Infecté par WIN 32/Agent.BCK cheval de troie

Résolu/Fermé
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008 - 4 oct. 2007 à 19:02
nardino Messages postés 1633 Date d'inscription jeudi 20 mai 2004 Statut Membre Dernière intervention 6 mars 2010 - 9 oct. 2007 à 09:21
Bonjour,je suis infecté par WIN 32/Agent.BCK cheval de troie aidé moi s il vous plait merci d avance.
A voir également:

38 réponses

nardino Messages postés 1633 Date d'inscription jeudi 20 mai 2004 Statut Membre Dernière intervention 6 mars 2010 119
4 oct. 2007 à 21:07
Bonsoir.

Applique ceci
virus methode preliminaire de desinfection version fr
Méthode préliminaire CCM

Et dis-moi d'où tu tiens ces noms ?
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
5 oct. 2007 à 22:27
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------

+ Créé à: 22:24:23 05/10/2007

+ Résultat de l'analyse:



C:\WINDOWS\Downloaded Program Files\popcaploader.dll -> Not-A-Virus.Downloader.Win32.PopCap.b : Ignoré.
C:\Documents and Settings\ivana\Cookies\ivana@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@bluestreak[8].txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@cpvfeed[3].txt -> TrackingCookie.Cpvfeed : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@cpvfeed[4].txt -> TrackingCookie.Cpvfeed : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@findwhat[1].txt -> TrackingCookie.Findwhat : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@stats1.reliablestats[3].txt -> TrackingCookie.Reliablestats : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@ad.yieldmanager[3].txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@ad.yieldmanager[4].txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\ivana\Cookies\ivana@ad.yieldmanager[5].txt -> TrackingCookie.Yieldmanager : Nettoyé.


Fin du rapport
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
5 oct. 2007 à 22:29
d ou je tiens quel nom?
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
5 oct. 2007 à 22:34
si tu parle de WIN 32/Agent.BCK cheval de troie c mon anti vrus nod 32
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
5 oct. 2007 à 22:37
Rapport d'analyse généré à: Fri, Oct 05, 2007 - 22:33:57





Voie d'analyse: C:\;D:\;E:\;G:\;H:\;I:\;K:\;







Statistiques

Temps
00:31:31

Fichiers
260872

Directoires
5778

Secteurs de boot
4

Archives
3825

Paquets programmes
10931




Résultats

Virus identifiés
3

Fichiers infectés
6

Fichiers suspects
0

Avertissements
0

Désinfectés
0

Fichiers effacés
6




Info sur les moteurs

Définition virus
825296

Version des moteurs
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)

Analyse des plugins
14

Archive des plugins
38

Unpack des plugins
7

E-mail plugins
6

Système plugins
1




Paramètres d'analyse

Première action
Désinfecté

Seconde Action
Supprimé

Heuristique
Oui

Acceptez les avertissements
Oui

Extensions analysées
*;

Excludez les extensions


Analyse d'emails
Oui

Analyse des Archives
Oui

Analyser paquets programmes
Oui

Analyse des fichiers
Oui

Analyse de boot
Oui




Fichier analysé
Statut

C:\Program Files\ESET\infected\V5ODCECA.NQF=>(Quarantine-PE)
Infecté par: Trojan.Fotomoto.E

C:\Program Files\ESET\infected\V5ODCECA.NQF=>(Quarantine-PE)
Echec de la désinfection

C:\Program Files\ESET\infected\V5ODCECA.NQF=>(Quarantine-PE)
Supprimé

C:\System Volume Information\_restore{EA39A09C-50BA-4996-869B-915C83FE3B53}\RP255\A0027978.dll
Infecté par: Trojan.Vundo.DNI

C:\System Volume Information\_restore{EA39A09C-50BA-4996-869B-915C83FE3B53}\RP255\A0027978.dll
Supprimé

C:\System Volume Information\_restore{EA39A09C-50BA-4996-869B-915C83FE3B53}\RP259\A0030997.dll
Infecté par: Trojan.Vundo.DNI

C:\System Volume Information\_restore{EA39A09C-50BA-4996-869B-915C83FE3B53}\RP259\A0030997.dll
Supprimé

C:\WINDOWS\system32\jaqhoquf.dll
Infecté par: Trojan.Vundo.DNI

C:\WINDOWS\system32\jaqhoquf.dll
Supprimé

C:\WINDOWS\system32\qenknuoo.dll
Infecté par: Trojan.Vundo.DNI

C:\WINDOWS\system32\qenknuoo.dll
Supprimé

C:\WINDOWS\system32\yayayvw.dll
Infecté par: Trojan.Vundo.DNG

C:\WINDOWS\system32\yayayvw.dll
Echec de la désinfection

C:\WINDOWS\system32\yayayvw.dll
Echec de la suppression
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
5 oct. 2007 à 22:43
Logfile of HijackThis v1.99.1
Scan saved at 22:41:38, on 05/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\LVComS.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061228
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061228
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ECarteBleueBrowserHelper Class - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {79C29CCC-C25C-49CA-BD86-C3BE791F2E58} - C:\WINDOWS\system32\yayayvw.dll
O2 - BHO: (no name) - {89AD4D75-2429-462e-BD4E-443F233F6033} - C:\WINDOWS\system32\vdtyebda.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O2 - BHO: (no name) - {FF460867-78EE-4162-9411-DAFD2705BB69} - C:\WINDOWS\system32\ssttt.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SearchIndexer] rundll32.exe "C:\WINDOWS\system32\cnitlomn.dll",sitypnow
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {45A0A292-ECC6-4D8F-9EA9-A4BD411D24C1} (king.com) - http://www.king.com/ctl/kingcomie.cab
O16 - DPF: {5308E02B-4ABA-48E4-AA9E-8A7693661473} (GameCtl Class) - http://jeuxenligne.orange.fr/GisActiveX/Ax/GameAx.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/fr/fr/importer/ImageUploader4.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game04.zylom.servicesalacarte.orange.fr/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {C9E17F58-564C-41C6-989F-AB0FE0D2C9D1} (PopcapLoader Object) - http://jeuxenligne.orange.fr/orange2.0/OnlineHSS/insaniquarium/Popcap.cab
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxenligne.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - file:///C:/Documents%20and%20Settings/ivana/Local%20Settings/Application%20Data/Oberon%20Media/Oberon%20Games%20Host/popcaploader_v6.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: yayayvw - C:\WINDOWS\SYSTEM32\yayayvw.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: DomainService - Unknown owner - C:\WINDOWS\system32\jekfgcij.exe (file missing)
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
5 oct. 2007 à 22:46
voila les 3 rapports je pense que j ai toujours un virus dans mon ordinateur merci de me repondre.
0
nardino Messages postés 1633 Date d'inscription jeudi 20 mai 2004 Statut Membre Dernière intervention 6 mars 2010 119
5 oct. 2007 à 22:52
Bonsoir,

Télécharge :

[b]VundoFix[/b] de Atribune: http://www.atribune.org/ccount/click.php?id=4
[b]VirtumondoBegone[/b] : http://secured2k.home.comcast.net/tools/VirtumundoBeGone.exe
[b]Outil Symantec[/b] : https://www.symantec.com/maintenance/business

Double clic sur Vundofix.exe.
Coche la case [b]Run VundoFix as a task[/b]
Répond OK au popup qui s'ouvre.
Il va se refermer et réouvrir au bout d'une minute environ.
Quand il est rouvert, clique sur [b]Scan for Vundo[/b]
Quand le scan est terminé, clique sur [b]Remove Vundo[/b]
Réponds [b]Yes[/b] à la demande de suppression des fichiers.
Il te sera demandé de redémarrer ton ordinateur, accepte bien sûr.
Copie/colle le rapport (c:\vundofix.txt) dans ta réponse

Si cela n'a pas fonctionné, redémarre en mode sans échec et lance VirtumundoBeGone.exe.
Et passe aussi le désinfecteur de Symantec.

Poste un nouveau log Hijackthis en mode normal.
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
6 oct. 2007 à 00:05
[10/05/2007, 23:17:32] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\ivana\Bureau\VirtumundoBeGone.exe" )
[10/05/2007, 23:17:53] - Detected System Information:
[10/05/2007, 23:17:53] - Windows Version: 5.1.2600, Service Pack 2
[10/05/2007, 23:17:53] - Current Username: ivana (Admin)
[10/05/2007, 23:17:53] - Windows is in SAFE mode with Networking.
[10/05/2007, 23:17:53] - Searching for Browser Helper Objects:
[10/05/2007, 23:17:53] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[10/05/2007, 23:17:53] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Adobe PDF Reader Link Helper)
[10/05/2007, 23:17:53] - BHO 3: {2E03C0FD-4C48-43A7-9A54-00240C70FF16} (ECarteBleueBrowserHelper Class)
[10/05/2007, 23:17:53] - BHO 4: {3B6E63D7-13AF-4D25-BD32-5CB96D1E05C6} ()
[10/05/2007, 23:17:53] - WARNING: BHO has no default name. Checking for Winlogon reference.
[10/05/2007, 23:17:53] - Checking for HKLM\...\Winlogon\Notify\ssttt
[10/05/2007, 23:17:53] - Key not found: HKLM\...\Winlogon\Notify\ssttt, continuing.
[10/05/2007, 23:17:53] - BHO 5: {5CA3D70E-1895-11CF-8E15-001234567890} (DriveLetterAccess)
[10/05/2007, 23:17:53] - BHO 6: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[10/05/2007, 23:17:53] - BHO 7: {79C29CCC-C25C-49CA-BD86-C3BE791F2E58} ()
[10/05/2007, 23:17:53] - WARNING: BHO has no default name. Checking for Winlogon reference.
[10/05/2007, 23:17:53] - Checking for HKLM\...\Winlogon\Notify\yayayvw
[10/05/2007, 23:17:53] - Found: HKLM\...\Winlogon\Notify\yayayvw - This is probably Virtumundo.
[10/05/2007, 23:17:53] - Assigning {79C29CCC-C25C-49CA-BD86-C3BE791F2E58} MSEvents Object
[10/05/2007, 23:17:53] - BHO list has been changed! Starting over...
[10/05/2007, 23:17:53] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[10/05/2007, 23:17:53] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Adobe PDF Reader Link Helper)
[10/05/2007, 23:17:53] - BHO 3: {2E03C0FD-4C48-43A7-9A54-00240C70FF16} (ECarteBleueBrowserHelper Class)
[10/05/2007, 23:17:53] - BHO 4: {3B6E63D7-13AF-4D25-BD32-5CB96D1E05C6} ()
[10/05/2007, 23:17:53] - WARNING: BHO has no default name. Checking for Winlogon reference.
[10/05/2007, 23:17:53] - Checking for HKLM\...\Winlogon\Notify\ssttt
[10/05/2007, 23:17:53] - Key not found: HKLM\...\Winlogon\Notify\ssttt, continuing.
[10/05/2007, 23:17:53] - BHO 5: {5CA3D70E-1895-11CF-8E15-001234567890} (DriveLetterAccess)
[10/05/2007, 23:17:53] - BHO 6: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[10/05/2007, 23:17:53] - BHO 7: {79C29CCC-C25C-49CA-BD86-C3BE791F2E58} (MSEvents Object)
[10/05/2007, 23:17:53] - ALERT: Found MSEvents Object!
[10/05/2007, 23:17:53] - BHO 8: {CA6319C0-31B7-401E-A518-A07C3DB8F777} (CBrowserHelperObject Object)
[10/05/2007, 23:17:53] - Finished Searching Browser Helper Objects
[10/05/2007, 23:17:53] - *** Detected MSEvents Object
[10/05/2007, 23:17:53] - Trying to remove MSEvents Object...
[10/05/2007, 23:17:54] - Terminating Process: IEXPLORE.EXE
[10/05/2007, 23:17:54] - Terminating Process: RUNDLL32.EXE
[10/05/2007, 23:17:54] - Disabling Automatic Shell Restart
[10/05/2007, 23:17:54] - Terminating Process: EXPLORER.EXE
[10/05/2007, 23:17:54] - Suspending the NT Session Manager System Service
[10/05/2007, 23:17:54] - Terminating Windows NT Logon/Logoff Manager
[10/05/2007, 23:17:54] - Re-enabling Automatic Shell Restart
[10/05/2007, 23:17:54] - File to disable: C:\WINDOWS\system32\yayayvw.dll
[10/05/2007, 23:17:54] - Renaming C:\WINDOWS\system32\yayayvw.dll -> C:\WINDOWS\system32\yayayvw.dll.vir
[10/05/2007, 23:17:55] - File successfully renamed!
[10/05/2007, 23:17:55] - Removing HKLM\...\Browser Helper Objects\{79C29CCC-C25C-49CA-BD86-C3BE791F2E58}
[10/05/2007, 23:17:55] - Removing HKCR\CLSID\{79C29CCC-C25C-49CA-BD86-C3BE791F2E58}
[10/05/2007, 23:17:55] - Adding Kill Bit for ActiveX for GUID: {79C29CCC-C25C-49CA-BD86-C3BE791F2E58}
[10/05/2007, 23:17:55] - Deleting ATLEvents/MSEvents Registry entries
[10/05/2007, 23:17:55] - Removing HKLM\...\Winlogon\Notify\yayayvw
[10/05/2007, 23:17:55] - Searching for Browser Helper Objects:
[10/05/2007, 23:17:55] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[10/05/2007, 23:17:55] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Adobe PDF Reader Link Helper)
[10/05/2007, 23:17:55] - BHO 3: {2E03C0FD-4C48-43A7-9A54-00240C70FF16} (ECarteBleueBrowserHelper Class)
[10/05/2007, 23:17:55] - BHO 4: {3B6E63D7-13AF-4D25-BD32-5CB96D1E05C6} ()
[10/05/2007, 23:17:55] - WARNING: BHO has no default name. Checking for Winlogon reference.
[10/05/2007, 23:17:55] - Checking for HKLM\...\Winlogon\Notify\ssttt
[10/05/2007, 23:17:55] - Key not found: HKLM\...\Winlogon\Notify\ssttt, continuing.
[10/05/2007, 23:17:55] - BHO 5: {5CA3D70E-1895-11CF-8E15-001234567890} (DriveLetterAccess)
[10/05/2007, 23:17:55] - BHO 6: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[10/05/2007, 23:17:55] - BHO 7: {CA6319C0-31B7-401E-A518-A07C3DB8F777} (CBrowserHelperObject Object)
[10/05/2007, 23:17:55] - Finished Searching Browser Helper Objects
[10/05/2007, 23:17:55] - Finishing up...
[10/05/2007, 23:17:55] - A restart is needed.
[10/05/2007, 23:17:55] - Automatic Reboot on STOP Error is not set. User will have to manually restart.
[10/05/2007, 23:17:59] - Attempting to Restart via STOP error (Blue Screen!)

[10/05/2007, 23:22:47] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\ivana\Bureau\VirtumundoBeGone.exe" )
[10/05/2007, 23:22:52] - Detected System Information:
[10/05/2007, 23:22:52] - Windows Version: 5.1.2600, Service Pack 2
[10/05/2007, 23:22:52] - Current Username: ivana (Admin)
[10/05/2007, 23:22:52] - Windows is in SAFE mode with Networking.
[10/05/2007, 23:22:52] - Searching for Browser Helper Objects:
[10/05/2007, 23:22:52] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[10/05/2007, 23:22:52] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Adobe PDF Reader Link Helper)
[10/05/2007, 23:22:52] - BHO 3: {2E03C0FD-4C48-43A7-9A54-00240C70FF16} (ECarteBleueBrowserHelper Class)
[10/05/2007, 23:22:52] - BHO 4: {5CA3D70E-1895-11CF-8E15-001234567890} (DriveLetterAccess)
[10/05/2007, 23:22:52] - BHO 5: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[10/05/2007, 23:22:52] - BHO 6: {CA6319C0-31B7-401E-A518-A07C3DB8F777} (CBrowserHelperObject Object)
[10/05/2007, 23:22:52] - BHO 7: {EEBA7BBA-2B9E-4C12-A4ED-11A10CEA97FA} ()
[10/05/2007, 23:22:52] - WARNING: BHO has no default name. Checking for Winlogon reference.
[10/05/2007, 23:22:52] - Checking for HKLM\...\Winlogon\Notify\ssttt
[10/05/2007, 23:22:52] - Key not found: HKLM\...\Winlogon\Notify\ssttt, continuing.
[10/05/2007, 23:22:52] - Finished Searching Browser Helper Objects
[10/05/2007, 23:22:52] - Finishing up...
[10/05/2007, 23:22:52] - Nothing found! Exiting...

[10/05/2007, 23:35:40] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\ivana\Bureau\VirtumundoBeGone.exe" )
[10/05/2007, 23:36:11] - Detected System Information:
[10/05/2007, 23:36:11] - Windows Version: 5.1.2600, Service Pack 2
[10/05/2007, 23:36:11] - Current Username: ivana (Admin)
[10/05/2007, 23:36:11] - Windows is in SAFE mode with Networking.
[10/05/2007, 23:36:11] - Searching for Browser Helper Objects:
[10/05/2007, 23:36:11] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[10/05/2007, 23:36:11] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Adobe PDF Reader Link Helper)
[10/05/2007, 23:36:11] - BHO 3: {2E03C0FD-4C48-43A7-9A54-00240C70FF16} (ECarteBleueBrowserHelper Class)
[10/05/2007, 23:36:11] - BHO 4: {5CA3D70E-1895-11CF-8E15-001234567890} (DriveLetterAccess)
[10/05/2007, 23:36:11] - BHO 5: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[10/05/2007, 23:36:11] - BHO 6: {CA6319C0-31B7-401E-A518-A07C3DB8F777} (CBrowserHelperObject Object)
[10/05/2007, 23:36:11] - BHO 7: {EEBA7BBA-2B9E-4C12-A4ED-11A10CEA97FA} ()
[10/05/2007, 23:36:11] - WARNING: BHO has no default name. Checking for Winlogon reference.
[10/05/2007, 23:36:11] - Checking for HKLM\...\Winlogon\Notify\ssttt
[10/05/2007, 23:36:11] - Key not found: HKLM\...\Winlogon\Notify\ssttt, continuing.
[10/05/2007, 23:36:11] - Finished Searching Browser Helper Objects
[10/05/2007, 23:36:11] - Finishing up...
[10/05/2007, 23:36:11] - Nothing found! Exiting...

[10/05/2007, 23:38:27] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\ivana\Bureau\VirtumundoBeGone.exe" )
[10/05/2007, 23:38:35] - User choose NOT to continue. Exiting...

[10/05/2007, 23:39:04] - VirtumundoBeGone v1.5 ( "C:\Documents and Settings\ivana\Bureau\VirtumundoBeGone.exe" )
[10/05/2007, 23:39:05] - Detected System Information:
[10/05/2007, 23:39:05] - Windows Version: 5.1.2600, Service Pack 2
[10/05/2007, 23:39:05] - Current Username: ivana (Admin)
[10/05/2007, 23:39:05] - Windows is in NORMAL mode.
[10/05/2007, 23:39:05] - Searching for Browser Helper Objects:
[10/05/2007, 23:39:05] - BHO 1: {02478D38-C3F9-4EFB-9B51-7695ECA05670} (Yahoo! Toolbar Helper)
[10/05/2007, 23:39:05] - BHO 2: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Adobe PDF Reader Link Helper)
[10/05/2007, 23:39:05] - BHO 3: {2E03C0FD-4C48-43A7-9A54-00240C70FF16} (ECarteBleueBrowserHelper Class)
[10/05/2007, 23:39:05] - BHO 4: {5CA3D70E-1895-11CF-8E15-001234567890} (DriveLetterAccess)
[10/05/2007, 23:39:05] - BHO 5: {5EE93049-01C3-44EE-84F4-0889CB810E2B} ()
[10/05/2007, 23:39:05] - WARNING: BHO has no default name. Checking for Winlogon reference.
[10/05/2007, 23:39:05] - Checking for HKLM\...\Winlogon\Notify\ssttt
[10/05/2007, 23:39:05] - Key not found: HKLM\...\Winlogon\Notify\ssttt, continuing.
[10/05/2007, 23:39:05] - BHO 6: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
[10/05/2007, 23:39:05] - BHO 7: {CA6319C0-31B7-401E-A518-A07C3DB8F777} (CBrowserHelperObject Object)
[10/05/2007, 23:39:05] - Finished Searching Browser Helper Objects
[10/05/2007, 23:39:05] - Finishing up...
[10/05/2007, 23:39:05] - Nothing found! Exiting...
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
6 oct. 2007 à 00:06
Symantec Trojan.Vundo Removal Tool 1.5.0

C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\11\11-{C7835277-531F-477B-9BDA-43BA37071CC9}-v11-{C7835277-531F-477B-9BDA-43BA37071CC9}-v11-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\13\13-{C7835277-531F-477B-9BDA-43BA37071CC9}-v13-{C7835277-531F-477B-9BDA-43BA37071CC9}-v13-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\14\14-{C7835277-531F-477B-9BDA-43BA37071CC9}-v14-{C7835277-531F-477B-9BDA-43BA37071CC9}-v14-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\15\15-{C7835277-531F-477B-9BDA-43BA37071CC9}-v15-{C7835277-531F-477B-9BDA-43BA37071CC9}-v15-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\16\16-{C7835277-531F-477B-9BDA-43BA37071CC9}-v16-{C7835277-531F-477B-9BDA-43BA37071CC9}-v16-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\17\17-{C7835277-531F-477B-9BDA-43BA37071CC9}-v17-{C7835277-531F-477B-9BDA-43BA37071CC9}-v17-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\18\18-{C7835277-531F-477B-9BDA-43BA37071CC9}-v18-{C7835277-531F-477B-9BDA-43BA37071CC9}-v18-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\19\19-{C7835277-531F-477B-9BDA-43BA37071CC9}-v19-{C7835277-531F-477B-9BDA-43BA37071CC9}-v19-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\24\12-{B5931A26-325E-4056-BC47-FC070A0653D7}-v24-{C7835277-531F-477B-9BDA-43BA37071CC9}-v12-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\26\26-{B5931A26-325E-4056-BC47-FC070A0653D7}-v26-{B5931A26-325E-4056-BC47-FC070A0653D7}-v26-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\27\27-{B5931A26-325E-4056-BC47-FC070A0653D7}-v27-{B5931A26-325E-4056-BC47-FC070A0653D7}-v27-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\28\28-{B5931A26-325E-4056-BC47-FC070A0653D7}-v28-{B5931A26-325E-4056-BC47-FC070A0653D7}-v28-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\29\29-{B5931A26-325E-4056-BC47-FC070A0653D7}-v29-{B5931A26-325E-4056-BC47-FC070A0653D7}-v29-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\36\36-{B5931A26-325E-4056-BC47-FC070A0653D7}-v36-{B5931A26-325E-4056-BC47-FC070A0653D7}-v36-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\37\137-{B5931A26-325E-4056-BC47-FC070A0653D7}-v137-{B5931A26-325E-4056-BC47-FC070A0653D7}-v137-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\37\237-{B5931A26-325E-4056-BC47-FC070A0653D7}-v237-{B5931A26-325E-4056-BC47-FC070A0653D7}-v237-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\37\37-{B5931A26-325E-4056-BC47-FC070A0653D7}-v37-{B5931A26-325E-4056-BC47-FC070A0653D7}-v37-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\38\138-{B5931A26-325E-4056-BC47-FC070A0653D7}-v138-{B5931A26-325E-4056-BC47-FC070A0653D7}-v138-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\38\238-{B5931A26-325E-4056-BC47-FC070A0653D7}-v238-{B5931A26-325E-4056-BC47-FC070A0653D7}-v238-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\38\38-{B5931A26-325E-4056-BC47-FC070A0653D7}-v38-{B5931A26-325E-4056-BC47-FC070A0653D7}-v38-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\39\139-{B5931A26-325E-4056-BC47-FC070A0653D7}-v139-{B5931A26-325E-4056-BC47-FC070A0653D7}-v139-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\39\239-{B5931A26-325E-4056-BC47-FC070A0653D7}-v239-{B5931A26-325E-4056-BC47-FC070A0653D7}-v239-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\39\39-{B5931A26-325E-4056-BC47-FC070A0653D7}-v39-{B5931A26-325E-4056-BC47-FC070A0653D7}-v39-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\40\140-{B5931A26-325E-4056-BC47-FC070A0653D7}-v140-{B5931A26-325E-4056-BC47-FC070A0653D7}-v140-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\40\240-{B5931A26-325E-4056-BC47-FC070A0653D7}-v240-{B5931A26-325E-4056-BC47-FC070A0653D7}-v240-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\40\40-{B5931A26-325E-4056-BC47-FC070A0653D7}-v40-{B5931A26-325E-4056-BC47-FC070A0653D7}-v40-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\41\141-{B5931A26-325E-4056-BC47-FC070A0653D7}-v141-{B5931A26-325E-4056-BC47-FC070A0653D7}-v141-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\41\241-{B5931A26-325E-4056-BC47-FC070A0653D7}-v241-{B5931A26-325E-4056-BC47-FC070A0653D7}-v241-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\41\41-{B5931A26-325E-4056-BC47-FC070A0653D7}-v41-{B5931A26-325E-4056-BC47-FC070A0653D7}-v41-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\42\142-{B5931A26-325E-4056-BC47-FC070A0653D7}-v142-{B5931A26-325E-4056-BC47-FC070A0653D7}-v142-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\42\242-{B5931A26-325E-4056-BC47-FC070A0653D7}-v242-{B5931A26-325E-4056-BC47-FC070A0653D7}-v242-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\42\42-{B5931A26-325E-4056-BC47-FC070A0653D7}-v42-{B5931A26-325E-4056-BC47-FC070A0653D7}-v42-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\43\143-{B5931A26-325E-4056-BC47-FC070A0653D7}-v143-{B5931A26-325E-4056-BC47-FC070A0653D7}-v143-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\43\243-{B5931A26-325E-4056-BC47-FC070A0653D7}-v243-{B5931A26-325E-4056-BC47-FC070A0653D7}-v243-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\43\43-{B5931A26-325E-4056-BC47-FC070A0653D7}-v43-{B5931A26-325E-4056-BC47-FC070A0653D7}-v43-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\44\144-{B5931A26-325E-4056-BC47-FC070A0653D7}-v144-{B5931A26-325E-4056-BC47-FC070A0653D7}-v144-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\44\244-{B5931A26-325E-4056-BC47-FC070A0653D7}-v244-{B5931A26-325E-4056-BC47-FC070A0653D7}-v244-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\44\44-{B5931A26-325E-4056-BC47-FC070A0653D7}-v44-{B5931A26-325E-4056-BC47-FC070A0653D7}-v44-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\45\145-{B5931A26-325E-4056-BC47-FC070A0653D7}-v145-{B5931A26-325E-4056-BC47-FC070A0653D7}-v145-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\45\245-{B5931A26-325E-4056-BC47-FC070A0653D7}-v245-{B5931A26-325E-4056-BC47-FC070A0653D7}-v245-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\45\45-{B5931A26-325E-4056-BC47-FC070A0653D7}-v45-{B5931A26-325E-4056-BC47-FC070A0653D7}-v45-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\46\146-{B5931A26-325E-4056-BC47-FC070A0653D7}-v146-{B5931A26-325E-4056-BC47-FC070A0653D7}-v146-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\46\246-{B5931A26-325E-4056-BC47-FC070A0653D7}-v246-{B5931A26-325E-4056-BC47-FC070A0653D7}-v246-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\46\46-{B5931A26-325E-4056-BC47-FC070A0653D7}-v46-{B5931A26-325E-4056-BC47-FC070A0653D7}-v46-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\47\147-{B5931A26-325E-4056-BC47-FC070A0653D7}-v147-{B5931A26-325E-4056-BC47-FC070A0653D7}-v147-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\47\247-{B5931A26-325E-4056-BC47-FC070A0653D7}-v247-{B5931A26-325E-4056-BC47-FC070A0653D7}-v247-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\47\47-{B5931A26-325E-4056-BC47-FC070A0653D7}-v47-{B5931A26-325E-4056-BC47-FC070A0653D7}-v47-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\48\148-{B5931A26-325E-4056-BC47-FC070A0653D7}-v148-{B5931A26-325E-4056-BC47-FC070A0653D7}-v148-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\48\248-{B5931A26-325E-4056-BC47-FC070A0653D7}-v248-{B5931A26-325E-4056-BC47-FC070A0653D7}-v248-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\48\48-{B5931A26-325E-4056-BC47-FC070A0653D7}-v48-{B5931A26-325E-4056-BC47-FC070A0653D7}-v48-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\49\149-{B5931A26-325E-4056-BC47-FC070A0653D7}-v149-{B5931A26-325E-4056-BC47-FC070A0653D7}-v149-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\49\249-{B5931A26-325E-4056-BC47-FC070A0653D7}-v249-{B5931A26-325E-4056-BC47-FC070A0653D7}-v249-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\49\49-{B5931A26-325E-4056-BC47-FC070A0653D7}-v49-{B5931A26-325E-4056-BC47-FC070A0653D7}-v49-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\50\150-{B5931A26-325E-4056-BC47-FC070A0653D7}-v150-{B5931A26-325E-4056-BC47-FC070A0653D7}-v150-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\50\250-{B5931A26-325E-4056-BC47-FC070A0653D7}-v250-{B5931A26-325E-4056-BC47-FC070A0653D7}-v250-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\50\50-{B5931A26-325E-4056-BC47-FC070A0653D7}-v50-{B5931A26-325E-4056-BC47-FC070A0653D7}-v50-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\51\151-{B5931A26-325E-4056-BC47-FC070A0653D7}-v151-{B5931A26-325E-4056-BC47-FC070A0653D7}-v151-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\51\251-{B5931A26-325E-4056-BC47-FC070A0653D7}-v251-{B5931A26-325E-4056-BC47-FC070A0653D7}-v251-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\51\51-{B5931A26-325E-4056-BC47-FC070A0653D7}-v51-{B5931A26-325E-4056-BC47-FC070A0653D7}-v51-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\52\152-{B5931A26-325E-4056-BC47-FC070A0653D7}-v152-{B5931A26-325E-4056-BC47-FC070A0653D7}-v152-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\52\252-{B5931A26-325E-4056-BC47-FC070A0653D7}-v252-{B5931A26-325E-4056-BC47-FC070A0653D7}-v252-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\52\52-{B5931A26-325E-4056-BC47-FC070A0653D7}-v52-{B5931A26-325E-4056-BC47-FC070A0653D7}-v52-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\53\153-{B5931A26-325E-4056-BC47-FC070A0653D7}-v153-{B5931A26-325E-4056-BC47-FC070A0653D7}-v153-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\53\253-{B5931A26-325E-4056-BC47-FC070A0653D7}-v253-{B5931A26-325E-4056-BC47-FC070A0653D7}-v253-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\53\53-{B5931A26-325E-4056-BC47-FC070A0653D7}-v53-{B5931A26-325E-4056-BC47-FC070A0653D7}-v53-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\54\154-{B5931A26-325E-4056-BC47-FC070A0653D7}-v154-{B5931A26-325E-4056-BC47-FC070A0653D7}-v154-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\54\254-{B5931A26-325E-4056-BC47-FC070A0653D7}-v254-{B5931A26-325E-4056-BC47-FC070A0653D7}-v254-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\54\54-{B5931A26-325E-4056-BC47-FC070A0653D7}-v54-{B5931A26-325E-4056-BC47-FC070A0653D7}-v54-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\55\155-{B5931A26-325E-4056-BC47-FC070A0653D7}-v155-{B5931A26-325E-4056-BC47-FC070A0653D7}-v155-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\55\255-{B5931A26-325E-4056-BC47-FC070A0653D7}-v255-{B5931A26-325E-4056-BC47-FC070A0653D7}-v255-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\55\55-{B5931A26-325E-4056-BC47-FC070A0653D7}-v55-{B5931A26-325E-4056-BC47-FC070A0653D7}-v55-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\56\156-{B5931A26-325E-4056-BC47-FC070A0653D7}-v156-{B5931A26-325E-4056-BC47-FC070A0653D7}-v156-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\56\256-{B5931A26-325E-4056-BC47-FC070A0653D7}-v256-{B5931A26-325E-4056-BC47-FC070A0653D7}-v256-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\56\56-{B5931A26-325E-4056-BC47-FC070A0653D7}-v56-{B5931A26-325E-4056-BC47-FC070A0653D7}-v56-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\57\157-{B5931A26-325E-4056-BC47-FC070A0653D7}-v157-{B5931A26-325E-4056-BC47-FC070A0653D7}-v157-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\57\257-{B5931A26-325E-4056-BC47-FC070A0653D7}-v257-{B5931A26-325E-4056-BC47-FC070A0653D7}-v257-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\57\57-{B5931A26-325E-4056-BC47-FC070A0653D7}-v57-{B5931A26-325E-4056-BC47-FC070A0653D7}-v57-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\58\158-{B5931A26-325E-4056-BC47-FC070A0653D7}-v158-{B5931A26-325E-4056-BC47-FC070A0653D7}-v158-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\58\258-{B5931A26-325E-4056-BC47-FC070A0653D7}-v258-{B5931A26-325E-4056-BC47-FC070A0653D7}-v258-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\58\58-{B5931A26-325E-4056-BC47-FC070A0653D7}-v58-{B5931A26-325E-4056-BC47-FC070A0653D7}-v58-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\59\159-{B5931A26-325E-4056-BC47-FC070A0653D7}-v159-{B5931A26-325E-4056-BC47-FC070A0653D7}-v159-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\59\259-{B5931A26-325E-4056-BC47-FC070A0653D7}-v259-{B5931A26-325E-4056-BC47-FC070A0653D7}-v259-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\59\59-{B5931A26-325E-4056-BC47-FC070A0653D7}-v59-{B5931A26-325E-4056-BC47-FC070A0653D7}-v59-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\60\160-{B5931A26-325E-4056-BC47-FC070A0653D7}-v160-{B5931A26-325E-4056-BC47-FC070A0653D7}-v160-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\60\260-{B5931A26-325E-4056-BC47-FC070A0653D7}-v260-{B5931A26-325E-4056-BC47-FC070A0653D7}-v260-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\60\60-{B5931A26-325E-4056-BC47-FC070A0653D7}-v60-{B5931A26-325E-4056-BC47-FC070A0653D7}-v60-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\61\161-{B5931A26-325E-4056-BC47-FC070A0653D7}-v161-{B5931A26-325E-4056-BC47-FC070A0653D7}-v161-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\61\261-{B5931A26-325E-4056-BC47-FC070A0653D7}-v261-{B5931A26-325E-4056-BC47-FC070A0653D7}-v261-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\61\61-{B5931A26-325E-4056-BC47-FC070A0653D7}-v61-{B5931A26-325E-4056-BC47-FC070A0653D7}-v61-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\62\162-{B5931A26-325E-4056-BC47-FC070A0653D7}-v162-{B5931A26-325E-4056-BC47-FC070A0653D7}-v162-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\62\262-{B5931A26-325E-4056-BC47-FC070A0653D7}-v262-{B5931A26-325E-4056-BC47-FC070A0653D7}-v262-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\62\62-{B5931A26-325E-4056-BC47-FC070A0653D7}-v62-{B5931A26-325E-4056-BC47-FC070A0653D7}-v62-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\63\163-{B5931A26-325E-4056-BC47-FC070A0653D7}-v163-{B5931A26-325E-4056-BC47-FC070A0653D7}-v163-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\63\263-{B5931A26-325E-4056-BC47-FC070A0653D7}-v263-{B5931A26-325E-4056-BC47-FC070A0653D7}-v263-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\63\63-{B5931A26-325E-4056-BC47-FC070A0653D7}-v63-{B5931A26-325E-4056-BC47-FC070A0653D7}-v63-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\64\164-{B5931A26-325E-4056-BC47-FC070A0653D7}-v164-{B5931A26-325E-4056-BC47-FC070A0653D7}-v164-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\64\264-{B5931A26-325E-4056-BC47-FC070A0653D7}-v264-{B5931A26-325E-4056-BC47-FC070A0653D7}-v264-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\64\64-{B5931A26-325E-4056-BC47-FC070A0653D7}-v64-{B5931A26-325E-4056-BC47-FC070A0653D7}-v64-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\65\165-{B5931A26-325E-4056-BC47-FC070A0653D7}-v165-{B5931A26-325E-4056-BC47-FC070A0653D7}-v165-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\65\265-{B5931A26-325E-4056-BC47-FC070A0653D7}-v265-{B5931A26-325E-4056-BC47-FC070A0653D7}-v265-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\65\65-{B5931A26-325E-4056-BC47-FC070A0653D7}-v65-{B5931A26-325E-4056-BC47-FC070A0653D7}-v65-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\66\166-{B5931A26-325E-4056-BC47-FC070A0653D7}-v166-{B5931A26-325E-4056-BC47-FC070A0653D7}-v166-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\66\266-{B5931A26-325E-4056-BC47-FC070A0653D7}-v266-{B5931A26-325E-4056-BC47-FC070A0653D7}-v266-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\66\66-{B5931A26-325E-4056-BC47-FC070A0653D7}-v66-{B5931A26-325E-4056-BC47-FC070A0653D7}-v66-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\67\167-{B5931A26-325E-4056-BC47-FC070A0653D7}-v167-{B5931A26-325E-4056-BC47-FC070A0653D7}-v167-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\67\267-{B5931A26-325E-4056-BC47-FC070A0653D7}-v267-{B5931A26-325E-4056-BC47-FC070A0653D7}-v267-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\67\67-{B5931A26-325E-4056-BC47-FC070A0653D7}-v67-{B5931A26-325E-4056-BC47-FC070A0653D7}-v67-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\68\168-{B5931A26-325E-4056-BC47-FC070A0653D7}-v168-{B5931A26-325E-4056-BC47-FC070A0653D7}-v168-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\68\268-{B5931A26-325E-4056-BC47-FC070A0653D7}-v268-{B5931A26-325E-4056-BC47-FC070A0653D7}-v268-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\68\68-{B5931A26-325E-4056-BC47-FC070A0653D7}-v68-{B5931A26-325E-4056-BC47-FC070A0653D7}-v68-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\69\169-{B5931A26-325E-4056-BC47-FC070A0653D7}-v169-{B5931A26-325E-4056-BC47-FC070A0653D7}-v169-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\69\269-{B5931A26-325E-4056-BC47-FC070A0653D7}-v269-{B5931A26-325E-4056-BC47-FC070A0653D7}-v269-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\69\69-{B5931A26-325E-4056-BC47-FC070A0653D7}-v69-{B5931A26-325E-4056-BC47-FC070A0653D7}-v69-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\70\170-{B5931A26-325E-4056-BC47-FC070A0653D7}-v170-{B5931A26-325E-4056-BC47-FC070A0653D7}-v170-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\70\270-{B5931A26-325E-4056-BC47-FC070A0653D7}-v270-{B5931A26-325E-4056-BC47-FC070A0653D7}-v270-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\70\70-{B5931A26-325E-4056-BC47-FC070A0653D7}-v70-{B5931A26-325E-4056-BC47-FC070A0653D7}-v70-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\71\171-{B5931A26-325E-4056-BC47-FC070A0653D7}-v171-{B5931A26-325E-4056-BC47-FC070A0653D7}-v171-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\71\271-{B5931A26-325E-4056-BC47-FC070A0653D7}-v271-{B5931A26-325E-4056-BC47-FC070A0653D7}-v271-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\71\71-{B5931A26-325E-4056-BC47-FC070A0653D7}-v71-{B5931A26-325E-4056-BC47-FC070A0653D7}-v71-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\72\172-{B5931A26-325E-4056-BC47-FC070A0653D7}-v172-{B5931A26-325E-4056-BC47-FC070A0653D7}-v172-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\72\272-{B5931A26-325E-4056-BC47-FC070A0653D7}-v272-{B5931A26-325E-4056-BC47-FC070A0653D7}-v272-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\72\72-{B5931A26-325E-4056-BC47-FC070A0653D7}-v72-{B5931A26-325E-4056-BC47-FC070A0653D7}-v72-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\73\173-{B5931A26-325E-4056-BC47-FC070A0653D7}-v173-{B5931A26-325E-4056-BC47-FC070A0653D7}-v173-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\73\273-{B5931A26-325E-4056-BC47-FC070A0653D7}-v273-{B5931A26-325E-4056-BC47-FC070A0653D7}-v273-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\73\73-{B5931A26-325E-4056-BC47-FC070A0653D7}-v73-{B5931A26-325E-4056-BC47-FC070A0653D7}-v73-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\74\174-{B5931A26-325E-4056-BC47-FC070A0653D7}-v174-{B5931A26-325E-4056-BC47-FC070A0653D7}-v174-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\74\274-{B5931A26-325E-4056-BC47-FC070A0653D7}-v274-{B5931A26-325E-4056-BC47-FC070A0653D7}-v274-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\74\74-{B5931A26-325E-4056-BC47-FC070A0653D7}-v74-{B5931A26-325E-4056-BC47-FC070A0653D7}-v74-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\75\175-{B5931A26-325E-4056-BC47-FC070A0653D7}-v175-{B5931A26-325E-4056-BC47-FC070A0653D7}-v175-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\75\275-{B5931A26-325E-4056-BC47-FC070A0653D7}-v275-{B5931A26-325E-4056-BC47-FC070A0653D7}-v275-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\75\75-{B5931A26-325E-4056-BC47-FC070A0653D7}-v75-{B5931A26-325E-4056-BC47-FC070A0653D7}-v75-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\76\176-{B5931A26-325E-4056-BC47-FC070A0653D7}-v176-{B5931A26-325E-4056-BC47-FC070A0653D7}-v176-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\76\276-{B5931A26-325E-4056-BC47-FC070A0653D7}-v276-{B5931A26-325E-4056-BC47-FC070A0653D7}-v276-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\76\76-{B5931A26-325E-4056-BC47-FC070A0653D7}-v76-{B5931A26-325E-4056-BC47-FC070A0653D7}-v76-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\77\177-{B5931A26-325E-4056-BC47-FC070A0653D7}-v177-{B5931A26-325E-4056-BC47-FC070A0653D7}-v177-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\77\277-{B5931A26-325E-4056-BC47-FC070A0653D7}-v277-{B5931A26-325E-4056-BC47-FC070A0653D7}-v277-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\77\77-{B5931A26-325E-4056-BC47-FC070A0653D7}-v77-{B5931A26-325E-4056-BC47-FC070A0653D7}-v77-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\78\178-{B5931A26-325E-4056-BC47-FC070A0653D7}-v178-{B5931A26-325E-4056-BC47-FC070A0653D7}-v178-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\79\179-{B5931A26-325E-4056-BC47-FC070A0653D7}-v179-{B5931A26-325E-4056-BC47-FC070A0653D7}-v179-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\79\79-{B5931A26-325E-4056-BC47-FC070A0653D7}-v79-{B5931A26-325E-4056-BC47-FC070A0653D7}-v79-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\80\180-{B5931A26-325E-4056-BC47-FC070A0653D7}-v180-{B5931A26-325E-4056-BC47-FC070A0653D7}-v180-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\81\181-{B5931A26-325E-4056-BC47-FC070A0653D7}-v181-{B5931A26-325E-4056-BC47-FC070A0653D7}-v181-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\81\81-{B5931A26-325E-4056-BC47-FC070A0653D7}-v81-{B5931A26-325E-4056-BC47-FC070A0653D7}-v81-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\82\182-{B5931A26-325E-4056-BC47-FC070A0653D7}-v182-{B5931A26-325E-4056-BC47-FC070A0653D7}-v182-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\83\183-{B5931A26-325E-4056-BC47-FC070A0653D7}-v183-{B5931A26-325E-4056-BC47-FC070A0653D7}-v183-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\83\83-{B5931A26-325E-4056-BC47-FC070A0653D7}-v83-{B5931A26-325E-4056-BC47-FC070A0653D7}-v83-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\84\184-{B5931A26-325E-4056-BC47-FC070A0653D7}-v184-{B5931A26-325E-4056-BC47-FC070A0653D7}-v184-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\84\84-{B5931A26-325E-4056-BC47-FC070A0653D7}-v84-{B5931A26-325E-4056-BC47-FC070A0653D7}-v84-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\85\185-{B5931A26-325E-4056-BC47-FC070A0653D7}-v185-{B5931A26-325E-4056-BC47-FC070A0653D7}-v185-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\85\85-{B5931A26-325E-4056-BC47-FC070A0653D7}-v85-{B5931A26-325E-4056-BC47-FC070A0653D7}-v85-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\86\186-{B5931A26-325E-4056-BC47-FC070A0653D7}-v186-{B5931A26-325E-4056-BC47-FC070A0653D7}-v186-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\86\86-{B5931A26-325E-4056-BC47-FC070A0653D7}-v86-{B5931A26-325E-4056-BC47-FC070A0653D7}-v86-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\87\187-{B5931A26-325E-4056-BC47-FC070A0653D7}-v187-{B5931A26-325E-4056-BC47-FC070A0653D7}-v187-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\87\87-{B5931A26-325E-4056-BC47-FC070A0653D7}-v87-{B5931A26-325E-4056-BC47-FC070A0653D7}-v87-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\88\188-{B5931A26-325E-4056-BC47-FC070A0653D7}-v188-{B5931A26-325E-4056-BC47-FC070A0653D7}-v188-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\88\88-{B5931A26-325E-4056-BC47-FC070A0653D7}-v88-{B5931A26-325E-4056-BC47-FC070A0653D7}-v88-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\89\189-{B5931A26-325E-4056-BC47-FC070A0653D7}-v189-{B5931A26-325E-4056-BC47-FC070A0653D7}-v189-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\89\89-{B5931A26-325E-4056-BC47-FC070A0653D7}-v89-{B5931A26-325E-4056-BC47-FC070A0653D7}-v89-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\90\190-{B5931A26-325E-4056-BC47-FC070A0653D7}-v190-{B5931A26-325E-4056-BC47-FC070A0653D7}-v190-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\90\90-{B5931A26-325E-4056-BC47-FC070A0653D7}-v90-{B5931A26-325E-4056-BC47-FC070A0653D7}-v90-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\91\191-{B5931A26-325E-4056-BC47-FC070A0653D7}-v191-{B5931A26-325E-4056-BC47-FC070A0653D7}-v191-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\91\91-{B5931A26-325E-4056-BC47-FC070A0653D7}-v91-{B5931A26-325E-4056-BC47-FC070A0653D7}-v91-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\92\192-{B5931A26-325E-4056-BC47-FC070A0653D7}-v192-{B5931A26-325E-4056-BC47-FC070A0653D7}-v192-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\92\92-{B5931A26-325E-4056-BC47-FC070A0653D7}-v92-{B5931A26-325E-4056-BC47-FC070A0653D7}-v92-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\93\193-{B5931A26-325E-4056-BC47-FC070A0653D7}-v193-{B5931A26-325E-4056-BC47-FC070A0653D7}-v193-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\93\93-{B5931A26-325E-4056-BC47-FC070A0653D7}-v93-{B5931A26-325E-4056-BC47-FC070A0653D7}-v93-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\94\194-{B5931A26-325E-4056-BC47-FC070A0653D7}-v194-{B5931A26-325E-4056-BC47-FC070A0653D7}-v194-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\94\94-{B5931A26-325E-4056-BC47-FC070A0653D7}-v94-{B5931A26-325E-4056-BC47-FC070A0653D7}-v94-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\95\195-{B5931A26-325E-4056-BC47-FC070A0653D7}-v195-{B5931A26-325E-4056-BC47-FC070A0653D7}-v195-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\95\495-{B5931A26-325E-4056-BC47-FC070A0653D7}-v495-{B5931A26-325E-4056-BC47-FC070A0653D7}-v495-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\95\95-{B5931A26-325E-4056-BC47-FC070A0653D7}-v95-{B5931A26-325E-4056-BC47-FC070A0653D7}-v95-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\96\196-{B5931A26-325E-4056-BC47-FC070A0653D7}-v196-{B5931A26-325E-4056-BC47-FC070A0653D7}-v196-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\96\96-{B5931A26-325E-4056-BC47-FC070A0653D7}-v96-{B5931A26-325E-4056-BC47-FC070A0653D7}-v96-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\97\197-{B5931A26-325E-4056-BC47-FC070A0653D7}-v197-{B5931A26-325E-4056-BC47-FC070A0653D7}-v197-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\97\97-{B5931A26-325E-4056-BC47-FC070A0653D7}-v97-{B5931A26-325E-4056-BC47-FC070A0653D7}-v97-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\98\198-{B5931A26-325E-4056-BC47-FC070A0653D7}-v198-{B5931A26-325E-4056-BC47-FC070A0653D7}-v198-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\98\98-{B5931A26-325E-4056-BC47-FC070A0653D7}-v98-{B5931A26-325E-4056-BC47-FC070A0653D7}-v98-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\99\199-{B5931A26-325E-4056-BC47-FC070A0653D7}-v199-{B5931A26-325E-4056-BC47-FC070A0653D7}-v199-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\sibylle_18@hotmail.com\DFSR\Staging\CS{0117F3DA-0D78-156E-ED63-060E2E633BD1}\99\99-{B5931A26-325E-4056-BC47-FC070A0653D7}-v99-{B5931A26-325E-4056-BC47-FC070A0653D7}-v99-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\yu_tattoo@hotmail.fr\DFSR\Staging\CS{0AF099B6-5458-CFB9-F480-B3058D1D54E4}\01\10-{0AF099B6-5458-CFB9-F480-B3058D1D54E4}-v1-{B5931A26-325E-4056-BC47-FC070A0653D7}-v10-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\yu_tattoo@hotmail.fr\DFSR\Staging\CS{0AF099B6-5458-CFB9-F480-B3058D1D54E4}\11\11-{B5931A26-325E-4056-BC47-FC070A0653D7}-v11-{B5931A26-325E-4056-BC47-FC070A0653D7}-v11-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\yu_tattoo@hotmail.fr\DFSR\Staging\CS{0AF099B6-5458-CFB9-F480-B3058D1D54E4}\12\12-{B5931A26-325E-4056-BC47-FC070A0653D7}-v12-{B5931A26-325E-4056-BC47-FC070A0653D7}-v12-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\yu_tattoo@hotmail.fr\DFSR\Staging\CS{0AF099B6-5458-CFB9-F480-B3058D1D54E4}\13\13-{B5931A26-325E-4056-BC47-FC070A0653D7}-v13-{B5931A26-325E-4056-BC47-FC070A0653D7}-v13-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\yu_tattoo@hotmail.fr\DFSR\Staging\CS{0AF099B6-5458-CFB9-F480-B3058D1D54E4}\14\14-{B5931A26-325E-4056-BC47-FC070A0653D7}-v14-{B5931A26-325E-4056-BC47-FC070A0653D7}-v14-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Data\Microsoft\Messenger\miskovicivana@hotmail.com\SharingMetadata\yu_tattoo@hotmail.fr\DFSR\Staging\CS{0AF099B6-5458-CFB9-F480-B3058D1D54E4}\15\15-{B5931A26-325E-4056-BC47-FC070A0653D7}-v15-{B5931A26-325E-4056-BC47-FC070A0653D7}-v15-Downloaded.frx (WARNING: not scanned, path to long)
C:\Documents and Settings\ivana\Local Settings\Application Da
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
6 oct. 2007 à 00:07
Logfile of HijackThis v1.99.1
Scan saved at 00:03:41, on 06/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\LVComS.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061228
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061228
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ECarteBleueBrowserHelper Class - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
O2 - BHO: (no name) - {5290A6E3-7BF3-416D-B5B2-AE608A34C912} - C:\WINDOWS\system32\ssttt.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [SearchIndexer] rundll32.exe "C:\WINDOWS\system32\ghepdiiy.dll",sitypnow
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {45A0A292-ECC6-4D8F-9EA9-A4BD411D24C1} (king.com) - http://www.king.com/ctl/kingcomie.cab
O16 - DPF: {5308E02B-4ABA-48E4-AA9E-8A7693661473} (GameCtl Class) - http://jeuxenligne.orange.fr/GisActiveX/Ax/GameAx.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/fr/fr/importer/ImageUploader4.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game04.zylom.servicesalacarte.orange.fr/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {C9E17F58-564C-41C6-989F-AB0FE0D2C9D1} (PopcapLoader Object) - http://jeuxenligne.orange.fr/orange2.0/OnlineHSS/insaniquarium/Popcap.cab
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxenligne.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - file:///C:/Documents%20and%20Settings/ivana/Local%20Settings/Application%20Data/Oberon%20Media/Oberon%20Games%20Host/popcaploader_v6.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: DomainService - Unknown owner - C:\WINDOWS\system32\jekfgcij.exe (file missing)
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
0
nardino Messages postés 1633 Date d'inscription jeudi 20 mai 2004 Statut Membre Dernière intervention 6 mars 2010 119
6 oct. 2007 à 00:48
Bonsoir.

Je ne vois pas le rapport de Vundofix.
Est-ce un oubli dans l'envoi ou dans l'exécution de la procédure ?

Télécharge OTMoveIt : http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe Sur ton bureau. Important.

Tu redémarres en mode sans échec et si tu as oublié passe Vundofix.
https://www.malekal.com/demarrer-windows-mode-sans-echec/
Redémarrer en mode sans échec

Puis lances Hijackthis par Scanner seulement et coches ces lignes :

O2 - BHO: (no name) - {5290A6E3-7BF3-416D-B5B2-AE608A34C912} - C:\WINDOWS\system32\ssttt.dll
O4 - HKLM\..\Run: [SearchIndexer] rundll32.exe "C:\WINDOWS\system32\ghepdiiy.dll",sitypnow
O16 - DPF: {45A0A292-ECC6-4D8F-9EA9-A4BD411D24C1} (king.com) - http://www.king.com/ctl/kingcomie.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - file:///C:/Documents%20and%20Settings/ivana/Local%20Settings/Application%20Data/Oberon%20Media/Oberon%20Games%20Host/popcaploader_v6.cab


Cliques sur Fixer objet, ferme le programme.

Dans Démarrer/Exécuter, tape services.msc et arrête celui-ci:

O23 - Service: DomainService - Unknown owner - C:\WINDOWS\system32\jekfgcij.exe (file missing)

Puis double-clique dessus et dans Type de démarrage, désactives-le.

Tu relances Hijackthis par Ouvrir la section outils, Supprimer un service NT et dans le popup colle :

DomainService

Et valides par OK sans tenir compte de l'avertissement.

Tu lances OtMoveIt en cliquant sur le fichier du bureau
Tu inscris ou tu colles le chemin du fichier/dossier à supprimer dans la fenêtre de gauche (Paste List of Files/Folders to be moved) et tu cliques sur MoveIt!.
(La case Unregister Dll's and OCX's doit être cochée.)

C:\WINDOWS\system32\ssttt.dll
C:\WINDOWS\system32\ghepdiiy.dll
C:\WINDOWS\system32\jekfgcij.exe


Le fichier passe alors dans la fenêtre de droite.
Et tu obtiendras à la racine du système un dossier C:\_OTMoveIt
Dans ce dernier il y aura un sous-dossier Moved Files dans lequel il y aura une sauvegarde du/des fichier(s) supprimé(s) et un fichier
de ce type ********_******.log (mm/jj/aaaa_hh/mm/ss = date et horaire de la suppression) que tu posteras par copier-coller pour contrôle.

Si un redémarrage est demandé, accepte-le sinon tu le provoques.

Une fois en mode normal, il faut procéder à la mise à jour des programmes suivants :

-Java Runtime Environment (JRE)6u3 :
https://www.oracle.com/java/technologies/javase-downloads.html
Clique sur Download Java Runtime Environment (JRE) 6u3
Dans la page suivante coche [b]Iaccept[/b] et télécharge [b] Windows Offline Installation, Multi-language //jre-6u3-windows-i586-p.exe //13.89 MB[/b]
Tu l'installeras navigateur fermé.
Dans Ajout/Suppression des programmes tu supprimes toutes les autres versions.

-Acrobat Reader 8.1.:
https://get2.adobe.com/reader/otherversions/
Décocher Téléchargez également :Adobe Photoshop® Album Édition
Dans Ajout/Suppression des programmes tu supprimes toutes les autres versions.

Puis tu postes le rapport c:\Vundofix.txt et le rapport qui est dans c:\OtMOveIt\Moved Files **********_********.log
Et un nouveau rapport Hijackthis avec des nouvelles sur l'évolution de tes problèmes.


@+
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
7 oct. 2007 à 00:14
VundoFix V6.5.9

Checking Java version...

Java version is 1.5.0.6
Old versions of java are exploitable and should be removed.

Java version is 1.5.0.10

Scan started at 22:58:09 05/10/2007

Listing files found while scanning....

C:\WINDOWS\system32\rbjdutrt.ini
C:\WINDOWS\system32\trtudjbr.dll
C:\WINDOWS\system32\vdtyebda.dll

Beginning removal...

Attempting to delete C:\WINDOWS\system32\rbjdutrt.ini
C:\WINDOWS\system32\rbjdutrt.ini Has been deleted!

Attempting to delete C:\WINDOWS\system32\trtudjbr.dll
C:\WINDOWS\system32\trtudjbr.dll Could not be deleted.

Attempting to delete C:\WINDOWS\system32\vdtyebda.dll
C:\WINDOWS\system32\vdtyebda.dll Could not be deleted.

Performing Repairs to the registry.
Done!

VundoFix V6.5.9

Checking Java version...

Java version is 1.5.0.6
Old versions of java are exploitable and should be removed.

Java version is 1.5.0.10

Scan started at 23:55:20 05/10/2007

Listing files found while scanning....

C:\WINDOWS\system32\caqtnwcn.dll
C:\WINDOWS\system32\ncwntqac.ini
C:\WINDOWS\system32\wbkouleb.dll

Beginning removal...

Attempting to delete C:\WINDOWS\system32\caqtnwcn.dll
C:\WINDOWS\system32\caqtnwcn.dll Could not be deleted.

Attempting to delete C:\WINDOWS\system32\ncwntqac.ini
C:\WINDOWS\system32\ncwntqac.ini Has been deleted!

Attempting to delete C:\WINDOWS\system32\wbkouleb.dll
C:\WINDOWS\system32\wbkouleb.dll Could not be deleted.

Performing Repairs to the registry.
Done!

VundoFix V6.5.9

Checking Java version...

Java version is 1.5.0.6
Old versions of java are exploitable and should be removed.

Java version is 1.5.0.10

Scan started at 23:58:35 05/10/2007

Listing files found while scanning....

No infected files were found.


Beginning removal...

VundoFix V6.5.9

Checking Java version...

Java version is 1.5.0.6
Old versions of java are exploitable and should be removed.

Java version is 1.5.0.10

Scan started at 23:02:22 06/10/2007

Listing files found while scanning....

C:\WINDOWS\system32\erqqpanl.dll
C:\WINDOWS\system32\lmxanvjk.dll
C:\WINDOWS\system32\lnapqqre.ini

Beginning removal...

Attempting to delete C:\WINDOWS\system32\erqqpanl.dll
C:\WINDOWS\system32\erqqpanl.dll Has been deleted!

Attempting to delete C:\WINDOWS\system32\lmxanvjk.dll
C:\WINDOWS\system32\lmxanvjk.dll Has been deleted!

Attempting to delete C:\WINDOWS\system32\lnapqqre.ini
C:\WINDOWS\system32\lnapqqre.ini Has been deleted!

Performing Repairs to the registry.
Done!
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
7 oct. 2007 à 00:37
Logfile of HijackThis v1.99.1
Scan saved at 00:35:12, on 07/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\system32\LVComS.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061228
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.fr/ig/dell?hl=fr&client=dell-row&channel=fr&ibd=6061228
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {25E84652-0567-4800-A637-3BDD60CAE802} - C:\WINDOWS\system32\ssttt.dll
O2 - BHO: ECarteBleueBrowserHelper Class - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {89AD4D75-2429-462e-BD4E-443F233F6033} - C:\WINDOWS\system32\xxavppew.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SearchIndexer] rundll32.exe "C:\WINDOWS\system32\pwljvncv.dll",sitypnow
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5308E02B-4ABA-48E4-AA9E-8A7693661473} (GameCtl Class) - http://jeuxenligne.orange.fr/GisActiveX/Ax/GameAx.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.mypix.com/fr/fr/importer/ImageUploader4.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game04.zylom.servicesalacarte.orange.fr/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {C9E17F58-564C-41C6-989F-AB0FE0D2C9D1} (PopcapLoader Object) - http://jeuxenligne.orange.fr/orange2.0/OnlineHSS/insaniquarium/Popcap.cab
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - http://jeuxenligne.orange.fr/Gameshell/GameHost/1.0/OberonGameHost.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
7 oct. 2007 à 00:38
je n arrive pas a trouvé le rapport de otmoveit merci d avance pour ta reponse.
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
7 oct. 2007 à 00:41
O4 - HKLM\..\Run: [SearchIndexer] rundll32.exe "C:\WINDOWS\system32\ghepdiiy.dll",sitypnow je ne l ai pas trouvé dans hijackthis et et ce que tu m a dis de faire avec otmoveit ca na pas tres bien marché.
0
nardino Messages postés 1633 Date d'inscription jeudi 20 mai 2004 Statut Membre Dernière intervention 6 mars 2010 119
7 oct. 2007 à 12:29
Bonjour.

OtMoveIt doit être sur le bureau.
Et tu trouveras lerapport dans c:\\_OtMoveIt\Moved Files un fichier 200710**_******.log
0
aleksandar Messages postés 55 Date d'inscription jeudi 4 octobre 2007 Statut Membre Dernière intervention 12 juin 2008
7 oct. 2007 à 15:23
bonjour.

Dans le rapport otmoveit je n ai que ca : Created on 10/06/2007 23:40:29
0
nardino Messages postés 1633 Date d'inscription jeudi 20 mai 2004 Statut Membre Dernière intervention 6 mars 2010 119
7 oct. 2007 à 19:27
Bonsoir,

Tu recommences avec OtMoveIt

Tu lances OtMoveIt en cliquant sur le fichier du bureau
Tu inscris ou tu colles le chemin du fichier/dossier à supprimer dans la fenêtre de gauche (Paste List of Files/Folders to be moved) et tu cliques sur MoveIt!.
(La case Unregister Dll's and OCX's doit être cochée.)

C:\WINDOWS\system32\ssttt.dll
C:\WINDOWS\system32\pwljvncv.dll

Le fichier passe alors dans la fenêtre de droite.
Et tu obtiendras à la racine du système un dossier C:\_OTMoveIt
Dans ce dernier il y aura un sous-dossier Moved Files dans lequel il y aura une sauvegarde du/des fichier(s) supprimé(s) et un fichier
de ce type ********_******.log (mm/jj/aaaa_hh/mm/ss = date et horaire de la suppression) que tu posteras par copier-coller pour contrôle avec un nouveau log Hijackthis, après redémarrage.
0
afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022 602
7 oct. 2007 à 22:39
up
;)
0