virus Jahanam
Capeeeeeeeeeeeeeeeeek………….
sehari penuh berurusan ma virus kutil….
bangsat dah ma yang bikin virus!
ngapain lagi bikin virus?
bikin program yang nge-hack bank skalian, trus donaturkan tuh dana ma orang2 miskin
yang butuh tuh uang buat makan sehari-hari..
apa kalian dah ngerasa hebat, ngegangguin komputer orang lain?
apa kalian dah ngerasa canggih, masuk komputer orang lain tanpa ijin?
bikin dong program yang bisa bener2 ngedetek kematian, ngehitung dosa-dosa kalian
biar bisa kalian kalkulasikan, kapan masuk surga, berapa lama di neraka?
emang bisa? -> aku beli ma hidupku juga gak bakalan bisa.
untung aja virus kali ini nggak nge-hide file yg penting2 (regedit, msconfig, msdos, task manager)
thanks kaspersky, dah bantu ngedeteksi meskipun nggak bisa nanggulangin
mulai dari ngelihatin task manager setiap kali
nyariin mana yang aneh2 filenya or tiba2 ngepake CPU proses
bikinin program anti restart/shutdown via .bat, cause setiap kali
kill proses lewat task manager, tiba2 muncul shutdown otomotis via RPL,
mujur juga kmarin ngebaca tutorial ms-dos promt :P, so bisa bikin program lewat bat file
- sempetin sms-an ma temen2 (ema, fifah, topan, hombreng, engkeh, nanet, dina) -> sedikit refreshing
virus sempat meronta-ronta karena kaspersky ngeblok untuk menulisi registry yg nggak wajar, nah dari sini aku tahu
registry mana yang dipakek tuh virus (jadi inget si Topan kmarin kena remote
)
tapi muncul masalah baru, ternyata delete dari windows nggak bisa….
tanpa berpikir panjang ku pake cara kuno, ms-dos prompt, alhamdulillah bisa
Virus pun tak berkutik, bye bye virus :d
oleh kaspersky ke deteksi
deleted: Trojan program Trojan.Win32.VB.aqx File: D:\Hasan\bank soal PG\bank soal PG.exe//ASPack
deleted: Trojan program Trojan.Win32.Agent.cyt File: F:\sysvxbi.exe
deleted: virus Worm.Win32.VB.jq File: G:\New Folder.exe
deleted: Trojan program Trojan.Win32.Delf.akm File: G:\ms~~\gg.exe
deleted: Trojan program Trojan.Win32.Qhost.ait File: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\96NUEX50\run[1].gif
deleted: malware SpamTool.Win32.Agent.gg File: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\STI30LIF\helper[1].gif
deleted: Trojan program Trojan.Win32.Qhost.aei File: C:\WINDOWS\hosts
deleted: malware SpamTool.Win32.Agent.gg File: C:\WINDOWS\system\helper.exe
not found: Trojan program Trojan.Win32.Qhost.ait File: C:\WINDOWS\system\run.exe
not found: Trojan program Trojan-Downloader.BAT.Ftp.ab File: C:\WINDOWS\system32\i
not found: Trojan program Trojan.Win32.Qhost.aei File: C:\WINDOWS\system32\drivers\hosts
not found: Trojan program Trojan.Win32.Qhost.aei File: C:\WINDOWS\system32\drivers\etc\hosts
deleted: malware SpamTool.Win32.Agent.gg File: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\30QN39NG\helper[1].gif
detected: malware SpamTool.Win32.Agent.gg URL: http://72.10.166.197/~mywebres/image/helper.gif
detected: Trojan program Trojan.Win32.Qhost.ait URL: http://72.10.166.197/~mywebres/image/run.gif
detected: riskware Hidden install Running process: C:\mstn.exe
deleted: Trojan program Backdoor.Win32.Rbot.isi File: C:\WINDOWS\system32\remm.exe
detected: Trojan program Trojan-Downloader.Win32.VB.aey URL: http://194.126.174.76/~ftpaccount/tosoft.profit//PE_Patch.PECompact//PecBundle//PECompact
detected: riskware Mass-mailer software Running process: C:\WINDOWS\system\nadlocop.exe
October 2nd, 2008 at 3:35 am
nice blog, thanks
buy diflucan
December 2nd, 2008 at 12:49 am
ada yang bisa ngembalikin file exe yang kena virus gak? jadi kayanya virus masuk ke tubuh exe file gw neh. tolong bantuanya kirim ke darma.arroyyan@gmail.com
TQ