0ş wpG€
m8ÎR¸)ĂKÎ A/ä&óx °F2ß +,ÍË©î-Ć’ÉŽb¸°ŠiĄO(ě¶?OÂŞđÖĺ]M8ÄVhIýiŔW\×fP?ăHF.ôô˙lÖ°ŕW<W{!€»Qt«C‚ÄX¶ =Çy齳ťs-hŤÝǶ{výy(&ç'8ÔŽ-8G'Hwŕ…€!x{B_+tK/˜0áV6
)&ŽoąĄűťţhČ–+UXˆ¬))Ő <𸂞C51EˆL)vu5‰5^4­ÓĄBŞÍű Ń€w˜ÁÚşŐŚć˙śuČ sy’˜´BŇf;‰š ĄEq
µÂť uÂ7$Ł%'𔱹J×’Ş5s.ˆL|ne˘ đ!đëáŮÄ/ôřn-Ą{Çü(uôdô‹÷gř%ł"şMâ­†ľ-öřëÇĹu!]Ć.cĚA˜,ŇĘčlaiÄケ p/j@3ŕ+˙č ě!$ĆHăŢ}DŞ
ąŘ<˜ś– C
é 8‡Wŕ˛c
…;}§Ť«˜ƒ†Z˝•šň«5 JpŕéËđť –ŕńÖżŇ4g÷ƒÜ&0k'ô˝ŃËxkr, jđŤ8M˘qAč™@^‚ZO›@`čŻ| ĆÔŕQôV 8ŘCIř-’nÚ›ô[ĄěúiC^7ÜEX!ń%iŻóaČmiń ě#$Q8
ÉĆĂ {VęŔ ë˙ŇĚr +†@÷üŮ1 #í*鸢§ĎB¨Ŕ Ż ţď¶"N§NMo×üŐßgĄđĎTV';đuhŃ:¶ŐÇ…Ź†Xƚۈ?řü0.*’»ƒú#u2ča« c Öi™Ś§1i•ZÁ±Ľ ›P;pƒ4Űôc:ŇŰMXß\?uÓWŔ×K«zGż†}=áSn
ä‡@Ťqau«°`µ_ Ł^˘4a‹j‡ ¸˝ ú ʐj
ęř ż CçŐŮühŘZĂŘmëŔvcUzi1_MţX‘ÍÁ{¤—^žůăx¶3ôăÓ˝`ěFôăŞDdŕU5Ĺ€ţĆI|Kťř*şľ}¨:Ç t*ëh«ę
­a8
ŻWH<­ÎŽ„
WĆB^ËĄH^Ű·CÇxá#ű

vi0j‡üj9Uŕ]k1“W :®xDG‘‹ç
ë“W'éťÚ Äř>:…$ş’k2;GF#LÄuőŤëI­Ôí +0»§ü÷ĆyÚz,â2,ü©JB‰cü9ˇv:őuP‹˙ ^c‡y†ÂXôba“Á(2ăű CžjI†1%ů=čÁXlÚ˝zě?ýeĆŠM¨ëŠUˆ®F•CšÜěđôç `wžG^X'Ľ“ëT;'ű;Đt/ÍŐ‚–Jěđ­{m·„™ë±umϤs˝ŚĘuٸqźĂ#]Ŕŕąq…ěë×Ë@‹Mzqý·ëSÖ ľ€ëMĄcä»E –TĄ'†řÉQ(`đŞF3owľÎ®;ˆ8 ř:57^¬sřkqŔ˛­ÇŽÄVÜ=µ:»µ|FYř|>ł.u>Î=@4żňĆ_`Ëő._ąZBăéŢ´5‡4@f Ł ‘=%@ŚßÚ˝ ç>hXŢŮlôĹ
Ť ‰BżE

á%Ą_Ý*m"u Ĺ(
!ëŕ[äÁiW
ăCnR§•Kôřŕu9`Wäŕ–1ŕŞ"ö»BşąT~Śęôý“řŕÖ‰Kˆ­ŽĎîm7,~oSH˙Tł.tAŽäş"Ţ8ç/ ˛'Ďé;t&t5 (Ü­Xbbu#Aâ€ůÄgŹI«Ć@˙ ˜é
ľoK$‹é Oęb!?Ś&¶ń„Ďť¦omŔťĂëPé©iěEčŘ?gŽčż0 i"śZRĺhů1pi.ŕô9ô6$hŚă'_©1 ş©gjف5+3ŕ"ŮřPP©ät¬ârÍž—ÓO«h„s Ťô /vúUĆEÔ üěŰÄÔdT><<ôÔ.ÍCˆĘÔ"Ô“Ůž‚t!ś,ĽŕUG
?Ľő !ČCĄÁđť «O©pƒřCÖ…S¤D •.Ôh‘9vu¤Ť Ź'vxüĄ3ď‹Ä
yI+ç›ZwáśŔ¤Lđž!đ¸!qrIĚcŮ%đO–“žÁŰN:™“˝čžˇ
·Ž•0[4p°›u˝˛Ó†})~a@iB˙k`Ž5Řůź;ĆěŃóZŹĺG·‘)„\0éźĆ(›p0ƒ‡ Ť`Írƒ4lĹmđOcŔ)Ťć\UŔµ…u(LsLŹgnTĄ .†ęńC"܇†{TQ„Ŕg뙑uSBŰ•8‹ *\\‹÷ý*pB˝§Ń T Ĺyͨ:‚Ż»ál˜F·€Q•
§˘ŕŘđTzôÚAÂ#ŘNy”ŤŮ7đx—|y|# E0y6sżtë'|ۆCˇú°2J?ßăf_j
śú÷ŤM˜Q‡lbÁčí/‹8kă€NpĹmb§Bit !Cl cx¦$2„|ěB€aPj C„‰ŕ‚>Z]˙Ý—ĂôB5K©d@ŽUüü&d@üüüzg@üłŚť`4ź3î!O„
1r\ôô× ‡'+=H¬ŐŐ,óˆ4*Ôó WÂľ˘˝Wž¬IČ÷
Yb
1b|/A–1±.§há!CčMżdDĂ;;Ť˝™Ű¤#ÍłP’7Ɉ‰OXř?ŇH!MAP¨"G3TFäĹÇÚ¸_W bb4á0CűEč˛č3O!>"t6ęč-/Ś<{ř,t$5;t-Asâ[<4/„5!ăđ8ňăĆ ŻđuŤ ť O3Ă?ĄC %€/,

“đ9u-ŹQ+
éĆH›71o·ľ¨ y“†~ÄJ“슘÷­-M#g_s<¶ĐƒěěëtŞŇ!׈Žšh˘äÓý%@`Č9űüÓ)đPjřŚ‰’nÍi‰”ď. °Qă9çIÚ O,h^¬< I$ĆńµfęŠˆ’=l(PîFÇi° Ä#ŤPóµ ah AhŞK-Aű#üB€‡ąđµ0#Yö93ÎM3ൄÇÜËĆČ!ŁtŤĄŘ8
ďş AË—rit ž”Ý0—ĺűF:]”tŘŮŘ
`C¸ ==9¨eíÜ{b~ -¤'Áéá}CŮÍi´•pŰ·¬*¶8[`ĄĄ;”·đc\ Ću Ý %Gřˇ¤‚wńtP
¨Ť üŘ%Jŕ6uw†
Ť‘ đŢ4Ť‰Ńp‹Xz¬‚sŹŔełaY׉%°kwhý%Üđ´ wc[Ńb©ŔYŐ Dz«ƒc©•!R±‡:{ÄŇP±tˆ$ţvÜ” !Ă뿋۱ČřźPS'T–PŇŠ °‡ëS‚ÍŐ=«;©ĂĹqĄ<Ü(ŕ@Á:ŹĽ~a`4uhŔ _h‹Ń38<IA^ˇôŃ]X%%S[oňÓ6`˙ľak‡x˜î&J‹?UČ‘˝" ďUXţű1Ž°@€k,ˆ
ĽÝ–…ů?ß«]ŕAë&ŹOüI!° ŐíhÄř÷âű}u-hČ‚#ˇŔ›đ!±# ĚcxDH±#c1ë
Óo ?Ž˜ë˜ëîIC.yĐÔL÷ŤÇ ]l!y–” 5¦EŁ]Ź5ŐËjZ1Ó“Řé“ż—˘SŢCY‰hܘRŹcu$M EoGę č}-nY‡„ş´é—ŹNiĂ…3-üú[˙â5pK L’8±»XYÝlw†ěX©Pť #pÇ-ŤËYPׂÁhŕ°ăkŐW‚?őBş”ƒ•Ţä·+±×ĺUZń•†OW« kăSÇąäy«üčě„<H.˝Ç­Žm5«4«¶DČ đˆhô+`ˇ:«†W)ž‰
ÉŻÝ;}hřâ'+Y;P•
Śp‡‡hrm;‘śƒP Ć•c0uIŻ–ƒ ząż‰ł ¶h G8 ć–iG Sc \Ń•-ץ…ƒxW­tŔ‚ą ±6­ˇuéť]Łň@!™'-ä]avţa áŚJ±¬‰â° ľ>
±H.íEŹë)T…řđ]Xl í•h-ځípŹÉe2u}K_›×µÁ
}ˇ 6•!.
ń Ś
é/
j*Vu}űg"J~tô T^BÇh$ ¸ÂĂ`ťsJH…ĄDů+LŢâ7ě𢉌‹éÂčËčQDŚâvŐÇ;TÜiXĂ"ťkaQˇ „Ü°+Ĺqô·Av%í hENř ŐĽzş°hô(qč" ©UźZ«Ŕ©!Äşot9%ŤÇáěŢ ¤`Ě•!É»Ś@ř{ľ¤#°`đ"Ŕ‰)ĄčźŁ:Ľá!Í“AĽ¶vü;¤! #"Ł‚ ćśqÝb }ÓĚxˆ¸*#şřHýt~Ç”Än-[2ĽH2©m!G ő$ä“ř7 ü \O–\."ŇnsD
óőťw.LLŢËŢĄL ;
˝phĺŕµI4Šp%ź€*ĆCƒ>"1”j—ţđ>đU
`ĺB řô
*4-ű[7$N
ł•Ŕ„4ƒ –Ę'ˆŁ…t{rˇ–k'2C.ĚčÖ¶ZOŽŔ…Š =Š ÉwË$p“đµ'zŤšéh
…«Ďą3~‰P«äúb—Ú
nń®u`„ ©üČ8Î+ń=[ŐúYR»Q%)¸¨g¦đÁžäF1

…40®c)b „5^9 ö€ÔM=ń‚Ƨâ'-ŘŠUŘEËĹ€)( oŤZ>}ŞŘ鯛˙%-•&DĘěŘű˘u ę!ôŞi&¦ŽÓÔÔÜŮ‘é|e×VŹ>đÜuM‹˝–}PCŰB•†Ęűş%Fdŕ ÉŔ\:Ţ3Ő…SĎçQ;ŹVÍÔđÇ ĚĚ4Öyj”ÜĐ ĐTŽ>8¨©$v.Đ°¶Ř3áĆ
ŃÇc–c× âgřş•S• Z$ëVµ†µVŮ#sřsB¶KŠM:X¬]Í[1x»3{&AčĆS÷zŔtü'(­#‡rwQô}ô;%ÄW<Ť#Ňěƒh´¦{"WÓÄÖ€üżQđŹ,B0öěsí˛PÜÁŘŔvhƪ顡Ćűđ©·ŹČq÷±Ü9Z 2(ĂLvt–AOÄŘGÇĂ)˝ßuk]s
“Osü#
ŕŔ" aŻz±X+a ÖmxÝ?'lőVváNŚőQŃ· «4…Éz» ASĂŘ-¤ ÍÉ˝ŠŰo)śfęľ'ŞHÖSWlŚtÉmNAťĚEuG
‹r@ŤĘP0AOÚséş@%=ĐčG^ěł`h$ë+'6c`‚˙3…KűűIf
k¦a›ˇŇë?,2JO+%Ď©,ń,ƒřďÄHatZ-Ţúj ó^ťn cP«#Q:ű%…ďteáxźé_€RŮ’LƒüÖeŕ‰@ŹŔXÜ•Á:¬gÝ˙¬šÂă…rp)Ř×…„T˜’Wňüţüţ9Á9xżôd}H«`Áý}~ŚG?[p XáĂxµĆMÔ×ÍÂzşÇAăhhäs*ŤŇ«v0|[ĽQUńĽu
ë˙nOhď/äsˆ\V§."„”˜DX¶mťßůßP­;4ÂcRé‹‘ô&ŢË‹…Žtîť4Zm˘äXŞ“đhĐ(©2°m–Áú>ë
P]Ëh‹·Î!‰óB8!9‘Fž÷m•™Ŕ÷ĚąĽXp€eř:Ö0<jÉt=čý_…čŤhx3Đöčň‹ jňÚ4ąSh$Lňšlsm_ÖŠ'‡cˇÎ‡í
69‡Ş) ŠƒŤ ?uÝ„‰%9Ě»tÄ+ŘËÚşCvĄ4T\pĹ‹oPMÖ.¦CZĽś˛ I¤(w/‘áÖy€·÷L+…U|Lě> ČfohŚiXd$6-‡Ë ŁąíyƒUĐś >±-áçupL2őäH!ść—:˘‰UŕŮyŻ¶äĹCM:hÁ;¶Šžh”;8Ď÷Y±¸®D ­@ťď~ 0 Ďä4/Ĺ&5»™Wdf˘’“ ÇňŹ+éeI_h˜C&;ît1h¤*?‘ŽŁfĄ3K8a•ËĘ0HwťôÁLÇĐ“¸e1PA`şÜ’¸Ű´
°ĘY?'ńňĽ›kSOŐg“fd§;Ő–Ü]±N#pâr<¸­G^]J‡ßśhĘNŇ˝ĽÝ/Pu
‹&ďÍ, BŻS÷A‚ KŤ§Ť6¬` Ő‘µK‘ä÷ĚgVŚq9żˇű¤ßŔąA0d‹ŕ^„Ćşżő2 ƒ µű7q(˙ÄA6Đ_H—pŐ2E$XÍ„B
·n4®HGÁ ‹`h;dY©Ä4 ;@Ł”PhÎ'M!Ťc$Ó­šřKXgëł—‡Đ°›cn ‰‰#3źŻ0&¶K›%©Á˜ˆLa˙ ‚$†Ľř&ľ1.ĘüĚn©‹«Đ_L@Ň“ACt:eTJÚ‹9Ž/&cyp·›ř36)ŇsMžFÖ¦¬…ü !ĹÄ
ýÚôab(y8qIÂĐS‰îUÉ‹†1ś94±ą$9A®ŚA8/±*â“
ĺ4SVÓ[Đ·ÖAcT˙Á&íÚąMŤ#ý"M%ÍÓ4UE áU€~˜†ô8 ·Šˆ…hŮ
't•Đ|JŁjdČtâT„¬Ŕ™'a'; < €šŘß8oPhÔ9üm)ŢrŤƒW3ÔĆ`˛Đ)
Ą+đřС˙¤ä‹lč–xk !€ĚĆ5çB` ˝?Łc•x˛‰ň«¦aÉô…'…$C/Q§…°Ábg6n }÷ŮşţŻIĽ_K™ąS°ö#*÷ůRˆěŰŚ§ˆrkŹ+< H+"uĄ6fHC6숂‚‘˝É(¬ u-›„üBş@ sh<„żťěĎ÷hH„󐼄XFhŚ°§˛'LYK7™Čb„ƒ<'t‚x!ťäÁ¨A˜¬yÓŞ°(©1Ýkbś’ă$ôÁFü7BŞfŨ%Fř+9:ŽĄÖ".ű›b{\ëëʆĺ<˘
ěôq˜pÁ™7âO(ƒ{Ôxłn@-pQŮąH# uđĚŇ™S+Á¨·©UÂ1“Y˝‡M9iAZŔ:I3f
›´—iÝíĐË ęI˝ŘŢKý y)¶±OšD’ŰI … í­‚;—ă‘aeKkŻt”ţ—vG!Á˜
ś —–V;ž°ĺ}TŻá´ó«uĆÇmęŰ»ńjm”VŹDż°ů‚D,•}]´kir©/dŰEâ^ä
îŞ*€ŚY Ö†č‘gtt đ5'ľŹrŕČúÄ%Í
´˙,8źĚ”¤oăLk“· X–Ä'8‘đpjW7ÎBvuąˆ;ÔÁaČĽ]R6H8óą•-3Âô<Ż– ł…`ŇĐ =
V¸?řC‹=kŔ
OdßĹzÍ"ˇ=ĐO}“uŕ[ŚD]k#¤¤Ϭ~k
:Ů/6Wş^x˝˝PnłëLh„Av©~F-ů',ˆUĺ€PIĘÉiASx«F×y vA™ k,jË-˝uf¬Ŕ[•S‚ś„íČ!S18řű<ŘĐxüş)ĺ˜)™—|†5}ÜÜń 0 ¤ßWLŽ>ëä6+“Nƒ2ŕsŻ”6Ą@śa7˜ü)ÝŔ-7ţTęG7đŽ˙–&0D0GŠÇ•’sÝ[GĂłJ{°đ0ŤƒĘČX3ľI)h¨„ç ¬ŽSQŤ‡ˇP¸ )ÜťSin‘Eż¬b;›\Ń)¸dhÚs`¨AąŤMěî˝#Ą@ˆu_xD¶Ţ‡ž¦źšuŚ*;§r†v9$@â@†3^u×R±`µ1x}¬ÝĆŃĆ,ŠS˝Ě^fq;uEu;v7°\.íŨŤ••ÍÁJ›´©UE>4•Çҵâ;şAҘ¦H”ĺc, g—ŕ
Ű‚Ď}QX¨Ť3dˆŕ1űćKR;2±4ô”);(gh ČÍ3A,`‘oTwAzG’[1t&Q°„/•6‰ząâú hÂć
N˘zÔx;ÎątÚaŤŃŕ|"ćÄi®‹?p…>8› ä•tÁ;‹ëFĎđkZOv3R(ÂČHx€„Cu·Ł¬
 ¤1â±’ŚřS`%áDŃZĐVâOxű•řdEůfýˆE˙W$2CKČĄ…„”ôđţ40݃ŕ`ŕ ˇeż&Ţ`ŕĐżjgˆozŘ„D®ŘđWä0äŠ@ÓđS<XEđ$W ü€©VšëöJX«<|>Ý ÜůśíÜ <ô XjÜůě0ř
[lXŘĽ0ôĄ…r‚Ł "Đ9¬±š<9ŚBújx9«—«÷,Ü4n-‰ólÝJ>x,·רּ˘‹ő{C˝o‘·ąř«·tÚ]®$h¤8áÎ`·đ(ř˝ŹĆÂŤî ĆĂT\ tĘŹ*3Ł9˙ÎîżQjhśđ`R=C”ł]ŁÚ ¦Ó=ź&čěŽG$F Av ˝‡îÖĐČeZא•Rg,,áŢ) ':fĺ–Iž(fQ( R`ş"†oÚe\Ę`/QOp/<âh´Muł
şł gŤDln:#(A5
‚tWP>AE 54ց¦u›žďcXřmŤP¸[QSJôMŁą"ŐÁó‹Ŕ´rdKeÉ*ăçŁëďëí#ˇnXÓwí đG‘DJýý7V Ź}đŹńŹ%wĂ•…đ ±jŕÍ ů0Ľ¬|J[,WÍă€$ƒBC®JMsSččđ}ěčŕ¨ěÓčëÝ#˛4mE ‹ěSPđüQ«Â+ě[„B)¸/1ś!pkă•UđÇe¬,čACĽ Ö­>± ¸č 
ˆ=z,â‘IÔ|Ňś´×ÚF}ÇFâé@ˆń tlS¨Ş źÇ˙EŞ&ďěě}áĂCčUUÄ#qWi‹‚8Źg \#Ő´?e8»E8bźe‘€î~hCP¨)PďęldŞ5Sω šcÍ ††H$9ďöI,
Í#ĽŢiprCŢĚ:,x$Fżí$H,•Í?«iĽÍ}‹ă…
×ŕZhdetźÁ6x™hüůý†Ó}˘âP€Y/Ř6e–Y Y˝á ş5WEÖRĐQ<\ ôPą
ŘÁé
`é&ě}Č›RPŔíiG™Ţž,x\şĚÉó
M5eČlZKşŚČŕŃxĘ 1KYˇ‚L«%8
Úđ0¤m´ą—˛V‡úhĽ]ëĆ[`]Ř|&, ť˜]ĐęNcçTh]š]\´[Ňí}hÜ]čćđ†[˛«ô5 ‡h˛ˆµÎp b 5[šXÝqG[H_ ůHlŮ$‡¸Źb Wh`*`<p7Í ß˝ep°Č2Čü ăŢ€D\±JdhŤdÓđč ˆ§˛5pO†Űˆp"”őh@ˆIub*/řQZâ©ĹdÄF #âT^"-@oá_ď'Ďî@
eŞ ˜YÁ{9pĘĹmó÷F†nCcOŹQAƒ“ŕCČřđÄYśoF‰Ö ŕ@QCś»QM,YĘCaŞ847<‰yQňmě ;pť÷uÁŤ .€éÉÔ$X2Ůr9@‰ ‰"H©§@¦°Ŕë fÍ5™XĄ5=ZiˇĐ‰ŕ“ç×t#4M5Š$]KÉŠ 85D‰Ë$ OÂŤ–[“Ł›H|` ŚŠ"”đ
ńż,ýŘ`m˜Hƒ/Ŕ®»RSśý ¨Š¤Ňncíj4°Ě Ş°Ź~<‰k˙~đŐ:ł˙ÔŠánAWi6Ĺ°RSÖbők….ło#3d®©'Őj¶­* _;`5ěŮ€XÓ’‹ďµB@ˇßˇ6DVă—AMĐ]“ĺHŹ©ő<z´`7#M„—%·śŢĽ \7#ë-'„U"Ăë_R›‡Čˇdlb‹E(¬H-u¸îh$P˝,Č. ĽjĐľA—VX…M­ˇ”čuˆđ€/A©Ua!mZ)âg“ësŁ¦Á!žń: i–1Ž‹G‹Łw
:7ä§Bůlh×%lŹa
i#˛2‡÷émň ¨W06l=Üó«•x(čëU_Ľ ƒůóQ˙p-+ßwx e,iy€!¤Ŕt“ŻtAç{+'‰9´ěÖ–m‘9S‰#taßmbp$9«Ś“J
w덾ˇYĚ졑l¸‹öY…D$“šô‹zY9,Ýđ$\‘TFťń.5€l˘Ś#Ľđ¬d¨^@Ś1
~XťëXťBN%/PŚŚ 9JśÜ!˛
BĐ×ݨJ4úu¸Š Ă°óS*¬ů
É W$ŤČű¸î1V–üŚ™Dót(Ţ;IłţčŚ hě"ŤŃ0:wE!R'L•L'hëě#¦.ę°żPoćU·?f…(Ť^h2pfcgđŤMóß(·fÉ l ˝@‚3kÁj/˜ˆľ<z çłň|¦S¸AV2ˆóŚ ˝;;‰€˜ő ˆ• ÷0/nA2
b€ńÁýI-­±h`®§îĽtj–ŕ”ő
z;TŃ‹9;éý†b‹Ť`Ţĺ•G„¦˘gřě÷Pöü"Gnë/ŢĽŮ YÓwFUąj*Ň$•‚ŤSđV`„,3‹eď5đż‹)ż{v마ý>‡[……=+ô¸q ‡N«ÜĂTűd=&Ž·ˆ «g5Čb»Qs;›ô†µ ¬jhp‹đ€Ť¶Ťw×
ňśr9dŚCĐ ‚bŕŤ;=Jĺ děřÎqWČŽ8ţ jOÁhŽ=htŽsęX”YłÖ4’µ •=°W·„wQŰ
L\•ň.‰ĆÎwnÎl/”‡íZ`×/ Ź/¬Źß)^¸Ř/ŠŻČX2°ÄÜ-yC6ŇäŽôRđŇI^Éu]ľĘëXđŹE’ |$'ŹŹh$ŹÄoi4KËľ¨ě§‰đÖŐŇvÄV¶®„-6ä NY5:0č
ďěî»;˝ ww^˙$•–|›¸ŐtA˘x.Źě!+ ć8ŹëO~îá45P ťc4ĺ.5d±¤6ˇp5| |,Ř#ý1ožç¬ű6ą@f°’&„–’+śu…"-…MmKľ)6°cSó¬S
_JDN9P2NA˜§ßQv±íÄ]Őb?†Nj żďě_M>LJhë?äť×€°˛@ ¸$nÄ·{Uá c,ś#J$ŹˇČĂÎbPźŘÍjYg˘K=ëAŞˇ…20cńÔÜ/2 čôz@ş#•úřy*3üK^r $0<YĆ’LC…ť22RRŮ<¨ůC9Ń=h˜2HKM R©´"¨•RŇŔđ¶?PöF·ý{C%tđ{’đî9p1'–7“ýś4ŤtÄÚO8WŻŔĹÓgş =¶™v0áě<«hĐjšâÖaáž%ůô˘0äys)‰w© %çË+řőěĎ]Ű“6p\m˝©VAcw˜üł ‘y¸Dˇ6
v0$‘M×'4±„SPł`ąĄ«ýúó)>±ö
$kkCR÷âq†@= —:×ő[4Xr ‘!©t€5”| •ĚÔ’ ’0–´&8N€‡TÝU81ů
Ř­ Y(…vp®ňlďh ‡đLŔ˝/›Îî+ŇÝĂUhhšREąŚu«Ň· Ű.u‰8€¶5kÇ×Ú6lgË‰ˆ©ŕ µhxmżÝQo»Ń^G v8q
NpĎulŮÚń[ńí¦—ŠŤńѤń`Á‰uJÚ&ˇcCˆ–»Éę\ě䣌D âTëę* XĐŘŃźŁ~]~6îbŘ1OÜ
|7ľ«!ŤźPaśI.Ăፍ•ö-}>Ě““Áá;·s™ŤÉOżm°omáźQá°@*•éP _mMśŔ_ăXěII8]ő-8ž_ş3`ícŕrgĐş'pf·PsÝ]‹<j g·Ţźu`ü]â„“čĚ
ČLéHwB+Qî:ŕ(3©D6ěéNw „ $ŤŇÄ­%Ž?¶SiǁęW1Ľ×š7éO
H§`|8ž<—Tşŕk•R…ä+©Pč 5`/E‹Ţň_¦‹ ©P8š”›ă;¸!;4čHUµŢD´8”ŤQł1ŕ)[[©‡6H <˙ug+ËX”ćľ™pź»hl'éu+ŘŢ'ábPC
Ŕź”ń•˙–îKPÄĽ˝ ŕ#:ďlÓ”Ň]É
¬˜”Ü5ěČç0•H•Ś[ůJ*¤hč–ˇrŔş+<5x$•Ż¤€h¨° ‡!÷Ü–ÄŞ…d‰jŤnňŃZ°ú×xb
ÉŔBl—WŚ‹K»ű‘ kCw oá ż„LŔ€;ţż`ŞĂ.źŇř(žu!Wrđ8—|ŽS tÉDRw„şE64ďDc· Äaçý§˜5hA Pźl!áĽk†ĹlŔ„¬@ţDĘOU9qPĽéĽ•fčÎčű
N…„g*Ô‡×â[ßPPwők”3j/h,ă_Ś7ƒeŤy
Âm,˝Ę”••pq´BŕF$© t+K…P6Pn…¤"¤Ö…‡S
. Á0ËRŠ5Pn´î1X0Z%Q7´FB"#Ŕ‘Ű’©ˇť
\IĎŕTXٵ¨ZEąĄ2ŘE´Á)źlúA×iąĺ$Ęuś Ô95dÝj¶{×LťČšq¤ƒ ŕ–K»
uTÖ˛ÜS
ě:· Ł1)ďg¦ĎŇ60Ü, m­kGĺ˝hHuRËĚçkd … LރÂR‰•uP[‚r«˘ĂĹU°ŕ{%y!GĐą0-˜F…(f_ÚuB•ĘˆÇ.TÝĚ a$ÐHø,I˜Żh‘ŃEeö@@€¶<ˆ+„bÍO…-ĆÃv„âScQŚ`SqSa¸"ř×QS)xÁ!¤âPDo%÷B13QËQµV´ř%Äp=‹'ÍÁ˜­ş˘ P´uza ˘Ťäct=Ľ˙Ôv€éÉQ0QU@
ViâTëçëĺëă_ą˘E ‡jŢŕ$€ˇ5‰`C bv6Ҩ ŐpTa»dÜ@ ¦%/ah€0 O’şELQżR (ÖaĂyŢ[NßŔăilAؐC5ZR)"€6 ôá`‹ řĄoë ´'+8q‹x!~ŮܞҤw\u$ŤýCFSůMĽ`‡Ů‘ëmaś2ž%tk<"Ńóôh<JHˇŤŐJŤ ńĆ
bƒčQ-GC‚ŐYoX¤Ăg}ôĹ`,cnM„´1
7ˇPÂ%?‰Hňa“wôĂšCáŤĂĽ Â
Ń°ýŢ ·6ŽÖš¸ąˇĺ˝ťv$Ř ´a ş ‚3°[áĂRÔPn
¨¬/INµ´'< 2\Ň<&ő0€±+ěŢ:ŁqŁI'ř˝€Šë´«s|€lµôšČçôŐEĐÔÁG‡ÉiCBÉëŁs[7WŮ´ímčMjµ„Ć…óĄ'6 ?ţq‹u‘ŕ˙ÝĽˆ‘Jü¬`ÁĘsBm¬ŘáEeîp±(}!°\±n«}.ĺąř$ˇŽsźkÁy•ŽĄž#
—†ýým+ kĽ€ QÎÔâs˛t2%Ó č©)@ÁᔞO• <šs$Í > ”[HÝř‚”Ł °5Ŕ2"Âą…%ÂôtÔ´˘ +±­±WÄ+6$y˛nt§ł˘X„üół*Ş‹ďŠ
ˆAILE‚äřËśĆHU‡’I B‘äˆÝčc…K:ĽŕËdŘVˆ$±g["ícQË?Q¶ŠUĽËEńËO&˝ĹËĆpa,d/ßŢżZ'K3Ŕ×ŔĹ6EŠ9×…vZ,›×$W–.«Zťf*¤ű$—X×A'ŹŕKŤŹÂŞ<2(ŇŔ6Ś‹]ď żĆqT% ÝZpZ…é!§ EĄ;;ęčřa–°F¸ËD(ŮIÔiÔrK ”`qDńKë p"AŇaŔŻ› ˜’ UrT tćŠőˆÂµĐ¨˜HŤářxÄ®Ž^-‰%YĺýAťE|;˝ŹÖ.jŞáł ×– Öţ†áÚ…c ü ĺ/ct|<NEˆťž´A<ˇăĺě{Ŕ­˛ŕ `hĽ?ŢÔjgÄ?3šHýĆ@b&ÎLRj3‘ÇQČĂKđQň/#`XČŃňĄä"ąÄE2@Év€ôˆ^ Čü™KPĂ«wÓĄ<™€śHD™ ä ÉLy&Šä"€ˆŔ,S„W‚ż@UÚH‡­¸˜Śý=C*/ˇř%0řX…S ›tXş6GÁ^™‚hŔÁÉPČĎü°C%,šÁP ‚@ĎW»(ähš Á`8 ‡äMB^ƒ›X@#ÓvQȡW`›”Á „0ĺôĄđ|‚={ľŰb!#ŐżG‹…ÉzՁd"ż”—"{ŁŤl ©˜Ä¦VšńO ł§ ĹtŔa* dč R5¨ƒľ»U$ǁFŽŔĽ¤˝–Ţ$i…-pľnrÁqet# ‹4‡š÷8hĹ–-eˆ”2ĘÚei0ĐĆXe 1Č€\ 0© 2
My6-eZÎe1 #ň`Ĺe1 ¸ĺK§5đ j şł®ô ˆ0
Ć-k«ě4ˇ:Ô›Ą‡41í§ß 8 ű‚,hŘ×ĎÝ ¸‹›č#ŻĄ€QyéŕV}1żpx‰%ĹPhjƒÓĆ>gĺ-˛&â›:•’[5 uŘ@ă\/‚'i,TBŮnv •Ţ IÜ\µµu1QŻŮm+!×EWŘđ¬łwëÂcoSđĄW €Č+ Ř lĂ1zů4Řôě›9A`ĂŇŕ?čgaî.QŠËu&P˜hq ą‚6Xh;ď­c‡Ý- •…
ˁźßđh$†h¬ŰČ-ż. WĘ)ÖT9B¤łsÔĹG± ÜĆ…ôLŤ{/;‹Ď!—‰×I­ÇƒŔÝF /?)˙'
Na#ISMcĹÔe@4QL)÷:Ń*ČĄqƒĽŃ‰0)Ňô,ÇŇĚş˛©ÔětĆh°™B,ő.‚ŐŤOTŮăžlĎŚ ç˛qWHiř& Ý…:'ń˝% Ůh,nGô4!1"ĐR11Ę ˛Ôď‚ŰW‚Ś78J°nYąáťťČlŇ
ŇMa4î´$¶ů@ç$ß±†ä^Ű`W]ŮKę}d¬ş ˙^<µ„śHo"]SLD˙h6mĚ4K‰´é$©‚sĐŹ‡ş‚{me}Ó8MŇđ=ľ×–·ýlTůt7g1ťÂ)‹ŕČîŹĚQ9ĂBŤ‚ď°hś§ë+ƒŁ0 ¦2Í‹­ix3ó„pĎéŘׄtcI,ľ!‡m ůÄíPÚpÇůŤhDůŢ Öw
Çąň«›D˜ą5nMjô±#„-aT;
i0†mĹp0]A$“,í°ŕŐ†ÇEPÉ0Ç'7»0lĂඏ[\ÓX·SÁIÓ)é}I0j_T&94ŘÜ$]šŇŠ"äɱt‚šZ‰.ĚxC@§ÜÁçŔ*CQ‡×e Rěf ÷QÝë|¸ŁáZ@ÍüŔľHAżŚäw‘j¨P„{Öirű~4zférHäčěô,X#QđbŐŇ>ďzä&ĐPE+›
č7 atE‡…Ě
KÄ–kM dˇŤw¶˘ľIüc@ÇĚÎB\łKFoâ¶;1Ô:p+Ó·Ř*ú)h—ˇRgŃ°Ře»ÝÄß°s»Š¬hś« ąˇ#-{s[ián„lś˘®śI+Ůđƒ üĆĂŕbA^ n‚ŘA)>m<Żp Űt_h`´a>ż„§gVdŤ`¬]/aĹ6Ďi €µ7fäu3Eë44ůĹĺk
ᱼŁëűxH;‚ôčIc,QŘÓ1[ńl©{ Ć吝*$˜Z×â
v…#¶1ö%WíA.™jk8ŘŔĚ&–(”Ű’áH{hXgÇ0&p9Đ$GÇ«wŚ¬Ű)`wŚZŕuŘ-őniäÇErDîOärHŽłtťËÉäčŕRrBšŕŕ„ť †¶Ł%»@c ť°1$/VóÄ؃$W!řyQŰX„))Ő6–Ŕę/…±uÔ‚Ó®Ô>~犰*‰‚YV€FµŤ…ÂQÁZ—bvâ\Sh‘H,ü؉,ŽÚA4 Ëž¶n
!gý~$´MąFĄ5™ZÝ#”4n ă: ňJ:‰
nŐ®XĆŘÓěąŘƶĹyŢ´śAë8L$ď˙Ä6njÁ˝ŚËŰ8»[ż v%°[[.Ë9†’RöëŇI&-žSł_h$,µp¦V‰ ƒx«XĆOO—Ö´‹ë Ńť\CĂq_]<Şí9ąďë üZ uH¨¸ű77ƒ—%€7҃9ÉEZ}Đ:ph÷7t
Ńáć,ęĎk Öääup§ŻÁ(ž˝á'‹˜§lŰS× dž‹äőp.äu&%›Ö€c7/ց]–žűY0äW•ÄRk
¨k‰Č_k«YoeČž6{H‡)ŹÚ1:B#'ŽFĽ÷M7ˆH±t杀×M10Ć+ÇsHŠŮÂhˆ@‡«ó­vˇđĄˇÓ)Îä řŹg›ácř1Á”Ţ»“ńhu źp ź–Αhuž@á\!87Ü[BwiobBŻĆ=`ŕ…ˇ]Q÷‚ľ-Ý´‰Dlo]czÜáBŘţŢ}-Új=}¸/±A™jhp–>G-%µäđ·S ˙uƒŘj;<`ŤŤ”
‘‹`Ă>ÝIőŐ*µ–ý‚9u–‚
p FKă6‰Č βÖ˙ŕî„Znv%ŤŚ#q˛q |€kŰ-’ßëÁ}Çn‘ä5áŁÖ9´˛ë<—Đ"N łüŻˆ8ƒ•Q-Aq Ŕ¤Ň@ ŤŁgyââBăyěo€‚Фj¨uˇ†čy‡IzaŽiĐř›Ôń<n »¤Ń´ÄŤ9Iƒîë’2_Ě=ĐťŕJ×*÷č1ěü‹p°ŢÝ›I€-fܵ˜ř 7ë]B [)CX¤@da:·/(„FÂŮkby Ľ(Ş ˘ě·üË‚„¶o—ҮŠ)â)pĚů;Ď)#z!–Áuŕb )Ń˙lŔB¬‘;!•,c°Â•Z»j?Éf¸1(ú Ńi}Şů¶'*r`ü*w¨ZMĚđ7™dkôd62­ [
ŔÔŠTu%uş+O%Äú÷ActŔ\ëąă ŕ=E9U LG˛0i8ë.$üm0“ľDţ]Pćš÷@b!5R‡gB•níŇ[m©ŐIÂś•í»[颶5UÂÎŇNą J4,śµřO|)ˇT}}‚áL$9Sŕ§0e‰óśK })­´Ę‚§z^éL§°p#;Ú0Tá Łŕ7oĄ,jƒV»˜ą•Ąf3«÷3\˘<Wą Š×°Áľ4ƒ˝ĚľĄ´¨)हxßůţ&Š
ˆ…Ô
ŠŤ}JtPˆërö\vχ7Ă*đ)Ďđ]QĂ2<UBë|:‹Qüţ)ŠŚµŚ3ÇÖdEë»¨ë„˝M`ôĺ¸H%mő}-ť=5’‹šÄ˛BăĆUN]îMňśčl­#1äˆć¶©K©|4ˆz*ŠUČűđDDz“}¨©2őđýŕDx®ÄGA—ŤL¸ř AL-‰
aX˝Ýi(Á›ĄMćţ±{9%jÝâ:)Lh
Ő=ěyĹxŰ͐;Ŕ9m9;˘ś­0°ä zc!ě€Vě‡1ˇS<ą_^ŻĆÔS Љ†„¶k äű#Ą2ĐÄáCŚä” őťfIC@}[ačÜÔgŘý lÉDµü+S`č/·Ř)Ł TťQ•&Â(ńuI€ƒg®ĐB×ai˙ Á˘KăCMR·â9¤ĐŕÜ
‡*ěz‡‡}?¶PX™ŕš_Dpź„~_„
{'ŐŮËúDPŚř‹ŤłF8ƒ©jhĽpł)ááž1ŘŇ
4 2¤;([`˘‚)˛~í!ĹÝJ}ď]]8măEĐ„ŇɧˆpfĂš{˜
÷eá_g;Ń~˜Š33ńIčˆ~Ç>Ľě›4ăŮ/Zcˆ×)bI‹qhŐÇÉ(E¬‹m‰'ă…%5 %™š%Łç+‹2$ÄÁ\Šd\Čű<hě‰BÔ1ńž÷+T )˙§ŕBG…‘i*`ƒ±˝$Y =Ý7Ón0}äHsƒŔiKťjé4‡«ŔhĐ'hŹ4b»Ô.‡ká'· r˝ćK­€íšĘTÖ*ěź üÜ;ŠhŘ ş˜™"żtuJĺRŚŚ
%Čáňj”˜ŹhiâĂƒ=p(ýŤ2ź$ૣ˘ńć-9u…ű†C y¡,©€kz"©ěˇk §ěžŞŹü Ô‚Ü“Z
5C¨m„©x2Ň>Í©u@ŕR1fmôPsŮ `Y ¸±kĺ]Ý :žĄÎ w·°Ó7i)‚ 5p˜r28g_ž 23BoĂŠMÄ»ËR!ceŮsöqč*Au7NmN–8ş0ˆüÝ lŘďëKK™÷>Dźƒ“3 †Ű"3wĎ]MjˇeŃJÇ”M±€iSNŠňˆˆ
}ˆ”ia•ˆ!ţ@⏃ˇöŃ#ÄŻ¸ŤU E€ŚÚUaéQëNÔ„k‚´…aU„˙© ҃0?€ů¤T[¬Ś ©ěঠ€Ś:`ŕw<ˇW6­dč›°ˆ`d•
TŽźKuC¶+›sG¬|8#yĘ-#tŃT…¤ !€´MČvmőłő±G"}«cT† ˆ€MŤP(ş
ˆ˜—žˇP ˆ—UzUZX‹¤MÄ0ƒF‘¤_ˆ™ Ą)ćx˝)·š‘o2„®Rý |óŞŇ=LĚ_„ÖÚĐĹ·«‡¬ŇIś07lLÉłŤ+ą<ÉŘ(.‹aiQ¤ż%ncˇú:¶/1ąi­Ňˆ#”ÜĎ®‰Ň‡á›ôŕ„8„—Żhä—0DÄ$TÁŰĎ+U¦:ĚBjĽ?'Á
‰Ęů"•ěcě,Ü—(m)cěH˝ŔUKĐ“€ě§·­
s' Al" I9xż«ł;łsĂrôöJ@ŰÍëgVâ`OB;©„íÉB”;W@qšl«Ô–Ă…‡‰˛“1ť€rb kNˆ́K‹ĺĐ[HĚE ^±q‘ęü'b•_f´ŕnc•˛śşŮß"Ąn!â
]'ƒŰŔŃ˙ Kü6°Xƒ…1±Ždm߼ˇŻ”G«ĹbPŰ O¦–Ż­SZÇg»`h•”?xŚ&ŇÁąčű 2Jkcź#Á(­ÉŁ*…’&űš˝؁E«_‰n! çNŘJŃ*ƒaRyćüF•R†Đń«9‡cúĎňŢ7~Ťi»OĽ żwEĐ)Ř[At}_2âUW±ŕáh?W‹–áUĽľáë;CBĂ]ĂC"`C˝ď
)M©¨ŐąDl›±}ťą´vú]Ghřrý2űsFG ˘‘GniqG"uĚ”®ťÓµą|lS—ů‰$h#b˧Ť r]‹GĎ:­4/ŹĹL8„‹č1E¦ŹéT =>­k“Ů\¦ËxÔÔÔ(Šm„?ŮňB’ŘŞŃ«d*9˘ľŇ‘’ ‡™zś”Ámô~"I©z‹!E˜ 3i› `ÍŻJ5ĚŞ¶…áüt ;Ü
h0¤Q+!÷TÔ”
ůőđl#Ý™˜ž ąL/qV(9 ÷’i“ÖMµňeŔŹŢtđ‚Ŕ Sě`YP‘Đ«€6ę†…× —*˝]’B…ĎSŽDŕe°…¤Rşčw`#X!łƒ\[¬ł@Mµ€Ůö‚łuj©Đ©†‹
§tƒ±]ť
÷ëřo݉€bşu€8ŔO±ˇ)*Üj`?­†q Âéj,U8D"iá-ř˜Ë ’o ť ť>vJk
K/"4°Š°a)#€'řI`…üPjˆz÷đ1ˆ°«WeŃQFƒ°ŚŐ…"7÷mŔXlŰŠ5$÷ÉEýŽÜŁ™RŰ=Á5ú.~Ĺźz›°›Ź‹ÝÎQg
Žť:ĄBf±äMp ăA (<łę4ië890ĆrR©ŤQ•Ôą_ŕh89¨{±]Ĺ ™ĺ…ń\+i˙®ŐëśÂY —p&äTµ§ůہŚÓۦ>Ë]2>*Msj/őő^E}…Ł]'ÁE…‰·¤ŃŚ‰1
I˝ď‹9;ĚŤjHăQ€;A‡uGŕ+¬ŰD¦‰cęŢÖEh@˘.tř$+ÁGž†1*aIRé¬áË\_ÔÔHŞR ŹÄôĽ'I[™Ix ß2’´Łwµ<ĄkGťrĚ ˙¦öÖPz{ ÓëBׂƒ¬ĎůĎ‚‡SąHLψtEĆ/i˛ňłćP˘ä‘,nix˘}H¨+ ÚłÖGr€"o„˘1Ă V ‚Hé×ĹÔ€bąÁ«‰Ť‰$çˇtá K’˛Ý!$)•6P"ˆ…bč\_SGs4u


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 14.01.2008 20:55 | Hackovanie na accounty

LOL to asi neni ono co?xD ale je to ten program ...http://www.mwti.net/products/mwav/mwav.asp


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 14.01.2008 20:57 | Hackovanie na accounty

po restrate PC je v lohu HiJackTHis toto:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:56:58, on 14.1.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\Program Files\COMODO\Firewall\cmdagent.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Atheros\ACU.exe
C:\WINDOWS\System32\StkCSrv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATK Hotkey\Hcontrol.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe
C:\Program Files\COMODO\Firewall\cfp.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\QIP\qip.exe
C:\WINDOWS\system32\ACEngSvr.exe
C:\Program Files\DNA\btdna.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\ATK Hotkey\ATKOSD.exe
C:\Program Files\ATK Hotkey\KBFiltr.exe
C:\Program Files\ATK Hotkey\WDC.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\explorer.exe
C:\Program Files\BitTorrent\bittorrent.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.download3000.com/index.php?start=home
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [ACMON] "C:\Program Files\ASUS\Splendid\ACMON.exe"
O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\WINDOWS\ASScrProlog.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SMSystemAnalyzer] "C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe"
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\COMODO\Firewall\cfp.exe" -s
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [QIP2005] C:\Program Files\QIP\qip.exe
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 8933392331
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\Firewall\cmdagent.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc. - C:\WINDOWS\System32\StkCSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 9434 bytes


Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 10.02.07
Prihlásený: 14.08.11
Príspevky: 1657
Témy: 22 | 22
Bydlisko: Ziar nad Hr...
NapísalOffline : 14.01.2008 21:21 | Hackovanie na accounty

log uz vyzera cisty

este raz, stiahni MWAV, spusti (pri odsuhlaseni licencie sa da vybrat cestina), daj otestovat (nic nenastavuj), po dokonceni testu si daj zzobrazit log, a tem sem hod na forum ;)


_________________
Myslenie nemohlo vzniknúť bez reči, no reč bez myslenia sa vyskytuje často. Brie Andre
My OS: Primary - Kubuntu 10.10 Maverick Meerkat , Secondary - Windows 7
Problemy sa riesia tu na fore nie cez ICQ a Skype. Dakujem
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 15.01.2008 15:31 | Hackovanie na accounty

Devil_SK píše:
log uz vyzera cisty

este raz, stiahni MWAV, spusti (pri odsuhlaseni licencie sa da vybrat cestina), daj otestovat (nic nenastavuj), po dokonceni testu si daj zzobrazit log, a tem sem hod na forum ;)



ale ja mam mwav.exe, lenze ked spustim, zacne EXTRACT , pride po100 % a spusti sa poznamkovy blok nazvany MEXE s tamtými značkami


Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 10.02.07
Prihlásený: 14.08.11
Príspevky: 1657
Témy: 22 | 22
Bydlisko: Ziar nad Hr...
NapísalOffline : 15.01.2008 17:24 | Hackovanie na accounty

takze mas tam cekom solidnu haved, takze to skusime takto, stiahni si ComboFix , uloz niekde na plochu, po dokonceni testu mi sem hod obsah logu ktory sa nachadza v c:/combofix.txt , potom znovu skusime ten mwav.

PS: Ak mas nejaky rezidentny antispyware ochranu, tak ju pocas testu ComboFixom vypni !


_________________
Myslenie nemohlo vzniknúť bez reči, no reč bez myslenia sa vyskytuje často. Brie Andre
My OS: Primary - Kubuntu 10.10 Maverick Meerkat , Secondary - Windows 7
Problemy sa riesia tu na fore nie cez ICQ a Skype. Dakujem
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 15.01.2008 18:10 | Hackovanie na accounty

Devil_SK píše:
takze mas tam cekom solidnu haved, takze to skusime takto, stiahni si ComboFix , uloz niekde na plochu, po dokonceni testu mi sem hod obsah logu ktory sa nachadza v c:/combofix.txt , potom znovu skusime ten mwav.

PS: Ak mas nejaky rezidentny antispyware ochranu, tak ju pocas testu ComboFixom vypni !



ComboFix 08-01-09.2 - Havavka Michal 2008-01-15 18:01:35.1 - FAT32x86
Systém Microsoft Windows XP Home Edition 5.1.2600.2.1250.1.1033.18.1392 [GMT 1:00]
Running from: C:\Documents and Settings\Havavka Michal\Desktop\Eyes\Programs\ComboFix.exe
* Created a new restore point
.
The following files were disabled during the run:
C:\WINDOWS\system32\guard32.dll


((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Havavka Michal\Local Settings\Temp\{9D48531D-2135-49FC-BC29-ACCDA5396A76}\Desktop_.ini
C:\WINDOWS\explore256.dll
C:\WINDOWS\SW_Win2000X48.DLL

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.
-------\LEGACY_NWSAPAGENT
-------\NwSapAgent


((((((((((((((((((((((((( Files Created from 2007-12-15 to 2008-01-15 )))))))))))))))))))))))))))))))
.

2008-01-15 18:00 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
2008-01-15 16:13 . 2008-01-15 16:13 <DIR> d-------- C:\WINDOWS\vf_hip
2008-01-15 16:13 . 2008-01-15 16:13 <DIR> d-------- C:\Program Files\Hide IP Platinum
2008-01-14 23:19 . 2008-01-14 23:19 <DIR> d-------- C:\Program Files\VPN Anonymizer
2008-01-14 23:07 . 2008-01-14 23:07 <DIR> d-------- C:\Program Files\ProxyWay
2008-01-14 22:48 . 2004-03-08 23:00 124,688 --------- C:\WINDOWS\system32\Mswinsck.ocx
2008-01-14 22:48 . 2000-07-14 23:00 101,888 --------- C:\WINDOWS\system32\VB6STKIT.DLL
2008-01-14 22:30 . 2008-01-14 22:45 62 --a------ C:\WINDOWS\MyProg.ini
2008-01-14 20:09 . 2008-01-14 20:09 32 --a------ C:\WINDOWS\do
2008-01-14 19:29 . 2008-01-14 19:29 <DIR> d-------- C:\Program Files\Lavasoft
2008-01-14 19:29 . 2008-01-14 19:29 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-01-14 19:08 . 2008-01-14 19:08 <DIR> d-------- C:\Program Files\COMODO
2008-01-14 19:08 . 2008-01-14 19:08 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\Comodo
2008-01-14 19:08 . 2008-01-14 19:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\comodo
2008-01-14 19:08 . 2008-01-14 19:08 139,008 --a------ C:\WINDOWS\system32\guard32.dll.vir
2008-01-14 19:08 . 2008-01-14 19:08 81,272 --a------ C:\WINDOWS\system32\drivers\cmdGuard.sys
2008-01-14 19:08 . 2008-01-14 19:08 23,672 --a------ C:\WINDOWS\system32\drivers\cmdhlp.sys
2008-01-13 23:22 . 2008-01-13 23:22 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\SUPERAntiSpyware.com
2008-01-13 23:22 . 2008-01-13 23:22 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-01-13 23:02 . 2008-01-13 23:02 <DIR> d-------- C:\Program Files\Spyware Terminator
2008-01-13 23:02 . 2008-01-13 23:02 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\Spyware Terminator
2008-01-13 23:02 . 2008-01-13 23:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spyware Terminator
2008-01-13 23:01 . 2008-01-13 23:01 <DIR> d-------- C:\Program Files\Trend Micro
2008-01-13 19:10 . 2008-01-13 19:10 <DIR> d-------- C:\Program Files\BitTorrent
2008-01-13 19:10 . 2008-01-13 19:10 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\BitTorrent
2008-01-13 12:43 . 2007-07-04 03:04 888,832 --a------ C:\WINDOWS\system32\securenet.dll
2008-01-13 12:39 . 2008-01-13 12:39 <DIR> d-------- C:\Program Files\Hide The IP
2008-01-12 00:35 . 2008-01-12 00:36 <DIR> d-------- C:\Program Files\caws
2008-01-12 00:16 . 2008-01-12 00:16 <DIR> d-------- C:\Program Files\Opera
2008-01-11 20:55 . 2008-01-11 20:55 271 --a------ C:\WINDOWS\SysMech7.INI
2008-01-11 18:02 . 2008-01-11 18:02 <DIR> d-------- C:\Program Files\MobMapUpdater
2008-01-08 16:36 . 2008-01-08 16:36 <DIR> d-------- C:\Program Files\Common Files\Blizzard Entertainment
2008-01-08 16:22 . 2008-01-08 16:22 <DIR> d-------- C:\Program Files\World of Warcraft
2008-01-08 16:02 . 2008-01-08 16:02 71,108 --a------ C:\s1sck
2008-01-08 15:58 . 2008-01-08 15:58 71,108 --a------ C:\s1o6g
2008-01-08 15:50 . 2008-01-08 15:50 71,108 --a------ C:\s1ilc
2008-01-08 15:06 . 2008-01-08 15:06 <DIR> d--h----- C:\Program Files\thriXXX
2008-01-07 12:22 . 2008-01-07 12:22 <DIR> d-------- C:\WINDOWS\vbSkinner
2008-01-07 12:22 . 2008-01-07 12:22 <DIR> d-------- C:\Program Files\PFConfig
2008-01-06 22:32 . 2008-01-06 22:32 <DIR> d-------- C:\Program Files\Full Tilt Poker
2008-01-06 22:26 . 2008-01-06 22:26 <DIR> d-------- C:\Program Files\PokerStars.NET
2008-01-06 22:16 . 2008-01-06 22:16 <DIR> d-------- C:\Program Files\PartyGaming
2008-01-06 18:19 . 2008-01-06 18:19 <DIR> d-------- C:\Program Files\DAEMON Tools Lite
2008-01-06 18:19 . 2008-01-06 18:19 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\DAEMON Tools
2008-01-06 17:23 . 2008-01-06 17:23 59 --a------ C:\WINDOWS\pp.enc
2008-01-06 17:20 . 2008-01-06 17:20 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\Microgaming
2008-01-05 21:20 . 2008-01-05 21:32 77,930 --a------ C:\WINDOWS\War3Unin.dat
2008-01-05 21:15 . 2008-01-05 21:15 <DIR> d-------- C:\Program Files\Warcraft III
2008-01-05 21:14 . 2008-01-05 21:14 184 --a------ C:\WINDOWS\War3Unin.bat
2008-01-05 12:16 . 2008-01-05 12:16 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\Apple Computer
2008-01-05 10:35 . 2004-08-04 00:56 159,232 --a------ C:\WINDOWS\system32\ptpusd.dll
2008-01-05 10:35 . 2004-08-03 22:58 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
2008-01-05 10:35 . 2004-08-03 22:58 15,104 --a------ C:\WINDOWS\system32\dllcache\usbscan.sys
2008-01-05 10:35 . 2001-08-17 22:36 5,632 --a------ C:\WINDOWS\system32\ptpusb.dll
2008-01-04 15:04 . 2008-01-04 15:04 <DIR> d-------- C:\Program Files\Ventrilo
2008-01-04 15:03 . 2008-01-04 15:03 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-01-04 15:00 . 2008-01-04 15:00 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\Ventrilo
2008-01-04 12:05 . 2008-01-04 12:05 <DIR> d-------- C:\Program Files\Eusing Free Registry Cleaner
2008-01-03 22:41 . 2008-01-03 22:41 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\Media Player Classic
2008-01-03 22:39 . 2007-01-30 06:03 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2008-01-03 22:39 . 2007-01-20 21:26 1,565,480 --a------ C:\WINDOWS\system32\wmv9vcm.dll
2008-01-03 22:39 . 2006-11-01 14:52 765,952 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-01-03 22:39 . 2007-01-30 06:03 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
2008-01-03 22:39 . 2006-11-01 14:54 180,224 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-01-03 22:39 . 2006-05-13 23:16 118,784 --a------ C:\WINDOWS\system32\ac3acm.acm
2008-01-03 22:38 . 2008-01-03 22:38 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2008-01-03 22:38 . 2007-01-30 06:03 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
2008-01-03 22:38 . 2007-02-01 05:56 639,066 --a------ C:\WINDOWS\system32\divx.dll
2008-01-03 22:38 . 2007-01-30 05:56 196,608 --a------ C:\WINDOWS\system32\dtu100.dll
2008-01-03 22:38 . 2007-01-30 05:56 73,728 --a------ C:\WINDOWS\system32\dpl100.dll
2008-01-03 22:38 . 2007-01-09 18:46 10,752 --a------ C:\WINDOWS\system32\ff_vfw.dll
2008-01-03 22:38 . 2005-02-24 18:56 547 --a------ C:\WINDOWS\system32\ff_vfw.dll.manifest
2008-01-03 15:06 . 2008-01-03 15:06 <DIR> d-------- C:\Program Files\Rockstar Games
2008-01-03 13:42 . 2008-01-03 13:42 <DIR> d-------- C:\Program Files\Softinterface, Inc
2008-01-03 13:36 . 2008-01-03 13:36 <DIR> d-------- C:\Program Files\ReaConverter 5.0 Pro
2008-01-03 11:50 . 2008-01-03 11:50 <DIR> d-------- C:\w3.cz
2007-12-31 21:55 . 2007-12-31 21:55 <DIR> d-------- C:\Program Files\Ocean Technology
2007-12-31 21:55 . 2006-03-14 02:26 53,248 --a------ C:\WINDOWS\system32\ImageOle.dll
2007-12-31 21:30 . 2007-12-31 21:30 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\Hamachi
2007-12-31 21:29 . 2007-12-31 21:47 17,480 --a------ C:\WINDOWS\system32\drivers\hamachi.sys
2007-12-31 18:08 . 2007-12-31 18:08 <DIR> d-------- C:\Program Files\ICQLite
2007-12-31 18:08 . 2007-12-31 18:08 <DIR> d-------- C:\Documents and Settings\Havavka Michal\Application Data\ICQLite
2007-12-31 17:32 . 2007-12-31 17:32 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\iolo
2007-12-31 17:31 . 2008-01-11 10:31 437,096 --a------ C:\WINDOWS\system32\Incinerator.dll
2007-12-31 17:31 . 2007-11-20 22:34 35,840 --a------ C:\WINDOWS\system32\iolobtdfg.exe
2007-12-31 17:31 . 2007-12-14 17:13 23,040 --a------ C:\WINDOWS\system32\smrgdf.exe
2007-12-31 17:30 . 2007-12-31 17:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\iolo
2007-12-31 17:30 . 2007-12-31 17:30 74,703 --a------ C:\WINDOWS\system32\mfc45.dll
2007-12-31 17:11 . 2007-12-31 17:11 <DIR> d-------- C:\Program Files\CCleaner
2007-12-31 09:17 . 2007-12-31 09:17 <DIR> d-------- C:\Documents and Settings\Havavka Michal\.housecall6.6
2007-12-30 23:49 . 2007-12-30 23:49 <DIR> d-------- C:\WINDOWS\Sun
2007-12-30 23:48 . 2007-12-30 23:48 <DIR> d-------- C:\Program Files\Java
2007-12-30 23:48 . 2007-09-24 23:31 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
2007-12-30 23:47 . 2007-12-30 23:47 <DIR> d-------- C:\Program Files\Common Files\Java
2007-12-30 10:06 . 2008-01-15 16:13 32 --a------ C:\WINDOWS\go
2007-12-29 19:03 . 1998-10-29 16:45 306,688 --a------ C:\WINDOWS\IsUninst.exe
2007-12-29 17:28 . 2007-12-29 17:28 <DIR> d-------- C:\Program Files\MSBuild
2007-12-29 17:25 . 2007-12-29 17:25 <DIR> d-------- C:\WINDOWS\system32\XPSViewer
2007-12-29 17:24 . 2007-12-29 17:24 <DIR> d-------- C:\Program Files\Reference Assemblies
2007-12-29 17:23 . 2006-06-29 13:07 14,048 --------- C:\WINDOWS\system32\spmsg2.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-14 18:35 12,632 ----a-w C:\WINDOWS\system32\lsdelete.exe
2007-12-22 19:58 --------- d-----w C:\Program Files\ATI Technologies
2007-12-22 19:57 --------- d-----w C:\Program Files\ATKOSD2
2007-12-22 19:48 --------- d-----w C:\Documents and Settings\Havavka Michal\Application Data\CyberLink
2007-12-22 19:48 --------- d-----w C:\Documents and Settings\All Users\Application Data\CyberLink
2007-12-22 19:44 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-22 19:44 --------- d-----w C:\Program Files\CyberLink
2007-12-22 19:43 --------- d-----w C:\Program Files\Common Files\InstallShield
2007-12-22 19:39 --------- d-----w C:\Program Files\Common Files\LightScribe
2007-12-22 19:36 --------- d-----w C:\Program Files\Nero
2007-12-22 19:36 --------- d-----w C:\Program Files\Common Files\Ahead
2007-12-22 19:36 --------- d-----w C:\Documents and Settings\All Users\Application Data\Nero
2007-12-22 19:30 --------- d-----w C:\Program Files\Microsoft Works
2007-12-22 19:25 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2007-12-22 19:07 --------- d-----w C:\Program Files\microsoft frontpage
2007-11-07 09:26 721,920 ----a-w C:\WINDOWS\system32\lsasrv.dll
2007-11-07 09:26 721,920 ----a-w C:\WINDOWS\system32\dllcache\lsasrv.dll
2007-10-30 23:42 3,590,656 ----a-w C:\WINDOWS\system32\dllcache\mshtml.dll
2007-10-30 17:20 360,064 ----a-w C:\WINDOWS\system32\dllcache\tcpip.sys
2007-10-29 22:43 1,287,680 ----a-w C:\WINDOWS\system32\quartz.dll
2007-10-29 22:43 1,287,680 ----a-w C:\WINDOWS\system32\dllcache\quartz.dll
2007-10-27 16:40 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
2007-10-27 16:40 222,720 ----a-w C:\WINDOWS\system32\dllcache\wmasf.dll
2007-10-26 03:34 8,460,288 ----a-w C:\WINDOWS\system32\dllcache\shell32.dll
2007-10-24 00:47 96,760 ----a-w C:\WINDOWS\system32\dfshim.dll
2007-10-24 00:47 84,480 ----a-w C:\WINDOWS\system32\mscories.dll
2007-10-24 00:47 282,112 ----a-w C:\WINDOWS\system32\mscoree.dll
2007-10-24 00:47 158,720 ----a-w C:\WINDOWS\system32\mscorier.dll
2007-10-22 02:39 267,272 ----a-w C:\WINDOWS\system32\xactengine2_10.dll
2007-10-22 02:37 17,928 ----a-w C:\WINDOWS\system32\X3DAudio1_2.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe" [2007-06-20 12:49 451872]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 13:35 90112]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2006-02-28 12:00 15360]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2007-12-07 15:08 21686568]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-01-03 14:54 486856]
"QIP2005"="C:\Program Files\QIP\qip.exe" [2007-11-16 14:17 3264512]
"ProxyWay"="C:\Program Files\ProxyWay\proxyway.exe" [ ]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 15:57 153136]
"SecurDisc"="C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe" [2007-06-01 10:06 1629744]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2006-11-23 15:10 56928]
"LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [2006-12-05 22:55 54832]
"ATKOSD2"="C:\Program Files\ATKOSD2\ATKOSD2.exe" [2007-07-03 10:48 7708672]
"SkyTel"="SkyTel.EXE" [2006-05-16 11:04 2879488 C:\WINDOWS\SkyTel.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-11-14 10:21 16270848 C:\WINDOWS\RTHDCPL.exe]
"SMSERIAL"="C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe" [2006-11-22 10:31 630784]
"Wireless Console 2"="C:\Program Files\Wireless Console 2\wcourier.exe" [2007-07-05 16:53 1040384]
"ACU"="C:\Program Files\Atheros\ACU.exe" [2006-11-17 11:00 348249]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2006-10-12 11:55 815104]
"Power_Gear"="C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe" [2006-07-26 18:01 90112]
"ATKHOTKEY"="C:\Program Files\ATK Hotkey\Hcontrol.exe" [2007-06-29 15:44 225280]
"ACMON"="C:\Program Files\ASUS\Splendid\ACMON.exe" [2007-01-16 14:11 843776]
"ASUS Camera ScreenSaver"="C:\WINDOWS\ASScrProlog.exe" [2007-12-27 17:04 37232]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-12-29 16:59 949376]
"SMSystemAnalyzer"="C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe" [2008-01-11 10:30 832360]
"COMODO Firewall Pro"="C:\Program Files\COMODO\Firewall\cfp.exe" [2008-01-14 19:08 1481472]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2006-02-28 12:00 15360]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 00:01:50]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"= C:\WINDOWS\system32\guard32.dll

R1 cmdGuard;COMODO Firewall Pro Sandbox Driver;C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2008-01-14 19:08]
R1 cmdHlp;COMODO Firewall Pro Helper Driver;C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2008-01-14 19:08]
R2 ASMMAP;ASMMAP;C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 11:09]
R2 ATKGFNEXSrv;ATKGFNEX Service;C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-06-11 11:30]
R2 ghaio;ghaio;C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2006-12-28 09:17]
R2 ioloFileInfoList;iolo FileInfoList Service;C:\Program Files\iolo\common\lib\ioloServiceManager.exe [2007-11-22 00:11]
R2 ioloSystemService;iolo System Service;C:\Program Files\iolo\common\lib\ioloServiceManager.exe [2007-11-22 00:11]
R2 StkSSrv;Syntek AVStream USB2.0 WebCam Service;C:\WINDOWS\System32\StkCSrv.exe [2007-04-18 23:42]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service;C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2007-02-25 21:55]
R3 ASNDIS5;ASNDIS5 Protocol Driver;C:\PROGRA~1\ATKHOT~1\ASNDIS5.SYS [2004-05-27 18:13]
R3 PSched;QoS Packet Scheduler;C:\WINDOWS\system32\DRIVERS\psched.sys [2006-02-28 12:00]
R3 RTSTOR;USB Mass Stroage Device;C:\WINDOWS\system32\drivers\RTSTOR.SYS [2007-01-15 14:37]
R3 StkCMini;Syntek AVStream USB2.0 1.3M WebCam;C:\WINDOWS\system32\Drivers\StkCMini.sys [2007-06-06 03:40]
R3 WSIMD;wsimd Service;C:\WINDOWS\system32\DRIVERS\wsimd.sys [2006-07-20 07:00]
S3 tap0901_2gm;VPN Anonymizer Adapter;C:\WINDOWS\system32\DRIVERS\tap0901_2gm.sys [2007-06-21 16:21]


[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-15 18:08:24
Windows 5.1.2600 Service Pack 2 FAT NTAPI

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

PROCESS: C:\WINDOWS\system32\winlogon.exe
-> C:\WINDOWS\system32\guard32.dll

PROCESS: C:\WINDOWS\system32\lsass.exe [5.01.2600.2180]
-> C:\WINDOWS\system32\guard32.dll

PROCESS: C:\WINDOWS\Explorer.EXE [6.00.2900.3156]
-> C:\WINDOWS\system32\guard32.dll
.
Completion time: 2008-01-15 18:10:07 - machine was rebooted
ComboFix-quarantined-files.txt 2008-01-15 17:10:02
.
2008-01-09 19:54:07 --- E O F ---


Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 10.02.07
Prihlásený: 14.08.11
Príspevky: 1657
Témy: 22 | 22
Bydlisko: Ziar nad Hr...
NapísalOffline : 16.01.2008 16:33 | Hackovanie na accounty

takze ComboFix nam nieco nasiel, skus znovu ten MWAV (log z neho musi byt tiez normalny text)


_________________
Myslenie nemohlo vzniknúť bez reči, no reč bez myslenia sa vyskytuje často. Brie Andre
My OS: Primary - Kubuntu 10.10 Maverick Meerkat , Secondary - Windows 7
Problemy sa riesia tu na fore nie cez ICQ a Skype. Dakujem
Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 30.11.06
Prihlásený: 22.12.09
Príspevky: 785
Témy: 30 | 30
Bydlisko: ratnovce so...
NapísalOffline : 16.01.2008 19:10 | Hackovanie na accounty

Alebo ked chces rychle a ucinne riesenie, zformatuj disk a reinstaluj OS.

// v takychto pripadoch je to najjednoduchsie riesenie


_________________
The Apollo programme was a HOAX
Offline

Užívateľ
Užívateľ
Hackovanie na accounty

Registrovaný: 10.02.07
Prihlásený: 14.08.11
Príspevky: 1657
Témy: 22 | 22
Bydlisko: Ziar nad Hr...
NapísalOffline : 16.01.2008 19:13 | Hackovanie na accounty

imnotwhafo píše:
Alebo ked chces rychle a ucinne riesenie, zformatuj disk a reinstaluj OS.

// v takychto pripadoch je to najjednoduchsie riesenie


aj mne to uz pripada ako najlepsie riesenie :roll:


_________________
Myslenie nemohlo vzniknúť bez reči, no reč bez myslenia sa vyskytuje často. Brie Andre
My OS: Primary - Kubuntu 10.10 Maverick Meerkat , Secondary - Windows 7
Problemy sa riesia tu na fore nie cez ICQ a Skype. Dakujem
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 16.01.2008 21:25 | Hackovanie na accounty

tu je posledná časť toho MWAV scanu...a nemozem to mat trocha pošahané, lebo som nepouzival zadny firewall? :D a som na notebooku



Wed Jan 16 21:18:50 2008 => ***** Kontrola pro specifické ITW viry *****
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Welchia ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru LovGate ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru CodeRed ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru OpaServ ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Sobig.e ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Winupie ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Swen ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru JS.Fortnight ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Novarg ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Pagabot ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Parite.b ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Parite.a ...
Wed Jan 16 21:18:50 2008 => Kontrola na přítomnost viru Adware.SeekSeek ...

Wed Jan 16 21:18:50 2008 => ***** Test dokončen, kontrolu proveďte na www.viry.cz. *****

Wed Jan 16 21:18:50 2008 => Testovaných objektů: 94264
Wed Jan 16 21:18:50 2008 => Kritických objektů: 10
Wed Jan 16 21:18:50 2008 => Celkem vyléčených objektů: 0
Wed Jan 16 21:18:50 2008 => Celkem přejmenováno: 0
Wed Jan 16 21:18:50 2008 => Smazaných objektů: 0
Wed Jan 16 21:18:50 2008 => Celkem chyb: 72
Wed Jan 16 21:18:50 2008 => Uplynulý čas: 00:48:49
Wed Jan 16 21:18:50 2008 => Datum vydání databáze: 12/27/2007
Wed Jan 16 21:18:50 2008 => Verze virové databáze: 495625

Wed Jan 16 21:18:50 2008 => Test je dokončen, kontrolu lze provést na www.viry.cz.


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 16.01.2008 21:27 | Hackovanie na accounty

kua nemam full verziu nemozem opraviť? :( neva najdem asi keygen


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 16.01.2008 21:39 | Hackovanie na accounty

takze tu je log (2 trojany? LOL!)


Wed Jan 16 21:37:41 2008 => ***** Kontrola pro specifické ITW viry *****
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Welchia ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru LovGate ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru CodeRed ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru OpaServ ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Sobig.e ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Winupie ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Swen ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru JS.Fortnight ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Novarg ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Pagabot ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Parite.b ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Parite.a ...
Wed Jan 16 21:37:41 2008 => Kontrola na přítomnost viru Adware.SeekSeek ...

Wed Jan 16 21:37:41 2008 => ***** Test dokončen, kontrolu proveďte na www.viry.cz. *****

Wed Jan 16 21:37:41 2008 => Testovaných objektů: 38307
Wed Jan 16 21:37:41 2008 => Kritických objektů: 2
Wed Jan 16 21:37:41 2008 => Celkem vyléčených objektů: 0
Wed Jan 16 21:37:41 2008 => Celkem přejmenováno: 0
Wed Jan 16 21:37:41 2008 => Smazaných objektů: 32
Wed Jan 16 21:37:41 2008 => Celkem chyb: 36
Wed Jan 16 21:37:41 2008 => Uplynulý čas: 00:04:07
Wed Jan 16 21:37:41 2008 => Datum vydání databáze: 12/27/2007
Wed Jan 16 21:37:41 2008 => Verze virové databáze: 495625

Wed Jan 16 21:37:41 2008 => Test je dokončen, kontrolu lze provést na www.viry.cz.


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 28.07.07
Príspevky: 3210
Témy: 41 | 41
Bydlisko: Brno
NapísalOffline : 16.01.2008 22:10 | Hackovanie na accounty

stiahni si avenger: http://swandog46.geekstogo.com/avenger.exe
Spustiť – „Input script manually“ – Lupa – Skopírovať kód – „Done“ – Semafor – Potvrdiť –

Kód:
Files to delete:
C:\WINDOWS\system32\guard32.dll.vir


potom novy hjt log + combofix log


_________________
PC: CPU: Intel i7 5820k @ 4.2 Ghz Cooler: NZXT Kraken x41 MB: ASUS X99-A GPU: ASUS Stryx 970 GTX 4GB RAM: 32 GB Kingston 2133 DDR4 SSD: Kingston Hyperx 240 GB HDD1: Seagate Barracuda 7200.14 3TB HDD2: Seagate Barracuda 7200 1TB PSU: Corsair RM 850 Case: NZXT Phantom 410 white LCD: DELL P2416D @ 75Hz AUDIO: Yamaha RN500 Repro: DALI Zensor 5 Phone: Galaxy S8+
NB: Lenovo Y500
Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 18.01.2008 23:15 | Hackovanie na accounty

HiJackThis log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:39, on 2008-01-19
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\ATKGFNEX\GFNEXSrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Wireless Console 2\wcourier.exe
C:\Program Files\Atheros\ACU.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATK Hotkey\Hcontrol.exe
C:\Program Files\ASUS\Splendid\ACMON.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe
C:\Program Files\COMODO\Firewall\cfp.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\WINDOWS\system32\ACEngSvr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Program Files\COMODO\Firewall\cmdagent.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\QIP\qip.exe
C:\Program Files\iolo\common\lib\ioloServiceManager.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\StkCSrv.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\ATK Hotkey\ATKOSD.exe
C:\Program Files\ATK Hotkey\KBFiltr.exe
C:\Program Files\ATK Hotkey\WDC.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [Wireless Console 2] "C:\Program Files\Wireless Console 2\wcourier.exe"
O4 - HKLM\..\Run: [ACU] "C:\Program Files\Atheros\ACU.exe" -nogui
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Power_Gear] C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe 1
O4 - HKLM\..\Run: [ATKHOTKEY] "C:\Program Files\ATK Hotkey\Hcontrol.exe"
O4 - HKLM\..\Run: [ACMON] "C:\Program Files\ASUS\Splendid\ACMON.exe"
O4 - HKLM\..\Run: [ASUS Camera ScreenSaver] C:\WINDOWS\ASScrProlog.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SMSystemAnalyzer] "C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe"
O4 - HKLM\..\Run: [COMODO Firewall Pro] "C:\Program Files\COMODO\Firewall\cfp.exe" -s
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [QIP2005] C:\Program Files\QIP\qip.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Odoslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&oslať do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 8933392331
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microso ... 0410605890
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Atheros Configuration Service (ACS) - Atheros - C:\WINDOWS\system32\acs.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\Firewall\cmdagent.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc. - C:\WINDOWS\System32\StkCSrv.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe

--
End of file - 8950 bytes


ComboFix log:

ComboFix 08-01-09.2 - NAME 2008-01-19 12:40:50.2 - FAT32x86
Systém Microsoft Windows XP Home Edition 5.1.2600.2.1250.1.1033.18.1480 [GMT 1:00]
Running from: C:\Documents and Settings\NAME\Desktop\Eyes\Programs\ComboFix.exe
.
The following files were disabled during the run:
C:\WINDOWS\system32\guard32.dll


((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\regedit.com
C:\WINDOWS\system32\taskmgr.com

.
((((((((((((((((((((((((( Files Created from 2007-12-19 to 2008-01-19 )))))))))))))))))))))))))))))))
.

2008-01-18 18:50 . 2008-01-18 18:50 <DIR> d-------- C:\Program Files\Teamspeak2_RC2
2008-01-18 18:50 . 2008-01-18 18:50 34,064 --a------ C:\WINDOWS\system32\lhacm.acm
2008-01-17 19:14 . 2008-01-17 19:14 <DIR> d-------- C:\Program Files\VPN Anonymizer
2008-01-17 18:11 . 2008-01-17 18:11 <DIR> d-------- C:\Program Files\EA Sports
2008-01-16 22:04 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-01-16 22:04 . 2007-07-30 19:19 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-01-16 21:35 . 2008-01-16 21:36 5,458,101 --a------ C:\WINDOWS\REGBK00.ZIP
2008-01-16 21:18 . 2008-01-16 21:37 0 --a------ C:\23990098.$$$
2008-01-16 20:34 . 2008-01-16 20:34 <DIR> d-a------ C:\WINDOWS\zts2.exe
2008-01-16 20:34 . 2008-01-16 20:34 <DIR> d-a------ C:\WINDOWS\system32\vcmgcd32.dll
2008-01-16 20:34 . 2008-01-16 20:34 <DIR> d-a------ C:\WINDOWS\system32\iifgfgf.dll
2008-01-16 20:34 . 2008-01-16 20:34 <DIR> d-a------ C:\WINDOWS\rundl132.dll
2008-01-16 20:34 . 2008-01-16 20:34 <DIR> d-a------ C:\WINDOWS\logo1_.exe
2008-01-16 20:29 . 2006-02-28 12:00 146,432 --a------ C:\WINDOWS\R.COM
2008-01-16 20:29 . 2006-02-28 12:00 135,680 --a------ C:\WINDOWS\system32\T.COM
2008-01-15 18:00 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe
2008-01-14 23:07 . 2008-01-14 23:07 <DIR> d-------- C:\Program Files\ProxyWay
2008-01-14 22:48 . 2004-03-08 23:00 124,688 --------- C:\WINDOWS\system32\Mswinsck.ocx
2008-01-14 22:48 . 2000-07-14 23:00 101,888 --------- C:\WINDOWS\system32\VB6STKIT.DLL
2008-01-14 22:30 . 2008-01-14 22:45 62 --a------ C:\WINDOWS\MyProg.ini
2008-01-14 20:09 . 2008-01-14 20:09 32 --a------ C:\WINDOWS\do
2008-01-14 19:29 . 2008-01-14 19:29 <DIR> d-------- C:\Program Files\Lavasoft
2008-01-14 19:29 . 2008-01-14 19:29 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-01-14 19:08 . 2008-01-14 19:08 <DIR> d-------- C:\Program Files\COMODO
2008-01-14 19:08 . 2008-01-14 19:08 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\Comodo
2008-01-14 19:08 . 2008-01-14 19:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\comodo
2008-01-14 19:08 . 2008-01-14 19:08 139,008 --a------ C:\WINDOWS\system32\guard32.dll.vir
2008-01-14 19:08 . 2008-01-14 19:08 81,272 --a------ C:\WINDOWS\system32\drivers\cmdGuard.sys
2008-01-14 19:08 . 2008-01-14 19:08 23,672 --a------ C:\WINDOWS\system32\drivers\cmdhlp.sys
2008-01-13 23:22 . 2008-01-13 23:22 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\SUPERAntiSpyware.com
2008-01-13 23:22 . 2008-01-13 23:22 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-01-13 23:02 . 2008-01-13 23:02 <DIR> d-------- C:\Program Files\Spyware Terminator
2008-01-13 23:02 . 2008-01-13 23:02 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\Spyware Terminator
2008-01-13 23:02 . 2008-01-13 23:02 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Spyware Terminator
2008-01-13 23:01 . 2008-01-13 23:01 <DIR> d-------- C:\Program Files\Trend Micro
2008-01-13 19:10 . 2008-01-13 19:10 <DIR> d-------- C:\Program Files\BitTorrent
2008-01-13 19:10 . 2008-01-13 19:10 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\BitTorrent
2008-01-13 12:43 . 2007-07-04 03:04 888,832 --a------ C:\WINDOWS\system32\securenet.dll
2008-01-13 12:39 . 2008-01-13 12:39 <DIR> d-------- C:\Program Files\Hide The IP
2008-01-12 00:35 . 2008-01-12 00:36 <DIR> d-------- C:\Program Files\caws
2008-01-12 00:16 . 2008-01-12 00:16 <DIR> d-------- C:\Program Files\Opera
2008-01-11 20:55 . 2008-01-11 20:55 271 --a------ C:\WINDOWS\SysMech7.INI
2008-01-11 18:02 . 2008-01-11 18:02 <DIR> d-------- C:\Program Files\MobMapUpdater
2008-01-08 16:36 . 2008-01-08 16:36 <DIR> d-------- C:\Program Files\Common Files\Blizzard Entertainment
2008-01-08 16:22 . 2008-01-08 16:22 <DIR> d-------- C:\Program Files\World of Warcraft
2008-01-08 16:02 . 2008-01-08 16:02 71,108 --a------ C:\s1sck
2008-01-08 15:58 . 2008-01-08 15:58 71,108 --a------ C:\s1o6g
2008-01-08 15:50 . 2008-01-08 15:50 71,108 --a------ C:\s1ilc
2008-01-08 15:06 . 2008-01-08 15:06 <DIR> d-------- C:\Program Files\thriXXX
2008-01-07 12:22 . 2008-01-07 12:22 <DIR> d-------- C:\WINDOWS\vbSkinner
2008-01-07 12:22 . 2008-01-07 12:22 <DIR> d-------- C:\Program Files\PFConfig
2008-01-06 22:32 . 2008-01-06 22:32 <DIR> d-------- C:\Program Files\Full Tilt Poker
2008-01-06 22:26 . 2008-01-06 22:26 <DIR> d-------- C:\Program Files\PokerStars.NET
2008-01-06 22:16 . 2008-01-06 22:16 <DIR> d-------- C:\Program Files\PartyGaming
2008-01-06 18:19 . 2008-01-06 18:19 <DIR> d-------- C:\Program Files\DAEMON Tools Lite
2008-01-06 18:19 . 2008-01-06 18:19 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\DAEMON Tools
2008-01-06 17:23 . 2008-01-06 17:23 59 --a------ C:\WINDOWS\pp.enc
2008-01-06 17:20 . 2008-01-06 17:20 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\Microgaming
2008-01-05 21:20 . 2008-01-05 21:32 77,930 --a------ C:\WINDOWS\War3Unin.dat
2008-01-05 21:15 . 2008-01-05 21:15 <DIR> d-------- C:\Program Files\Warcraft III
2008-01-05 21:14 . 2008-01-05 21:14 184 --a------ C:\WINDOWS\War3Unin.bat
2008-01-05 12:16 . 2008-01-05 12:16 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\Apple Computer
2008-01-05 10:35 . 2004-08-04 00:56 159,232 --a------ C:\WINDOWS\system32\ptpusd.dll
2008-01-05 10:35 . 2004-08-03 22:58 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
2008-01-05 10:35 . 2004-08-03 22:58 15,104 --a------ C:\WINDOWS\system32\dllcache\usbscan.sys
2008-01-05 10:35 . 2001-08-17 22:36 5,632 --a------ C:\WINDOWS\system32\ptpusb.dll
2008-01-04 15:04 . 2008-01-04 15:04 <DIR> d-------- C:\Program Files\Ventrilo
2008-01-04 15:03 . 2008-01-04 15:03 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-01-04 15:00 . 2008-01-04 15:00 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\Ventrilo
2008-01-04 12:05 . 2008-01-04 12:05 <DIR> d-------- C:\Program Files\Eusing Free Registry Cleaner
2008-01-03 22:41 . 2008-01-03 22:41 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\Media Player Classic
2008-01-03 22:39 . 2007-01-30 06:03 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2008-01-03 22:39 . 2007-01-20 21:26 1,565,480 --a------ C:\WINDOWS\system32\wmv9vcm.dll
2008-01-03 22:39 . 2006-11-01 14:52 765,952 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-01-03 22:39 . 2007-01-30 06:03 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
2008-01-03 22:39 . 2006-11-01 14:54 180,224 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-01-03 22:39 . 2006-05-13 23:16 118,784 --a------ C:\WINDOWS\system32\ac3acm.acm
2008-01-03 22:38 . 2008-01-03 22:38 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2008-01-03 22:38 . 2007-01-30 06:03 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
2008-01-03 22:38 . 2007-02-01 05:56 639,066 --a------ C:\WINDOWS\system32\divx.dll
2008-01-03 22:38 . 2007-01-30 05:56 196,608 --a------ C:\WINDOWS\system32\dtu100.dll
2008-01-03 22:38 . 2007-01-30 05:56 73,728 --a------ C:\WINDOWS\system32\dpl100.dll
2008-01-03 22:38 . 2007-01-09 18:46 10,752 --a------ C:\WINDOWS\system32\ff_vfw.dll
2008-01-03 22:38 . 2005-02-24 18:56 547 --a------ C:\WINDOWS\system32\ff_vfw.dll.manifest
2008-01-03 15:06 . 2008-01-03 15:06 <DIR> d-------- C:\Program Files\Rockstar Games
2008-01-03 13:42 . 2008-01-03 13:42 <DIR> d-------- C:\Program Files\Softinterface, Inc
2008-01-03 13:36 . 2008-01-03 13:36 <DIR> d-------- C:\Program Files\ReaConverter 5.0 Pro
2008-01-03 11:50 . 2008-01-03 11:50 <DIR> d-------- C:\w3.cz
2007-12-31 21:55 . 2007-12-31 21:55 <DIR> d-------- C:\Program Files\Ocean Technology
2007-12-31 21:55 . 2006-03-14 02:26 53,248 --a------ C:\WINDOWS\system32\ImageOle.dll
2007-12-31 21:30 . 2007-12-31 21:30 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\Hamachi
2007-12-31 21:29 . 2007-12-31 21:47 17,480 --a------ C:\WINDOWS\system32\drivers\hamachi.sys
2007-12-31 18:08 . 2007-12-31 18:08 <DIR> d-------- C:\Program Files\ICQLite
2007-12-31 18:08 . 2007-12-31 18:08 <DIR> d-------- C:\Documents and Settings\NAME\Application Data\ICQLite
2007-12-31 17:32 . 2007-12-31 17:32 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\iolo
2007-12-31 17:31 . 2008-01-11 10:31 437,096 --a------ C:\WINDOWS\system32\Incinerator.dll
2007-12-31 17:31 . 2007-11-20 22:34 35,840 --a------ C:\WINDOWS\system32\iolobtdfg.exe
2007-12-31 17:31 . 2007-12-14 17:13 23,040 --a------ C:\WINDOWS\system32\smrgdf.exe
2007-12-31 17:30 . 2007-12-31 17:30 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\iolo
2007-12-31 17:30 . 2007-12-31 17:30 74,703 --a------ C:\WINDOWS\system32\mfc45.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-14 18:35 12,632 ----a-w C:\WINDOWS\system32\lsdelete.exe
2007-12-22 19:58 --------- d-----w C:\Program Files\ATI Technologies
2007-12-22 19:57 --------- d-----w C:\Program Files\ATKOSD2
2007-12-22 19:48 --------- d-----w C:\Documents and Settings\NAME\Application Data\CyberLink
2007-12-22 19:48 --------- d-----w C:\Documents and Settings\All Users\Application Data\CyberLink
2007-12-22 19:44 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-22 19:44 --------- d-----w C:\Program Files\CyberLink
2007-12-22 19:43 --------- d-----w C:\Program Files\Common Files\InstallShield
2007-12-22 19:39 --------- d-----w C:\Program Files\Common Files\LightScribe
2007-12-22 19:36 --------- d-----w C:\Program Files\Nero
2007-12-22 19:36 --------- d-----w C:\Program Files\Common Files\Ahead
2007-12-22 19:36 --------- d-----w C:\Documents and Settings\All Users\Application Data\Nero
2007-12-22 19:30 --------- d-----w C:\Program Files\Microsoft Works
2007-12-22 19:25 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help
2007-12-22 19:07 --------- d-----w C:\Program Files\microsoft frontpage
2007-11-07 09:26 721,920 ----a-w C:\WINDOWS\system32\lsasrv.dll
2007-11-07 09:26 721,920 ----a-w C:\WINDOWS\system32\dllcache\lsasrv.dll
2007-10-30 23:42 3,590,656 ----a-w C:\WINDOWS\system32\dllcache\mshtml.dll
2007-10-30 17:20 360,064 ----a-w C:\WINDOWS\system32\dllcache\tcpip.sys
2007-10-29 22:43 1,287,680 ----a-w C:\WINDOWS\system32\quartz.dll
2007-10-29 22:43 1,287,680 ----a-w C:\WINDOWS\system32\dllcache\quartz.dll
2007-10-27 16:40 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
2007-10-27 16:40 222,720 ----a-w C:\WINDOWS\system32\dllcache\wmasf.dll
2007-10-26 03:34 8,460,288 ----a-w C:\WINDOWS\system32\dllcache\shell32.dll
2007-10-24 00:47 96,760 ----a-w C:\WINDOWS\system32\dfshim.dll
2007-10-24 00:47 84,480 ----a-w C:\WINDOWS\system32\mscories.dll
2007-10-24 00:47 282,112 ----a-w C:\WINDOWS\system32\mscoree.dll
2007-10-24 00:47 158,720 ----a-w C:\WINDOWS\system32\mscorier.dll
2007-10-22 02:39 267,272 ----a-w C:\WINDOWS\system32\xactengine2_10.dll
2007-10-22 02:37 17,928 ----a-w C:\WINDOWS\system32\X3DAudio1_2.dll
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"="C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe" [2007-06-20 12:49 451872]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 13:35 90112]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2006-02-28 12:00 15360]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2007-12-07 15:08 21686568]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-01-03 14:54 486856]
"QIP2005"="C:\Program Files\QIP\qip.exe" [2007-11-16 14:17 3264512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 15:57 153136]
"SecurDisc"="C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe" [2007-06-01 10:06 1629744]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2006-11-23 15:10 56928]
"LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [2006-12-05 22:55 54832]
"ATKOSD2"="C:\Program Files\ATKOSD2\ATKOSD2.exe" [2007-07-03 10:48 7708672]
"SkyTel"="SkyTel.EXE" [2006-05-16 11:04 2879488 C:\WINDOWS\SkyTel.exe]
"RTHDCPL"="RTHDCPL.EXE" [2006-11-14 10:21 16270848 C:\WINDOWS\RTHDCPL.exe]
"SMSERIAL"="C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe" [2006-11-22 10:31 630784]
"Wireless Console 2"="C:\Program Files\Wireless Console 2\wcourier.exe" [2007-07-05 16:53 1040384]
"ACU"="C:\Program Files\Atheros\ACU.exe" [2006-11-17 11:00 348249]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [2006-10-12 11:55 815104]
"Power_Gear"="C:\Program Files\ASUS\Power4 Gear\BatteryLife.exe" [2006-07-26 18:01 90112]
"ATKHOTKEY"="C:\Program Files\ATK Hotkey\Hcontrol.exe" [2007-06-29 15:44 225280]
"ACMON"="C:\Program Files\ASUS\Splendid\ACMON.exe" [2007-01-16 14:11 843776]
"ASUS Camera ScreenSaver"="C:\WINDOWS\ASScrProlog.exe" [2007-12-27 17:04 37232]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [2007-12-29 16:59 949376]
"SMSystemAnalyzer"="C:\Program Files\iolo\System Mechanic 7\SMSystemAnalyzer.exe" [2008-01-11 10:30 832360]
"COMODO Firewall Pro"="C:\Program Files\COMODO\Firewall\cfp.exe" [2008-01-14 19:08 1481472]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2006-02-28 12:00 15360]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [2006-10-23 00:01:50]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"= C:\WINDOWS\system32\guard32.dll

R1 cmdGuard;COMODO Firewall Pro Sandbox Driver;C:\WINDOWS\system32\DRIVERS\cmdguard.sys [2008-01-14 19:08]
R1 cmdHlp;COMODO Firewall Pro Helper Driver;C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [2008-01-14 19:08]
R2 ASMMAP;ASMMAP;C:\Program Files\ATKGFNEX\ASMMAP.sys [2007-07-24 11:09]
R2 ATKGFNEXSrv;ATKGFNEX Service;C:\Program Files\ATKGFNEX\GFNEXSrv.exe [2007-06-11 11:30]
R2 ghaio;ghaio;C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [2006-12-28 09:17]
R2 ioloFileInfoList;iolo FileInfoList Service;C:\Program Files\iolo\common\lib\ioloServiceManager.exe [2007-11-22 00:11]
R2 ioloSystemService;iolo System Service;C:\Program Files\iolo\common\lib\ioloServiceManager.exe [2007-11-22 00:11]
R2 StkSSrv;Syntek AVStream USB2.0 WebCam Service;C:\WINDOWS\System32\StkCSrv.exe [2007-04-18 23:42]
R2 TOSHIBA Bluetooth Service;TOSHIBA Bluetooth Service;C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe [2007-02-25 21:55]
R3 ASNDIS5;ASNDIS5 Protocol Driver;C:\PROGRA~1\ATKHOT~1\ASNDIS5.SYS [2004-05-27 18:13]
R3 PSched;QoS Packet Scheduler;C:\WINDOWS\system32\DRIVERS\psched.sys [2006-02-28 12:00]
R3 RTSTOR;USB Mass Stroage Device;C:\WINDOWS\system32\drivers\RTSTOR.SYS [2007-01-15 14:37]
R3 StkCMini;Syntek AVStream USB2.0 1.3M WebCam;C:\WINDOWS\system32\Drivers\StkCMini.sys [2007-06-06 03:40]
R3 WSIMD;wsimd Service;C:\WINDOWS\system32\DRIVERS\wsimd.sys [2006-07-20 07:00]
S3 tap0901_2gm;VPN Anonymizer Adapter;C:\WINDOWS\system32\DRIVERS\tap0901_2gm.sys [2007-06-21 16:21]


[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
"C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-19 12:45:23
Windows 5.1.2600 Service Pack 2 FAT NTAPI

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

PROCESS: C:\WINDOWS\system32\winlogon.exe
-> C:\WINDOWS\system32\guard32.dll

PROCESS: C:\WINDOWS\system32\lsass.exe [5.01.2600.2180]
-> C:\WINDOWS\system32\guard32.dll
.
Completion time: 2008-01-19 12:46:04
ComboFix-quarantined-files.txt 2008-01-19 11:46:02
ComboFix2.txt 2008-01-15 17:10:10
.
2008-01-09 19:54:07 --- E O F ---


takze?


Offline

Užívateľ
Užívateľ
Obrázok užívateľa

Registrovaný: 13.01.08
Prihlásený: 08.03.09
Príspevky: 27
Témy: 4 | 4
Napísal autor témyOffline : 26.01.2008 13:26 | Hackovanie na accounty

pls nekdo odpovedzte ;)


Offline

Skúsený užívateľ
Skúsený užívateľ
Hackovanie na accounty

Registrovaný: 22.03.07
Prihlásený: 14.06.14
Príspevky: 2108
Témy: 15 | 15
Bydlisko: Bratislava V
NapísalOffline : 28.01.2008 0:22 | Hackovanie na accounty

do avengera:
Kód:
files to delete:
C:\WINDOWS\REGBK00.ZIP
C:\WINDOWS\system32\vcmgcd32.dll
C:\WINDOWS\zts2.exe
C:\WINDOWS\system32\iifgfgf.dll
C:\WINDOWS\rundl132.dll
C:\WINDOWS\logo1_.exe
C:\WINDOWS\R.COM
C:\WINDOWS\system32\T.COM

Neviem, či niečo máš v C:\s1sck, C:\s1sck, C:\s1ilc. Ak nie, vymaž.

C:\WINDOWS\system32\guard32.dll otestuj na www.virustotal.com Je to síce súčasť comoda, ale správa sa podozrivo.

Aktualizuj mwav a pošli log podľa tohto návodu.


 [ Príspevkov: 29 ] 


Hackovanie na accounty




© 2005 - 2017 PCforum, edited by JanoF