Prijava na forum:
Ime:
Lozinka:
Prijavi me trajno:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:

ConQUIZtador
Trenutno vreme je: 16. Apr 2024, 16:28:21
nazadnapred
Korisnici koji su trenutno na forumu 0 članova i 1 gost pregledaju ovu temu.

 Napomena: Za sva pitanja u vezi kupovine novog hardware-a ili procene vrednosti i preporuke koristite - ovu temu

Spyware,sta je,kako radi,kako se zastititi? :: Kako rade mreze :: Burek Anti-virus software review :: Index tema koje ne treba propustiti

Idi dole
Stranice:
2 3 4
Počni novu temu Nova anketa Odgovor Štampaj Dodaj temu u favorite Pogledajte svoje poruke u temi
Tema: Win32/agent.ODG virus  (Pročitano 11177 puta)
06. Apr 2009, 16:46:29
Ucesnik diskusija


One Love To All Nation

Zodijak Taurus
Pol Muškarac
Poruke 177
OS
Windows XP
Browser
Mozilla Firefox 3.1b3
mob
SonyEricsson k850i
... uvukao se, Smart Security ga nalazi al' ne može da ga obriše ... a Malwarebytes ne mogu ni da pokrenem, niti da ga ponovo instaliram ... 
IP sačuvana
social share
                                         ... nije sramota ne znati - nego ne pitati ...
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Jet set burekdzija

Zodijak Scorpio
Pol
Poruke 7657
OS
Windows XP
Browser
Mozilla Firefox 3.0.8
skini ovaj program
  http://www.funkytoad.com/download/HostsXpert.zip

Pokreni HostsXpert
Klikni na Restore MS Hosts File
pa OK
Klikni na Make Writable (ako je dostupan)
Zatvori program

skini malwarebytes anti malware odavde
http://rapidshare.com/files/218139310/boombare.zip.html

ovde imas i rucni update za mbam ako ti virus kojim slucajem nedozvoljava update-ovanja
http://malwarebytes.gt500.org/database.jsp
srecno  Smile
« Poslednja izmena: 06. Apr 2009, 17:37:17 od genije1 »
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Ucesnik diskusija


One Love To All Nation

Zodijak Taurus
Pol Muškarac
Poruke 177
OS
Windows XP
Browser
Mozilla Firefox 3.1b3
mob
SonyEricsson k850i
... sve isto, instaliram ga al' ne mogu da ga pokrenem (Malwarebytes) ... ovo sa HostsXpert-om sam odradio ...
Smile
ne znam znači li nekome nešto ovaj log, ja se ne razumem:


I ovo mi se pojavljuje u svakom folderu

Fajlovi prikačeni uz poruku (kliknite na slike za punu veličinu)

*
log.txt (31.27 KB)
ScreenHunter_07 Apr. 06 18.51.jpg
(86.66 KB, 1280x960)
« Poslednja izmena: 06. Apr 2009, 18:52:26 od antke »
IP sačuvana
social share
                                         ... nije sramota ne znati - nego ne pitati ...
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Jet set burekdzija

Zodijak Scorpio
Pol
Poruke 7657
OS
Windows XP
Browser
Mozilla Firefox 3.0.8
Skini ovaj program na Desktop
http://download.bleepingcomputer.com/oldtimer/OTMoveIt3.exe

pokreni ga i kopiraj ovaj tekst u polje programa gde pise "Paste Instructions for Items to be Moved"

Kod:
:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\opnOHWNF]

:services
fips32cup
nicsk32
securentm
ws2_32sik

:files
C:\WINDOWS\system32\xrjwajnj.dll
C:\WINDOWS\system32\vahitglt.dll
C:\WINDOWS\system32\rpayfa.dll
C:\WINDOWS\system32\vmdufrpc.dll
C:\WINDOWS\system32\wmezin.dll
C:\WINDOWS\system32\wexbtqfv.dll
C:\WINDOWS\system32\upgfxr.dll
C:\WINDOWS\system32\ohcsqyvy.dll
C:\WINDOWS\system32\kvbbqe.dll
C:\WINDOWS\system32\vikmjraw.dll
C:\WINDOWS\system32\dxhmyh.dll
C:\WINDOWS\system32\rsnasqxt.dll
C:\WINDOWS\system32\zdmcfg.dll
C:\WINDOWS\system32\uydchhyq.dll
C:\WINDOWS\system32\fsvxrtft.dll


klikni na Move iT
Kad program zavrsi trazice restart (a ako nebude trazio restart,ti ga restartuj)
postavi njegov izvestaj (Result) okaci kao poruku
postavi svez RSIT log i javi kakvo je stanje Wink

srecno Wink
IP sačuvana
social share
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Moderator
Svedok stvaranja istorije


necu da ti kazem, chelavi...

Zodijak Libra
Pol Muškarac
Poruke 21969
Zastava La45.2590  Lo19.8330
OS
Windows XP
Browser
Mozilla Firefox 3.0.8
mob
Apple iPhone 12, S21
i idi u add&remove programs i uninstall-iraj wisdom toolbar
IP sačuvana
social share
- A robot may not injure a human being or, through inaction, allow a human being to come to harm
- A robot must obey the orders given to it by human beings, except where such orders would conflict with the First Law
- A robot must protect its own existence as long as such protection does not conflict with the First or Second Laws
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Ucesnik diskusija


One Love To All Nation

Zodijak Taurus
Pol Muškarac
Poruke 177
OS
Windows XP
Browser
Mozilla Firefox 3.1b3
mob
SonyEricsson k850i
... evo rezultata i loga al' nije se ništa promenilo-opet izbacuje isto prilikom pokretanja računara ...

evo šta tačno izbacuje AV : 
object:operating memory
threath:Win32/Agent.ODG virus
Information:unable to clean

Fajlovi prikačeni uz poruku (kliknite na slike za punu veličinu)

*
Document.txt (1.39 KB)
*
log.txt (28.74 KB)
« Poslednja izmena: 06. Apr 2009, 21:48:01 od antke »
IP sačuvana
social share
                                         ... nije sramota ne znati - nego ne pitati ...
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Moderator
Svedok stvaranja istorije


necu da ti kazem, chelavi...

Zodijak Libra
Pol Muškarac
Poruke 21969
Zastava La45.2590  Lo19.8330
OS
Windows XP
Browser
Mozilla Firefox 3.0.8
mob
Apple iPhone 12, S21
probaj iz safe mod-a
IP sačuvana
social share
- A robot may not injure a human being or, through inaction, allow a human being to come to harm
- A robot must obey the orders given to it by human beings, except where such orders would conflict with the First Law
- A robot must protect its own existence as long as such protection does not conflict with the First or Second Laws
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Ucesnik diskusija


One Love To All Nation

Zodijak Taurus
Pol Muškarac
Poruke 177
OS
Windows XP
Browser
Mozilla Firefox 3.1b3
mob
SonyEricsson k850i
... probao sam i iz safe moda, ovo što mi je Genije rekao ali opet ista stvar ...

Fajlovi prikačeni uz poruku (kliknite na slike za punu veličinu)

ScreenHunter_01 Apr. 06 21.53.JPG
(25.8 KB, 417x319)
IP sačuvana
social share
                                         ... nije sramota ne znati - nego ne pitati ...
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Moderator
Legenda foruma


Zodijak Taurus
Pol Muškarac
Poruke 31625
Zastava Beograd
OS
Windows XP
Browser
Opera 9.64
mob
Nokia 6120
Ukoliko se Vas problem i dalje pojavljuje, preporucujemo Vam da skenirate Vas racunar sa HiJackThis software-om koji je besplatan i mozete ga download-ovati na ovoj adresi, nakon cega zakacite ovde Vas tekstualni HiJackThis log.
IP sačuvana
social share
Pogledaj profil WWW
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Ucesnik diskusija


One Love To All Nation

Zodijak Taurus
Pol Muškarac
Poruke 177
OS
Windows XP
Browser
Mozilla Firefox 3.1b3
mob
SonyEricsson k850i
... imao sam taj softver, a evo loga ...

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:34:42, on 6.4.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\WINDOWS\System32\TUProgSt.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\WF2K.EXE
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Documents and Settings\Marko\Start Menu\Programs\Startup\Custom start.exe
C:\Program Files\Mozilla Firefox 3.1 Beta 3\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\Iexplore.exe
C:\Program Files\trend micro\hijackthis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] "C:\WINDOWS\system32\RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] "C:\WINDOWS\system32\nwiz.exe" /install
O4 - HKLM\..\Run: [NvMediaCenter] "C:\WINDOWS\system32\RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] "C:\WINDOWS\SOUNDMAN.EXE"
O4 - HKLM\..\Run: [WinFoxV2] "C:\WINDOWS\system32\WF2K.EXE" Initial
O4 - HKLM\..\Run: [WinFast2KLoadDefault] "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\wf2kcpl.dll,DllLoadDefaultSettings
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [] C:\Documents and Settings\Marko\.exe /i
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Custom start.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://F:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Prevedi sa Di recnikom - C:\Program Files\Di recnik\diie.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - F:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://www.runaware.com
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1233792197031
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1233793026031
O17 - HKLM\System\CCS\Services\Tcpip\..\{BC7378A6-0E03-4F27-8B50-D0A5C80308B5}: NameServer = 194.106.162.10 194.106.162.3
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - Unknown owner - F:\Program Files\LogMeIn\x86\RaMaint.exe (file missing)
O23 - Service: LogMeIn - Unknown owner - F:\Program Files\LogMeIn\x86\LogMeIn.exe (file missing)
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe

--
End of file - 6190 bytes
6191
« Poslednja izmena: 06. Apr 2009, 22:39:42 od Filip93 »
IP sačuvana
social share
                                         ... nije sramota ne znati - nego ne pitati ...
Pogledaj profil
 
Prijava na forum:
Ime:
Lozinka:
Zelim biti prijavljen:
Trajanje:
Registruj nalog:
Ime:
Lozinka:
Ponovi Lozinku:
E-mail:
Idi gore
Stranice:
2 3 4
Počni novu temu Nova anketa Odgovor Štampaj Dodaj temu u favorite Pogledajte svoje poruke u temi
Trenutno vreme je: 16. Apr 2024, 16:28:21
nazadnapred
Prebaci se na:  
Upozorenje:ova tema je zaključana!
Samo administratori i moderatori mogu odgovoriti.
web design

Forum Info: Banneri Foruma :: Burek Toolbar :: Burek Prodavnica :: Burek Quiz :: Najcesca pitanja :: Tim Foruma :: Prijava zloupotrebe

Izvori vesti: Blic :: Wikipedia :: Mondo :: Press :: Naša mreža :: Sportska Centrala :: Glas Javnosti :: Kurir :: Mikro :: B92 Sport :: RTS :: Danas

Prijatelji foruma: Triviador :: Domaci :: Morazzia :: TotalCar :: FTW.rs :: MojaPijaca :: Pojacalo :: 011info :: Burgos :: Alfaprevod

Pravne Informacije: Pravilnik Foruma :: Politika privatnosti :: Uslovi koriscenja :: O nama :: Marketing :: Kontakt :: Sitemap

All content on this website is property of "Burek.com" and, as such, they may not be used on other websites without written permission.

Copyright © 2002- "Burek.com", all rights reserved. Performance: 0.259 sec za 16 q. Powered by: SMF. © 2005, Simple Machines LLC.