Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Desktop replaced by ad wallpaper


  • Please log in to reply

#16
kahdah

kahdah

    GeekU Teacher

  • Retired Staff
  • 15,822 posts
Sure :)

Click Start, point to All Programs, point to Accessories, point to System Tools, and then click System Restore.
On the Welcome screen, click Restore my computer to an earlier time, and then click Next.
On the Select a Restore Point page, select the date from the calendar that shows the point you'd like to restore to and then click Next

On the Confirm Restore Point Selection page, verify that the correct restore point is chosen, and then close any open programs.
Click Next if you are ready to proceed or click Back to change the restore point.
The computer will shut down automatically and reboot. On reboot, you'll see the Restoration Complete page, and then click OK.

If System Restore doesn't work in Normal Mode, it might work in Safe Mode. To use System Restore in Safe Mode, press the F8 key during reboot and choose Safe Mode. When your computer starts in either Safe Mode or Normal Mode, System Restore can be used to capture a working previous state. System Restore can't be opened unless the system is bootable into one of these modes.

Try that and let me know when things are back to normal and we will go from there.
  • 0

Advertisements


#17
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Do i need to have some kind of Windows boot CD or something else? i am asking because mine was lost.
  • 0

#18
kahdah

kahdah

    GeekU Teacher

  • Retired Staff
  • 15,822 posts
No system restore is built in.
Just follow those instructions and it should work.
  • 0

#19
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
i was able to do a system restore.
After system was restored i did Full system scans with "Malwarebytes" and "Ad-Aware". Scaners found some trojans and a couple of infected registry keys and removed them. That fixed my problem with not being able to access some websites(like geekstogo.com).
Also after the scans i was able to install Combo fix and do a scan with it. I will include Combofix log in the post as well as new Hijackthis log.
Internet is working fine so far. Now the problems i am facing are with Antivirus.
1. I can not install new Antivirus (like Kaspersky 2009 Internet Security) because it says i have AVG8 still installed. But i cant see anything in Add/Remove Program or Revo Uninstaller.
2. A week ago i installed Kaspersky 2009 Anti Virus (less advanced version of Kaspersky 2009 Internet Security). And right after installation i started getting BSOD with "Unexpected Kernel Mode Trap" message. After i deleted that AntiVirus BSOD stop appearing. The KAV's version that i installed was Russian, but my WindowsXPpro is English. Do you think that's the reason for this problem? Also i am wondering will BSOD happen again if i install English version of Kaspersky 2009 Internet Security? Or was that maybe just glitch that could be fixed with update?

Here are New HijackThis and Combo Fix logs:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:41:54, on 25.08.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Documents and Settings\Alim\Start Menu\Programs\Startup\prkiller.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\internet explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.c...rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1135840234\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [PrintDisp] C:\WINDOWS\system32\PrintDisp.exe
O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6\ICQ.exe" silent
O4 - Startup: prkiller.CFG
O4 - Startup: prkiller.exe
O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe

--
End of file - 5094 bytes
  • 0

#20
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Here is ComboFix log:

ComboFix 08-08-23.01 - Alim 2008-08-25 15:25:54.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1251.1.1033.18.215 [GMT -4:00]
Running from: C:\Documents and Settings\Alim\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Alim\Desktop\WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Alim\Application Data\macromedia\Flash Player\#SharedObjects\ZEXAJUBE\interclick.com
C:\Documents and Settings\Alim\Application Data\macromedia\Flash Player\#SharedObjects\ZEXAJUBE\interclick.com\ud.sol
C:\Documents and Settings\Alim\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com
C:\Documents and Settings\Alim\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com\settings.sol
C:\update.exe

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_TDSSSERV
-------\Service_tdssserv


((((((((((((((((((((((((( Files Created from 2008-07-25 to 2008-08-25 )))))))))))))))))))))))))))))))
.

2008-08-25 13:51 . 2008-08-25 13:51 <DIR> d-------- C:\Documents and Settings\Alim\Application Data\PC Tools
2008-08-25 13:51 . 2008-06-10 21:22 81,288 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys
2008-08-25 13:51 . 2008-06-02 15:19 66,952 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys
2008-08-25 13:51 . 2008-06-02 15:19 42,376 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys
2008-08-25 13:51 . 2008-06-02 15:19 29,576 --a------ C:\WINDOWS\system32\drivers\kcom.sys
2008-08-25 13:34 . 2008-08-25 13:34 <DIR> d-------- C:\WINDOWS\system32\drivers\Avg
2008-08-25 13:34 . 2008-08-25 13:34 <DIR> d-------- C:\Program Files\AVG
2008-08-25 13:34 . 2008-08-25 13:34 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg8
2008-08-25 13:34 . 2008-08-25 13:34 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition classic
2008-08-25 13:34 . 2008-08-25 13:34 <DIR> d-------- C:\Documents and Settings\Alim\Application Data\AVGTOOLBAR
2008-08-25 13:34 . 2008-08-25 13:34 <DIR> d--h----- C:\$AVG8.VAULT$
2008-08-24 19:55 . 2008-08-25 13:34 <DIR> d-------- C:\Avenger(2)
2008-08-24 15:03 . 2008-08-24 15:03 42 --a------ C:\WINDOWS\system32\AK083E209605E394C.lie
2008-08-24 13:46 . 2008-08-25 13:51 <DIR> d-------- C:\Program Files\Spyware Doctor
2008-08-24 13:39 . 2008-08-24 13:39 61,440 --a------ C:\WINDOWS\system32\drivers\dyzophla.sys
2008-08-24 13:04 . 2008-08-25 15:00 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-24 13:04 . 2008-08-24 13:04 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-24 13:04 . 2008-08-24 13:04 <DIR> d-------- C:\Documents and Settings\Alim\Application Data\Malwarebytes
2008-08-24 13:04 . 2008-08-17 15:01 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-24 13:04 . 2008-08-17 15:01 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-08-23 23:20 . 2008-08-23 23:20 <DIR> d-------- C:\Program Files\Trend Micro
2008-08-23 21:24 . 2008-08-23 21:24 <DIR> d-------- C:\Program Files\VS Revo Group
2008-08-23 16:21 . 2008-08-23 16:21 <DIR> d-------- C:\Program Files\Lavasoft
2008-08-23 16:21 . 2008-08-23 16:21 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-08-23 16:08 . 2008-08-23 16:08 76,040 --a------ C:\WINDOWS\system32\drivers\avgtdix.sys
2008-08-23 16:07 . 2008-08-23 16:07 97,928 --a------ C:\WINDOWS\system32\drivers\avgldx86.sys
2008-08-23 16:06 . 2008-08-23 16:06 45,568 --a------ C:\WINDOWS\system32\avgfwdx.dll
2008-08-23 16:06 . 2008-08-23 16:06 23,296 --a------ C:\WINDOWS\system32\drivers\avgfwdx.sys
2008-08-22 22:54 . 2008-08-22 22:54 <DIR> d-------- C:\Themes
2008-08-22 21:23 . 2008-08-24 15:00 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-08-21 10:05 . 2005-01-26 11:53 2,441,216 --a------ C:\SWRepublicCommando.exe
2008-08-21 09:50 . 2008-08-21 09:50 <DIR> d-------- C:\Program Files\LucasArts
2008-08-20 16:59 . 2008-08-20 16:59 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2008-08-20 16:59 . 2007-07-25 15:24 1,559,040 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-08-20 16:59 . 2006-09-24 17:11 389,120 --a------ C:\WINDOWS\system32\lameACM.acm
2008-08-20 16:59 . 2007-03-10 13:51 282,624 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-08-20 16:59 . 2004-01-25 18:18 217,088 --a------ C:\WINDOWS\system32\yv12vfw.dll
2008-08-20 16:59 . 2007-09-04 18:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll
2008-08-20 16:59 . 2007-09-21 02:52 118,784 --a------ C:\WINDOWS\system32\ac3acm.acm
2008-08-20 16:59 . 2007-07-29 17:51 7,680 --a------ C:\WINDOWS\system32\ff_vfw.dll
2008-08-20 16:59 . 2007-07-10 18:10 547 --a------ C:\WINDOWS\system32\ff_vfw.dll.manifest
2008-08-20 16:59 . 2007-10-03 17:03 414 --a------ C:\WINDOWS\system32\lame_acm.xml
2008-08-13 17:12 . 2008-08-13 17:12 8,192 --ahs---- C:\WINDOWS\Thumbs.db
2008-08-11 13:37 . 2008-08-14 19:38 <DIR> d-------- C:\diablo save
2008-08-10 13:37 . 2008-08-10 13:37 <DIR> d-------- C:\Save
2008-08-09 22:51 . 2008-08-09 22:51 0 --a------ C:\se
2008-08-08 18:51 . 2008-08-23 18:05 <DIR> d-------- C:\Program Files\Diablo 2 Lord of Destruction
2008-07-25 19:55 . 2008-07-25 20:24 <DIR> d-------- C:\Program Files\Cheatbook Database 2007

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-25 19:46 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-08-24 17:44 --------- d-----w C:\Program Files\Java
2008-08-24 16:32 --------- d-----w C:\Documents and Settings\Alim\Application Data\uTorrent
2008-08-23 20:21 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-08-23 02:51 --------- d-----w C:\Program Files\Common Files\Stardock
2008-08-23 02:46 --------- d-----w C:\Program Files\MobiMB Mobile Media Browser
2008-08-23 02:46 --------- d-----w C:\Program Files\Common Files\LogoManager
2008-08-23 02:43 --------- d-----w C:\Program Files\Winamp
2008-08-23 02:43 --------- d-----w C:\Program Files\DivX
2008-08-22 22:43 --------- d-----w C:\Program Files\VirtualNetwork
2008-08-21 13:50 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-09 03:19 --------- d-----w C:\Program Files\Star Wars - Knights of the Old Republic
2008-07-21 06:25 283,867 ----a-w C:\Program Files\uninstall.exe
2008-07-21 06:24 --------- d-----w C:\Program Files\KotF Jedi Academy Expansion Pack
2008-07-21 06:07 --------- d-----w C:\Program Files\Star Wars Jedi Knight Jedi Academy
2008-07-19 06:00 --------- d-----w C:\Program Files\VideoLAN
2008-07-18 07:24 --------- d-----w C:\Program Files\World of Warcraft
2008-07-03 00:27 --------- d-----w C:\Program Files\NETGEAR
2008-06-11 03:27 1,283,912 ----a-w C:\Program Files\WoW-2.3.0.7561-enUS-downloader.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 00:56 15360]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 12:24 1694208]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-02-13 19:09 486856]
"ICQ"="C:\Program Files\ICQ6\ICQ.exe" [2007-11-20 20:47 172280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 21:24 32768]
"HostManager"="C:\Program Files\Common Files\AOL\1135840234\ee\AOLSoftware.exe" [2006-05-09 20:24 50760]
"IPHSend"="C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe" [2006-02-17 12:59 124520]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 03:06 40048]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-10-19 21:16 286720]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 13:35 90112]
"PrintDisp"="C:\WINDOWS\system32\PrintDisp.exe" [2007-09-02 22:29 385024]
"ISTray"="C:\Program Files\Spyware Doctor\pctsTray.exe" [2008-07-16 09:16 1166216]
"C-Media Mixer"="Mixer.exe" [2002-06-13 00:23 1495040 C:\WINDOWS\mixer.exe]

C:\Documents and Settings\Alim\Start Menu\Programs\Startup\
prkiller.CFG [2008-08-25 15:46:34 360]
prkiller.exe [2003-07-30 00:04:32 29184]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
NETGEAR WG111T Smart Wizard.lnk - C:\Program Files\NETGEAR\WG111T\wlan111t.exe [2008-07-02 20:27:43 884840]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="C:\\WINDOWS\\system32\\logonuiX.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.I420"= i420vfw.dll
"VIDC.YV12"= yv12vfw.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dllschannel.dlldigest.dllmsnsspc.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\ICQ6\\ICQ.exe"=
"C:\\Program Files\\Opera\\Opera.exe"=
"C:\\Documents and Settings\\Alim\\Desktop\\uTorrent.exe"=
"C:\\Program Files\\Common Files\\AOL\\1135840234\\ee\\aim6.exe"=
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"C:\\Program Files\\Common Files\\AOL\\1135840234\\ee\\aolsoftware.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3724:TCP"= 3724:TCP:Blizzard Downloader: 3724

R2 AvgTdiX;AVG8 Network Redirector;C:\WINDOWS\system32\Drivers\avgtdix.sys [2008-08-23 16:08]
R3 AN983;ADMtek AN983/AN985/ADM951X 10/100Mbps Fast Ethernet Adapter;C:\WINDOWS\system32\DRIVERS\AN983.sys [2004-08-03 18:31]
R3 AR5523;NETGEAR WG111T USB2.0 Wireless Card Service;C:\WINDOWS\system32\DRIVERS\WG11TND5.sys [2005-09-05 11:21]
R3 Avgfwdx;Avgfwdx;C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2008-08-23 16:06]
R3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;C:\WINDOWS\system32\DNINDIS5.SYS [2003-07-24 12:10]
S0 AvgRkx86;avgrkx86.sys;C:\WINDOWS\system32\Drivers\avgrkx86.sys []
S1 AvgLdx86;AVG AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-08-23 16:07]
S2 avg8emc;AVG8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe []
S2 avg8wd;AVG8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-08-23 16:07]
S2 avgfws8;AVG8 Firewall;C:\PROGRA~1\AVG\AVG8\avgfws8.exe []
S3 Avgfwfd;AVG network filter service;C:\WINDOWS\system32\DRIVERS\avgfwdx.sys [2008-08-23 16:06]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\F]
\Shell\AutoRun\command - F:\autorun.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{35350d26-e41c-11dc-8977-00045a69d192}]
\Shell\AutoRun\command - J:\autorun.exe
.
Contents of the 'Scheduled Tasks' folder

2008-07-08 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2007-08-29 15:57]
.
- - - - ORPHANS REMOVED - - - -

HKCU-Run-Download Master - C:\Program Files\Download Master\dmaster.exe
HKCU-Run-BitTorrent - C:\Program Files\BitTorrent\bittorrent.exe
HKLM-Run-ISUSPM - C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
HKU-Default-Run-Picasa Media Detector - C:\Program Files\Picasa2\PicasaMediaDetector.exe


.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\Alim\Application Data\Mozilla\Firefox\Profiles\inapij3w.default\
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-25 15:44:54
Windows 5.1.2600 Service Pack 2 NTFS

detected NTDLL code modification:
ZwClose

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Documents and Settings\Alim\Start Menu\Programs\Startup\prkiller.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\WINDOWS\system32\imapi.exe
.
**************************************************************************
.
Completion time: 2008-08-25 15:51:34 - machine was rebooted
ComboFix-quarantined-files.txt 2008-08-25 19:51:22

Pre-Run: 8,699,138,048 bytes free
Post-Run: 8,601,276,416 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect /usepmtimer

205 --- E O F --- 2008-08-21 11:07:21
  • 0

#21
kahdah

kahdah

    GeekU Teacher

  • Retired Staff
  • 15,822 posts
I will attempt to remove all of AVg that I can see also you appear to have Avira Antivirus as well maybe remnants of it.
I will remove all of avg and avira then you should try to install the english version of kaspersky and see then if you are able to.

Also a side note if you are downloading these via torrent sites then you are running the risk of getting infected again as most of the files there can have malware in them.
=================================
1. Please open Notepad
  • Click Start , then Run
  • type in notepad in the Run Box then hit ok.

2. Now copy/paste the entire content of the codebox below into the Notepad window:

File::
C:\WINDOWS\system32\drivers\dyzophla.sys
C:\WINDOWS\system32\drivers\avgtdix.sys
C:\WINDOWS\system32\drivers\avgldx86.sys
C:\WINDOWS\system32\avgfwdx.dll
C:\WINDOWS\system32\drivers\avgfwdx.sys
F:\autorun.exe
J:\autorun.exe

Folder::
C:\WINDOWS\system32\drivers\Avg
C:\Program Files\AVG
C:\Documents and Settings\All Users\Application Data\avg8
C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition classic
C:\Documents and Settings\Alim\Application Data\AVGTOOLBAR
C:\$AVG8.VAULT$

Driver::
AvgTdiX
Avgfwdx
AvgRkx86
AvgLdx86
avg8emc
avg8wd
avgfws8
Avgfwfd

Registry::
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\F]
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{35350d26-e41c-11dc-8977-00045a69d192}]


3. Save the above as CFScript.txt

4. Then drag the CFScript.txt into ComboFix.exe as depicted in the animation below. This will start ComboFix again.

Posted Image


5. After reboot, (in case it asks to reboot), please post the following reports/logs into your next reply:
  • Combofix.txt
  • A new HijackThis log.

  • 0

#22
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
2 different installers of Kaspersky still showing AVG8 present and is not allowing to install. Here are logs:

ComboFix 08-08-23.01 - Alim 2008-08-25 20:17:37.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1251.1.1033.18.242 [GMT -4:00]
Running from: C:\Documents and Settings\Alim\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Alim\Desktop\CFScript.txt
* Created a new restore point

FILE ::
C:\WINDOWS\system32\avgfwdx.dll
C:\WINDOWS\system32\drivers\avgfwdx.sys
C:\WINDOWS\system32\drivers\avgldx86.sys
C:\WINDOWS\system32\drivers\avgtdix.sys
C:\WINDOWS\system32\drivers\dyzophla.sys
F:\autorun.exe
J:\autorun.exe
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\All Users\Application Data\avg8
C:\WINDOWS\system32\disk.dll
C:\WINDOWS\system32\drivers\dyzophla.sys
F:\autorun.exe . . . . failed to delete

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_AVGRKX86
-------\Legacy_AVGTDIX


((((((((((((((((((((((((( Files Created from 2008-07-26 to 2008-08-26 )))))))))))))))))))))))))))))))
.

2008-08-25 19:28 . 2008-08-25 19:28 <DIR> d-------- C:\Documents and Settings\Alim\Application Data\Media Player Classic
2008-08-25 19:27 . 2008-08-25 19:28 <DIR> d-------- C:\Program Files\Real Alternative
2008-08-25 19:15 . 2008-08-25 19:15 71,680 --a------ C:\WINDOWS\system32\LoveFly.dll
2008-08-25 17:57 . 2008-06-10 02:32 73,728 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-08-25 17:54 . 2008-08-25 17:54 <DIR> d-------- C:\Program Files\Common Files\Java
2008-08-24 19:55 . 2008-08-25 13:34 <DIR> d-------- C:\Avenger(2)
2008-08-24 15:03 . 2008-08-24 15:03 42 --a------ C:\WINDOWS\system32\AK083E209605E394C.lie
2008-08-24 13:04 . 2008-08-25 15:00 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-08-24 13:04 . 2008-08-24 13:04 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-24 13:04 . 2008-08-24 13:04 <DIR> d-------- C:\Documents and Settings\Alim\Application Data\Malwarebytes
2008-08-24 13:04 . 2008-08-17 15:01 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-08-24 13:04 . 2008-08-17 15:01 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-08-23 23:20 . 2008-08-23 23:20 <DIR> d-------- C:\Program Files\Trend Micro
2008-08-23 21:24 . 2008-08-23 21:24 <DIR> d-------- C:\Program Files\VS Revo Group
2008-08-23 16:21 . 2008-08-23 16:21 <DIR> d-------- C:\Program Files\Lavasoft
2008-08-23 16:21 . 2008-08-23 16:21 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-08-22 22:54 . 2008-08-22 22:54 <DIR> d-------- C:\Themes
2008-08-22 21:23 . 2008-08-25 15:57 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-08-21 10:05 . 2005-01-26 11:53 2,441,216 --a------ C:\SWRepublicCommando.exe
2008-08-21 09:50 . 2008-08-21 09:50 <DIR> d-------- C:\Program Files\LucasArts
2008-08-20 16:59 . 2008-08-20 16:59 <DIR> d-------- C:\Program Files\K-Lite Codec Pack
2008-08-20 16:59 . 2007-07-25 15:24 1,559,040 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-08-20 16:59 . 2006-09-24 17:11 389,120 --a------ C:\WINDOWS\system32\lameACM.acm
2008-08-20 16:59 . 2007-03-10 13:51 282,624 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-08-20 16:59 . 2004-01-25 18:18 217,088 --a------ C:\WINDOWS\system32\yv12vfw.dll
2008-08-20 16:59 . 2007-09-04 18:56 164,352 --a------ C:\WINDOWS\system32\unrar.dll
2008-08-20 16:59 . 2007-09-21 02:52 118,784 --a------ C:\WINDOWS\system32\ac3acm.acm
2008-08-20 16:59 . 2007-07-29 17:51 7,680 --a------ C:\WINDOWS\system32\ff_vfw.dll
2008-08-20 16:59 . 2007-07-10 18:10 547 --a------ C:\WINDOWS\system32\ff_vfw.dll.manifest
2008-08-20 16:59 . 2007-10-03 17:03 414 --a------ C:\WINDOWS\system32\lame_acm.xml
2008-08-13 17:12 . 2008-08-13 17:12 8,192 --ahs---- C:\WINDOWS\Thumbs.db
2008-08-11 13:37 . 2008-08-14 19:38 <DIR> d-------- C:\diablo save
2008-08-10 13:37 . 2008-08-10 13:37 <DIR> d-------- C:\Save
2008-08-09 22:51 . 2008-08-09 22:51 0 --a------ C:\se
2008-08-08 18:51 . 2008-08-23 18:05 <DIR> d-------- C:\Program Files\Diablo 2 Lord of Destruction

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-25 21:57 --------- d-----w C:\Program Files\Java
2008-08-25 20:48 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-08-24 16:32 --------- d-----w C:\Documents and Settings\Alim\Application Data\uTorrent
2008-08-23 20:21 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-08-23 02:51 --------- d-----w C:\Program Files\Common Files\Stardock
2008-08-23 02:46 --------- d-----w C:\Program Files\MobiMB Mobile Media Browser
2008-08-23 02:46 --------- d-----w C:\Program Files\Common Files\LogoManager
2008-08-23 02:43 --------- d-----w C:\Program Files\Winamp
2008-08-23 02:43 --------- d-----w C:\Program Files\DivX
2008-08-22 22:43 --------- d-----w C:\Program Files\VirtualNetwork
2008-08-21 13:50 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-09 03:19 --------- d-----w C:\Program Files\Star Wars - Knights of the Old Republic
2008-07-26 00:24 --------- d-----w C:\Program Files\Cheatbook Database 2007
2008-07-21 06:25 283,867 ----a-w C:\Program Files\uninstall.exe
2008-07-21 06:24 --------- d-----w C:\Program Files\KotF Jedi Academy Expansion Pack
2008-07-21 06:07 --------- d-----w C:\Program Files\Star Wars Jedi Knight Jedi Academy
2008-07-19 06:00 --------- d-----w C:\Program Files\VideoLAN
2008-07-18 07:24 --------- d-----w C:\Program Files\World of Warcraft
2008-07-03 00:27 --------- d-----w C:\Program Files\NETGEAR
2008-06-11 03:27 1,283,912 ----a-w C:\Program Files\WoW-2.3.0.7561-enUS-downloader.exe
.

((((((((((((((((((((((((((((( [email protected]_15.50.00.17 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-08-25 17:36:58 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
+ 2008-08-26 00:22:35 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
- 2008-08-25 17:36:58 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2008-08-26 00:22:35 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2008-08-25 17:36:58 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2008-08-26 00:22:35 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2008-06-10 05:21:01 135,168 ----a-w C:\WINDOWS\system32\java.exe
+ 2008-06-10 05:21:04 135,168 ----a-w C:\WINDOWS\system32\javaw.exe
+ 2008-06-10 06:32:34 139,264 ----a-w C:\WINDOWS\system32\javaws.exe
- 2001-06-23 05:31:20 278,528 ----a-w C:\WINDOWS\system32\pncrt.dll
+ 2008-07-30 03:00:00 278,528 ----a-w C:\WINDOWS\system32\pncrt.dll
- 1998-03-26 08:57:34 6,656 ----a-w C:\WINDOWS\system32\pndx5016.dll
+ 2008-07-30 03:00:00 6,656 ----a-w C:\WINDOWS\system32\pndx5016.dll
- 1998-05-13 00:36:44 5,632 ----a-w C:\WINDOWS\system32\pndx5032.dll
+ 2008-07-30 03:00:00 5,632 ----a-w C:\WINDOWS\system32\pndx5032.dll
- 2006-10-07 09:18:32 185,952 ----a-w C:\WINDOWS\system32\rmoc3260.dll
+ 2008-07-30 03:00:00 185,944 ----a-w C:\WINDOWS\system32\rmoc3260.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 00:56 15360]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 12:24 1694208]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-02-13 19:09 486856]
"ICQ"="C:\Program Files\ICQ6\ICQ.exe" [2007-11-20 20:47 172280]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-11-02 21:24 32768]
"HostManager"="C:\Program Files\Common Files\AOL\1135840234\ee\AOLSoftware.exe" [2006-05-09 20:24 50760]
"IPHSend"="C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe" [2006-02-17 12:59 124520]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 03:06 40048]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-10-19 21:16 286720]
"StartCCC"="C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 13:35 90112]
"PrintDisp"="C:\WINDOWS\system32\PrintDisp.exe" [2007-09-02 22:29 385024]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 04:27 144784]
"C-Media Mixer"="Mixer.exe" [2002-06-13 00:23 1495040 C:\WINDOWS\mixer.exe]

C:\Documents and Settings\Alim\Start Menu\Programs\Startup\
prkiller.CFG [2008-08-25 20:28:06 360]
prkiller.exe [2003-07-30 00:04:32 29184]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
NETGEAR WG111T Smart Wizard.lnk - C:\Program Files\NETGEAR\WG111T\wlan111t.exe [2008-07-02 20:27:43 884840]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="C:\\WINDOWS\\system32\\logonuiX.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Love]
2008-08-25 19:15 71680 C:\WINDOWS\system32\LoveFly.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.I420"= i420vfw.dll
"VIDC.YV12"= yv12vfw.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dllschannel.dlldigest.dllmsnsspc.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\Program Files\\ICQ6\\ICQ.exe"=
"C:\\Program Files\\Opera\\Opera.exe"=
"C:\\Documents and Settings\\Alim\\Desktop\\uTorrent.exe"=
"C:\\Program Files\\Common Files\\AOL\\1135840234\\ee\\aim6.exe"=
"C:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"C:\\Program Files\\Common Files\\AOL\\1135840234\\ee\\aolsoftware.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"3724:TCP"= 3724:TCP:Blizzard Downloader: 3724

R3 AN983;ADMtek AN983/AN985/ADM951X 10/100Mbps Fast Ethernet Adapter;C:\WINDOWS\system32\DRIVERS\AN983.sys [2004-08-03 18:31]
R3 AR5523;NETGEAR WG111T USB2.0 Wireless Card Service;C:\WINDOWS\system32\DRIVERS\WG11TND5.sys [2005-09-05 11:21]
R3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;C:\WINDOWS\system32\DNINDIS5.SYS [2003-07-24 12:10]
.
Contents of the 'Scheduled Tasks' folder

2008-07-08 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2007-08-29 15:57]
.

**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-25 20:23:11
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Documents and Settings\Alim\Start Menu\Programs\Startup\prkiller.exe
C:\WINDOWS\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2008-08-25 20:29:16 - machine was rebooted
ComboFix-quarantined-files.txt 2008-08-26 00:29:10
ComboFix2.txt 2008-08-25 19:51:36

Pre-Run: 7,335,366,656 bytes free
Post-Run: 7,337,492,480 bytes free

187 --- E O F --- 2008-08-21 11:07:21



___________________________________HIJCKTHS___________________________________

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:40:14, on 25.08.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Mixer.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Common Files\AOL\1135840234\ee\AOLSoftware.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\PrintDisp.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Documents and Settings\Alim\Start Menu\Programs\Startup\prkiller.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\Program Files\internet explorer\iexplore.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.c...rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1135840234\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [PrintDisp] C:\WINDOWS\system32\PrintDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6\ICQ.exe" silent
O4 - Startup: prkiller.CFG
O4 - Startup: prkiller.exe
O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: Love - C:\WINDOWS\SYSTEM32\LoveFly.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)

--
End of file - 5176 bytes
  • 0

#23
kahdah

kahdah

    GeekU Teacher

  • Retired Staff
  • 15,822 posts
Re-open Hijackthis and click on "Do a system scan only"
Then place a check mark next to these entries below:

O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O20 - Winlogon Notify: Love - C:\WINDOWS\SYSTEM32\LoveFly.dll



Now click on Fix Checked and then close Hijackthis.
=================================
Please download the OTMoveIt2 by OldTimer.
  • Save it to your desktop.
  • Please double-click OTMoveIt2.exe to run it. (Vista users, please right click on OTMoveit2.exe and select "Run as an Administrator")
  • Copy the file paths below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):

    C:\WINDOWS\system32\LoveFly.dll
  • Return to OTMoveIt2, right click in the "Paste List of Files/Folders to be Moved" window (under the light Yellow bar) and choose Paste.
  • Click the red Moveit! button.
  • OTMoveit2 will create a log of moved files in the C:\_OTMoveIt\MovedFiles folder. The log's name will appear as the date and time it was created, with the format mmddyyyy_hhmmss.log. Open this log in Notepad and post its contents in your next reply.
  • Close OTMoveIt2
If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes.
==================================
Post that log and a new Hijackthis log and we will continue.
  • 0

#24
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
---------------------- OTMoveIt log -----------------------

LoadLibrary failed for C:\WINDOWS\system32\LoveFly.dll
C:\WINDOWS\system32\LoveFly.dll NOT unregistered.
C:\WINDOWS\system32\LoveFly.dll moved successfully.

OTMoveIt2 by OldTimer - Version 1.0.4.3 log created on 08252008_232411


----------------------- HJCKTHS log ------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:25:58, on 25.08.2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Mixer.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Common Files\AOL\1135840234\ee\AOLSoftware.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\PrintDisp.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Documents and Settings\Alim\Start Menu\Programs\Startup\prkiller.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yandex.ru/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.c...rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1135840234\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKLM\..\Run: [PrintDisp] C:\WINDOWS\system32\PrintDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [ICQ] "C:\Program Files\ICQ6\ICQ.exe" silent
O4 - Startup: prkiller.CFG
O4 - Startup: prkiller.exe
O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)

--
End of file - 4991 bytes
  • 0

#25
kahdah

kahdah

    GeekU Teacher

  • Retired Staff
  • 15,822 posts
Download Registry Search to your desktop.
  • Right click on the compressed RegSearch folder, and choose "Extract All". In the box that pops open, click "Next", then "Next" again, and then "Finish". You now have another RegSearch folder on your desktop.
  • Open the new folder, and double click on regsearch.exe
  • Paste in this -> AVG inside of the white box.
  • Click OK and Registry Search will scan your registry for the file(s), and a Notepad box will open with a report.
  • Please reply here with the entire contents of the Notepad file from RegSearch.

  • 0

Advertisements


#26
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
Windows Registry Editor Version 5.00

; Registry Search 2.0 by Bobbi Flekman © 2005
; Version: 2.0.5.0

; Results at 26.08.2008 20:59:11 for strings:
; 'avg'
; Strings excluded from search:
; (None)
; Search in:
; Registry Keys Registry Values Registry Data
; HKEY_LOCAL_MACHINE HKEY_USERS


[HKEY_LOCAL_MACHINE\SOFTWARE\ATI Technologies\CDS\Device\0]
"DeviceItem0054"="[Non-Plug and Play Drivers] -> [avgio] (0x00000000)"

[HKEY_LOCAL_MACHINE\SOFTWARE\AVG]

[HKEY_LOCAL_MACHINE\SOFTWARE\AVG\Avg8]

[HKEY_LOCAL_MACHINE\SOFTWARE\AVG\Avg8\FwSetup]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\aAvgAPI.AvgBro]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\aAvgAPI.AvgBro]
@="AvgBro Object"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\aAvgAPI.AvgBro\Clsid]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification]
@="AVGeneralNotification Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification\CurVer]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification\CurVer]
@="AVGeneralNotification.AVGeneralNotification.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification.1]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification.1]
@="AVGeneralNotification Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AVGeneralNotification.AVGeneralNotification.1\CLSID]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A}]
@="AvgBro Object"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A}\LocalServer32]
@="C:\\PROGRA~1\\AVG\\AVG8\\aAvgApi.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A}\ProgID]
@="aAvgAPI.AvgBro"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{239A3C5E-8D41-11D1-B675-00C04FA3C554}]
@="AVGeneralNotification Class"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{239A3C5E-8D41-11D1-B675-00C04FA3C554}\ProgID]
@="AVGeneralNotification.AVGeneralNotification.1"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{239A3C5E-8D41-11D1-B675-00C04FA3C554}\VersionIndependentProgID]
@="AVGeneralNotification.AVGeneralNotification"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D}]
@="IAvgBroEvents"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C}]
@="IAvgBro"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LinkScannerIE.NavFilter]
@="AVG Safe Search"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LinkScannerIE.NavFilter.1]
@="AVG Safe Search"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30}\1.0]
@="aAvgAPI Library"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30}\1.0\0\win32]
@="C:\\Program Files\\AVG\\AVG8\\aAvgApi.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30}\1.0\HELPDIR]
@="C:\\Program Files\\AVG\\AVG8\\"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{5DAB1D4C-D020-41CD-936F-D63FF662E9F7}\1.0\0\win32]
@="C:\\Program Files\\AVG\\AVG8\\avgssie.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F224B128-6DDF-4E0A-870E-0C9CDFF7C57E}\1.0]
@="AVG Packet Filter Notify 1.0 Type Library"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{F224B128-6DDF-4E0A-870E-0C9CDFF7C57E}\1.0\0\win32]
@="C:\\WINDOWS\\system32\\avgfwdx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\avgfrw]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\avgfrw\DEBUG]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\avgfws8]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\avgfws8\DEBUG]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\11.0\Registration\{90110409-6000-11D3-8CFE-0150048383C9}]
"Current3"="UAIABvAGYAIAByAGUAYwBlAGkAcAB0AC4AIAAKAEkAZgAgAGEAbgAgAGkAbQBwAGwAaQBlAGQAI
AB3AGEAcgByAGEAbgB0AHkAIABvAHIAIABjAG8AbgBkAGkAdABpAG8AbgAgAGkAcwAgAGMAcgBlAGEAdA
BlAGQAIABiAHkAIAB5AG8AdQByACAAcwB0AGEAdABlAC8AagB1AHIAaQBzAGQAaQBjAHQAaQBvAG4AIAB
hAG4AZAAgAGYAZQBkAGUAcgBhAGwAIABvAHIAIABzAHQAYQB0AGUALwBwAHIAbwB2AGkAbgBjAGkAYQBs
ACAAbABhAHcAIABwAHIAbwBoAGkAYgBpAHQAcwAgAGQAaQBzAGMAbABhAGkAbQBlAHIAIABvAGYAIABpA
HQALAAgAHkAbwB1ACAAYQBsAHMAbwAgAGgAYQB2AGUAIABhAG4AIABpAG0AcABsAGkAZQBkACAAdwBhAH
IAcgBhAG4AdAB5ACAAbwByACAAYwBvAG4AZABpAHQAaQBvAG4ALAAgAEIAVQBUACAATwBOAEwAWQAgAEE
AUwAgAFQATwAgAEQARQBGAEUAQwBUAFMAIABEAEkAUwBDAE8AVgBFAFIARQBEACAARABVAFIASQBOAEcA
IABUAEgARQAgAFAARQBSAEkATwBEACAATwBGACAAVABIAEkAUwAgAEwASQBNAEkAVABFAEQAIABXAEEAU
gBSAEEATgBUAFkAIAAoAE4ASQBOAEUAVABZACAARABBAFkAUwApAC4AIABBAFMAIABUAE8AIABBAE4AWQ
AgAEQARQBGAEUAQwBUAFMAIABEAEkAUwBDAE8AVgBFAFIARQBEACAAQQBGAFQARQBSACAAVABIAEUAIAB
OAEkATgBFAFQAWQAgAEQAQQBZACAAUABFAFIASQBPAEQALAAgAFQASABFAFIARQAgAEkAUwAgAE4ATwAg
AFcAQQBSAFIAQQBOAFQAWQAgAE8AUgAgAEMATwBOAEQASQBUAEkATwBOACAATwBGACAAQQBOAFkAIABLA
EkATgBEAC4AIAAgAFMAbwBtAGUAIABzAHQAYQB0AGUAcwAvAGoAdQByAGkAcwBkAGkAYwB0AGkAbwBuAH
MAIABkAG8AIABuAG8AdAAgAGEAbABsAG8AdwAgAGwAaQBtAGkAdABhAHQAaQBvAG4AcwAgAG8AbgAgAGg
AbwB3ACAAbABvAG4AZwAgAGEAbgAgAGkAbQBwAGwAaQBlAGQAIAB3AGEAcgByAGEAbgB0AHkAIABvAHIA
IABjAG8AbgBkAGkAdABpAG8AbgAgAGwAYQBzAHQAcwAsACAAcwBvACAAdABoAGUAIABhAGIAbwB2AGUAI
ABsAGkAbQBpAHQAYQB0AGkAbwBuACAAbQBhAHkAIABuAG8AdAAgAGEAcABwAGwAeQAgAHQAbwAgAHkAbw
B1AC4ACgBBAG4AeQAgAHMAdQBwAHAAbABlAG0AZQBuAHQAcwAgAG8AcgAgAHUAcABkAGEAdABlAHMAIAB
0AG8AIAB0AGgAZQAgAFMAbwBmAHQAdwBhAHIAZQAsACAAaQBuAGMAbAB1AGQAaQBuAGcAIAB3AGkAdABo
AG8AdQB0ACAAbABpAG0AaQB0AGEAdABpAG8AbgAsACAAYQBuAHkAIAAoAGkAZgAgAGEAbgB5ACkAIABzA
GUAcgB2AGkAYwBlACAAcABhAGMAawBzACAAbwByACAAaABvAHQAIABmAGkAeABlAHMAIABwAHIAbwB2AG
kAZABlAGQAIAB0AG8AIAB5AG8AdQAgAGEAZgB0AGUAcgAgAHQAaABlACAAZQB4AHAAaQByAGEAdABpAG8
AbgAgAG8AZgAgAHQAaABlACAAbgBpAG4AZQB0AHkAIABkAGEAeQAgAEwAaQBtAGkAdABlAGQAIABXAGEA
cgByAGEAbgB0AHkAIABwAGUAcgBpAG8AZAAgAGEAcgBlACAAbgBvAHQAIABjAG8AdgBlAHIAZQBkACAAY
gB5ACAAYQBuAHkAIAB3AGEAcgByAGEAbgB0AHkAIABvAHIAIABjAG8AbgBkAGkAdABpAG8AbgAsACAAZQ
B4AHAAcgBlAHMAcwAsACAAaQBtAHAAbABpAGUAZAAgAG8AcgAgAHMAdABhAHQAdQB0AG8AcgB5AC4ACgB
MAEkATQBJAFQAQQBUAEkATwBOACAATwBOACAAUgBFAE0ARQBEAEkARQBTADsAIABOAE8AIABDAE8ATgBT
AEUAUQBVAEUATgBUAEkAQQBMACAATwBSACAATwBUAEgARQBSACAARABBAE0AQQBHAEUAUwAuACAAWQBvA
HUAcgAgAGUAeABjAGwAdQBzAGkAdgBlACAAcgBlAG0AZQBkAHkAIABmAG8AcgAgAGEAbgB5ACAAYgByAG
UAYQBjAGgAIABvAGYAIAB0AGgAaQBzACAATABpAG0AaQB0AGUAZAAgAFcAYQByAHIAYQBuAHQAeQAgAGk
AcwAgAGEAcwAgAHMAZQB0ACAAZgBvAHIAdABoACAAYgBlAGwAbwB3AC4AIAAgAEUAeABjAGUAcAB0ACAA
ZgBvAHIAIABhAG4AeQAgAHIAZQBmAHUAbgBkACAAZQBsAGUAYwB0AGUAZAAgAGIAeQAgAE0AaQBjAHIAb
wBzAG8AZgB0ACwAIABZAE8AVQAgAEEAUgBFACAATgBPAFQAIABFAE4AVABJAFQATABFAEQAIABUAE8AIA
BBAE4AWQAgAEQAQQBNAEEARwBFAFMALAAgAEkATgBDAEwAVQBEAEkATgBHACAAQgBVAFQAIABOAE8AVAA
gAEwASQBNAEkAVABFAEQAIABUAE8AIABDAE8ATgBTAEUAUQBVAEUATgBUAEkAQQBMACAARABBAE0AQQBH
AEUAUwAsACAAaQBmACAAdABoAGUAIABTAG8AZgB0AHcAYQByAGUAIABkAG8AZQBzACAAbgBvAHQAIABtA
GUAZQB0ACAATQBpAGMAcgBvAHMAbwBmAHQAJwBzACAATABpAG0AaQB0AGUAZAAgAFcAYQByAHIAYQBuAH
QAeQAsACAAYQBuAGQALAAgAHQAbwAgAHQAaABlACAAbQBhAHgAaQBtAHUAbQAgAGUAeAB0AGUAbgB0ACA
AYQBsAGwAbwB3AGUAZAAgAGIAeQAgAGEAcABwAGwAaQBjAGEAYgBsAGUAIABsAGEAdwAsACAAZQB2AGUA
bgAgAGkAZgAgAGEAbgB5ACAAcgBlAG0AZQBkAHkAIABmAGEAaQBsAHMAIABvAGYAIABpAHQAcwAgAGUAc
wBzAGUAbgB0AGkAYQBsACAAcAB1AHIAcABvAHMAZQAuACAAIABUAGgAZQAgAHQAZQByAG0AcwAgAG8AZg
AgAFMAZQBjAHQAaQBvAG4AIAAxADgAIAAoACIARQB4AGMAbAB1AHMAaQBvAG4AIABvAGYAIABJAG4AYwB
pAGQAZQBuAHQAYQBsACwAIABDAG8AbgBzAGUAcQB1AGUAbgB0AGkAYQBsACAAYQBuAGQAIABDAGUAcgB0
AGEAaQBuACAATwB0AGgAZQByACAARABhAG0AYQBnAGUAcwAiACkAIABhAHIAZQAgAGEAbABzAG8AIABpA
G4AYwBvAHIAcABvAHIAYQB0AGUAZAAgAGkAbgB0AG8AIAB0AGgAaQBzACAATABpAG0AaQB0AGUAZAAgAF
cAYQByAHIAYQBuAHQAeQAuACAAUwBvAG0AZQAgAHMAdABhAHQAZQBzAC8AagB1AHIAaQBzAGQAaQBjAHQ
AaQBvAG4AcwAgAGQAbwAgAG4AbwB0ACAAYQBsAGwAbwB3ACAAdABoAGUAIABlAHgAYwBsAHUAcwBpAG8A
bgAgAG8AcgAgAGwAaQBtAGkAdABhAHQAaQBvAG4AIABvAGYAIABpAG4AYwBpAGQAZQBuAHQAYQBsACAAb
wByACAAYwBvAG4AcwBlAHEAdQBlAG4AdABpAGEAbAAgAGQAYQBtAGEAZwBlAHMALAAgAHMAbwAgAHQAaA
BlACAAYQBiAG8AdgBlACAAbABpAG0AaQB0AGEAdABpAG8AbgAgAG8AcgAgAGUAeABjAGwAdQBzAGkAbwB
uACAAbQBhAHkAIABuAG8AdAAgAGEAcABwAGwAeQAgAHQAbwAgAHkAbwB1AC4AIAAgAFQAaABpAHMAIABM
AGkAbQBpAHQAZQBkACAAVwBhAHIAcgBhAG4AdAB5ACAAZwBpAHYAZQBzACAAeQBvAHUAIABzAHAAZQBjA
GkAZgBpAGMAIABsAGUAZwBhAGwAIAByAGkAZwBoAHQAcwAuACAAIABZAG8AdQAgAG0AYQB5ACAAaABhAH
YAZQAgAG8AdABoAGUAcgAgAHIAaQBnAGgAdABzACAAdwBoAGkAYwBoACAAdgBhAHIAeQAgAGYAcgBvAG0
AIABzAHQAYQB0AGUALwBqAHUAcgBpAHMAZABpAGMAdABpAG8AbgAgAHQAbwAgAHMAdABhAHQAZQAvAGoA
dQByAGkAcwBkAGkAYwB0AGkAbwBuAC4AIABZAE8AVQBSACAARQBYAEMATABVAFMASQBWAEUAIABSAEUAT
QBFAEQAWQAuACAAIABNAGkAYwByAG8AcwBvAGYAdAAnAHMAIABhAG4AZAAgAGkAdABzACAAcwB1AHAAcA
BsAGkAZQByAHMAJwAgAGUAbgB0AGkAcgBlACAAbABpAGEAYgBpAGwAaQB0AHkAIABhAG4AZAAgAHkAbwB
1AHIAIABlAHgAYwBsAHUAcwBpAHYAZQAgAHIAZQBtAGUAZAB5ACAAZgBvAHIAIABhAG4AeQAgAGIAcgBl
AGEAYwBoACAAbwBmACAAdABoAGkAcwAgAEwAaQBtAGkAdABlAGQAIABXAGEAcgByAGEAbgB0AHkAIABvA
HIAIABmAG8AcgAgAGEAbgB5ACAAbwB0AGgAZQByACAAYgByAGUAYQBjAGgAIABvAGYAIAB0AGgAaQBzAC
AARQBVAEwAQQAgAG8AcgAgAGYAbwByACAAYQBuAHkAIABvAHQAaABlAHIAIABsAGkAYQBiAGkAbABpAHQ
AeQAgAHIAZQBsAGEAdABpAG4AZwAgAHQAbwAgAHQAaABlACAAUwBvAGYAdAB3AGEAcgBlACAAcwBoAGEA
bABsACAAYgBlACwAIABhAHQAIABNAGkAYwByAG8AcwBvAGYAdAAnAHMAIABvAHAAdABpAG8AbgAgAGYAc
gBvAG0AIAB0AGkAbQBlACAAdABvACAAdABpAG0AZQAgAGUAeABlAHIAYwBpAHMAZQBkACAAcwB1AGIAag
BlAGMAdAAgAHQAbwAgAGEAcABwAGwAaQBjAGEAYgBsAGUAIABsAGEAdwAsACAAKABhACkAIAByAGUAdAB
1AHIAbgAgAG8AZgAgAHQAaABlACAAYQBtAG8AdQBuAHQAIABwAGEAaQBkACAAKABpAGYAIABhAG4AeQAp
ACAAZgBvAHIAIAB0AGgAZQAgAFMAbwBmAHQAdwBhAHIAZQAsACAAbwByACAAKABiACkAIAByAGUAcABhA
GkAcgAgAG8AcgAgAHIAZQBwAGwAYQBjAGUAbQBlAG4AdAAgAG8AZgAgAHQAaABlACAAUwBvAGYAdAB3AG
EAcgBlACwAIAB0AGgAYQB0ACAAZABvAGUAcwAgAG4AbwB0ACAAbQBlAGUAdAAgAHQAaABpAHMAIABMAGk
AbQBpAHQAZQBkACAAVwBhAHIAcgBhAG4AdAB5ACAAYQBuAGQAIAB0AGgAYQB0ACAAaQBzACAAcgBlAHQA
dQByAG4AZQBkACAAdABvACAATQBpAGMAcgBvAHMAbwBmAHQAIAB3AGkAdABoACAAYQAgAGMAbwBwAHkAI
ABvAGYAIAB5AG8AdQByACAAcgBlAGMAZQBpAHAAdAAuACAAWQBvAHUAIAB3AGkAbABsACAAcgBlAGMAZQ
BpAHYAZQAgAHQAaABlACAAcgBlAG0AZQBkAHkAIABlAGwAZQBjAHQAZQBkACAAYgB5ACAATQBpAGMAcgB
vAHMAbwBmAHQAIAB3AGkAdABoAG8AdQB0ACAAYwBoAGEAcgBnAGUALAAgAGUAeABjAGUAcAB0ACAAdABo
AGEAdAAgAHkAbwB1ACAAYQByAGUAIAByAGUAcwBwAG8AbgBzAGkAYgBsAGUAIABmAG8AcgAgAGEAbgB5A
CAAZQB4AHAAZQBuAHMAZQBzACAAeQBvAHUAIABtAGEAeQAgAGkAbgBjAHUAcgAgACgAZQAuAGcALgAgAG
MAbwBzAHQAIABvAGYAIABzAGgAaQBwAHAAaQBuAGcAIAB0AGgAZQAgAFMAbwBmAHQAdwBhAHIAZQAgAHQ
AbwAgAE0AaQBjAHIAbwBzAG8AZgB0ACkALgAgACAAVABoAGkAcwAgAEwAaQBtAGkAdABlAGQAIABXAGEA
cgByAGEAbgB0AHkAIABpAHMAIAB2AG8AaQBkACAAaQBmACAAZgBhAGkAbAB1AHIAZQAgAG8AZgAgAHQAa
ABlACAAUwBvAGYAdAB3AGEAcgBlACAAaABhAHMAIAByAGUAcwB1AGwAdABlAGQAIABmAHIAbwBtACAAYQ
BjAGMAaQBkAGUAbgB0ACwAIABhAGIAdQBzAGUALAAgAG0AaQBzAGEAcABwAGwAaQBjAGEAdABpAG8AbgA
sACAAYQBiAG4AbwByAG0AYQBsACAAdQBzAGUAIABvAHIAIABhACAAdgBpAHIAdQBzAC4AIABBAG4AeQAg
AHIAZQBwAGwAYQBjAGUAbQBlAG4AdAAgAFMAbwBmAHQAdwBhAHIAZQAgAHcAaQBsAGwAIABiAGUAIAB3A
GEAcgByAGEAbgB0AGUAZAAgAGYAbwByACAAdABoAGUAIAByAGUAbQBhAGkAbgBkAGUAcgAgAG8AZgAgAH
QAaABlACAAbwByAGkAZwBpAG4AYQBsACAAdwBhAHIAcgBhAG4AdAB5ACAAcABlAHIAaQBvAGQAIABvAHI
AIAB0AGgAaQByAHQAeQAgACgAMwAwACkAIABkAGEAeQBzACwAIAB3AGgAaQBjAGgAZQB2AGUAcgAgAGkA
cwAgAGwAbwBuAGcAZQByACwAIABhAG4AZAAgAE0AaQBjAHIAbwBzAG8AZgB0ACAAdwBpAGwAbAAgAHUAc
wBlACAAYwBvAG0AbQBlAHIAYwBpAGEAbABsAHkAIAByAGUAYQBzAG8AbgBhAGIAbABlACAAZQBmAGYAbw
ByAHQAcwAgAHQAbwAgAHAAcgBvAHYAaQBkAGUAIAB5AG8AdQByACAAcgBlAG0AZQBkAHkAIAB3AGkAdAB
oAGkAbgAgAGEAIABjAG8AbQBtAGUAcgBjAGkAYQBsAGwAeQAgAHIAZQBhAHMAbwBuAGEAYgBsAGUAIAB0
AGkAbQBlACAAbwBmACAAeQBvAHUAcgAgAGMAbwBtAHAAbABpAGEAbgBjAGUAIAB3AGkAdABoACAATQBpA
GMAcgBvAHMAbwBmAHQAJwBzACAAdwBhAHIAcgBhAG4AdAB5ACAAcgBlAG0AZQBkAHkAIABwAHIAbwBjAG
UAZAB1AHIAZQBzAC4AIABPAHUAdABzAGkAZABlACAAdABoAGUAIABVAG4AaQB0AGUAZAAgAFMAdABhAHQ
AZQBzACAAbwByACAAQwBhAG4AYQBkAGEALAAgAG4AZQBpAHQAaABlAHIAIAB0AGgAZQBzAGUAIAByAGUA
bQBlAGQAaQBlAHMAIABuAG8AcgAgAGEAbgB5ACAAcAByAG8AZAB1AGMAdAAgAHMAdQBwAHAAbwByAHQAI
ABzAGUAcgB2AGkAYwBlAHMAIABvAGYAZgBlAHIAZQBkACAAYgB5ACAATQBpAGMAcgBvAHMAbwBmAHQAIA
BhAHIAZQAgAGEAdgBhAGkAbABhAGIAbABlACAAdwBpAHQAaABvAHUAdAAgAHAAcgBvAG8AZgAgAG8AZgA
gAHAAdQByAGMAaABhAHMAZQAgAGYAcgBvAG0AIABhAG4AIABhAHUAdABoAG8AcgBpAHoAZQBkACAAaQBu
AHQAZQByAG4AYQB0AGkAbwBuAGEAbAAgAHMAbwB1AHIAYwBlAC4AIAAgAFQAbwAgAGUAeABlAHIAYwBpA
HMAZQAgAHkAbwB1AHIAIAByAGUAbQBlAGQAeQAsACAAYwBvAG4AdABhAGMAdAA6ACAAIABNAGkAYwByAG
8AcwBvAGYAdAAsACAAQQB0AHQAbgAuACAATQBpAGMAcgBvAHMAbwBmAHQAIABTAGEAbABlAHMAIABJAG4
AZgBvAHIAbQBhAHQAaQBvAG4AIABDAGUAbgB0AGUAcgAvAE8AbgBlACAATQBpAGMAcgBvAHMAbwBmAHQA
IABXAGEAeQAvAFIAZQBkAG0AbwBuAGQALAAgAFcAQQAgADkAOAAwADUAMgAtADYAMwA5ADkALAAgAG8Ac
gAgAHQAaABlACAATQBpAGMAcgBvAHMAbwBmAHQAIABzAHUAYgBzAGkAZABpAGEAcgB5ACAAcwBlAHIAdg
BpAG4AZwAgAHkAbwB1AHIAIABjAG8AdQBuAHQAcgB5AC4AIAAgACAACgAKADEANwAuAAkARABJAFMAQwB
MAEEASQBNAEUAUgAgAE8ARgAgAFcAQQBSAFIAQQBOAFQASQBFAFMALgAgAFQAaABlACAATABpAG0AaQB0
AGUAZAAgAFcAYQByAHIAYQBuAHQAeQAgAHQAaABhAHQAIABhAHAAcABlAGEAcgBzACAAYQBiAG8AdgBlA
CAAaQBzACAAdABoAGUAIABvAG4AbAB5ACAAZQB4AHAAcgBlAHMAcwAgAHcAYQByAHIAYQBuAHQAeQAgAG
0AYQBkAGUAIAB0AG8AIAB5AG8AdQAgAGEAbgBkACAAaQBzACAAcAByAG8AdgBpAGQAZQBkACAAaQBuACA
AbABpAGUAdQAgAG8AZgAgAGEAbgB5ACAAbwB0AGgAZQByACAAZQB4AHAAcgBlAHMAcwAgAHcAYQByAHIA
YQBuAHQAaQBlAHMAIABvAHIAIABzAGkAbQBpAGwAYQByACAAbwBiAGwAaQBnAGEAdABpAG8AbgBzACAAK
ABpAGYAIABhAG4AeQApACAAYwByAGUAYQB0AGUAZAAgAGIAeQAgAGEAbgB5ACAAYQBkAHYAZQByAHQAaQ
BzAGkAbgBnACwAIABkAG8AYwB1AG0AZQBuAHQAYQB0AGkAbwBuACwAIABwAGEAYwBrAGEAZwBpAG4AZwA
sACAAbwByACAAbwB0AGgAZQByACAAYwBvAG0AbQB1AG4AaQBjAGEAdABpAG8AbgBzAC4AIAAgAEUAeABj
AGUAcAB0ACAAZgBvAHIAIAB0AGgAZQAgAEwAaQBtAGkAdABlAGQAIABXAGEAcgByAGEAbgB0AHkAIABhA
G4AZAAgAHQAbwAgAHQAaABlACAAbQBhAHgAaQBtAHUAbQAgAGUAeAB0AGUAbgB0ACAAcABlAHIAbQBpAH
QAdABlAGQAIABiAHkAIABhAHAAcABsAGkAYwBhAGIAbABlACAAbABhAHcALAAgAE0AaQBjAHIAbwBzAG8
AZgB0ACAAYQBuAGQAIABpAHQAcwAgAHMAdQBwAHAAbABpAGUAcgBzACAAcAByAG8AdgBpAGQAZQAgAHQA
aABlACAAUwBvAGYAdAB3AGEAcgBlACAAYQBuAGQAIABzAHUAcABwAG8AcgB0ACAAcwBlAHIAdgBpAGMAZ
QBzACAAKABpAGYAIABhAG4AeQApACAAQQBTACAASQBTACAAQQBOAEQAIABXAEkAVABIACAAQQBMAEwAIA
BGAEEAVQBMAFQAUwAsACAAYQBuAGQAIABoAGUAcgBlAGIAeQAgAGQAaQBzAGMAbABhAGkAbQAgAGEAbAB
sACAAbwB0AGgAZQByACAAdwBhAHIAcgBhAG4AdABpAGUAcwAgAGEAbgBkACAAYwBvAG4AZABpAHQAaQBv
AG4AcwAsACAAdwBoAGUAdABoAGUAcgAgAGUAeABwAHIAZQBzAHMALAAgAGkAbQBwAGwAaQBlAGQAIABvA
HIAIABzAHQAYQB0AHUAdABvAHIAeQAsACAAaQBuAGMAbAB1AGQAaQBuAGcALAAgAGIAdQB0ACAAbgBvAH
QAIABsAGkAbQBpAHQAZQBkACAAdABvACwAIABhAG4AeQAgACgAaQBmACAAYQBuAHkAKQAgAGkAbQBwAGw
AaQBlAGQAIAB3AGEAcgByAGEAbgB0AGkAZQBzACwAIABkAHUAdABpAGUAcwAgAG8AcgAgAGMAbwBuAGQA
aQB0AGkAbwBuAHMAIABvAGYAIABtAGUAcgBjAGgAYQBuAHQAYQBiAGkAbABpAHQAeQAsACAAbwBmACAAZ
gBpAHQAbgBlAHMAcwAgAGYAbwByACAAYQAgAHAAYQByAHQAaQBjAHUAbABhAHIAIABwAHUAcgBwAG8Acw
BlACwAIABvAGYAIAByAGUAbABpAGEAYgBpAGwAaQB0AHkAIABvAHIAIABhAHYAYQBpAGwAYQBiAGkAbAB
pAHQAeQAsACAAbwBmACAAYQBjAGMAdQByAGEAYwB5ACAAbwByACAAYwBvAG0AcABsAGUAdABlAG4AZQBz
AHMAIABvAGYAIAByAGUAcwBwAG8AbgBzAGUAcwAsACAAbwBmACAAcgBlAHMAdQBsAHQAcwAsACAAbwBmA
CAAdwBvAHIAawBtAGEAbgBsAGkAawBlACAAZQBmAGYAbwByAHQALAAgAG8AZgAgAGwAYQBjAGsAIABvAG
YAIAB2AGkAcgB1AHMAZQBzACwAIABhAG4AZAAgAG8AZgAgAGwAYQBjAGsAIABvAGYAIABuAGUAZwBsAGk
AZwBlAG4AYwBlACwAIABhAGwAbAAgAHcAaQB0AGgAIAByAGUAZwBhAHIAZAAgAHQAbwAgAHQAaABlACAA
UwBvAGYAdAB3AGEAcgBlACwAIABhAG4AZAAgAHQAaABlACAAcAByAG8AdgBpAHMAaQBvAG4AIABvAGYAI
ABvAHIAIABmAGEAaQBsAHUAcgBlACAAdABvACAAcAByAG8AdgBpAGQAZQAgAHMAdQBwAHAAbwByAHQAIA
BvAHIAIABvAHQAaABlAHIAIABzAGUAcgB2AGkAYwBlAHMALAAgAGkAbgBmAG8AcgBtAGEAdABpAG8AbgA
sACAAcwBvAGYAdAB3AGEAcgBlACwAIABhAG4AZAAgAHIAZQBsAGEAdABlAGQAIABjAG8AbgB0AGUAbgB0
ACAAdABoAHIAbwB1AGcAaAAgAHQAaABlACAAUwBvAGYAdAB3AGEAcgBlACAAbwByACAAbwB0AGgAZQByA
HcAaQBzAGUAIABhAHIAaQBzAGkAbgBnACAAbwB1AHQAIABvAGYAIAB0AGgAZQAgAHUAcwBlACAAbwBmAC
AAdABoAGUAIABTAG8AZgB0AHcAYQByAGUALgAgACAAQQBMAFMATwAsACAAVABIAEUAUgBFACAASQBTACA
ATgBPACAAVwBBAFIAUgBBAE4AVABZACAATwBSACAAQwBPAE4ARABJAFQASQBPAE4AIABPAEYAIABUAEkA
VABMAEUALAAgAFEAVQBJAEUAVAAgAEUATgBKAE8AWQBNAEUATgBUACwAIABRAFUASQBFAFQAIABQAE8AU
wBTAEUAUwBTAEkATwBOACwAIABDAE8AUgBSAEUAUwBQAE8ATgBEAEUATgBDAEUAIABUAE8AIABEAEUAUw
BDAFIASQBQAFQASQBPAE4AIABPAFIAIABOAE8ATgAtAEkATgBGAFIASQBOAEcARQBNAEUATgBUACAAVwB
JAFQASAAgAFIARQBHAEEAUgBEACAAVABPACAAVABIAEUAIABTAE8ARgBUAFcAQQBSAEUALgAKADEAOAAu
AAkARQBYAEMATABVAFMASQBPAE4AIABPAEYAIABJAE4AQwBJAEQARQBOAFQAQQBMACwAIABDAE8ATgBTA
EUAUQBVAEUATgBUAEkAQQBMACAAQQBOAEQAIABDAEUAUgBUAEEASQBOACAATwBUAEgARQBSACAARABBAE
0AQQBHAEUAUwAuACAAIABUAE8AIABUAEgARQAgAE0AQQBYAEkATQBVAE0AIABFAFgAVABFAE4AVAAgAFA
ARQBSAE0ASQBUAFQARQBEACAAQgBZACAAQQBQAFAATABJAEMAQQBCAEwARQAgAEwAQQBXACwAIABJAE4A
IABOAE8AIABFAFYARQBOAFQAIABTAEgAQQBMAEwAIABNAEkAQwBSAE8AUwBPAEYAVAAgAE8AUgAgAEkAV
ABTACAAUwBVAFAAUABMAEkARQBSAFMAIABCAEUAIABMAEkAQQBCAEwARQAgAEYATwBSACAAQQBOAFkAIA
BTAFAARQBDAEkAQQBMACwAIABJAE4AQwBJAEQARQBOAFQAQQBMACwAIABQAFUATgBJAFQASQBWAEUALAA
gAEkATgBEAEkAUgBFAEMAVAAsACAATwBSACAAQwBPAE4AUwBFAFEAVQBFAE4AVABJAEEATAAgAEQAQQBN
AEEARwBFAFMAIABXAEgAQQBUAFMATwBFAFYARQBSACAAKABJAE4AQwBMAFUARABJAE4ARwAsACAAQgBVA
FQAIABOAE8AVAAgAEwASQBNAEkAVABFAEQAIABUAE8ALAAgAEQAQQBNAEEARwBFAFMAIABGAE8AUgAgAE
wATwBTAFMAIABPAEYAIABQAFIATwBGAEkAVABTACAATwBSACAAQwBPAE4ARgBJAEQARQBOAFQASQBBAEw
AIABPAFIAIABPAFQASABFAFIAIABJAE4ARgBPAFIATQBBAFQASQBPAE4ALAAgAEYATwBSACAAQgBVAFMA
SQBOAEUAUwBTACAASQBOAFQARQBSAFIAVQBQAFQASQBPAE4ALAAgAEYATwBSACAAUABFAFIAUwBPAE4AQ
QBMACAASQBOAEoAVQBSAFkALAAgAEYATwBSACAATABPAFMAUwAgAE8ARgAgAFAAUgBJAFYAQQBDAFkALA
AgAEYATwBSACAARgBBAEkATABVAFIARQAgAFQATwAgAE0ARQBFAFQAIABBAE4AWQAgAEQAVQBUAFkAIAB
JAE4AQwBMAFUARABJAE4ARwAgAE8ARgAgAEcATwBPAEQAIABGAEEASQBUAEgAIABPAFIAIABPAEYAIABS
AEUAQQBTAE8ATgBBAEIATABFACAAQwBBAFIARQAsACAARgBPAFIAIABOAEUARwBMAEkARwBFAE4AQwBFA
CwAIABBAE4ARAAgAEYATwBSACAAQQBOAFkAIABPAFQASABFAFIAIABQAEUAQwBVAE4ASQBBAFIAWQAgAE
8AUgAgAE8AVABIAEUAUgAgAEwATwBTAFMAIABXAEgAQQBUAFMATwBFAFYARQBSACkAIABBAFIASQBTAEk
ATgBHACAATwBVAFQAIABPAEYAIABPAFIAIABJAE4AIABBAE4AWQAgAFcAQQBZACAAUgBFAEwAQQBUAEUA
RAAgAFQATwAgAFQASABFACAAVQBTAEUAIABPAEYAIABPAFIAIABJAE4AQQBCAEkATABJAFQAWQAgAFQAT
wAgAFUAUwBFACAAVABIAEUAIABTAE8ARgBUAFcAQQBSAEUALAAgAFQASABFACAAUABSAE8AVgBJAFMASQ
BPAE4AIABPAEYAIABPAFIAIABGAEEASQBMAFUAUgBFACAAVABPACAAUABSAE8AVgBJAEQARQAgAFMAVQB
QAFAATwBSAFQAIABPAFIAIABPAFQASABFAFIAIABTAEUAUgBWAEkAQwBFAFMALAAgAEkATgBGAE8AUgBN
AEEAVABPAE4ALAAgAFMATwBGAFQAVwBBAFIARQAsACAAQQBOAEQAIABSAEUATABBAFQARQBEACAAQwBPA
E4AVABFAE4AVAAgAFQASABSAE8AVQBHAEgAIABUAEgARQAgAFMATwBGAFQAVwBBAFIARQAgAE8AUgAgAE
8AVABIAEUAUgBXAEkAUwBFACAAQQBSAEkAUwBJAE4ARwAgAE8AVQBUACAATwBGACAAVABIAEUAIABVAFM
ARQAgAE8ARgAgAFQASABFACAAUwBPAEYAVABXAEEAUgBFACwAIABPAFIAIABPAFQASABFAFIAVwBJAFMA
RQAgAFUATgBEAEUAUgAgAE8AUgAgAEkATgAgAEMATwBOAE4ARQBDAFQASQBPAE4AIABXAEkAVABIACAAQ
QBOAFkAIABQAFIATwBWAEkAUwBJAE8ATgAgAE8ARgAgAFQASABJAFMAIABFAFUATABBACwAIABFAFYARQ
BOACAASQBOACAAVABIAEUAIABFAFYARQBOAFQAIABPAEYAIABUAEgARQAgAEYAQQBVAEwAVAAsACAAVAB
PAFIAVAAgACgASQBOAEMATABVAEQASQBOAEcAIABOAEUARwBMAEkARwBFAE4AQwBFACkALAAgAE0ASQBT
AFIARQBQAFIARQBTAEUATgBUAEEAVABJAE8ATgAsACAAUwBUAFIASQBDAFQAIABMAEkAQQBCAEkATABJA
FQAWQAsACAAQgBSAEUAQQBDAEgAIABPAEYAIABDAE8ATgBUAFIAQQBDAFQAIABPAFIAIABCAFIARQBBAE
MASAAgAE8ARgAgAFcAQQBSAFIAQQBOAFQAWQAgAE8ARgAgAE0ASQBDAFIATwBTAE8ARgBUACAATwBSACA
AQQBOAFkAIABTAFUAUABQAEwASQBFAFIALAAgAEEATgBEACAARQBWAEUATgAgAEkARgAgAE0ASQBDAFIA
TwBTAE8ARgBUACAATwBSACAAQQBOAFkAIABTAFUAUABQAEwASQBFAFIAIABIAEEAUwAgAEIARQBFAE4AI
ABBAEQAVgBJAFMARQBEACAATwBGACAAVABIAEUAIABQAE8AUwBTAEkAQgBJAEwASQBUAFkAIABPAEYAIA
BTAFUAQwBIACAARABBAE0AQQBHAEUAUwAuACAACgAxADkALgAJAEwASQBNAEkAVABBAFQASQBPAE4AIAB
PAEYAIABMAEkAQQBCAEkATABJAFQAWQAgAEEATgBEACAAUgBFAE0ARQBEAEkARQBTAC4AIABOAG8AdAB3
AGkAdABoAHMAdABhAG4AZABpAG4AZwAgAGEAbgB5ACAAZABhAG0AYQBnAGUAcwAgAHQAaABhAHQAIAB5A
G8AdQAgAG0AaQBnAGgAdAAgAGkAbgBjAHUAcgAgAGYAbwByACAAYQBuAHkAIAByAGUAYQBzAG8AbgAgAH
cAaABhAHQAcwBvAGUAdgBlAHIAIAAoAGkAbgBjAGwAdQBkAGkAbgBnACwAIAB3AGkAdABoAG8AdQB0ACA
AbABpAG0AaQB0AGEAdABpAG8AbgAsACAAYQBsAGwAIABkAGEAbQBhAGcAZQBzACAAcgBlAGYAZQByAGUA
bgBjAGUAZAAgAGgAZQByAGUAaQBuACAAYQBuAGQAIABhAGwAbAAgAGQAaQByAGUAYwB0ACAAbwByACAAZ
wBlAG4AZQByAGEAbAAgAGQAYQBtAGEAZwBlAHMAIABpAG4AIABjAG8AbgB0AHIAYQBjAHQAIABvAHIAIA
BhAG4AeQB0AGgAaQBuAGcAIABlAGwAcwBlACkALAAgAHQAaABlACAAZQBuAHQAaQByAGUAIABsAGkAYQB
iAGkAbABpAHQAeQAgAG8AZgAgAE0AaQBjAHIAbwBzAG8AZgB0ACAAYQBuAGQAIABhAG4AeQAgAG8AZgAg
AGkAdABzACAAcwB1AHAAcABsAGkAZQByAHMAIAB1AG4AZABlAHIAIABhAG4AeQAgAHAAcgBvAHYAaQBzA
GkAbwBuACAAbwBmACAAdABoAGkAcwAgAEUAVQBMAEEAIABhAG4AZAAgAHkAbwB1AHIAIABlAHgAYwBsAH
UAcwBpAHYAZQAgAHIAZQBtAGUAZAB5ACAAaABlAHIAZQB1AG4AZABlAHIAIAAoAGUAeABjAGUAcAB0ACA
AZgBvAHIAIABhAG4AeQAgAHIAZQBtAGUAZAB5ACAAbwBmACAAcgBlAHAAYQBpAHIAIABvAHIAIAByAGUA
cABsAGEAYwBlAG0AZQBuAHQAIABlAGwAZQBjAHQAZQBkACAAYgB5ACAATQBpAGMAcgBvAHMAbwBmAHQAI
AB3AGkAdABoACAAcgBlAHMAcABlAGMAdAAgAHQAbwAgAGEAbgB5ACAAYgByAGUAYQBjAGgAIABvAGYAIA
B0AGgAZQAgAEwAaQBtAGkAdABlA"
"Current4"="GQAIABXAGEAcgByAGEAbgB0AHkAKQAgAHMAaABhAGwAbAAgAGIAZQAgAGwAaQBtAGkAdABlAGQA
IAB0AG8AIAB0AGgAZQAgAGcAcgBlAGEAdABlAHIAIABvAGYAIAB0AGgAZQAgAGEAYwB0AHUAYQBsACAAZ
ABhAG0AYQBnAGUAcwAgAHkAbwB1ACAAaQBuAGMAdQByACAAaQBuACAAcgBlAGEAcwBvAG4AYQBiAGwAZQ
AgAHIAZQBsAGkAYQBuAGMAZQAgAG8AbgAgAHQAaABlACAAUwBvAGYAdAB3AGEAcgBlACAAdQBwACAAdAB
vACAAdABoAGUAIABhAG0AbwB1AG4AdAAgAGEAYwB0AHUAYQBsAGwAeQAgAHAAYQBpAGQAIABiAHkAIAB5
AG8AdQAgAGYAbwByACAAdABoAGUAIABTAG8AZgB0AHcAYQByAGUAIABvAHIAIABVAFMAJAA1AC4AMAAwA
C4AIAAgAFQAaABlACAAZgBvAHIAZQBnAG8AaQBuAGcAIABsAGkAbQBpAHQAYQB0AGkAbwBuAHMALAAgAG
UAeABjAGwAdQBzAGkAbwBuAHMAIABhAG4AZAAgAGQAaQBzAGMAbABhAGkAbQBlAHIAcwAgACgAaQBuAGM
AbAB1AGQAaQBuAGcAIABTAGUAYwB0AGkAbwBuAHMAIAAxADYALAAgADEANwAgAGEAbgBkACAAMQA4ACkA
IABzAGgAYQBsAGwAIABhAHAAcABsAHkAIAB0AG8AIAB0AGgAZQAgAG0AYQB4AGkAbQB1AG0AIABlAHgAd
ABlAG4AdAAgAHAAZQByAG0AaQB0AHQAZQBkACAAYgB5ACAAYQBwAHAAbABpAGMAYQBiAGwAZQAgAGwAYQ
B3ACwAIABlAHYAZQBuACAAaQBmACAAYQBuAHkAIAByAGUAbQBlAGQAeQAgAGYAYQBpAGwAcwAgAGkAdAB
zACAAZQBzAHMAZQBuAHQAaQBhAGwAIABwAHUAcgBwAG8AcwBlAC4ACgAyADAALgAJAFUALgBTAC4AIABH
AE8AVgBFAFIATgBNAEUATgBUACAATABJAEMARQBOAFMARQAgAFIASQBHAEgAVABTAC4AIABBAGwAbAAgA
FMAbwBmAHQAdwBhAHIAZQAgAHAAcgBvAHYAaQBkAGUAZAAgAHQAbwAgAHQAaABlACAAVQAuAFMALgAgAE
cAbwB2AGUAcgBuAG0AZQBuAHQAIABwAHUAcgBzAHUAYQBuAHQAIAB0AG8AIABzAG8AbABpAGMAaQB0AGE
AdABpAG8AbgBzACAAaQBzAHMAdQBlAGQAIABvAG4AIABvAHIAIABhAGYAdABlAHIAIABEAGUAYwBlAG0A
YgBlAHIAIAAxACwAIAAxADkAOQA1ACAAaQBzACAAcAByAG8AdgBpAGQAZQBkACAAdwBpAHQAaAAgAHQAa
ABlACAAYwBvAG0AbQBlAHIAYwBpAGEAbAAgAGwAaQBjAGUAbgBzAGUAIAByAGkAZwBoAHQAcwAgAGEAbg
BkACAAcgBlAHMAdAByAGkAYwB0AGkAbwBuAHMAIABkAGUAcwBjAHIAaQBiAGUAZAAgAGUAbABzAGUAdwB
oAGUAcgBlACAAaABlAHIAZQBpAG4ALgAgACAAQQBsAGwAIABTAG8AZgB0AHcAYQByAGUAIABwAHIAbwB2
AGkAZABlAGQAIAB0AG8AIAB0AGgAZQAgAFUALgBTAC4AIABHAG8AdgBlAHIAbgBtAGUAbgB0ACAAcAB1A
HIAcwB1AGEAbgB0ACAAdABvACAAcwBvAGwAaQBjAGkAdABhAHQAaQBvAG4AcwAgAGkAcwBzAHUAZQBkAC
AAcAByAGkAbwByACAAdABvACAARABlAGMAZQBtAGIAZQByACAAMQAsACAAMQA5ADkANQAgAGkAcwAgAHA
AcgBvAHYAaQBkAGUAZAAgAHcAaQB0AGgAIAAiAFIAZQBzAHQAcgBpAGMAdABlAGQAIABSAGkAZwBoAHQA
cwAiACAAYQBzACAAcAByAG8AdgBpAGQAZQBkACAAZgBvAHIAIABpAG4AIABGAEEAUgAsACAANAA4ACAAQ
wBGAFIAIAA1ADIALgAyADIANwAtADEANAAgACgASgBVAE4ARQAgADEAOQA4ADcAKQAgAG8AcgAgAEQARg
BBAFIALAAgADQAOAAgAEMARgBSACAAMgA1ADIALgAyADIANwAtADcAMAAxADMAIAAoAE8AQwBUACAAMQA
5ADgAOAApACwAIABhAHMAIABhAHAAcABsAGkAYwBhAGIAbABlAC4AIAAKADIAMQAuAAkAQQBQAFAATABJ
AEMAQQBCAEwARQAgAEwAQQBXAC4AIAAgAEkAZgAgAHkAbwB1ACAAYQBjAHEAdQBpAHIAZQBkACAAdABoA
GkAcwAgAFMAbwBmAHQAdwBhAHIAZQAgAGkAbgAgAHQAaABlACAAVQBuAGkAdABlAGQAIABTAHQAYQB0AG
UAcwAsACAAdABoAGkAcwAgAEUAVQBMAEEAIABpAHMAIABnAG8AdgBlAHIAbgBlAGQAIABiAHkAIAB0AGg
AZQAgAGwAYQB3AHMAIABvAGYAIAB0AGgAZQAgAFMAdABhAHQAZQAgAG8AZgAgAFcAYQBzAGgAaQBuAGcA
dABvAG4ALgAgACAASQBmACAAeQBvAHUAIABhAGMAcQB1AGkAcgBlAGQAIAB0AGgAaQBzACAAUwBvAGYAd
AB3AGEAcgBlACAAaQBuACAAQwBhAG4AYQBkAGEALAAgAHUAbgBsAGUAcwBzACAAZQB4AHAAcgBlAHMAcw
BsAHkAIABwAHIAbwBoAGkAYgBpAHQAZQBkACAAYgB5ACAAbABvAGMAYQBsACAAbABhAHcALAAgAHQAaAB
pAHMAIABFAFUATABBACAAaQBzACAAZwBvAHYAZQByAG4AZQBkACAAYgB5ACAAdABoAGUAIABsAGEAdwBz
ACAAaQBuACAAZgBvAHIAYwBlACAAaQBuACAAdABoAGUAIABQAHIAbwB2AGkAbgBjAGUAIABvAGYAIABPA
G4AdABhAHIAaQBvACwAIABDAGEAbgBhAGQAYQA7ACAAYQBuAGQALAAgAGkAbgAgAHIAZQBzAHAAZQBjAH
QAIABvAGYAIABhAG4AeQAgAGQAaQBzAHAAdQB0AGUAIAB3AGgAaQBjAGgAIABtAGEAeQAgAGEAcgBpAHM
AZQAgAGgAZQByAGUAdQBuAGQAZQByACwAIAB5AG8AdQAgAGMAbwBuAHMAZQBuAHQAIAB0AG8AIAB0AGgA
ZQAgAGoAdQByAGkAcwBkAGkAYwB0AGkAbwBuACAAbwBmACAAdABoAGUAIABmAGUAZABlAHIAYQBsACAAY
QBuAGQAIABwAHIAbwB2AGkAbgBjAGkAYQBsACAAYwBvAHUAcgB0AHMAIABzAGkAdAB0AGkAbgBnACAAaQ
BuACAAVABvAHIAbwBuAHQAbwAsACAATwBuAHQAYQByAGkAbwAuACAASQBmACAAeQBvAHUAIABhAGMAcQB
1AGkAcgBlAGQAIAB0AGgAaQBzACAAUwBvAGYAdAB3AGEAcgBlACAAaQBuACAAdABoAGUAIABFAHUAcgBv
AHAAZQBhAG4AIABVAG4AaQBvAG4ALAAgAEkAYwBlAGwAYQBuAGQALAAgAE4AbwByAHcAYQB5ACwAIABvA
HIAIABTAHcAaQB0AHoAZQByAGwAYQBuAGQALAAgAHQAaABlAG4AIABsAG8AYwBhAGwAIABsAGEAdwAgAG
EAcABwAGwAaQBlAHMALgAgACAASQBmACAAeQBvAHUAIABhAGMAcQB1AGkAcgBlAGQAIAB0AGgAaQBzACA
AUwBvAGYAdAB3AGEAcgBlACAAaQBuACAAYQBuAHkAIABvAHQAaABlAHIAIABjAG8AdQBuAHQAcgB5ACwA
IAB0AGgAZQBuACAAbABvAGMAYQBsACAAbABhAHcAIABtAGEAeQAgAGEAcABwAGwAeQAuACAACgAyADIAL
gAJAEUATgBUAEkAUgBFACAAQQBHAFIARQBFAE0ARQBOAFQAOwAgAFMARQBWAEUAUgBBAEIASQBMAEkAVA
BZAC4AIAAgAFQAaABpAHMAIABFAFUATABBACAAKABpAG4AYwBsAHUAZABpAG4AZwAgAGEAbgB5ACAAYQB
kAGQAZQBuAGQAdQBtACAAbwByACAAYQBtAGUAbgBkAG0AZQBuAHQAIAB0AG8AIAB0AGgAaQBzACAARQBV
AEwAQQAgAHcAaABpAGMAaAAgAGkAcwAgAGkAbgBjAGwAdQBkAGUAZAAgAHcAaQB0AGgAIAB0AGgAZQAgA
FMAbwBmAHQAdwBhAHIAZQApACAAaQBzACAAdABoAGUAIABlAG4AdABpAHIAZQAgAGEAZwByAGUAZQBtAG
UAbgB0ACAAYgBlAHQAdwBlAGUAbgAgAHkAbwB1ACAAYQBuAGQAIABNAGkAYwByAG8AcwBvAGYAdAAgAHI
AZQBsAGEAdABpAG4AZwAgAHQAbwAgAHQAaABlACAAUwBvAGYAdAB3AGEAcgBlACAAYQBuAGQAIAB0AGgA
ZQAgAHMAdQBwAHAAbwByAHQAIABzAGUAcgB2AGkAYwBlAHMAIAAoAGkAZgAgAGEAbgB5ACkAIABhAG4AZ
AAgAHQAaABlAHkAIABzAHUAcABlAHIAcwBlAGQAZQAgAGEAbABsACAAcAByAGkAbwByACAAbwByACAAYw
BvAG4AdABlAG0AcABvAHIAYQBuAGUAbwB1AHMAIABvAHIAYQBsACAAbwByACAAdwByAGkAdAB0AGUAbgA
gAGMAbwBtAG0AdQBuAGkAYwBhAHQAaQBvAG4AcwAsACAAcAByAG8AcABvAHMAYQBsAHMAIABhAG4AZAAg
AHIAZQBwAHIAZQBzAGUAbgB0AGEAdABpAG8AbgBzACAAdwBpAHQAaAAgAHIAZQBzAHAAZQBjAHQAIAB0A
G8AIAB0AGgAZQAgAFMAbwBmAHQAdwBhAHIAZQAgAG8AcgAgAGEAbgB5ACAAbwB0AGgAZQByACAAcwB1AG
IAagBlAGMAdAAgAG0AYQB0AHQAZQByACAAYwBvAHYAZQByAGUAZAAgAGIAeQAgAHQAaABpAHMAIABFAFU
ATABBAC4AIAAgAFQAbwAgAHQAaABlACAAZQB4AHQAZQBuAHQAIAB0AGgAZQAgAHQAZQByAG0AcwAgAG8A
ZgAgAGEAbgB5ACAATQBpAGMAcgBvAHMAbwBmAHQAIABwAG8AbABpAGMAaQBlAHMAIABvAHIAIABwAHIAb
wBnAHIAYQBtAHMAIABmAG8AcgAgAHMAdQBwAHAAbwByAHQAIABzAGUAcgB2AGkAYwBlAHMAIABjAG8Abg
BmAGwAaQBjAHQAIAB3AGkAdABoACAAdABoAGUAIAB0AGUAcgBtAHMAIABvAGYAIAB0AGgAaQBzACAARQB
VAEwAQQAsACAAdABoAGUAIAB0AGUAcgBtAHMAIABvAGYAIAB0AGgAaQBzACAARQBVAEwAQQAgAHMAaABh
AGwAbAAgAGMAbwBuAHQAcgBvAGwALgAgACAASQBmACAAYQBuAHkAIABwAHIAbwB2AGkAcwBpAG8AbgAgA
G8AZgAgAHQAaABpAHMAIABFAFUATABBACAAaQBzACAAaABlAGwAZAAgAHQAbwAgAGIAZQAgAHYAbwBpAG
QALAAgAGkAbgB2AGEAbABpAGQALAAgAHUAbgBlAG4AZgBvAHIAYwBlAGEAYgBsAGUAIABvAHIAIABpAGw
AbABlAGcAYQBsACwAIAB0AGgAZQAgAG8AdABoAGUAcgAgAHAAcgBvAHYAaQBzAGkAbwBuAHMAIABzAGgA
YQBsAGwAIABjAG8AbgB0AGkAbgB1AGUAIABpAG4AIABmAHUAbABsACAAZgBvAHIAYwBlACAAYQBuAGQAI
ABlAGYAZgBlAGMAdAAuAAoAUwBpACAAdgBvAHUAcwAgAGEAdgBlAHoAIABhAGMAcQB1AGkAcwAgAHYAbw
B0AHIAZQAgAHAAcgBvAGQAdQBpAHQAIABNAGkAYwByAG8AcwBvAGYAdAAgAGEAdQAgAEMAQQBOAEEARAB
BACwAIABsAGEAIABnAGEAcgBhAG4AdABpAGUAIABsAGkAbQBpAHQA6QBlACAAcwB1AGkAdgBhAG4AdABl
ACAAdgBvAHUAcwAgAGMAbwBuAGMAZQByAG4AZQAgADoACgBHAEEAUgBBAE4AVABJAEUAIABMAEkATQBJA
FQAyQBFAAoATQBpAGMAcgBvAHMAbwBmAHQAIABnAGEAcgBhAG4AdABpAHQAIABxAHUAZQAgAGwAZQAgAE
wAbwBnAGkAYwBpAGUAbAAgAGYAbwBuAGMAdABpAG8AbgBuAGUAcgBhACAAYwBvAG4AZgBvAHIAbQDpAG0
AZQBuAHQAIABhAHUAeAAgAGQAbwBjAHUAbQBlAG4AdABzACAAaQBuAGMAbAB1AHMAIABwAGUAbgBkAGEA
bgB0ACAAdQBuAGUAIABwAOkAcgBpAG8AZABlACAAZABlACAAOQAwACAAagBvAHUAcgBzACAAcwB1AGkAd
gBhAG4AdAAgAGwAYQAgAGQAYQB0AGUAIABkAGUAIAByAOkAYwBlAHAAdABpAG8AbgAuAAoAUwBpACAAdQ
BuAGUAIABnAGEAcgBhAG4AdABpAGUAIABvAHUAIABjAG8AbgBkAGkAdABpAG8AbgAgAGkAbQBwAGwAaQB
jAGkAdABlACAAZQBzAHQAIABjAHIA6QDpAGUAIABwAGEAcgAgAHYAbwB0AHIAZQAgAMkAdABhAHQAIABv
AHUAIAB2AG8AdAByAGUAIAB0AGUAcgByAGkAdABvAGkAcgBlACAAZQB0ACAAcQB1ACcAdQBuAGUAIABsA
G8AaQAgAGYA6QBkAOkAcgBhAGwAZQAgAG8AdQAgAHAAcgBvAHYAaQBuAGMAaQBhAGwAZQAgAG8AdQAgAM
kAdABhAHQAIABlAG4AIABpAG4AdABlAHIAZABpAHQAIABsAGUAIABkAOkAbgBpACwAIAB2AG8AdQBzACA
AagBvAHUAaQBzAHMAZQB6ACAA6QBnAGEAbABlAG0AZQBuAHQAIABkACcAdQBuAGUAIABnAGEAcgBhAG4A
dABpAGUAIABvAHUAIABjAG8AbgBkAGkAdABpAG8AbgAgAGkAbQBwAGwAaQBjAGkAdABlACwAIABNAEEAS
QBTACAAVQBOAEkAUQBVAEUATQBFAE4AVAAgAFAATwBVAFIAIABMAEUAUwAgAEQAyQBGAEEAVQBUAFMAIA
BEAMkAQwBPAFUAVgBFAFIAVABTACAARABVAFIAQQBOAFQAIABMAEEAIABQAMkAUgBJAE8ARABFACAARAB
FACAATABBACAAUABSAMkAUwBFAE4AVABFACAARwBBAFIAQQBOAFQASQBFACAATABJAE0ASQBUAMkARQAg
ACgAUQBVAEEAVABSAEUALQBWAEkATgBHAFQALQBEAEkAWAAgAEoATwBVAFIAUwApAC4AIABJAEwAIABOA
CcAWQAgAEEAIABBAFUAQwBVAE4ARQAgAEcAQQBSAEEATgBUAEkARQAgAE8AVQAgAEMATwBOAEQASQBUAE
kATwBOACAARABFACAAUQBVAEUATABRAFUARQAgAE4AQQBUAFUAUgBFACAAUQBVAEUAIABDAEUAIABTAE8
ASQBUACAAUQBVAEEATgBUACAAQQBVAFgAIABEAMkARgBBAFUAVABTACAARADJAEMATwBVAFYARQBSAFQA
UwAgAEEAUABSAMgAUwAgAEMARQBUAFQARQAgAFAAyQBSAEkATwBEAEUAIABEAEUAIABRAFUAQQBUAFIAR
QAtAFYASQBOAEcAVAAtAEQASQBYACAASgBPAFUAUgBTAC4AIABDAGUAcgB0AGEAaQBuAHMAIADJAHQAYQ
B0AHMAIABvAHUAIAB0AGUAcgByAGkAdABvAGkAcgBlAHMAIABuAGUAIABwAGUAcgBtAGUAdAB0AGUAbgB
0ACAAcABhAHMAIABkAGUAIABsAGkAbQBpAHQAZQByACAAbABhACAAZAB1AHIA6QBlACAAZAAnAHUAbgBl
ACAAZwBhAHIAYQBuAHQAaQBlACAAbwB1ACAAYwBvAG4AZABpAHQAaQBvAG4AIABpAG0AcABsAGkAYwBpA
HQAZQAgAGQAZQAgAHMAbwByAHQAZQAgAHEAdQBlACAAbABhACAAbABpAG0AaQB0AGEAdABpAG8AbgAgAG
MAaQCtAGQAZQBzAHMAdQBzACAAcABlAHUAdAAgAG4AZQAgAHAAYQBzACAAcwAnAGEAcABwAGwAaQBxAHU
AZQByACAA4AAgAHYAbwB1AHMALgAKAFQAbwB1AHMAIABsAGUAcwAgAHMAdQBwAHAAbADpAG0AZQBuAHQA
cwAgAG8AdQAgAHQAbwB1AHQAZQBzACAAbABlAHMAIABtAGkAcwBlAHMAIADgACAAagBvAHUAcgAgAHIAZ
QBsAGEAdABpAGYAcwAgAGEAdQAgAEwAbwBnAGkAYwBpAGUAbAAsACAAbgBvAHQAYQBtAG0AZQBuAHQALA
AgAGwAZQBzACAAZQBuAHMAZQBtAGIAbABlAHMAIABkAGUAIABzAGUAcgB2AGkAYwBlAHMAIABvAHUAIAB
sAGUAcwAgAHIA6QBwAGEAcgBhAHQAaQBvAG4AcwAgAOAAIABjAGgAYQB1AGQAIAAoAGwAZQAgAGMAYQBz
ACAA6QBjAGgA6QBhAG4AdAApACAAcQB1AGkAIAB2AG8AdQBzACAAcwBvAG4AdAAgAGYAbwB1AHIAbgBpA
HMAIABhAHAAcgDoAHMAIABsACcAZQB4AHAAaQByAGEAdABpAG8AbgAgAGQAZQAgAGwAYQAgAHAA6QByAG
kAbwBkAGUAIABkAGUAIABxAHUAYQB0AHIAZQAtAHYAaQBuAGcAdAAtAGQAaQB4ACAAagBvAHUAcgBzACA
AZABlACAAbABhACAAZwBhAHIAYQBuAHQAaQBlACAAbABpAG0AaQB0AOkAZQAgAG4AZQAgAHMAbwBuAHQA
IABwAGEAcwAgAGMAbwB1AHYAZQByAHQAcwAgAHAAYQByACAAcQB1AGUAbABxAHUAZQAgAGcAYQByAGEAb
gB0AGkAZQAgAG8AdQAgAGMAbwBuAGQAaQB0AGkAbwBuACAAcQB1AGUAIABjAGUAIABzAG8AaQB0ACwAIA
BlAHgAcAByAGUAcwBzAGUAIABvAHUAIABpAG0AcABsAGkAYwBpAHQAZQAuAAoATABJAE0ASQBUAEEAVAB
JAE8ATgAgAEQARQBTACAAUgBFAEMATwBVAFIAUwA7ACAAQQBCAFMARQBOAEMARQAgAEQARQAgAEQATwBN
AE0AQQBHAEUAUwAgAEkATgBEAEkAUgBFAEMAVABTACAATwBVACAAQQBVAFQAUgBFAFMALgAgAFYAbwB0A
HIAZQAgAHIAZQBjAG8AdQByAHMAIABlAHgAYwBsAHUAcwBpAGYAIABwAG8AdQByACAAdABvAHUAdABlAC
AAdgBpAG8AbABhAHQAaQBvAG4AIABkAGUAIABsAGEAIABwAHIA6QBzAGUAbgB0AGUAIABnAGEAcgBhAG4
AdABpAGUAIABsAGkAbQBpAHQA6QBlACAAZQBzAHQAIABkAOkAYwByAGkAdAAgAGMAaQCtAGEAcAByAOgA
cwAuACAAUwBhAHUAZgAgAHAAbwB1AHIAIAB0AG8AdQB0ACAAcgBlAG0AYgBvAHUAcgBzAGUAbQBlAG4Ad
AAgAGEAdQAgAGMAaABvAGkAeAAgAGQAZQAgAE0AaQBjAHIAbwBzAG8AZgB0ACwAIABzAGkAIABsAGUAIA
BMAG8AZwBpAGMAaQBlAGwAIABuAGUAIAByAGUAcwBwAGUAYwB0AGUAIABwAGEAcwAgAGwAYQAgAGcAYQB
yAGEAbgB0AGkAZQAgAGwAaQBtAGkAdADpAGUAIABkAGUAIABNAGkAYwByAG8AcwBvAGYAdAAgAGUAdAAs
ACAAZABhAG4AcwAgAGwAYQAgAG0AZQBzAHUAcgBlACAAbQBhAHgAaQBtAGEAbABlACAAcABlAHIAbQBpA
HMAZQAgAHAAYQByACAAbABlAHMAIABsAG8AaQBzACAAYQBwAHAAbABpAGMAYQBiAGwAZQBzACwAIABtAO
oAbQBlACAAcwBpACAAdABvAHUAdAAgAHIAZQBjAG8AdQByAHMAIABuACcAYQB0AHQAZQBpAG4AdAAgAHA
AYQBzACAAcwBvAG4AIABiAHUAdAAgAGUAcwBzAGUAbgB0AGkAZQBsACwAIABWAE8AVQBTACAATgAnAEEA
VgBFAFoAIABEAFIATwBJAFQAIADAACAAQQBVAEMAVQBOAFMAIABEAE8ATQBNAEEARwBFAFMALAAgAE4AT
wBUAEEATQBNAEUATgBUACAARABFAFMAIABEAE8ATQBNAEEARwBFAFMAIABJAE4ARABJAFIARQBDAFQAUw
AuACAATABlAHMAIABtAG8AZABhAGwAaQB0AOkAcwAgAGQAZQAgAGwAYQAgAGMAbABhAHUAcwBlACAAqwB
FAHgAYwBsAHUAcwBpAG8AbgAgAGQAZQBzACAAZABvAG0AbQBhAGcAZQBzACAAYQBjAGMAZQBzAHMAbwBp
AHIAZQBzACwAIABpAG4AZABpAHIAZQBjAHQAcwAgAGUAdAAgAGQAZQAgAGMAZQByAHQAYQBpAG4AcwAgA
GEAdQB0AHIAZQBzACAAZABvAG0AbQBhAGcAZQBzACAAuwAgAHMAbwBuAHQAIADpAGcAYQBsAGUAbQBlAG
4AdAAgAGkAbgB0AOkAZwByAOkAZQBzACAA4AAgAGwAYQAgAHAAcgDpAHMAZQBuAHQAZQAgAGcAYQByAGE
AbgB0AGkAZQAgAGwAaQBtAGkAdADpAGUALgAgAEMAZQByAHQAYQBpAG4AcwAgAMkAdABhAHQAcwAgAG8A
dQAgAHQAZQByAHIAaQB0AG8AaQByAGUAcwAgAG4AZQAgAHAAZQByAG0AZQB0AHQAZQBuAHQAIABwAGEAc
wAgAGwAJwBlAHgAYwBsAHUAcwBpAG8AbgAgAG8AdQAgAGwAYQAgAGwAaQBtAGkAdABhAHQAaQBvAG4AIA
BkAGUAcwAgAGQAbwBtAG0AYQBnAGUAcwAgAGkAbgBkAGkAcgBlAGMAdABzACAAbwB1ACAAYQBjAGMAZQB
zAHMAbwBpAHIAZQBzACAAZABlACAAcwBvAHIAdABlACAAcQB1AGUAIABsAGEAIABsAGkAbQBpAHQAYQB0
AGkAbwBuACAAbwB1ACAAbAAnAGUAeABjAGwAdQBzAGkAbwBuACAAYwBpAK0AZABlAHMAcwB1AHMAIABwA
GUAdQB0ACAAbgBlACAAcABhAHMAIABzACcAYQBwAHAAbABpAHEAdQBlAHIAIADgACAAdgBvAHUAcwAuAC
AATABhACAAcAByAOkAcwBlAG4AdABlACAAZwBhAHIAYQBuAHQAaQBlACAAbABpAG0AaQB0AOkAZQAgAHY
AbwB1AHMAIABkAG8AbgBuAGUAIABkAGUAcwAgAGQAcgBvAGkAdABzACAAbADpAGcAYQB1AHgAIABzAHAA
6QBjAGkAZgBpAHEAdQBlAHMALgAgAFYAbwB1AHMAIABwAG8AdQB2AGUAegAgAGEAdgBvAGkAcgAgAGQAJ
wBhAHUAdAByAGUAcwAgAGQAcgBvAGkAdABzACAAcQB1AGkAIABwAGUAdQB2AGUAbgB0ACAAdgBhAHIAaQ
BlAHIAIABkACcAdQBuACAAdABlAHIAcgBpAHQAbwBpAHIAZQAgAG8AdQAgAGQAJwB1AG4AIADJAHQAYQB
0ACAA4AAgAHUAbgAgAGEAdQB0AHIAZQAuACAAVgBPAFQAUgBFACAAUgBFAEMATwBVAFIAUwAgAEUAWABD
AEwAVQBTAEkARgAuACAATAAnAG8AYgBsAGkAZwBhAHQAaQBvAG4AIABpAG4AdADpAGcAcgBhAGwAZQAgA
GQAZQAgAE0AaQBjAHIAbwBzAG8AZgB0ACAAZQB0ACAAZABlACAAcwBlAHMAIABmAG8AdQByAG4AaQBzAH
MAZQB1AHIAcwAgAGUAdAAgAHYAbwB0AHIAZQAgAHIAZQBjAG8AdQByAHMAIABlAHgAYwBsAHUAcwBpAGY
AIABzAGUAcgBvAG4AdAAsACAAcwBlAGwAbwBuACAAbABlACAAYwBoAG8AaQB4ACAAZABlACAATQBpAGMA
cgBvAHMAbwBmAHQAIABkAGUAIAB0AGUAbQBwAHMAIADgACAAYQB1AHQAcgBlACAAcwBvAHUAcwAgAHIA6
QBzAGUAcgB2AGUAIABkAGUAIAB0AG8AdQB0AGUAIABsAG8AaQAgAGEAcABwAGwAaQBjAGEAYgBsAGUALA
AgAGEAKQAgAGwAZQAgAHIAZQBtAGIAbwB1AHIAcwBlAG0AZQBuAHQAIABkAHUAIABwAHIAaQB4ACAAcAB
hAHkA6QAsACAAbABlACAAYwBhAHMAIADpAGMAaADpAGEAbgB0ACwAIABwAG8AdQByACAAbABlACAATABv
AGcAaQBjAGkAZQBsACAAbwB1ACAAYgApACAAbABhACAAcgDpAHAAYQByAGEAdABpAG8AbgAgAG8AdQAgA
GwAZQAgAHIAZQBtAHAAbABhAGMAZQBtAGUAbgB0ACAAZAB1ACAATABvAGcAaQBjAGkAZQBsACAAcQB1AG
kAIABuAGUAIAByAGUAcwBwAGUAYwB0AGUAIABwAGEAcwAgAGwAYQAgAHAAcgDpAHMAZQBuAHQAZQAgAGc
AYQByAGEAbgB0AGkAZQAgAGwAaQBtAGkAdADpAGUAIABlAHQAIABxAHUAaQAgAGUAcwB0ACAAcgBlAHQA
bwB1AHIAbgDpACAA4AAgAE0AaQBjAHIAbwBzAG8AZgB0ACAAYQB2AGUAYwAgAHUAbgBlACAAYwBvAHAAa
QBlACAAZABlACAAdgBvAHQAcgBlACAAcgBlAOcAdQAuACAAVgBvAHUAcwAgAHIAZQBjAGUAdgByAGUAeg
AgAGwAYQAgAGMAbwBtAHAAZQBuAHMAYQB0AGkAbwBuACAAYwBoAG8AaQBzAGkAZQAgAHAAYQByACAATQB
pAGMAcgBvAHMAbwBmAHQALAAgAHMAYQBuAHMAIABmAHIAYQBpAHMALAAgAHMAYQB1AGYAIABxAHUAZQAg
AHYAbwB1AHMAIADqAHQAZQBzACAAcgBlAHMAcABvAG4AcwBhAGIAbABlACAAZABlAHMAIABkAOkAcABlA
G4AcwBlAHMAIABxAHUAZQAgAHYAbwB1AHMAIABwAG8AdQByAHIAaQBlAHoAIABlAG4AZwBhAGcAZQByAC
AAKABwAC4AIABlAHgALgAsACAAbABlAHMAIABmAHIAYQBpAHMAIABkACcAZQBuAHYAbwBpACAAZAB1ACA
ATABvAGcAaQBjAGkAZQBsACAA4AAgAE0AaQBjAHIAbwBzAG8AZgB0ACkALgAgAEwAYQAgAHAAcgDpAHMA
ZQBuAHQAZQAgAGcAYQByAGEAbgB0AGkAZQAgAGwAaQBtAGkAdADpAGUAIABlAHMAdAAgAG4AdQBsAGwAZ
QAgAHMAaQAgAGwAYQAgAGQA6QBmAGUAYwB0AHUAbwBzAGkAdADpACAAZAB1ACAATABvAGcAaQBjAGkAZQ
BsACAAZQBzAHQAIABjAGEAdQBzAOkAZQAgAHAAYQByACAAdQBuACAAYQBjAGMAaQBkAGUAbgB0ACwAIAB
1AG4AIAB1AHMAYQBnAGUAIABhAGIAdQBzAGkAZgAsACAAdQBuAGUAIABtAGEAdQB2AGEAaQBzAGUAIABh
AHAAcABsAGkAYwBhAHQAaQBvAG4ALAAgAHUAbgAgAHUAcwBhAGcAZQAgAGEAbgBvAHIAbQBhAGwAIABvA
HUAIAB1AG4AIAB2AGkAcgB1AHMALgAgAFQAbwB1AHQAIABMAG8AZwBpAGMAaQBlAGwAIABkAGUAIAByAG
UAbQBwAGwAYQBjAGUAbQBlAG4AdAAgAHMAZQByAGEAIABnAGEAcgBhAG4AdABpACAAcABvAHUAcgAgAGw
AZQAgAHIAZQBzAHQAZQAgAGQAZQAgAGwAYQAgAHAA6QByAGkAbwBkAGUAIABkAGUAIABnAGEAcgBhAG4A
dABpAGUAIABpAG4AaQB0AGkAYQBsAGUAIABvAHUAIABwAGUAbgBkAGEAbgB0ACAAdAByAGUAbgB0AGUAI
AAoADMAMAApACAAagBvAHUAcgBzACwAIABzAGUAbABvAG4AIABsAGEAIABwAGwAdQBzACAAbABvAG4AZw
B1AGUAIABlAG4AdAByAGUAIABjAGUAcwAgAGQAZQB1AHgAIABwAOkAcgBpAG8AZABlAHMALgAgAMAAIAB
sACcAZQB4AHQA6QByAGkAZQB1AHIAIABkAGUAcwAgAMkAdABhAHQAcwAtAFUAbgBpAHMAIABvAHUAIABk
AHUAIABDAGEAbgBhAGQAYQAsACAAYwBlAHMAIAByAGUAYwBvAHUAcgBzACAAbwB1ACAAbAAnAHUAbgAgA
HEAdQBlAGwAYwBvAG4AcQB1AGUAIABkAGUAcwAgAHMAZQByAHYAaQBjAGUAcwAgAGQAZQAgAHMAbwB1AH
QAaQBlAG4AIAB0AGUAYwBoAG4AaQBxAHUAZQAgAG8AZgBmAGUAcgB0AHMAIABwAGEAcgAgAE0AaQBjAHI
AbwBzAG8AZgB0ACAAbgBlACAAcwBvAG4AdAAgAHAAYQBzACAAZABpAHMAcABvAG4AaQBiAGwAZQBzACAA
cwBhAG4AcwAgAHAAcgBlAHUAdgBlACAAZAAnAGEAYwBoAGEAdAAgAGQAJwB1AG4AZQAgAHMAbwB1AHIAY
wBlACAAaQBuAHQAZQByAG4AYQB0AGkAbwBuAGEAbABlACAAYQB1AHQAbwByAGkAcwDpAGUALgAgAFAAbw
B1AHIAIABlAHgAZQByAGMAZQByACAAdgBvAHQAcgBlACAAcgBlAGMAbwB1AHIAcwAsACAAdgBvAHUAcwA
gAGQAZQB2AGUAegAgAGMAbwBtAG0AdQBuAGkAcQB1AGUAcgAgAGEAdgBlAGMAIABNAGkAYwByAG8AcwBv
AGYAdAAgAGUAdAAgAHYAbwB1AHMAIABhAGQAcgBlAHMAcwBlAHIAIABhAHUAIABNAGkAYwByAG8AcwBvA
GYAdAAgAFMAYQBsAGUAcwAgAEkAbgBmAG8AcgBtAGEAdABpAG8AbgAgAEMAZQBuAHQAZQByAC8ATwBuAG
UAIABNAGkAYwByAG8AcwBvAGYAdAAgAFcAYQB5AC8AUgBlAGQAbQBvAG4AZAAsACAAVwBBACAAOQA4ADA
ANQAyAC0ANgAzADkAOQAsACAAbwB1ACAA4AAgAGwAYQAgAGYAaQBsAGkAYQBsAGUAIABkAGUAIABNAGkA
YwByAG8AcwBvAGYAdAAgAGQAZQAgAHYAbwB0AHIAZQAgAHAAYQB5AHMALgAKAEQAyQBOAEkAIABEAEUAI
ABHAEEAUgBBAE4AVABJAEUAUwAuACAATABhACAAZwBhAHIAYQBuAHQAaQBlACAAbABpAG0AaQB0AOkAZQ
AgAG0AZQBuAHQAaQBvAG4AbgDpAGUAIABjAGkALQBkAGUAcwBzAHUAcwAgAGMAbwBuAHMAdABpAHQAdQB
lACAAbABhACAAcwBlAHUAbABlACAAZwBhAHIAYQBuAHQAaQBlACAAZQB4AHAAcgBlAHMAcwBlACAAcQB1
AGkAIAB2AG8AdQBzACAAZQBzAHQAIABkAG8AbgBuAOkAZQAgAGUAdAAgAHIAZQBtAHAAbABhAGMAZQAgA
HQAbwB1AHQAZQBzACAAYQB1AHQAcgBlAHMAIABnAGEAcgBhAG4AdABpAGUAcwAgAGUAeABwAHIAZQBzAH
MAZQBzACAAKABzACcAaQBsACAAZQBuACAAZQBzAHQAKQAgAG0AZQBuAHQAaQBvAG4AbgDpAGUAcwAgAGQ
AYQBuAHMAIAB1AG4AIABkAG8AYwB1AG0AZQBuAHQAIABvAHUAIABzAHUAcgAgAHUAbgAgAGUAbQBiAGEA
bABsAGEAZwBlAC4AIABTAGEAdQBmACAAZQBuACAAYwBlACAAcQB1AGkAIABhACAAdAByAGEAaQB0ACAA4
AAgAGwAYQAgAGcAYQByAGEAbgB0"
"Current5"="AGkAZQAgAGwAaQBtAGkAdADpAGUAIABlAHQAIABkAGEAbgBzACAAbABhACAAbQBlAHMAdQByAGU
AIABtAGEAeABpAG0AYQBsAGUAIABwAGUAcgBtAGkAcwBlACAAcABhAHIAIABsAGUAcwAgAGwAbwBpAHMA
IABhAHAAcABsAGkAYwBhAGIAbABlAHMALAAgAGwAZQAgAEwAbwBnAGkAYwBpAGUAbAAgAGUAdAAgAGwAZ
QBzACAAcwBlAHIAdgBpAGMAZQBzACAAZABlACAAcwBvAHUAdABpAGUAbgAgAHQAZQBjAGgAbgBpAHEAdQ
BlACAAKABsAGUAIABjAGEAcwAgAOkAYwBoAOkAYQBuAHQAKQAgAHMAbwBuAHQAIABmAG8AdQByAG4AaQB
zACAAVABFAEwAUwAgAFEAVQBFAEwAUwAgAEUAVAAgAEEAVgBFAEMAIABUAE8AVQBTACAATABFAFMAIABE
AMkARgBBAFUAVABTACAAcABhAHIAIABNAGkAYwByAG8AcwBvAGYAdAAgAGUAdAAgAHMAZQBzACAAZgBvA
HUAcgBuAGkAcwBzAGUAdQByAHMALAAgAGwAZQBzAHEAdQBlAGwAcwAgAHAAYQByACAAbABlAHMAIABwAH
IA6QBzAGUAbgB0AGUAcwAgAGQA6QBuAGkAZQBuAHQAIAB0AG8AdQB0AGUAcwAgAGEAdQB0AHIAZQBzACA
AZwBhAHIAYQBuAHQAaQBlAHMAIABlAHQAIABjAG8AbgBkAGkAdABpAG8AbgBzACAAZQB4AHAAcgBlAHMA
cwBlAHMALAAgAGkAbQBwAGwAaQBjAGkAdABlAHMAIABvAHUAIABlAG4AIAB2AGUAcgB0AHUAIABkAGUAI
ABsAGEAIABsAG8AaQAsACAAbgBvAHQAYQBtAG0AZQBuAHQAIAAoAGwAZQAgAGMAYQBzACAA6QBjAGgA6Q
BhAG4AdAApACAAbABlAHMAIABnAGEAcgBhAG4AdABpAGUAcwAsACAAZABlAHYAbwBpAHIAcwAgAG8AdQA
gAGMAbwBuAGQAaQB0AGkAbwBuAHMAIABpAG0AcABsAGkAYwBpAHQAZQBzACAAZABlACAAcQB1AGEAbABp
AHQA6QAgAG0AYQByAGMAaABhAG4AZABlACwAIABkACcAYQBkAGEAcAB0AGEAdABpAG8AbgAgAOAAIAB1A
G4AIAB1AHMAYQBnAGUAIABwAGEAcgB0AGkAYwB1AGwAaQBlAHIALAAgAGQAJwBlAHgAYQBjAHQAaQB0AH
UAZABlACAAbwB1ACAAZAAnAGUAeABoAGEAdQBzAHQAaQB2AGkAdADpACAAZABlAHMAIAByAOkAcABvAG4
AcwBlAHMALAAgAGQAZQBzACAAcgDpAHMAdQBsAHQAYQB0AHMALAAgAGQAZQBzACAAZQBmAGYAbwByAHQA
cwAgAGQA6QBwAGwAbwB5AOkAcwAgAHMAZQBsAG8AbgAgAGwAZQBzACAAcgDoAGcAbABlAHMAIABkAGUAI
ABsACcAYQByAHQALAAgAGQAJwBhAGIAcwBlAG4AYwBlACAAZABlACAAdgBpAHIAdQBzACAAZQB0ACAAZA
BlACAAbgDpAGcAbABpAGcAZQBuAGMAZQAsACAAbABlACAAdABvAHUAdAAgAOAAIABsACcA6QBnAGEAcgB
kACAAZAB1ACAATABvAGcAaQBjAGkAZQBsACAAZQB0ACAAZABlACAAbABhACAAcAByAGUAcwB0AGEAdABp
AG8AbgAgAGQAZQBzACAAcwBlAHIAdgBpAGMAZQBzACAAZABlACAAcwBvAHUAdABpAGUAbgAgAHQAZQBjA
GgAbgBpAHEAdQBlACAAbwB1ACAAZABlACAAbAAnAG8AbQBpAHMAcwBpAG8AbgAgAGQAJwB1AG4AZQAgAH
QAZQBsAGwAZQAgAHAAcgBlAHMAdABhAHQAaQBvAG4ALgAgAFAAQQBSACAAQQBJAEwATABFAFUAUgBTACw
AIABJAEwAIABOACcAWQAgAEEAIABBAFUAQwBVAE4ARQAgAEcAQQBSAEEATgBUAEkARQAgAE8AVQAgAEMA
TwBOAEQASQBUAEkATwBOACAAUQBVAEEATgBUACAAQQBVACAAVABJAFQAUgBFACAARABFACAAUABSAE8AU
ABSAEkAyQBUAMkALAAgAMAAIABMAEEAIABKAE8AVQBJAFMAUwBBAE4AQwBFACAATwBVACAATABBACAAUA
BPAFMAUwBFAFMAUwBJAE8ATgAgAFAAQQBJAFMASQBCAEwARQAsACAAwAAgAEwAQQAgAEMATwBOAEMATwB
SAEQAQQBOAEMARQAgAMAAIABVAE4ARQAgAEQARQBTAEMAUgBJAFAAVABJAE8ATgAgAE4ASQAgAFEAVQBB
AE4AVAAgAMAAIABVAE4ARQAgAEEAQgBTAEUATgBDAEUAIABEAEUAIABDAE8ATgBUAFIARQBGAEEAxwBPA
E4AIABDAE8ATgBDAEUAUgBOAEEATgBUACAATABFACAATABPAEcASQBDAEkARQBMAC4ACgBFAFgAQwBMAF
UAUwBJAE8ATgAgAEQARQBTACAARABPAE0ATQBBAEcARQBTACAAQQBDAEMARQBTAFMATwBJAFIARQBTACw
AIABJAE4ARABJAFIARQBDAFQAUwAgAEUAVAAgAEQARQAgAEMARQBSAFQAQQBJAE4AUwAgAEEAVQBUAFIA
RQBTACAARABPAE0ATQBBAEcARQBTAC4AIABEAEEATgBTACAATABBACAATQBFAFMAVQBSAEUAIABNAEEAW
ABJAE0AQQBMAEUAIABQAEUAUgBNAEkAUwBFACAAUABBAFIAIABMAEUAUwAgAEwATwBJAFMAIABBAFAAUA
BMAEkAQwBBAEIATABFAFMALAAgAEUATgAgAEEAVQBDAFUATgAgAEMAQQBTACAATQBJAEMAUgBPAFMATwB
GAFQAIABPAFUAIABTAEUAUwAgAEYATwBVAFIATgBJAFMAUwBFAFUAUgBTACAATgBFACAAUwBFAFIATwBO
AFQAIABSAEUAUwBQAE8ATgBTAEEAQgBMAEUAUwAgAEQARQBTACAARABPAE0ATQBBAEcARQBTACAAUwBQA
MkAQwBJAEEAVQBYACwAIABDAE8ATgBTAMkAQwBVAFQASQBGAFMALAAgAEEAQwBDAEUAUwBTAE8ASQBSAE
UAUwAgAE8AVQAgAEkATgBEAEkAUgBFAEMAVABTACAARABFACAAUQBVAEUATABRAFUARQAgAE4AQQBUAFU
AUgBFACAAUQBVAEUAIABDAEUAIABTAE8ASQBUACAAKABOAE8AVABBAE0ATQBFAE4AVAAsACAATABFAFMA
IABEAE8ATQBNAEEARwBFAFMAIADAACAATAAnAMkARwBBAFIARAAgAEQAVQAgAE0AQQBOAFEAVQBFACAAw
AAgAEcAQQBHAE4ARQBSACAATwBVACAARABFACAATABBACAARABJAFYAVQBMAEcAQQBUAEkATwBOACAARA
BFACAAUgBFAE4AUwBFAEkARwBOAEUATQBFAE4AVABTACAAQwBPAE4ARgBJAEQARQBOAFQASQBFAEwAUwA
gAE8AVQAgAEEAVQBUAFIARQBTACwAIABEAEUAIABMAEEAIABQAEUAUgBUAEUAIABEACcARQBYAFAATABP
AEkAVABBAFQASQBPAE4ALAAgAEQARQAgAEIATABFAFMAUwBVAFIARQBTACAAQwBPAFIAUABPAFIARQBMA
EwARQBTACwAIABEAEUAIABMAEEAIABWAEkATwBMAEEAVABJAE8ATgAgAEQARQAgAEwAQQAgAFYASQBFAC
AAUABSAEkAVgDJAEUALAAgAEQARQAgAEwAJwBPAE0ASQBTAFMASQBPAE4AIABEAEUAIABSAEUATQBQAEw
ASQBSACAAVABPAFUAVAAgAEQARQBWAE8ASQBSACwAIABZACAAQwBPAE0AUABSAEkAUwAgAEQAJwBBAEcA
SQBSACAARABFACAAQgBPAE4ATgBFACAARgBPAEkAIABPAFUAIABEACcARQBYAEUAUgBDAEUAUgAgAFUAT
gAgAFMATwBJAE4AIABSAEEASQBTAE8ATgBOAEEAQgBMAEUALAAgAEQARQAgAEwAQQAgAE4AyQBHAEwASQ
BHAEUATgBDAEUAIABFAFQAIABEAEUAIABUAE8AVQBUAEUAIABBAFUAVABSAEUAIABQAEUAUgBUAEUAIAB
QAMkAQwBVAE4ASQBBAEkAUgBFACAATwBVACAAQQBVAFQAUgBFACAAUABFAFIAVABFACAARABFACAAUQBV
AEUATABRAFUARQAgAE4AQQBUAFUAUgBFACAAUQBVAEUAIABDAEUAIABTAE8ASQBUACkAIABTAEUAIABSA
EEAUABQAE8AUgBUAEEATgBUACAARABFACAAUQBVAEUATABRAFUARQAgAE0AQQBOAEkAyABSAEUAIABRAF
UARQAgAEMARQAgAFMATwBJAFQAIADAACAATAAnAFUAVABJAEwASQBTAEEAVABJAE8ATgAgAEQAVQAgAEw
ATwBHAEkAQwBJAEUATAAgAE8AVQAgAMAAIABMACcASQBOAEMAQQBQAEEAQwBJAFQAyQAgAEQARQAgAFMA
JwBFAE4AIABTAEUAUgBWAEkAUgAsACAAwAAgAEwAQQAgAFAAUgBFAFMAVABBAFQASQBPAE4AIABPAFUAI
ADAACAATAAnAE8ATQBJAFMAUwBJAE8ATgAgAEQAJwBVAE4ARQAgAFQARQBMAEwARQAgAFAAUgBFAFMAVA
BBAFQASQBPAE4AIABEAEUAIABTAEUAUgBWAEkAQwBFAFMAIABEAEUAIABTAE8AVQBUAEkARQBOACAAVAB
FAEMASABOAEkAUQBVAEUAIABPAFUAIABBAFUAVABSAEUATQBFAE4AVAAgAEEAVQBYACAAVABFAFIATQBF
AFMAIABEAEUAIABUAE8AVQBUAEUAIABEAEkAUwBQAE8AUwBJAFQASQBPAE4AIABEAFUAIABQAFIAyQBTA
EUATgBUACAARQBVAEwAQQAgAE8AVQAgAFIARQBMAEEAVABJAFYARQBNAEUATgBUACAAwAAgAFUATgBFAC
AAVABFAEwATABFACAARABJAFMAUABPAFMASQBUAEkATwBOACwAIABNAMoATQBFACAARQBOACAAQwBBAFM
AIABEAEUAIABGAEEAVQBUAEUALAAgAEQARQAgAEQAyQBMAEkAVAAgAEMASQBWAEkATAAgACgAWQAgAEMA
TwBNAFAAUgBJAFMAIABMAEEAIABOAMkARwBMAEkARwBFAE4AQwBFACkALAAgAEQARQAgAFIARQBTAFAAT
wBOAFMAQQBCAEkATABJAFQAyQAgAFMAVABSAEkAQwBUAEUALAAgAEQARQAgAFYASQBPAEwAQQBUAEkATw
BOACAARABFACAAQwBPAE4AVABSAEEAVAAgAE8AVQAgAEQARQAgAFYASQBPAEwAQQBUAEkATwBOACAARAB
FACAARwBBAFIAQQBOAFQASQBFACAARABFACAATQBJAEMAUgBPAFMATwBGAFQAIABPAFUAIABEAEUAIABU
AE8AVQBUACAARgBPAFUAUgBOAEkAUwBTAEUAVQBSACAARQBUACAATQDKAE0ARQAgAFMASQAgAE0ASQBDA
FIATwBTAE8ARgBUACAATwBVACAAVABPAFUAVAAgAEYATwBVAFIATgBJAFMAUwBFAFUAUgAgAEEAIADJAF
QAyQAgAEEAVgBJAFMAyQAgAEQARQAgAEwAQQAgAFAATwBTAFMASQBCAEkATABJAFQAyQAgAEQARQAgAFQ
ARQBMAFMAIABEAE8ATQBNAEEARwBFAFMALgAKAEwASQBNAEkAVABBAFQASQBPAE4AIABEAEUAIABSAEUA
UwBQAE8ATgBTAEEAQgBJAEwASQBUAMkAIABFAFQAIABSAEUAQwBPAFUAUgBTAC4AIABNAGEAbABnAHIA6
QAgAGwAZQBzACAAZABvAG0AbQBhAGcAZQBzACAAcQB1AGUAIAB2AG8AdQBzACAAcAB1AGkAcwBzAGkAZQ
B6ACAAcwB1AGIAaQByACAAcABvAHUAcgAgAHEAdQBlAGwAcQB1AGUAIABtAG8AdABpAGYAIABxAHUAZQA
gAGMAZQAgAHMAbwBpAHQAIAAoAG4AbwB0AGEAbQBtAGUAbgB0ACwAIAB0AG8AdQBzACAAbABlAHMAIABk
AG8AbQBtAGEAZwBlAHMAIABzAHUAcwBtAGUAbgB0AGkAbwBuAG4A6QBzACAAZQB0ACAAdABvAHUAcwAgA
GwAZQBzACAAZABvAG0AbQBhAGcAZQBzACAAZABpAHIAZQBjAHQAcwAgAG8AdQAgAGcA6QBuAOkAcgBhAH
UAeAApACwAIABsACcAbwBiAGwAaQBnAGEAdABpAG8AbgAgAGkAbgB0AOkAZwByAGEAbABlACAAZABlACA
ATQBpAGMAcgBvAHMAbwBmAHQAIABlAHQAIABkAGUAIABsACcAdQBuACAAbwB1ACAAbAAnAGEAdQB0AHIA
ZQAgAGQAZQAgAHMAZQBzACAAZgBvAHUAcgBuAGkAcwBzAGUAdQByAHMAIABhAHUAeAAgAHQAZQByAG0AZ
QBzACAAZABlACAAdABvAHUAdABlACAAZABpAHMAcABvAHMAaQB0AGkAbwBuACAAZAB1ACAAcAByAOkAcw
BlAG4AdAAgAEUAVQBMAEEAIABlAHQAIAB2AG8AdAByAGUAIAByAGUAYwBvAHUAcgBzACAAZQB4AGMAbAB
1AHMAaQBmACAA4AAgAGwAJwDpAGcAYQByAGQAIABkAGUAIAB0AG8AdQB0ACAAYwBlACAAcQB1AGkAIABw
AHIA6QBjAOgAZABlACAAKABzAGEAdQBmACAAZQBuACAAYwBlACAAcQB1AGkAIABjAG8AbgBjAGUAcgBuA
GUAIAB0AG8AdQB0ACAAcgBlAGMAbwB1AHIAcwAgAGQAZQAgAHIA6QBwAGEAcgBhAHQAaQBvAG4AIABvAH
UAIABkAGUAIAByAGUAbQBwAGwAYQBjAGUAbQBlAG4AdAAgAGMAaABvAGkAcwBpACAAcABhAHIAIABNAGk
AYwByAG8AcwBvAGYAdAAgAOAAIABsACcA6QBnAGEAcgBkACAAZABlACAAdABvAHUAdAAgAG0AYQBuAHEA
dQBlAG0AZQBuAHQAIADgACAAbABhACAAZwBhAHIAYQBuAHQAaQBlACAAbABpAG0AaQB0AOkAZQApACAAc
wBlACAAbABpAG0AaQB0AGUAIABhAHUAIABwAGwAdQBzACAA6QBsAGUAdgDpACAAZQBuAHQAcgBlACAAbA
BlAHMAIABtAG8AbgB0AGEAbgB0AHMAIABzAHUAaQB2AGEAbgB0AHMAIAA6ACAAbABlACAAbQBvAG4AdAB
hAG4AdAAgAHEAdQBlACAAdgBvAHUAcwAgAGEAdgBlAHoAIAByAOkAZQBsAGwAZQBtAGUAbgB0ACAAcABh
AHkA6QAgAHAAbwB1AHIAIABsAGUAIABMAG8AZwBpAGMAaQBlAGwAIABvAHUAIAA1ACwAMAAwACAAJABVA
FMALgAgAEwAZQBzACAAbABpAG0AaQB0AGUAcwAsACAAZQB4AGMAbAB1AHMAaQBvAG4AcwAgAGUAdAAgAG
QA6QBuAGkAcwAgAHEAdQBpACAAcAByAOkAYwDoAGQAZQBuAHQAIAAoAHkAIABjAG8AbQBwAHIAaQBzACA
AbABlAHMAIABjAGwAYQB1AHMAZQBzACAAYwBpAC0AZABlAHMAcwB1AHMAKQAsACAAcwAnAGEAcABwAGwA
aQBxAHUAZQBuAHQAIABkAGEAbgBzACAAbABhACAAbQBlAHMAdQByAGUAIABtAGEAeABpAG0AYQBsAGUAI
ABwAGUAcgBtAGkAcwBlACAAcABhAHIAIABsAGUAcwAgAGwAbwBpAHMAIABhAHAAcABsAGkAYwBhAGIAbA
BlAHMALAAgAG0A6gBtAGUAIABzAGkAIAB0AG8AdQB0ACAAcgBlAGMAbwB1AHIAcwAgAG4AJwBhAHQAdAB
lAGkAbgB0ACAAcABhAHMAIABzAG8AbgAgAGIAdQB0ACAAZQBzAHMAZQBuAHQAaQBlAGwALgAKAEwAYQAg
AHAAcgDpAHMAZQBuAHQAZQAgAEMAbwBuAHYAZQBuAHQAaQBvAG4AIABlAHMAdAAgAHIA6QBnAGkAZQAgA
HAAYQByACAAbABlAHMAIABsAG8AaQBzACAAZABlACAAbABhACAAcAByAG8AdgBpAG4AYwBlACAAZAAnAE
8AbgB0AGEAcgBpAG8ALAAgAEMAYQBuAGEAZABhAC4AIABDAGgAYQBjAHUAbgBlACAAZABlAHMAIABwAGE
AcgB0AGkAZQBzACAA4AAgAGwAYQAgAHAAcgDpAHMAZQBuAHQAZQAgAHIAZQBjAG8AbgBuAGEA7gB0ACAA
aQByAHIA6QB2AG8AYwBhAGIAbABlAG0AZQBuAHQAIABsAGEAIABjAG8AbQBwAOkAdABlAG4AYwBlACAAZ
ABlAHMAIAB0AHIAaQBiAHUAbgBhAHUAeAAgAGQAZQAgAGwAYQAgAHAAcgBvAHYAaQBuAGMAZQAgAGQAJw
BPAG4AdABhAHIAaQBvACAAZQB0ACAAYwBvAG4AcwBlAG4AdAAgAOAAIABpAG4AcwB0AGkAdAB1AGUAcgA
gAHQAbwB1AHQAIABsAGkAdABpAGcAZQAgAHEAdQBpACAAcABvAHUAcgByAGEAaQB0ACAAZADpAGMAbwB1
AGwAZQByACAAZABlACAAbABhACAAcAByAOkAcwBlAG4AdABlACAAYQB1AHAAcgDoAHMAIABkAGUAcwAgA
HQAcgBpAGIAdQBuAGEAdQB4ACAAcwBpAHQAdQDpAHMAIABkAGEAbgBzACAAbABlACAAZABpAHMAdAByAG
kAYwB0ACAAagB1AGQAaQBjAGkAYQBpAHIAZQAgAGQAZQAgAFkAbwByAGsALAAgAHAAcgBvAHYAaQBuAGM
AZQAgAGQAJwBPAG4AdABhAHIAaQBvAC4ACgBBAHUAIABjAGEAcwAgAG8A+QAgAHYAbwB1AHMAIABhAHUA
cgBpAGUAegAgAGQAZQBzACAAcQB1AGUAcwB0AGkAbwBuAHMAIABjAG8AbgBjAGUAcgBuAGEAbgB0ACAAY
wBlAHQAdABlACAAbABpAGMAZQBuAGMAZQAgAG8AdQAgAHEAdQBlACAAdgBvAHUAcwAgAGQA6QBzAGkAcg
BpAGUAegAgAHYAbwB1AHMAIABtAGUAdAB0AHIAZQAgAGUAbgAgAHIAYQBwAHAAbwByAHQAIABhAHYAZQB
jACAATQBpAGMAcgBvAHMAbwBmAHQAIABwAG8AdQByACAAcQB1AGUAbABxAHUAZQAgAHIAYQBpAHMAbwBu
ACAAcQB1AGUAIABjAGUAIABzAG8AaQB0ACwAIAB2AGUAdQBpAGwAbABlAHoAIABjAG8AbgB0AGEAYwB0A
GUAcgAgAGwAYQAgAHMAdQBjAGMAdQByAHMAYQBsAGUAIABNAGkAYwByAG8AcwBvAGYAdAAgAGQAZQBzAH
MAZQByAHYAYQBuAHQAIAB2AG8AdAByAGUAIABwAGEAeQBzACwAIABkAG8AbgB0ACAAbAAnAGEAZAByAGU
AcwBzAGUAIABlAHMAdAAgAGYAbwB1AHIAbgBpAGUAIABkAGEAbgBzACAAYwBlACAAcAByAG8AZAB1AGkA
dAAsACAAbwB1ACAA6QBjAHIAaQB2AGUAegAgAOAAIAA6ACAATQBpAGMAcgBvAHMAbwBmAHQAIABTAGEAb
ABlAHMAIABJAG4AZgBvAHIAbQBhAHQAaQBvAG4AIABDAGUAbgB0AGUAcgAsACAATwBuAGUAIABNAGkAYw
ByAG8AcwBvAGYAdAAgAFcAYQB5ACwAIABSAGUAZABtAG8AbgBkACwAIABXAGEAcwBoAGkAbgBnAHQAbwB
uACAAOQA4ADAANQAyAC0ANgAzADkAOQAuAAoACgBUAGgAZQAgAGYAbwBsAGwAbwB3AGkAbgBnACAATQBJ
AEMAUgBPAFMATwBGAFQAIABHAFUAQQBSAEEATgBUAEUARQAgAGEAcABwAGwAaQBlAHMAIAB0AG8AIAB5A
G8AdQAgAGkAZgAgAHkAbwB1ACAAYQBjAHEAdQBpAHIAZQBkACAAdABoAGkAcwAgAFMAbwBmAHQAdwBhAH
IAZQAgAGkAbgAgAGEAbgB5ACAAbwB0AGgAZQByACAAYwBvAHUAbgB0AHIAeQA6ACAAIAAgAAoAUwB0AGE
AdAB1AHQAbwByAHkAIAByAGkAZwBoAHQAcwAgAG4AbwB0ACAAYQBmAGYAZQBjAHQAZQBkACAALQAgAFQA
aABlACAAZgBvAGwAbABvAHcAaQBuAGcAIABnAHUAYQByAGEAbgB0AGUAZQAgAGkAcwAgAG4AbwB0ACAAc
gBlAHMAdAByAGkAYwB0AGUAZAAgAHQAbwAgAGEAbgB5ACAAdABlAHIAcgBpAHQAbwByAHkAIABhAG4AZA
AgAGQAbwBlAHMAIABuAG8AdAAgAGEAZgBmAGUAYwB0ACAAYQBuAHkAIABzAHQAYQB0AHUAdABvAHIAeQA
gAHIAaQBnAGgAdABzACAAdABoAGEAdAAgAHkAbwB1ACAAbQBhAHkAIABoAGEAdgBlACAAZgByAG8AbQAg
AHkAbwB1AHIAIAByAGUAcwBlAGwAbABlAHIAIABvAHIAIABmAHIAbwBtACAATQBpAGMAcgBvAHMAbwBmA
HQAIABpAGYAIAB5AG8AdQAgAGEAYwBxAHUAaQByAGUAZAAgAHQAaABlACAAUwBvAGYAdAB3AGEAcgBlAC
AAZABpAHIAZQBjAHQAbAB5ACAAZgByAG8AbQAgAE0AaQBjAHIAbwBzAG8AZgB0AC4AIAAgACAASQBmACA
AeQBvAHUAIABhAGMAcQB1AGkAcgBlAGQAIAB0AGgAZQAgAFMAbwBmAHQAdwBhAHIAZQAgAG8AcgAgAGEA
bgB5ACAAcwB1AHAAcABvAHIAdAAgAHMAZQByAHYAaQBjAGUAcwAgAGkAbgAgAEEAdQBzAHQAcgBhAGwAa
QBhACwAIABOAGUAdwAgAFoAZQBhAGwAYQBuAGQAIABvAHIAIABNAGEAbABhAHkAcwBpAGEALAAgAHAAbA
BlAGEAcwBlACAAcwBlAGUAIAB0AGgAZQAgACIAQwBvAG4AcwB1AG0AZQByACAAcgBpAGcAaAB0AHMAIgA
gAHMAZQBjAHQAaQBvAG4AIABiAGUAbABvAHcALgAgAAoAVABoAGUAIABnAHUAYQByAGEAbgB0AGUAZQAg
AC0AIABUAGgAZQAgAFMAbwBmAHQAdwBhAHIAZQAgAGkAcwAgAGQAZQBzAGkAZwBuAGUAZAAgAGEAbgBkA
CAAbwBmAGYAZQByAGUAZAAgAGEAcwAgAGEAIABnAGUAbgBlAHIAYQBsAC0AcAB1AHIAcABvAHMAZQAgAH
MAbwBmAHQAdwBhAHIAZQAsACAAbgBvAHQAIABmAG8AcgAgAGEAbgB5ACAAdQBzAGUAcgAnAHMAIABwAGE
AcgB0AGkAYwB1AGwAYQByACAAcAB1AHIAcABvAHMAZQAuACAAIABZAG8AdQAgAGEAYwBjAGUAcAB0ACAA
dABoAGEAdAAgAG4AbwAgAFMAbwBmAHQAdwBhAHIAZQAgAGkAcwAgAGUAcgByAG8AcgAgAGYAcgBlAGUAI
ABhAG4AZAAgAHkAbwB1ACAAYQByAGUAIABzAHQAcgBvAG4AZwBsAHkAIABhAGQAdgBpAHMAZQBkACAAdA
BvACAAYgBhAGMAawAtAHUAcAAgAHkAbwB1AHIAIABmAGkAbABlAHMAIAByAGUAZwB1AGwAYQByAGwAeQA
uACAAIABQAHIAbwB2AGkAZABlAGQAIAB0AGgAYQB0ACAAeQBvAHUAIABoAGEAdgBlACAAYQAgAHYAYQBs
AGkAZAAgAGwAaQBjAGUAbgBzAGUALAAgAE0AaQBjAHIAbwBzAG8AZgB0ACAAZwB1AGEAcgBhAG4AdABlA
GUAcwAgAHQAaABhAHQAIABhACkAIABmAG8AcgAgAGEAIABwAGUAcgBpAG8AZAAgAG8AZgAgADkAMAAgAG
QAYQB5AHMAIABmAHIAbwBtACAAdABoAGUAIABkAGEAdABlACAAbwBmACAAcgBlAGMAZQBpAHAAdAAgAG8
AZgAgAHkAbwB1AHIAIABsAGkAYwBlAG4AcwBlACAAdABvACAAdQBzAGUAIAB0AGgAZQAgAFMAbwBmAHQA
dwBhAHIAZQAgAG8AcgAgAHQAaABlACAAcwBoAG8AcgB0AGUAcwB0ACAAcABlAHIAaQBvAGQAIABwAGUAc
gBtAGkAdAB0AGUAZAAgAGIAeQAgAGEAcABwAGwAaQBjAGEAYgBsAGUAIABsAGEAdwAgAGkAdAAgAHcAaQ
BsAGwAIABwAGUAcgBmAG8AcgBtACAAcwB1AGIAcwB0AGEAbgB0AGkAYQBsAGwAeQAgAGkAbgAgAGEAYwB
jAG8AcgBkAGEAbgBjAGUAIAB3AGkAdABoACAAdABoAGUAIAB3AHIAaQB0AHQAZQBuACAAbQBhAHQAZQBy
AGkAYQBsAHMAIAB0AGgAYQB0ACAAYQBjAGMAbwBtAHAAYQBuAHkAIAB0AGgAZQAgAFMAbwBmAHQAdwBhA
HIAZQA7ACAAYQBuAGQAIABiACkAIABhAG4AeQAgAHMAdQBwAHAAbwByAHQAIABzAGUAcgB2AGkAYwBlAH
MAIABwAHIAbwB2AGkAZABlAGQAIABiAHkAIABNAGkAYwByAG8AcwBvAGYAdAAgAHMAaABhAGwAbAAgAGI
AZQAgAHMAdQBiAHMAdABhAG4AdABpAGEAbABsAHkAIABhAHMAIABkAGUAcwBjAHIAaQBiAGUAZAAgAGkA
bgAgAGEAcABwAGwAaQBjAGEAYgBsAGUAIAB3AHIAaQB0AHQAZQBuACAAbQBhAHQAZQByAGkAYQBsAHMAI
ABwAHIAbwB2AGkAZABlAGQAIAB0AG8AIAB5AG8AdQAgAGIAeQAgAE0AaQBjAHIAbwBzAG8AZgB0ACAAYQ
BuAGQAIABNAGkAYwByAG8AcwBvAGYAdAAgAHMAdQBwAHAAbwByAHQAIABlAG4AZwBpAG4AZQBlAHIAcwA
gAHcAaQBsAGwAIAB1AHMAZQAgAHIAZQBhAHMAbwBuAGEAYgBsAGUAIABlAGYAZgBvAHIAdABzACwAIABj
AGEAcgBlACAAYQBuAGQAIABzAGsAaQBsAGwAIAB0AG8AIABzAG8AbAB2AGUAIABhAG4AeQAgAHAAcgBvA
GIAbABlAG0AIABpAHMAcwB1AGUAcwAuACAAIABJAG4AIAB0AGgAZQAgAGUAdgBlAG4AdAAgAHQAaABhAH
QAIAB0AGgAZQAgAFMAbwBmAHQAdwBhAHIAZQAgAGYAYQBpAGwAcwAgAHQAbwAgAGMAbwBtAHAAbAB5ACA
AdwBpAHQAaAAgAHQAaABpAHMAIABnAHUAYQByAGEAbgB0AGUAZQAsACAATQBpAGMAcgBvAHMAbwBmAHQA
IAB3AGkAbABsACAAZQBpAHQAaABlAHIAIAAoAGEAKQAgAHIAZQBwAGEAaQByACAAbwByACAAcgBlAHAAb
ABhAGMAZQAgAHQAaABlACAAUwBvAGYAdAB3AGEAcgBlACAAbwByACAAKABiACkAIAByAGUAdAB1AHIAbg
AgAHQAaABlACAAcAByAGkAYwBlACAAeQBvAHUAIABwAGEAaQBkAC4AIAAgAFQAaABpAHMAIABnAHUAYQB
yAGEAbgB0AGUAZQAgAGkAcwAgAHYAbwBpAGQAIABpAGYAIABmAGEAaQBsAHUAcgBlACAAbwBmACAAdABo
AGUAIABTAG8AZgB0AHcAYQByAGUAIAByAGUAcwB1AGwAdABzACAAZgByAG8AbQAgAGEAYwBjAGkAZABlA
G4AdAAsACAAYQBiAHUAcwBlACAAbwByACAAbQBpAHMAYQBwAHAAbABpAGMAYQB0AGkAbwBuAC4AIAAgAE
EAbgB5ACAAcgBlAHAAbABhAGMAZQBtAGUAbgB0ACAAUwBvAGYAdAB3AGEAcgBlACAAdwBpAGwAbAAgAGI
AZQAgAGcAdQBhAHIAYQBuAHQAZQBlAGQAIABmAG8AcgAgAHQAaABlACAAcgBlAG0AYQBpAG4AZABlAHIA
IABvAGYAIAB0AGgAZQAgAG8AcgBpAGcAaQBuAGEAbAAgAGcAdQBhAHIAYQBuAHQAZQBlACAAcABlAHIAa
QBvAGQAIABvAHIAIAAzADAAIABkAGEAeQBzACwAIAB3AGgAaQBjAGgAZQB2AGUAcgAgAHAAZQByAGkAbw
BkACAAaQBzACAAbABvAG4AZwBlAHIALgAgACAAWQBvAHUAIABhAGcAcgBlAGUAIAB0AGgAYQB0ACAAdAB
oAGUAIABhAGIAbwB2AGUAIABnAHUAYQByAGEAbgB0AGUAZQAgAGkAcwAgAHkAbwB1AHIAIABzAG8AbABl
ACAAZwB1AGEAcgBhAG4AdABlAGUAIABpAG4AIAByAGUAbABhAHQAaQBvAG4AIAB0AG8AIAB0AGgAZQAgA
FMAbwBmAHQAdwBhAHIAZQAgAGEAbgBkACAAYQBuAHkAIABzAHUAcABwAG8AcgB0ACAAcwBlAHIAdgBpAG
MAZQBzAC4AIAAKAEUAeABjAGwAdQBzAGkAbwBuACAAbwBmACAAQQBsAGwAIABPAHQAaABlAHIAIABUAGU
AcgBtAHMAIAAtACAAVABvACAAdABoAGUAIABtAGEAeABpAG0AdQBtACAAZQB4AHQAZQBuAHQAIABwAGUA
cgBtAGkAdAB0AGUAZAAgAGIAeQAgAGEAcABwAGwAaQBjAGEAYgBsAGUAIABsAGEAdwAgAGEAbgBkACAAc
wB1AGIAagBlAGMAdAAgAHQAbwAgAHQAaABlACAAZwB1AGEAcgBhAG4AdABlAGUAIABhAGIAbwB2AGUALA
AgAE0AaQBjAHIAbwBzAG8AZgB0ACAAZABpAHMAYwBsAGEAaQBtAHMAIABhAGwAbAAgAHcAYQByAHIAYQB
uAHQAaQBlAHMALAAgAGMAbwBuAGQAaQB0AGkAbwBuAHMAIABhAG4AZAAgAG8AdABoAGUAcgAgAHQAZQBy
AG0AcwAsACAAZQBpAHQAaABlAHIAIABlAHgAcAByAGUAcwBzACAAbwByACAAaQBtAHAAbABpAGUAZAAgA
CgAdwBoAGUAdABoAGUAcgAgAGIAeQAgAHMAdABhAHQAdQB0AGUALAAgAGMAbwBtAG0AbwBuACAAbABhAH
cALAAgAGMAbwBsAGwAYQB0AGUAcgBhAGwAbAB5ACAAbwByACAAbwB0AGgAZQByAHcAaQBzAGUAKQAgAGk
AbgBjAGwAdQBkAGkAbgBnACAAYgB1AHQAIABuAG8AdAAgAGwAaQBtAGkAdABlAGQAIAB0AG8AIABpAG0A
cABsAGkAZQBkACAAdwBhAHIAcgBhAG4AdABpAGUAcwAgAG8AZgAgAHMAYQB0AGkAcwBmAGEAYwB0AG8Ac
gB5ACAAcQB1AGEAbABpAHQAeQAgAGEAbgBkACAAZgBpAHQAbgBlAHMAcwAgAGYAbwByACAAcABhAHIAdA
BpAGMAdQBsAGEAcgAgAHAAdQByAHAAbwBzAGUAIAB3AGkAdABoACAAcgBlAHMAcABlAGMAdAAgAHQAbwA
gAHQAaABlACAAUwBvAGYAdAB3AGEAcgBlACAAYQBuAGQAIAB0AGgAZQAgAHcAcgBpAHQAdABlAG4AIABt
AGEAdABlAHIAaQBhAGwAcwAgAHQAaABhAHQAIABhAGMAYwBvAG0AcABhAG4AeQAgAHQAaABlACAAUwBvA
GYAdAB3AGEAcgBlAC4AIAAgAEEAbgB5ACAAaQBtAHAAbABpAGUAZAAgAHcAYQByAHIAYQBuAHQAaQBlAH
MAIAB0AGgAYQB0ACAAYwBhAG4AbgBvAHQAIABiAGUAIABlAHgAYwBsAHUAZABlAGQAIABhAHIAZQAgAGw
AaQBtAGkAdABlAGQAIAB0AG8AIAA5ADAAIABkAGEAeQBzACAAbwByACAAdABvACAAdABoAGUAIABzAGgA
bwByAHQAZQBzAHQAIABwAGUAcgB"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIO]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIO\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIO\0000]
"Service"="avgio"
"DeviceDesc"="avgio"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGIO\0000\LogConf]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGNTDW]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGNTFLT]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGNTFLT\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_AVGNTFLT\0000]
"Service"="avgntflt"
"DeviceDesc"="avgntflt"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Control\GroupOrderList]
; Contents of value:
;   
"AVG"=hex(0):02,00,00,00,01,00,00,00,02,00,00,00

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGIO]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGIO\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGIO\0000]
"Service"="avgio"
"DeviceDesc"="avgio"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGIO\0000\LogConf]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGNTDW]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGNTFLT]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGNTFLT\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_AVGNTFLT\0000]
"Service"="avgntflt"
"DeviceDesc"="avgntflt"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Control\GroupOrderList]
; Contents of value:
;   
"AVG"=hex(0):02,00,00,00,01,00,00,00,02,00,00,00

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGIO]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGIO\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGIO\0000]
"Service"="avgio"
"DeviceDesc"="avgio"

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGIO\0000\LogConf]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGNTDW]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGNTFLT]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGNTFLT\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet004\Enum\Root\LEGACY_AVGNTFLT\0000]
"Service"="avgntflt"
"DeviceDesc"="avgntflt"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\GroupOrderList]
; Contents of value:
;   
"AVG"=hex(0):02,00,00,00,01,00,00,00,02,00,00,00

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIO]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIO\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIO\0000]
"Service"="avgio"
"DeviceDesc"="avgio"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGIO\0000\LogConf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTDW]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTFLT]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTFLT\0000]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_AVGNTFLT\0000]
"Service"="avgntflt"
"DeviceDesc"="avgntflt"

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cDockables]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cRecentFiles]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cRecentFiles\c1]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cRecentFiles\c2]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cRecentFiles\c3]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cToolbars]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cToolbars\cAdvCommenting]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cToolbars\cBasicCommenting]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cToolbars\cCommenting]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cToolbars\cCommenting\cStamp]

[HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\8.0\AVGeneral\cToolbars\cOverrides]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MenuOrder\Start Menu2\Programs\AVG 8.0]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count]
; Contents of value:
; Ч  ђ°ОЊJюИ
"HRZR_EHAPCY:ahfezte.pcy ,vavgvnyGnfx=PunatrCvpgher"=hex:d7,00,00,00,06,00,00,\
00,90,b0,ce,8c,4a,fe,c8,01

; End Of The Log...
  • 0

#27
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
The gibberish in the middle of log is exactly what i have in Notepad its not Upload glitch.
  • 0

#28
kahdah

kahdah

    GeekU Teacher

  • Retired Staff
  • 15,822 posts
Note: the above code was created specifically for this user. If you are not this user, do NOT follow these directions as they could damage the workings of your system.

First, we need to backup your registry:
Please go to Start > Run
Paste in the following line:regedit /e c:\registrybackup.reg
Click OK.
It won't appear to be doing anything, that's normal.
Your mouse pointer may turn to an hour glass for a minute.
Please continue when it no longer has the hour glass.

Please open up Notepad and copy all of the items in the code box below.
Change the "Save As Type" to "All Files". Save it as fixthis.reg on your Desktop.
REGEDIT4

[-HKEY_LOCAL_MACHINE\SOFTWARE\AVG]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LinkScannerIE.NavFilter]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{18B30EBF-6B58-425E-AC54-831C05D91B5A}]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{52261B0E-CA1A-4FA9-9805-4D01202DF09D}]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{8EA1F9F2-997A-4832-8E09-815E3D0C0A0C}]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\LinkScannerIE.NavFilter.1]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3E536428-8E1A-4A2C-8463-4A8F74763C30}\1.0]

[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ESENT\Process\avgfrw]

[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\Enum\Root\LEGACY_AVGIO]

[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\Enum\Root\LEGACY_AVGNTDW]

[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\Enum\Root\LEGACY_AVGNTFLT]

*Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.

===========
Now double-click fixthis.reg.
A window will come up asking if you want to let it merge with the registry.
Click yes.

Reboot into normal mode and see then if you can install Kaspersky.

ALso let me know how things are running otherwise?
  • 0

#29
Alim

Alim

    Member

  • Topic Starter
  • Member
  • PipPip
  • 22 posts
I am sorry for not answering sooner, last couple of days were really busy.
I applied registry fix that you posted and it did the job. I was able to install 30 day trial version of Kaspersky Internet Security 2009. So far there was no BSOD. Everytjing looks fine.
Since Kaspersky that i installed is a commercial product that will expire in 30 days, i was wondering if you can give me an advice on :
1) Anti-Virus suit(with Firewall and etc)
2) Spyware scanner (and removal) that have real time detection/protection.
3) some other good software.
I am only a student and dont have excess money to spend on software, so if its possible can u list only Freeware.

P.S. Thank you very much for your help and time. I had no idea that this kind of friendly and proffesional websites even exist today.
  • 0

#30
kahdah

kahdah

    GeekU Teacher

  • Retired Staff
  • 15,822 posts
No problem.

1) Anti-Virus suit(with Firewall and etc)

To my knowledge there are no free suites.
However there are free antivirus programs and free firewalls.

2) Spyware scanner (and removal) that have real time detection/protection.

Thoe only one I know of that offers real time protection is Windows Defender.

These are free antivirus.
AVG free 8.0
Note this is free antispyware protection and Antivirus protection.
or
Antivir
or
Avast
============
free firewalls: Sunbelt Free Firewall or Zonealarm
=============================
Cleanup:

Please download OT CLeanit from Here save it to your desktop.
Double click on OT Clean it to run it.
Then click on Clean up.
Restart your computer when prompted.
This will remove what tools we used.
===============
Upgrading Java:
  • Download the latest version of Java Runtime Environment (JRE) 6 Update 7.
  • Scroll down to where it says "The J2SE Runtime Environment (JRE) allows end-users to run Java applications".
  • Click the "Download" button to the right.
  • Select your Platform and check the box that says: "I agree to the Java SE Runtime Environment 7 License Agreement.".
  • Click on Continue.
  • Click on the link to download Windows Offline Installation (jre-6u6-windows-i586-p.exe) and save it to your desktop. Do NOT use the Sun Download Manager..
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Control Panel, double-click on Add/Remove programs and remove all older versions of Java.
  • Check any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java version.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on the download to install the newest version.
======================
Use a Firewall:

Install and use a firewall with outbound protection
While the firewall built into Windows XP is adequate to protect you from incoming attacks, it will not be much help in alerting you to programs already on your PC attempting to connect to remote servers
I therefore strongly recommend that you install one of the following free firewalls: Sunbelt Free Firewall or Zonealarm
See Bleepingcomputer's excellent tutorial to help using and understanding a firewall here
Note: You should only have one firewall installed at a time. Having more than one antivirus program installed at once is likely to cause conflicts and may well decrease your overall protection as well as seriously impairing the performance of your PC.


=============================
Delete\uninstall anything else that we have used.

System Restore
Then I will need you to reset your System Restore points.
The link below shows how to create a clean restore point.
How to Turn On and Turn Off System Restore in Windows XP
http://support.micro...kb/310405/en-us

If you are using Vista then see this link > http://www.bleepingc...143.html#manual
=====================================
After that your log is clean. :)

The following is a list of tools and utilities that I like to suggest to people.
You do not have to have all or any of them they are only suggestions.
This list is full of great tools and utilities to help you understand how you got infected and how to keep from getting infected again.

Spybot Search & Destroy-Uber powerful tool which can search and annhilate nasties that make it onto your system. Now with an Immunize section that will help prevent future infections.

Spyware Blaster - Great prevention tool to keep nasties from installing on your system.

Spywareguard-Works as a Spyware "Shield" to protect your computer from getting malware in the first place.

Windows Updates - It is very important to make sure that both Internet Explorer and Windows are kept current with the latest critical security patches from Microsoft. To do this just start Internet Explorer and select Tools > Windows Update, and follow the online instructions from there.

Tony Klein article To find out more information about how you got infected in the first place and some great guidelines to follow to prevent future infections you can read this article by Tony Klein.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP