Results 1 to 14 of 14
http://idgs.in/112502
  1. #1
    dragon_turbo's Avatar
    Join Date
    Oct 2006
    Location
    Warnet
    Posts
    131
    Points
    165.80
    Thanks: 0 / 1 / 1

    Default Need Anti Virus >.<

    Need Anti Virus bwt ngilangin virus bikin deepfreeze jadi not responding ..
    tq iaah.. >.<

    Cheat ? = KelauT !!

  2. Hot Ad
  3. #2
    rizzuh's Avatar
    Join Date
    Oct 2006
    Location
    Bandung, Indonesia, Indonesia
    Posts
    671
    Points
    1,308.90
    Thanks: 2 / 14 / 10

    Default

    buat warnet atau personal ?

  4. #3

    Join Date
    Mar 2008
    Location
    Jogjakarta
    Posts
    179
    Points
    208.90
    Thanks: 0 / 0 / 0

    Default

    kalo virus bikin deepfrezze ga responding bisanya tuh virus nyerang .exe, so kalo diinstall antivirus pun juga akan percuma, karena antivirus mengandung palikasi.exe juga (langsung terinfeksi), kalo itu virus lokal, malah biasanya "mereka" bisa mendetect adanya antivirus, dan berusaha mendisable feature2 yg ada di antivirus itu (termasuk blokir proses installasinya) ...

    pengin aman ya, copot HDmu lalu cr pc lain (sodara/temen) yg dah terinstall AV, lalu HDmu jade slave, scan pk pc yg lain itu...

    salam,
    saya

  5. #4
    dragon_turbo's Avatar
    Join Date
    Oct 2006
    Location
    Warnet
    Posts
    131
    Points
    165.80
    Thanks: 0 / 1 / 1

    Default

    @rizzuh bwt warnet nih..

    @kojoman
    nama virusnya alman.NAB?
    apa trojan iah..

    Cheat ? = KelauT !!

  6. #5
    rizzuh's Avatar
    Join Date
    Oct 2006
    Location
    Bandung, Indonesia, Indonesia
    Posts
    671
    Points
    1,308.90
    Thanks: 2 / 14 / 10

    Default

    sedikit info buat virusnya

    Spoiler untuk virus :
    Executable files infection

    The virus searches for executables on local drives. Infection is attempted only if an executable is not in a folder that contains one of the following strings in the name:

    LOCAL SETTINGS\TEMP\
    \QQ
    \WINNT\
    \WINDOWS\

    Files with following names are not infected:

    /0xB4/0xF3/0xBB/0xB0/0xCE/0xF7/0xD3/0xCE/.exe
    asktao.exe
    au_unins_web.exe
    audition.exe
    autoupdate.exe
    ca.exe
    cabal.exe
    cabalmain.exe
    cabalmain9x.exe
    config.exe
    dbfsupdate.exe
    dk2.exe
    dragonraja.exe
    flyff.exe
    game.exe
    gc.exe
    hs.exe
    kartrider.exe
    main.exe
    maplestory.exe
    meteor.exe
    mhclient-connect.exe
    mjonline.exe
    mts.exe
    nbt-dragonraja2006.exe
    neuz.exe
    nmcosrv.exe
    nmservice.exe
    nsstarter.exe
    patcher.exe
    patchupdate.exe
    sealspeed.exe
    trojankiller.exe
    userpic.exe
    wb-service.exe
    woool.exe
    wooolcfg.exe
    xlqy2.exe
    xy2.exe
    xy2player.exe
    zfs.exe
    zhengtu.exe
    ztconfig.exe
    zuonline.exe

    Several other criteria are applied when choosing a file to infect. Executables are infected by appending the code of the virus to the last section. Size of the code inserted is 38912 B.

    Spreading via shared folders

    The virus tries to copy itself in shared folders of machines on a local network. The following filename is used:

    setup.exe

    The file is then remotely executed. The virus contains a list of passwords that are tried when accessing remote machines.

    Spreading on removable media

    The virus copies itself in root folders of removable drives using the following filename:

    boot.exe

    The following file is created in the same folders:

    autorun.inf

    This causes the virus to be executed when an infected media is inserted.

    Other information

    The following programs are terminated:

    c0nime.exe
    cmdbcs.exe
    ctmontv.exe
    explorer.exe
    fuckjacks.exe
    iexpl0re.exe
    iexplore.exe
    internat.exe
    logo_1.exe
    logo1_.exe
    lsass.exe
    lying.exe
    msdccrt.exe
    msvce32.exe
    ncscv32.exe
    nvscv32.exe
    realschd.exe
    rpcs.exe
    run1132.exe
    rundl132.exe
    smss.exe
    spo0lsv.exe
    spoclsv.exe
    ssopure.exe
    svhost32.exe
    svch0st.exe
    sxs.exe
    sysbmw.exe
    sysload3.exe
    tempicon.exe
    upxdnd.exe
    wdfmgr32.exe
    wsvbs.exe

    The virus can send various information to a remote machine over the Internet.


    virus removal khusus buat alman semoga membantu

    removal

  7. #6
    dragon_turbo's Avatar
    Join Date
    Oct 2006
    Location
    Warnet
    Posts
    131
    Points
    165.80
    Thanks: 0 / 1 / 1

    Default

    @rizzuh tq bos..
    btw , itu kn masi ada deepfreeze..
    deepfreezenya gk bisa di unable ..
    ada cara yg lain slain format?

    Cheat ? = KelauT !!

  8. #7
    imanuel_fc's Avatar
    Join Date
    Jun 2008
    Location
    Bekasi, Di depan PC.
    Posts
    1,093
    Points
    1,277.70
    Thanks: 0 / 2

    Default

    btw, Task Manager gw disabled ama admin . .
    padahal gw admin (di rumah, pake XP) . . .
    regedit juga di disabled . .
    kena virus apa ya???

    uda discan pake Avira & PC Media clean smua (uda diupdate) . .


    ada yg bisa bantu???

  9. #8
    produkgagal2's Avatar
    Join Date
    Oct 2006
    Posts
    326
    Points
    381.20
    Thanks: 0 / 0 / 0

    Default

    cara unistall deepfreeze selain format??
    ada, cuamn rada ribet mesti make semacam live cd
    coba googling aja.

  10. #9
    kopenk's Avatar
    Join Date
    Oct 2006
    Location
    depan monitor
    Posts
    1,943
    Points
    10,001.27
    Thanks: 4 / 5 / 5

  11. #10
    rizzuh's Avatar
    Join Date
    Oct 2006
    Location
    Bandung, Indonesia, Indonesia
    Posts
    671
    Points
    1,308.90
    Thanks: 2 / 14 / 10

    Default

    Quote Originally Posted by imanuel_fc View Post
    btw, Task Manager gw disabled ama admin . .
    padahal gw admin (di rumah, pake XP) . . .
    regedit juga di disabled . .
    kena virus apa ya???

    uda discan pake Avira & PC Media clean smua (uda diupdate) . .


    ada yg bisa bantu???
    lumayan banyak virus yang behaviornya ky gt

    sekedar sharing gw ada cara buat home user untuk mencegah dari PC nya dijangkiti oleh flashdisk yang memakai autorun sebagai sarana buat infect. UAC vista pun bisa di"akalin" dengan autorun dari removable device

    dengan mengubah registry sehingga komputer tidak akan pernah mengexecute autorun.inf ( yang biasa ada di dalam flashdisk atau HDD ), caranya.

    buat file noautorun.reg dengan isi sbb

    REGEDIT4
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\Autorun.inf]
    @="@SYSoesNotExist"

    save kemudian klik kanan (pada file ) dan pilih merge

  12. #11
    dragon_turbo's Avatar
    Join Date
    Oct 2006
    Location
    Warnet
    Posts
    131
    Points
    165.80
    Thanks: 0 / 1 / 1

    Default

    wahh" tq iah smwa..
    jalan pintas di anggap pantas = format da..
    uda 30 kompie tadi mlm saia kerjain huFF~~
    @imanuel fc
    uda prnah scan pake nod32?
    dl gw jg prnah kena.. scan pake itu bisa di clean c..

    Cheat ? = KelauT !!

  13. #12
    imanuel_fc's Avatar
    Join Date
    Jun 2008
    Location
    Bekasi, Di depan PC.
    Posts
    1,093
    Points
    1,277.70
    Thanks: 0 / 2

    Default

    Quote Originally Posted by rizzuh View Post
    lumayan banyak virus yang behaviornya ky gt

    sekedar sharing gw ada cara buat home user untuk mencegah dari PC nya dijangkiti oleh flashdisk yang memakai autorun sebagai sarana buat infect. UAC vista pun bisa di"akalin" dengan autorun dari removable device

    dengan mengubah registry sehingga komputer tidak akan pernah mengexecute autorun.inf ( yang biasa ada di dalam flashdisk atau HDD ), caranya.

    buat file noautorun.reg dengan isi sbb

    REGEDIT4
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\Autorun.inf]
    @="@SYSoesNotExist"

    save kemudian klik kanan (pada file ) dan pilih merge


    bikin pake apa??notepad???

    biar task manager bisa dibuka lagi, gmana caranya??

  14. #13
    produkgagal2's Avatar
    Join Date
    Oct 2006
    Posts
    326
    Points
    381.20
    Thanks: 0 / 0 / 0

    Default

    iya pake notepad bisa, save aja exstensinya dalama bentuk .reg kan dah di sebut di atas

  15. #14
    akillis's Avatar
    Join Date
    Jun 2008
    Location
    palembang
    Posts
    48
    Points
    67.30
    Thanks: 0 / 0 / 0

    Default

    coba ganti depfrezze nya dengan yang lain om... seperti roolback dijamin tidak berpengaruh oleh anti virus.. karena dia memiliki OS tersendiri, diluar dari system yg dijalanin...

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •