Kako se riješiti Win32/Agent.ODG virusa

poruka: 23
|
čitano: 8.148
|
moderatori: pirat, XXX-Man, vincimus
1
+/- sve poruke
ravni prikaz
starije poruke gore
16 godina
offline
Imam VEEEELIKI problem ...

evo ovako imam 14 god i svi moji frendovi i stariji i koji se kuze u kompove mi kazu da neznaju ovo rjesit stoga evo pokusat cu ovdje nesto ...

eset Nod32 nova verzija mi je ovo pronasao i nemogu ga ukloniti ...

 

svakakva pomoc je zahvlna...  i imam spybot search%destroy ali on pronadje poneku gresku ...

 

eo ovo je naso:

 

Scan Log
Version of virus signature database: 3994 (20090407)
Date: 26.4.2009  Time: 18:07:22
Scanned disks, folders and files: Operating memory;C:\Boot sector;C:\;D:\Boot sector;D:\Application Data\;D:\Documents\;D:\msdownld.tmp\;D:\Programs\;D:\RECYCLER\;D:\System Volume Information\
Operating memory - Win32/Agent.ODG virus - unable to clean

 

 

i dalj i dalje ali nista nije crveno ko ovo ...

 

HLAVA na pomoći..

moram u skolu vec kasnim ^^

WithSkill
Moj PC  
0 0 hvala 0
16 godina
offline
RE: Imam VEEEELIKI problem ...
17 godina
neaktivan
offline
Imam VEEEELIKI problem ...

Instaliraj Malwarebytes Anti-Malware, napravi mu update kada se instalira te zatim skeniraj računalo i on će riješiti tog trojanca.

Area-51 m15x
Poruka je uređivana zadnji put pon 27.4.2009 7:57 (Razer_Copperhead).
 
0 0 hvala 0
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

hvala ^^ na pomoci ... idem sad instalirat taj programic i vidjet cemo sto ce biti xD !

WithSkill
Moj PC  
0 0 hvala 0
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

eo naso je ovo -  2 trojana i svi su na C:\Windows ...   prvi je - ftp_non_crp.exe a drugi - winsetup64.exe ... ako to nesto znaci

eto removat cu ih i zahvaljujem na pomoci !!!

WithSkill
Moj PC  
0 0 hvala 0
17 godina
neaktivan
offline
Kako se riješiti Win32/Agent.ODG virusa

Nema na čemu.

Area-51 m15x
 
0 0 hvala 0
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

evo jos problema - uostalom nod32 ga svejedno prepoznaje evo dokaza ...

 

Scan Log
Version of virus signature database: 3994 (20090407)
Date: 27.4.2009  Time: 14:51:12
Scanned disks, folders and files: Operating memory
Operating memory - Win32/Agent.ODG virus - unable to clean
Number of scanned objects: 444
Number of threats found: 1
Number of cleaned objects: 0
Time of completion: 14:51:15  Total scanning time: 3 sec (00:00:03)

 

e sad trenutno skeniram na malwarebytes pa cu javiti novosti

pitanje - dal da re installiram nod32 ili kaj ???

Hvala na pomoći ...

 

 

 

evo skeniro je malwarebyte - evo rezultata

Malwarebytes' Anti-Malware 1.36
Database version: 2047
Windows 5.1.2600 Service Pack 3

27.4.2009 14:54:21
mbam-log-2009-04-27 (14-54-21).txt

Scan type: Quick Scan
Objects scanned: 75431
Time elapsed: 2 minute(s), 27 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
Poruka je uređivana zadnji put uto 28.4.2009 19:32 (WithSkill).
Moj PC  
0 0 hvala 0
17 godina
neaktivan
offline
Kako se riješiti Win32/Agent.ODG virusa

Pokušaj s ovim.

Area-51 m15x
Poruka je uređivana zadnji put pon 27.4.2009 16:07 (Razer_Copperhead).
 
0 0 hvala 0
17 godina
neaktivan
offline
Kako se riješiti Win32/Agent.ODG virusa

Sad sam malo googlao i većina ljudi koji su imali taj virus su ga uspješno uništili sa Malwarebytes'om.

 

EDIT: skeniranje obavezno radi u Safe modu...

Jaunty user :)
Poruka je uređivana zadnji put pon 27.4.2009 17:44 (nedIm).
Moj PC  
0 0 hvala 0
17 godina
neaktivan
offline
Kako se riješiti Win32/Agent.ODG virusa

Isključi sistem restore prije skeniranja, a možeš skinuti combofix i njime probati

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

 

na ovoj stranici imaš linkove za skidanje programa i kako program radi .

Poruka je uređivana zadnji put pon 27.4.2009 17:42 (neron).
 
0 0 hvala 0
17 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

Combofix nece ocistit sam nista on ce samo dat Log iz kojeg ce iskusni korisnici vidit o kojimi se problemima radi bilo da su virusi ili bilo kaj drugo, a iskusni samo mogu vidit di je problem i onda napravit skriptu koja se uvuce u Combofix i pomocu toga ce Combofix obrisat ono kaj treba tj ono kaj smo mu dali da obrise a ak se zezneš i obrises krivo nekaj nema vise pomoci. Combofix nije alat za pocetnike nikako s njim barataju samo oni koji mogu vidjet iz LOg-a u cemu je problem jer on prikazuje skrivene stvari koje vecina antivirusa na vidi Rootkite recim i ostalu gamad koja skriva svoje postojanje!Cool

Athlon 64 LE-1620 (3.0ghz) - Golden Orb 2 - Kingmax Mars 1GB ddr2 800 (960mhz) - Seasonic S12II 430w - Samsung SM 2232BW - Gigabyte MA790X - DS4 - Ati Crosfire HD 3650 x2
Poruka je uređivana zadnji put pon 27.4.2009 18:28 (rambox).
Moj PC  
0 0 hvala 0
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

e sad moj buraz je napravio boot - to jest - Norton Ghost 11 DISK IMAGE - BACK UP

dali da ja sad reebootam svoje windowse ili neka drugo xD ???

ja se ne kuzim u te viruse -... :( ali sam sretan kad ih unistavam ...

Back Up mi je na D - imam dvije particije - C i D

na C su mi windowsi i programi za windowse sveukupno 20-30gb

na D su mi muzika, filmovi, slike i ta sranja... i igrice... e tam mi je i taj Ghost koji kada resetam laptop da ubacim CD mi otvori program i ja ga mogu reebooutat ... sta na napravim xD ^^ ???

 

 

OMG - kako dosadno gamad jedna od Trojana ...

 

ili da skinem jos koji programic pa da nesto napravim neznam sto xD ...

ili da reinstalliram nod32 pa ponovno instaliram pa skeniram i skinem update ...

 

ocekujem pdgovore i zahvaljujem na pomoci ...

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
Poruka je uređivana zadnji put uto 28.4.2009 13:17 (WithSkill).
Moj PC  
0 0 hvala 0
16 godina
offline
RE: Kako se riješiti Win32/Agent.ODG virusa

ah zaje... vec sam skeniro i izbriso be safe moda ...

sta da napravim ???

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

e ljudi jel bi moglo biti moguce da mi NOD32 to prikazuje jer ga nisam updato - moj frend mi je dao da ja sa njega updatam ne direktno sa njihove strance - mozda je to problem ?

samo prijedlog

HVALA na odgovorima iako ih jos uvijek ocekujem ... xD :)...

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
Moj PC  
0 0 hvala 0
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

Otisao sam u safe mode i nije nista nasao : 

Malwarebytes' Anti-Malware 1.36
Database version: 2054
Windows 5.1.2600 Service Pack 3

28.4.2009 19:54:33
mbam-log-2009-04-28 (19-54-33).txt

Scan type: Quick Scan
Objects scanned: 79638
Time elapsed: 6 minute(s), 22 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

 

 

Ali je ovo nasao NOD32 (ALI NE U SAFE MODU) !!!

Scan Log
Version of virus signature database: 3994 (20090407)
Date: 28.4.2009  Time: 19:20:39

Scanned disks, folders and files: Operating memory;C:\Boot sector;C:\

 

Operating memory - Win32/Agent.ODG virus - unable to clean

 

C:\Documents and Settings\Ante\Application Data\LimeWire\browser\xulrunner\chrome\comm.manifest » MIME - is OK (internal scanning not performed)
C:\Documents and Settings\Ante\Application Data\LimeWire\browser\xulrunner\chrome\limewire.manifest » MIME - is OK (internal scanning not performed)
C:\Documents and Settings\Ante\Application Data\LimeWire\browser\xulrunner\chrome\pippki.manifest » MIME - is OK (internal scanning not performed)
C:\Documents and Settings\Ante\Application Data\LimeWire\browser\xulrunner\chrome\toolkit.manifest » MIME - is OK (internal scanning not performed)
C:\Documents and Settings\Ante\Local Settings\Application Data\Identities\{B024ACCC-1B77-46BA-8D19-5E6F102714FC}\Microsoft\Outlook Express\Inbox.dbx » DBX - is OK (internal scanning not performed)
C:\Documents and Settings\Ante\Local Settings\Application Data\Microsoft\Windows Live Mail\Hotmail (t0 5e9\Sent items\470C4625-00000001.eml » MIME - is OK (internal scanning not performed)
C:\Documents and Settings\Ante\Local Settings\Application Data\Microsoft\Windows Live Mail\Sentinel\WLMailSearchSentinel.eml » MIME - is OK (internal scanning not performed)
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\core3.zip » ZIP » lib/deploy/ffjcext.zip » ZIP » {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}/chrome.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\core3.zip » ZIP » lib/resources.jar » ZIP » com/sun/org/apache/xerces/internal/impl/msg/XIncludeMessages.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\core3.zip » ZIP » lib/resources.jar » ZIP » com/sun/xml/internal/fastinfoset/resources/ResourceBundle.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\core3.zip » ZIP » lib/resources.jar » ZIP » javax/xml/bind/Messages.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre1.6.0_07\lib\resources.jar » ZIP » com/sun/org/apache/xerces/internal/impl/msg/XIncludeMessages.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre1.6.0_07\lib\resources.jar » ZIP » com/sun/xml/internal/fastinfoset/resources/ResourceBundle.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre1.6.0_07\lib\resources.jar » ZIP » javax/xml/bind/Messages.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre1.6.0_07\lib\deploy\ffjcext.zip » ZIP » {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}/chrome.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre6\lib\resources.jar » ZIP » com/sun/org/apache/xerces/internal/impl/msg/XIncludeMessages.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre6\lib\resources.jar » ZIP » com/sun/xml/internal/fastinfoset/resources/ResourceBundle.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre6\lib\resources.jar » ZIP » javax/xml/bind/Messages.properties » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre6\lib\deploy\ffjcext.zip » ZIP » {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}/chrome.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Java\jre6\lib\deploy\jqs\ff\chrome.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\LimeWire\lib\additional_resources.jar » ZIP » xulrunner-win32.zip » ZIP » xulrunner/chrome/comm.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\LimeWire\lib\additional_resources.jar » ZIP » xulrunner-win32.zip » ZIP » xulrunner/chrome/pippki.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\LimeWire\lib\additional_resources.jar » ZIP » xulrunner-win32.zip » ZIP » xulrunner/chrome/toolkit.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\LimeWire\lib\additional_resources.jar » ZIP » xulrunner-win32.zip » ZIP » xulrunner/chrome/limewire.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Microsoft Office\OFFICE11\1033\VIDEO.MHT » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\chrome\browser.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\chrome\comm.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\chrome\pippki.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\chrome\reporter.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\chrome\toolkit.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\extensions\{021EA5B9-C4B6-4DDC-BDA4-9116096D9A6D}\chrome.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\chrome.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}\chrome.manifest » MIME - is OK (internal scanning not performed)
C:\Program Files\Nero\Nero 7\Core\CDI\CDI_VCD.CFG » MIME - is OK (internal scanning not performed)
C:\Program Files\Webteh\BSplayerPro\doc\cmdline.txt » MIME - is OK (internal scanning not performed)
Number of scanned objects: 270431
Number of threats found: 1
Number of cleaned objects: 0
Time of completion: 19:42:07  Total scanning time: 1288 sec (00:21:28)

Notes:
[4] Object cannot be opened. It may be in use by another application or operating system.

 

 

NOD32 mi stalno javlja kad upalim comp da imam wirus i da ga nemoze izbrisat ...

HVALA na pomoci ...

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
Moj PC  
0 0 hvala 0
17 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

Ak koristis stari NOD 3 onda ga zamjeni s novom verzijom 4 pa ces vidit onda a krekirani Nod nemoj koristit nikad to ne valja!!!Cool

Moj PC  
0 0 hvala 0
16 godina
offline
RE: Kako se riješiti Win32/Agent.ODG virusa

halo ali ja imam novi nod32 antivirus 4 !!!

imam i spybot search&destroy

i Malwarebyte

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
Poruka je uređivana zadnji put uto 28.4.2009 20:11 (WithSkill).
17 godina
neaktivan
offline
Kako se riješiti Win32/Agent.ODG virusa

A da izbrišeš NOD32 i staviš AVIRU Free ako ti je NOD32 pirat?

Area-51 m15x
 
1 0 hvala 1
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

evo stavio sam AVIRU i nasao je 6 wirusa ...

 

HLAVA svima Na POMOĆI !!!

 

javim se opet ako nesto bude

 

zahvaljujem svima ...

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
Moj PC  
0 0 hvala 0
16 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

scan je nasao ovo... hvala na pomoci ...

 



Avira AntiVir Personal
Report file date: 28. travanj 2009  20:54

Scanning for 1369743 virus strains and unwanted programs.

Licensee        : Avira AntiVir Personal - FREE Antivirus
Serial number   : 0000149996-ADJIE-0000001
Platform        : Windows XP
Windows version : (Service Pack 3)  [5.1.2600]
Boot mode       : Normally booted
Username        : SYSTEM
Computer name   : TOOFAST

Version information:
BUILD.DAT       : 9.0.0.394     17962 Bytes   17.4.2009 11:20:00
AVSCAN.EXE      : 9.0.3.5      466689 Bytes   28.4.2009 18:50:47
AVSCAN.DLL      : 9.0.3.0       40705 Bytes   27.2.2009 08:58:24
LUKE.DLL        : 9.0.3.2      209665 Bytes   20.2.2009 09:35:49
LUKERES.DLL     : 9.0.2.0       12033 Bytes   27.2.2009 08:58:52
ANTIVIR0.VDF    : 7.1.0.0    15603712 Bytes  27.10.2008 10:30:36
ANTIVIR1.VDF    : 7.1.2.12    3336192 Bytes   11.2.2009 18:33:26
ANTIVIR2.VDF    : 7.1.3.63    1588224 Bytes   16.4.2009 18:50:47
ANTIVIR3.VDF    : 7.1.3.124    211456 Bytes   28.4.2009 18:50:47
Engineversion   : 8.2.0.156
AEVDF.DLL       : 8.1.1.0      106868 Bytes   27.1.2009 15:36:42
AESCRIPT.DLL    : 8.1.1.77     381306 Bytes   28.4.2009 18:50:47
AESCN.DLL       : 8.1.1.10     127348 Bytes   28.4.2009 18:50:47
AERDL.DLL       : 8.1.1.3      438645 Bytes  29.10.2008 16:24:41
AEPACK.DLL      : 8.1.3.14     397685 Bytes   28.4.2009 18:50:47
AEOFFICE.DLL    : 8.1.0.36     196987 Bytes   26.2.2009 18:01:56
AEHEUR.DLL      : 8.1.0.122   1737080 Bytes   28.4.2009 18:50:47
AEHELP.DLL      : 8.1.2.2      119158 Bytes   26.2.2009 18:01:56
AEGEN.DLL       : 8.1.1.39     348532 Bytes   28.4.2009 18:50:47
AEEMU.DLL       : 8.1.0.9      393588 Bytes   9.10.2008 12:32:40
AECORE.DLL      : 8.1.6.9      176500 Bytes   28.4.2009 18:50:47
AEBB.DLL        : 8.1.0.3       53618 Bytes   9.10.2008 12:32:40
AVWINLL.DLL     : 9.0.0.3       18177 Bytes  12.12.2008 06:47:59
AVPREF.DLL      : 9.0.0.1       43777 Bytes   5.12.2008 08:32:15
AVREP.DLL       : 8.0.0.3      155905 Bytes   20.1.2009 12:34:28
AVREG.DLL       : 9.0.0.0       36609 Bytes   5.12.2008 08:32:09
AVARKT.DLL      : 9.0.0.3      292609 Bytes   28.4.2009 18:50:47
AVEVTLOG.DLL    : 9.0.0.7      167169 Bytes   30.1.2009 08:37:08
SQLITE3.DLL     : 3.6.1.0      326401 Bytes   28.1.2009 13:03:49
SMTPLIB.DLL     : 9.2.0.25      28417 Bytes    2.2.2009 06:21:33
NETNT.DLL       : 9.0.0.0       11521 Bytes   5.12.2008 08:32:10
RCIMAGE.DLL     : 9.0.0.21    2438401 Bytes    9.2.2009 09:45:45
RCTEXT.DLL      : 9.0.37.0      86785 Bytes   28.4.2009 18:50:47

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: c:\program files\avira\antivir desktop\sysscan.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:,
Process scan........................: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium
Deviating risk categories...........: +APPL,

Start of the scan: 28. travanj 2009  20:54

Starting search for hidden objects.
c:\windows\system32\ovfstheivhodypywilrdqwmiexqlkhvtwxhguo.dll
    [INFO]      The file is not visible.
    [DETECTION] Is the TR/Crypt.ZPACK.Gen Trojan
    [INFO]      No SpecVir entry was found!
    [NOTE]      A backup was created as '4a5d51ba.qua'  ( QUARANTINE )
c:\windows\system32\ovfsthhdpfquwpfywthkdcibltiqjmieplrxuj.dat
    [INFO]      The file is not visible.
    [NOTE]      A backup was created as '4b393003.qua'  ( QUARANTINE )
c:\windows\system32\ovfsthmpctgqvknofiixejkslmvlitipnhoepn.dat
    [INFO]      The file is not visible.
    [NOTE]      A backup was created as '4b3bd823.qua'  ( QUARANTINE )
c:\windows\system32\ovfsthnomqvalqrgjkhqxatukpqvaxcgknnfxq.dll
    [INFO]      The file is not visible.
    [DETECTION] Is the TR/Crypt.ZPACK.Gen Trojan
    [INFO]      No SpecVir entry was found!
    [NOTE]      A backup was created as '4b35e0c3.qua'  ( QUARANTINE )
c:\windows\system32\ovfsthpjlwvwykyqsahcsjicdowumwrbnvkmsx.dll
    [INFO]      The file is not visible.
    [DETECTION] Is the TR/Crypt.ZPACK.Gen Trojan
    [INFO]      No SpecVir entry was found!
    [NOTE]      A backup was created as '4a5d51bb.qua'  ( QUARANTINE )
c:\windows\system32\drivers\ovfsthxrwasbacxhhwulimyxyqmuxypfjxjvwi.sys
    [INFO]      The file is not visible.
    [DETECTION] Contains recognition pattern of the RKIT/Agent.iuc root kit
    [INFO]      No SpecVir entry was found!
    [NOTE]      A backup was created as '4b305084.qua'  ( QUARANTINE )
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthtyxtuirqpkltfqxwmltsrwrrsqrovbrp\main
    [INFO]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthtyxtuirqpkltfqxwmltsrwrrsqrovbrp\modules
    [INFO]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthtyxtuirqpkltfqxwmltsrwrrsqrovbrp\start
    [INFO]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthtyxtuirqpkltfqxwmltsrwrrsqrovbrp\type
    [INFO]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthtyxtuirqpkltfqxwmltsrwrrsqrovbrp\group
    [INFO]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthtyxtuirqpkltfqxwmltsrwrrsqrovbrp\imagepath
    [INFO]      The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Services\ovfsthtyxtuirqpkltfqxwmltsrwrrsqrovbrp\inst
    [INFO]      The registry entry is invisible.
'40818' objects were checked, '13' hidden objects were found.

The scan of running processes will be started
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'Com4QLBEx.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'hpqwmiex.exe' - '1' Module(s) have been scanned
Scan process 'CCC.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'MOM.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'PnkBstrB.exe' - '1' Module(s) have been scanned
Scan process 'PnkBstrA.exe' - '1' Module(s) have been scanned
Scan process 'MDM.EXE' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'agrsmsvc.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'BTStackServer.exe' - '1' Module(s) have been scanned
Scan process 'BTTray.exe' - '1' Module(s) have been scanned
Scan process 'btdna.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'daemon.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'reader_sl.exe' - '1' Module(s) have been scanned
Scan process 'jusched.exe' - '1' Module(s) have been scanned
Scan process 'smax4pnp.exe' - '1' Module(s) have been scanned
Scan process 'QLBCTRL.exe' - '1' Module(s) have been scanned
Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'scardsvr.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'btwdins.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned

49 processes with 49 modules were scanned

Starting master boot sector scan:

Start scanning boot sectors:
Boot sector 'C:\'
    [INFO]      No virus was found!
Boot sector 'D:\'
    [INFO]      No virus was found!

Starting to scan executable files (registry).

The registry was scanned ( '63' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\hiberfil.sys
    [WARNING]   The file could not be opened!
    [NOTE]      This file is a Windows system file.
    [NOTE]      This file cannot be opened for scanning.
C:\pagefile.sys
    [WARNING]   The file could not be opened!
    [NOTE]      This file is a Windows system file.
    [NOTE]      This file cannot be opened for scanning.
C:\WINDOWS\SoftwareDistribution\Download\32828a5696479ffed0e7b75fbb62e8c0\BITA32.tmp
  [0] Archive type: CAB (Microsoft)
    - PRN2KXP\cnm.in_
      [WARNING]   No further files can be extracted from this archive. The archive will be closed
    [WARNING]   No further files can be extracted from this archive. The archive will be closed
C:\WINDOWS\system32\drivers\sptd.sys
    [WARNING]   The file could not be opened!
Begin scan in 'D:\' <Local Disk>
D:\Music\Trip Lee\Other\behold the spirit trip lee.mp3
    [DETECTION] Is the TR/Dldr.WMA.Wimad.N Trojan

Beginning disinfection:
D:\Music\Trip Lee\Other\behold the spirit trip lee.mp3
    [DETECTION] Is the TR/Dldr.WMA.Wimad.N Trojan
    [NOTE]      The file was moved to '4a5f5cfb.qua'!


End of the scan: 28. travanj 2009  21:44
Used time: 49:25 Minute(s)

The scan has been done completely.

  10795 Scanned directories
 402175 Files were scanned
      5 Viruses and/or unwanted programs were found
      0 Files were classified as suspicious
      0 files were deleted
      0 Viruses and unwanted programs were repaired
      7 Files were moved to quarantine
      0 Files were renamed
      3 Files cannot be scanned
 402167 Files not concerned
   2993 Archives were scanned
      5 Warnings
      9 Notes
  40818 Objects were scanned with rootkit scan
     13 Hidden objects were found

HP 6830s 3gb RAM 320 HDD 17 inča 2.16 GH DualCore
Moj PC  
0 0 hvala 0
17 godina
neaktivan
offline
RE: Kako se riješiti Win32/Agent.ODG virusa

Instaliraj Spyware Doctor ili Internet Security od PCToolsa. Mene je rješio svakakve gamadi :)

 

 

 

 

 

 

Bob Rock "ALI NJIH JE DVOJE A MI SMO SAMI"
17 godina
offline
Kako se riješiti Win32/Agent.ODG virusa

Spyware Doctor mu ne treba uopce niti Pc Tools Internet Security oni nisu besplatni i nisu nista posebno uopce sve se moze rijesit s besplatnim programima bez problema!!!Cool

Moj PC  
2 0 hvala 0
16 godina
neaktivan
offline
RE: Imam VEEEELIKI problem ...
WithSkill kaže...

evo ovako imam 14 god i svi moji frendovi i stariji i koji se kuze u kompove mi kazu da neznaju ovo rjesit stoga evo pokusat cu ovdje nesto ...

eset Nod32 nova verzija mi je ovo pronasao i nemogu ga ukloniti ...

 

svakakva pomoc je zahvlna...  i imam spybot search%destroy ali on pronadje poneku gresku ...

 

eo ovo je naso:

 

Scan Log
Version of virus signature database: 3994 (20090407)
Date: 26.4.2009  Time: 18:07:22
Scanned disks, folders and files: Operating memory;C:\Boot sector;C:\;D:\Boot sector;D:\Application Data\;D:\Documents\;D:\msdownld.tmp\;D:\Programs\;D:\RECYCLER\;D:\System Volume Information\
Operating memory - Win32/Agent.ODG virus - unable to clean

 

 

i dalj i dalje ali nista nije crveno ko ovo ...

 

HLAVA na pomoći..

moram u skolu vec kasnim ^^

znam samo za tog RECYCLER, to ti je crv, bolje ga se rijesi sa malwarebytes, 3. post, imas link, uradi zadnji update i skeniraj, ako ne pronadje (a pronaci ce) onda skini superantispyware, pa sve isto, zadnji update i scan ali pazi, checkiraj full odnosno complete scan

Ako ocima gledamo, a mozgom vidimo, onda slijepi ljudi nemaju mozga
1
Nova poruka
E-mail:
Lozinka:
 
vrh stranice