ope4.exe - Dangerous
ope4.exe
Manual removal instructions:
Antivirus Report of ope4.exe:
ope4.exe
We suggest you to remove ope4.exe from your computer as soon as possible.
Ope4.exe is Trojan/Backdoor.
Kill the process ope4.exe and remove ope4.exe from Windows startup.
Malware: asd23434ff.exe
Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\ope4.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\svchosty.exe
C:\WINDOWS\lsass.exe
C:\WINDOWS\svc.exe
C:\WINDOWS\svw.exe
Detected by UnHackMe:
Item Name: netw
Author: Unknown
Related File: C:\WINDOWS\SVW.EXE
Type: Registry Run
Item Name: lsass
Author: Unknown
Related File: C:\WINDOWS\LSASS.EXE
Type: Registry Run
Item Name: netc
Author: Unknown
Related File: C:\WINDOWS\SVC.EXE
Type: Registry Run
Item Name: svw.exe
Author: Unknown
Related File: C:\WINDOWS\SVW.EXE
Type: Running Processes
Item Name: lsass.exe
Author: Unknown
Related File: C:\WINDOWS\LSASS.EXE
Type: Running Processes
Item Name: svc.exe
Author: Unknown
Related File: C:\WINDOWS\SVC.EXE
Type: Running Processes
Item Name: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ope4.exe
Author: Unknown
Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\OPE4.EXE
Type: Registry Run
Item Name: svchosty.exe
Author: Unknown
Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\SVCHOSTY.EXE
Type: Running Processes
After first reboot detected by UnHackMe:
Removal Results: Success
Number of reboot: 1
Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.04.19 Gen:Heur.Krypt.26
Kaspersky 7.0.0.125 2010.04.19 Packed.Win32.Katusha.j
McAfee 5.400.0.1158 2010.04.19 FakeAlert-MY.gen
Microsoft 1.5605 2010.04.19 TrojanDropper:Win32/Microjoin.gen!B
NOD32 5040 2010.04.19 a variant of Win32/Kryptik.DSA
Additional information
File size: 1654272 bytes
MD5 : 74d53dce86d091f0aa8a656cc6882bd1
SHA1 : 5cec40f5babebf051fde79b18aba6fca7295c727
SHA256: cc8c62ad4b0f61f6ead3fdfb6feb8f3982cc0eb09eab70abeda8abfa67dbbe57
http://greatis.com/blog/how-to-remove-ma...
ope4.exe | Malware |
ope4.exe | Dangerous |
ope4.exe | High Risk |
Ope4.exe is Trojan/Backdoor.
Kill the process ope4.exe and remove ope4.exe from Windows startup.
Malware: asd23434ff.exe
Removed: C:\Documents and Settings\Administrator\Local Settings\Temp\ope4.exe
C:\Documents and Settings\Administrator\Local Settings\Temp\svchosty.exe
C:\WINDOWS\lsass.exe
C:\WINDOWS\svc.exe
C:\WINDOWS\svw.exe
Detected by UnHackMe:
Item Name: netw
Author: Unknown
Related File: C:\WINDOWS\SVW.EXE
Type: Registry Run
Item Name: lsass
Author: Unknown
Related File: C:\WINDOWS\LSASS.EXE
Type: Registry Run
Item Name: netc
Author: Unknown
Related File: C:\WINDOWS\SVC.EXE
Type: Registry Run
Item Name: svw.exe
Author: Unknown
Related File: C:\WINDOWS\SVW.EXE
Type: Running Processes
Item Name: lsass.exe
Author: Unknown
Related File: C:\WINDOWS\LSASS.EXE
Type: Running Processes
Item Name: svc.exe
Author: Unknown
Related File: C:\WINDOWS\SVC.EXE
Type: Running Processes
Item Name: C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\ope4.exe
Author: Unknown
Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\OPE4.EXE
Type: Registry Run
Item Name: svchosty.exe
Author: Unknown
Related File: C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMP\SVCHOSTY.EXE
Type: Running Processes
After first reboot detected by UnHackMe:
Removal Results: Success
Number of reboot: 1
Classification:Antivirus Version Last Update Result
F-Secure 9.0.15370.0 2010.04.19 Gen:Heur.Krypt.26
Kaspersky 7.0.0.125 2010.04.19 Packed.Win32.Katusha.j
McAfee 5.400.0.1158 2010.04.19 FakeAlert-MY.gen
Microsoft 1.5605 2010.04.19 TrojanDropper:Win32/Microjoin.gen!B
NOD32 5040 2010.04.19 a variant of Win32/Kryptik.DSA
Additional information
File size: 1654272 bytes
MD5 : 74d53dce86d091f0aa8a656cc6882bd1
SHA1 : 5cec40f5babebf051fde79b18aba6fca7295c727
SHA256: cc8c62ad4b0f61f6ead3fdfb6feb8f3982cc0eb09eab70abeda8abfa67dbbe57
http://greatis.com/blog/how-to-remove-ma...
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.