<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2enclosuresfull.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearchrss/1.0/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:media="http://search.yahoo.com/mrss/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0"><channel><atom:id>tag:blogger.com,1999:blog-38872205</atom:id><lastBuildDate>Sun, 15 Apr 2012 23:00:47 +0000</lastBuildDate><title>Kurniawan's Anti Virus</title><description /><link>http://kurniawanantivirus.blogspot.com/</link><managingEditor>noreply@blogger.com (Kurniawan)</managingEditor><generator>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/KurniawansAntiVirus" /><feedburner:info uri="kurniawansantivirus" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><itunes:owner><itunes:email>noreply@blogger.com</itunes:email></itunes:owner><itunes:explicit>no</itunes:explicit><itunes:subtitle></itunes:subtitle><item><guid isPermaLink="false">tag:blogger.com,1999:blog-38872205.post-117111729363081678</guid><pubDate>Sat, 10 Feb 2007 14:17:00 +0000</pubDate><atom:updated>2007-02-10T06:21:33.650-08:00</atom:updated><title>Indonesian's AntiVirus</title><description>May be someone need this information... &lt;br /&gt;Just incase if someone need this help...&lt;br /&gt;&lt;br /&gt;  &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Leena&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : word, Ukuran : 76 KB ,File Ext : .exe&lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      # c:\Documents and Settings\All Users\Application Data\Normal.exe&lt;br /&gt;      # c:\Documents and Settings\[USER]\Local Settings\Application Data\[USER].task\services.exe&lt;br /&gt;      # c:\Documents and Settings\[USER]\Local Settings\Temp\lsass.exe&lt;br /&gt;      # c:\WINDOWS\ExeServ.exe&lt;br /&gt;      # C:\WINDOWS\System32\controls.exe&lt;br /&gt;      # c:\WINDOWS\system32\3D Soccer.scr&lt;br /&gt;      # C:\WINDOWS\Tasks\leena.job&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Removir : http://www.macancrew.net/removir/mM_Removir.zip&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : yogo / the greatless&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : word, Ukuran : 64 KB ,File Ext : .scr&lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  ?:\WINDOWS\system32\Msconfig.exe&lt;br /&gt;      #  ?:\WINDOWS\LastGood\system32\regwiz.exe&lt;br /&gt;      #  ?:\WINDOWS\MSGSRV32.COM&lt;br /&gt;      #  ?:\WINDOWS\system32\KERNEL.VDX&lt;br /&gt;      #  ?:\WINDOWS\system32\RPCSS.VDX&lt;br /&gt;      #  ?:\WINDOWS\system32\CIRRUSX.OXC&lt;br /&gt;      #  ?:\WINDOWS\system32\DDRAWXP.OXC&lt;br /&gt;&lt;br /&gt;      Removir : http://www.macancrew.net/removir/Rem_yogo.zip&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Tinutuan_B&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : JPEG/ACDSee 7.0, Ukuran : 44 KB &lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  ?:\WINDOWS\system32\ganemo45.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\Kota-Tinu.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\kangkung45.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\sambiki45.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\drivers\gedi.exe&lt;br /&gt;      #  ?:\Documents and Settings\USER\Local Settings\winfile.exe&lt;br /&gt;      #  ?:\Documents and Settings\USER\My Documents\My Pictures\My Pictures.exe&lt;br /&gt;      #  ?:\Documents and Settings\USER\My Documents\My Music\My Music.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\3D Screen Saver.scr&lt;br /&gt;      #  ?:\WINDOWS\system32\MCR Screen Saver.scr&lt;br /&gt;      #  ?:\WINDOWS\system32\Romantic Rapshody Saver.scr&lt;br /&gt;      #  ?:\WINDOWS\system32\Laskar Cinta Saver.scr&lt;br /&gt;      #  ?:\WINDOWS\system32\3D Animation Saver.scr&lt;br /&gt;      #  ?:\Documents and Settings\USER\Start Menu\Programs\Startup\milu.bat&lt;br /&gt;      #  ?:\TINUTUAN.TXT&lt;br /&gt;      # Loader : Winlogon Shell ==&gt; ?:\WINDOWS\system32\drivers\gedi.exe&lt;br /&gt;      # Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\message ==&gt; ?:\WINDOWS\System32\config\smss.cmd&lt;br /&gt;      # Loader : HKCU\Software\Microsoft\Windows\CurrentVersion\Run\manado-kota-tinutuan ==&gt; ?:\WINDOWS\System32\Kota-Tinu.exe&lt;br /&gt;&lt;br /&gt;      Removir : http://www.macancrew.net/removir/Rem_Tinutuan_B.zip&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : My_Service&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 30 KB , File Ext : .exe&lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  ?:\WINDOWS\lsass.exe&lt;br /&gt;      #  ?:\WINDOWS\services.exe&lt;br /&gt;      #  ?:\WINDOWS\smss.exe&lt;br /&gt;      #  ?:\WINDOWS\WINDOWS.exe&lt;br /&gt;      #  ?:\windows operation.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\services.com&lt;br /&gt;      #  ?:\WINDOWS\system32\cmd.com&lt;br /&gt;      #  ?:\WINDOWS\win.com&lt;br /&gt;      #  ?:\WINDOWS\cmd.com&lt;br /&gt;      #  ?:\Documents and Settings\USER\Local Settings\Application Data\system.com&lt;br /&gt;      #  ?:\WINDOWS\system32\auto.bat&lt;br /&gt;      # Loader : HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Ini Service Ku ==&gt; ?:\WINDOWS\system32\services.com&lt;br /&gt;&lt;br /&gt;      Removir : http://www.macancrew.net/removir/Rem_My_Service.zip&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : mig2&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 129 KB , File Ext : .exe&lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      # Membuat Folder mig2 di tiap drive yg berisi New Folder.exe dan Folder.htt&lt;br /&gt;      # Membuat File ke tiap drive dengan nama : Data %USER%.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Startup\Startup .exe&lt;br /&gt;      #  ?:\WINDOWS\system32\IExplorer.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\GroupPolicy\Machine\Scripts\Startup\Startup .exe&lt;br /&gt;      #  ?:\WINDOWS\WINDOWS .exe&lt;br /&gt;      #  ?:\WINDOWS\mig2 .exe&lt;br /&gt;      #  ?:\Documents and Settings\Default User\Start Menu\Programs\Startup\Startup .exe&lt;br /&gt;      #  ?:\Documents and Settings\All Users\Start Menu\Programs\Startup\Empty .exe&lt;br /&gt;      #  ?:\Documents and Settings\All Users\Start Menu\Programs\Startup\Startup .exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\WINLOGON.EXE&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\CSRSS.EXE&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\SERVICES.EXE&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\LSASS.EXE&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\SMSS.EXE&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\SERVICES .exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\LSASS .exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\WINLOGON .exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\CSRSS .exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Start Menu\Programs\Startup\Startup .exe&lt;br /&gt;      # Loader : HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MSMSGS ==&gt; ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\WINLOGON.EXE\"&lt;br /&gt;      # Loader : HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Service[USER] ==&gt; ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\SERVICES.EXE&lt;br /&gt;      # Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Logon[USER] ==&gt; ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\CSRSS.EXE&lt;br /&gt;      # Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\System Monitoring ==&gt; ?:\Documents and Settings\[USER]\Local Settings\Application Data\WINDOWS\LSASS.EXE&lt;br /&gt;&lt;br /&gt;      Removir : http://www.macancrew.net/removir/Rem_Mig2.zip&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Buff-exe&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 53 KB , File Ext : .exe&lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  C:\buff.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\algserv.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\svcmain.exe&lt;br /&gt;      #  ?:\WINDOWS\system32\vrsserv.exe&lt;br /&gt;      # Loader : HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\wmserv ==&gt; ?:\WINDOWS\system32\svcmain.exe&lt;br /&gt;      # Loader : HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\algserv ==&gt; ?:\WINDOWS\system32\algserv.exe&lt;br /&gt;&lt;br /&gt;   &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Bangsat_A&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 105 KB , File Ext : .exe&lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  ?:\WINDOWS\security\System.exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\smss.exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\services.exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\lsass.exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\inetinfo.exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\csrss.exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Local Settings\Application Data\winlogon.exe&lt;br /&gt;      #  ?:\Documents and Settings\[USER]\Templates\DIA 54TR10.com&lt;br /&gt;      # Loader : HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Remove 54tr10 ==&gt; ?:\Documents and Settings\[USER]\Local Settings\Application Data\smss.exe&lt;br /&gt;      # Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\New Anti Virus ==&gt; ?:\WINDOWS\Security\System.exe&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Flu_Ikan&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 76 KB&lt;br /&gt;      # Membuat File berikut ini :&lt;br /&gt;       c:\WINDOWS\FishDemon.exe&lt;br /&gt;       c:\WINDOWS\Help\(Nama file Random) mis : D85U68N85U.exe, J66T74E84B.exe, L78V76Q86N.exe &lt;br /&gt;       c:\WINDOWS\system32\config\(Nama file Random) mis : D85U68N85U.exe, J66T74E84B.exe, L78V76Q86N.exe &lt;br /&gt;       c:\aliases.ini&lt;br /&gt;       c:\script.ini&lt;br /&gt;       c:\Documents and Settings\[CURRENT_USER]\My Documents\Flu-Ikan.htm&lt;br /&gt;      # Loader di Msconfig : &lt;br /&gt;         - kebodohan &lt;br /&gt;         - pemalas &lt;br /&gt;         - mulut_besar &lt;br /&gt;         - otak_udang &lt;br /&gt;      # Men-Disable Klik-Kanan di Desktop &amp; Windows Explorer&lt;br /&gt;      # Mengganti Tampilan Desktop Dengan ID Romantic Devil.R&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : ABG-Aceh&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 220 KB &lt;br /&gt;      # Membuat File berikut ini :&lt;br /&gt;           C:\Program Files\Service.exe&lt;br /&gt;           C:\ABG-Aceh.exe&lt;br /&gt;      # Berusaha membuat File berikut ini :&lt;br /&gt;           D:\ABG-Aceh.exe&lt;br /&gt;           E:\ABG-Aceh.exe&lt;br /&gt;           F:\ABG-Aceh.exe&lt;br /&gt;           G:\ABG-Aceh.exe&lt;br /&gt;           H:\ABG-Aceh.exe&lt;br /&gt;      # Loader di Msconfig : &lt;br /&gt;         - Service App (memanggil C:\Program Files\Service.exe)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : SHELLYNT&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Setup/Installer, Ukuran : 23 KB &lt;br /&gt;      # Membuat File berikut ini :&lt;br /&gt;         - C:\WINDOWS\Config\smss.exe&lt;br /&gt;         - C:\WINDOWS\system32\config\systemprofile\Local Settings\services.exe&lt;br /&gt;         - C:\WINDOWS\system32\Rundll.exe&lt;br /&gt;         - C:\fix.com&lt;br /&gt;         - C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe.pif&lt;br /&gt;         - C:\WINDOWS\check.pif&lt;br /&gt;      # Copy File ke Flashdisk dengan nama :&lt;br /&gt;         - Computer.exe (Dengan Icon File Setup/Installer)&lt;br /&gt;      # Loader di Msconfig : &lt;br /&gt;         - Shellynt&lt;br /&gt;         - Fault&lt;br /&gt;      # Mengubah Label Drive C:\ menjadi SHELLYNT&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Sensasi.A.5tr10&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 38 KB &lt;br /&gt;      # Membuat File berikut ini :&lt;br /&gt;           C:\Documents and Settings\USER\Local Settings\Application Data\csrss.exe&lt;br /&gt;           C:\Documents and Settings\USER\Local Settings\Application Data\inetinfo.exe&lt;br /&gt;           C:\Documents and Settings\USER\Local Settings\Application Data\lsass.exe&lt;br /&gt;           C:\Documents and Settings\USER\Local Settings\Application Data\services.exe&lt;br /&gt;           C:\Documents and Settings\USER\Local Settings\Application Data\smss.exe&lt;br /&gt;           C:\Documents and Settings\USER\Local Settings\Application Data\winlogon.exe&lt;br /&gt;           C:\WINDOWS\system32\Svchos.exe&lt;br /&gt;           C:\Documents and Settings\USER\Templates\54TR10 AJA.com&lt;br /&gt;           C:\WINDOWS\system32\USER\'s Setting.scr&lt;br /&gt;           C:\Documents and Settings\USER\Start Menu\Programs\Startup\Start.pif&lt;br /&gt;      # Loader di Msconfig : &lt;br /&gt;         - ADie suka kamu &lt;br /&gt;         - SaTRio ADie X &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 58 KB &lt;br /&gt;      # Membuat File berikut ini :&lt;br /&gt;           C:\Documents and Settings\USER\Desktop\Windows Explorer.exe&lt;br /&gt;           C:\Documents and Settings\USER\Start Menu\Programs\Startup\Romantic-Devil.R.exe&lt;br /&gt;           C:\Documents and Settings\USER\Templates\csrss.exe&lt;br /&gt;           C:\Documents and Settings\USER\Templates\inetinfo.exe&lt;br /&gt;           C:\Documents and Settings\USER\Templates\lsass.exe&lt;br /&gt;           C:\Documents and Settings\USER\Templates\services.exe&lt;br /&gt;           C:\Documents and Settings\USER\Templates\smss.exe&lt;br /&gt;           C:\Documents and Settings\USER\Templates\winlogon.exe&lt;br /&gt;           C:\WINDOWS\CintaButa.exe&lt;br /&gt;           C:\WINDOWS\eksplorasi.exe&lt;br /&gt;           C:\WINDOWS\FirstLove.exe&lt;br /&gt;           C:\WINDOWS\KesenjanganSosial.exe&lt;br /&gt;           C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\csrss.exe&lt;br /&gt;           C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\inetinfo.exe&lt;br /&gt;           C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\lsass.exe&lt;br /&gt;           C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\services.exe&lt;br /&gt;           C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\smss.exe&lt;br /&gt;           C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\winlogon.exe&lt;br /&gt;      # Loader di Msconfig : &lt;br /&gt;         - SysDiaz &lt;br /&gt;         - SysYuni &lt;br /&gt;         - SysRia &lt;br /&gt;         - SysDokterGila &lt;br /&gt;         - DllHost&lt;br /&gt;         - Pluto &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Kantuk&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Microsoft Word, Ukuran : 56 KB &lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  C:\WINDOWS\system32\system.exe&lt;br /&gt;      # Copy File ke Flashdisk dengan nama :&lt;br /&gt;         - Kantuk.exe (Dengan Icon Microsoft Word)&lt;br /&gt;      # Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\SymRun ==&gt; C:\WINDOWS\System32\system.exe&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : NewInfo&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : Folder, Ukuran : 324 KB&lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  c:\WINDOWS\system32\lsvrss.exe&lt;br /&gt;      # Copy File ke Flashdisk dengan nama :&lt;br /&gt;         - DocumentFolder.exe&lt;br /&gt;         - NewInfo.htm&lt;br /&gt;      # Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\SysIDstr ==&gt; c:\WINDOWS\system32\lsvrss.exe&lt;br /&gt;      # Loader : HKCU\Software\Microsoft\Windows\CurrentVersion\Run\DocumentInfo ==&gt; c:\WINDOWS\system32\lsvrss.exe&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : My Song.mp3&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      # Icon Virus : mp3, Ukuran : 60 KB &lt;br /&gt;      # Membuat file berikut ini :&lt;br /&gt;      #  c:\WINDOWS\system32\moviex.exe&lt;br /&gt;      #  c:\WINDOWS\system32\sysconf.dlI&lt;br /&gt;      #  c:\WINDOWS\system32\system.dlI&lt;br /&gt;      #  c:\WINDOWS\system32\COMCTL32.PID&lt;br /&gt;      # Copy File ke Flashdisk dengan nama :&lt;br /&gt;         - My Song.mp3.exe (Dengan Icon Mp3)&lt;br /&gt;      # Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\SysData ==&gt; C:\WINDOWS\System32\moviex.exe&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : LayOut.htt&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      - Icon : notepad, Ukuran : 103 KB&lt;br /&gt;      - Membuat file Windowsdir taskmgr.exe &lt;br /&gt;      - Membuat file layout.htt&lt;br /&gt;      - Membuat file system.exe &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Gadis Unmul&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      - Icon : Folder, Ukuran : 72 KB&lt;br /&gt;      - Membuat file c:\unmul_gadis_pesan@@@.doc&lt;br /&gt;      - Membuat file [%WINDOWS%]\system\tsunnammii__B.exe&lt;br /&gt;      - Membuat file [%WINDOWS%]\tsunnammii__B.exe&lt;br /&gt;      - Membuat file [%SYSTEM%]\[%USERNAME%].exe&lt;br /&gt;      - Menambahkan My Document di Control Panel&lt;br /&gt;      - Menambahkan My Document di Desktop&lt;br /&gt;      - Menambahkan gadis_unmul di Startup&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Borlas / Animasi&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      - Icon : Flash, Ukuran : 410KB&lt;br /&gt;      - Membuat file animasi.exe di semua drive&lt;br /&gt;      - Membuat file WindowsDir java\classes\Animasi.exe&lt;br /&gt;      - Membuat file WindowsDir security\Animasi.exe&lt;br /&gt;      - Membuat file WindowsDir resources\Oghie.exe&lt;br /&gt;      - Membuat file WindowsDir pchealth\Animasi.exe&lt;br /&gt;     &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : MooNlight&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      - Membuat file [%WINDOWS%]\java\CLASES\BIN\csrss.exe&lt;br /&gt;      - Membuat file [%WINDOWS%]\Systask.exe&lt;br /&gt;      - Membuat file [%WINDOWS%]\system32\APPLOG\Sys\Winlogon.exe&lt;br /&gt;      - Membuat file [%WINDOWS%]\system32\run32dll.exe&lt;br /&gt;      - Membuat file [%WINDOWS%]\Brico.cmd&lt;br /&gt;      - Membuat file [%WINDOWS%]\COMMAND\SETRAMD.cmd&lt;br /&gt;      - Membuat file [%WINDOWS%]\system32\MySqld-nt.cmd&lt;br /&gt;      - Membuat file [%WINDOWS%]\system32\remotesp.cmd&lt;br /&gt;      - Membuat file c:\windows.scr Dengan Icon Folder&lt;br /&gt;      - Folder [%WINDOWS%] asli di Hidden&lt;br /&gt;      - Semua Folder di Flashdisk di Hidden&lt;br /&gt;      - Membuat File scr di Flashdisk dengan nama folder-folder di Flashdisk&lt;br /&gt;        &lt;br /&gt;&lt;br /&gt;      Nama Virus : Shuriken3&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      - Membuat file windows.exe di direktori windows&lt;br /&gt;      - Membuat loader di msconfig dengan item PROGRAM yang memanggil [%&lt;br /&gt;      window%]\windows.exe&lt;br /&gt;      - Membuat file (dengan icon folder) disemua folder di drive selain C:\ dengan ukuran 224 KB&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Patah Hati&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      - Icon Virus : Folder, Ukuran : 88 KB&lt;br /&gt;      - Membuat file berikut ini di windows&lt;br /&gt;          c:\Program Files\Microsoft Office\Temp.exe&lt;br /&gt;          c:\WINDOWS\Help\user logon.exe&lt;br /&gt;          c:\WINDOWS\hkcmd.exe&lt;br /&gt;          c:\WINDOWS\system\Aku Bisa Tanpamu.exe&lt;br /&gt;          c:\WINDOWS\system\Aku Kecewa.exe&lt;br /&gt;          c:\WINDOWS\system\Dibalas Dengan Dusta.exe&lt;br /&gt;          c:\WINDOWS\system\ISASS.exe&lt;br /&gt;          c:\WINDOWS\system\Kau Pikir Kaulah Segalanya.exe&lt;br /&gt;          c:\WINDOWS\system\LNETINFO.exe&lt;br /&gt;          c:\WINDOWS\system\mr.abram\'s.exe&lt;br /&gt;          c:\WINDOWS\system\Sejauh Mungkin.exe&lt;br /&gt;          c:\WINDOWS\system\Tak Seperti Dulu.exe&lt;br /&gt;          c:\WINDOWS\system\Viva Elektro.exe&lt;br /&gt;          c:\WINDOWS\system.exe&lt;br /&gt;          c:\WINDOWS\system32\Patah_07065.exe&lt;br /&gt;          c:\WINDOWS\security\krnl32.bat&lt;br /&gt;      - Membuat file [My Documents.exe] di Desktop&lt;br /&gt;      - Membuat file [My Documents.exe] di Start Menu&lt;br /&gt;      - Membuat file [System startup.pif] di Start Up&lt;br /&gt;      - Membuat loader di msconfig dengan item [patah hati],[user logon]dan [HotKeysCmds]&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;      Nama Virus : Ambon Manise&lt;br /&gt;      Keterangan :&lt;br /&gt;&lt;br /&gt;      - Icon Virus : Folder, Ukuran : 42 KB&lt;br /&gt;      - Membuat file berikut ini di windows&lt;br /&gt;            c:\WINDOWS\SVCHOST.EXE&lt;br /&gt;            c:\WINDOWS\system\SVCHOST.EXE&lt;br /&gt;            c:\WINDOWS\system32\EBRR.EXE&lt;br /&gt;            c:\WINDOWS\system32\mmtask.exe&lt;br /&gt;      - MengCopy file ke Flashdisk dengan nama :&lt;br /&gt;            Data.exe&lt;br /&gt;            Jangan Dihapus.exe&lt;br /&gt;            Agnes Monica.exe&lt;br /&gt;            Bekas Pacar.exe&lt;br /&gt;            Oh Cantiknya.exe&lt;br /&gt;            Penting!!!.exe&lt;br /&gt;            Dokumen Kerja.exe&lt;br /&gt;            Gambar.exe&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/38872205-117111729363081678?l=kurniawanantivirus.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/KurniawansAntiVirus/~4/X4iuFFGL4Pg" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/KurniawansAntiVirus/~3/X4iuFFGL4Pg/indonesians-antivirus.html</link><author>noreply@blogger.com (Kurniawan)</author><thr:total>0</thr:total><feedburner:origLink>http://kurniawanantivirus.blogspot.com/2007/02/indonesians-antivirus.html</feedburner:origLink></item><item><guid isPermaLink="false">tag:blogger.com,1999:blog-38872205.post-117111706964343200</guid><pubDate>Sat, 10 Feb 2007 14:16:00 +0000</pubDate><atom:updated>2007-02-10T06:22:36.253-08:00</atom:updated><title>Tinutuan_B AntiVirus</title><description>May be someone need this antivirus...&lt;br /&gt;&lt;br /&gt;Virus Name : Tinutuan_B&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;# Virus Icon: JPEG/ACDSee 7.0, size: 44 KB&lt;br /&gt;I guess it is from the milu.bat&lt;br /&gt;&lt;br /&gt;#  will create this files :&lt;br /&gt;#  ?:\WINDOWS\system32\ganemo45.exe&lt;br /&gt;#  ?:\WINDOWS\system32\Kota-Tinu.exe&lt;br /&gt;#  ?:\WINDOWS\system32\kangkung45.exe&lt;br /&gt;#  ?:\WINDOWS\system32\sambiki45.exe&lt;br /&gt;#  ?:\WINDOWS\system32\drivers\gedi.exe&lt;br /&gt;#  ?:\Documents and Settings\USER\Local Settings\winfile.exe&lt;br /&gt;#  ?:\Documents and Settings\USER\My Documents\My Pictures\My Pictures.exe&lt;br /&gt;#  ?:\Documents and Settings\USER\My Documents\My Music\My Music.exe&lt;br /&gt;#  ?:\WINDOWS\system32\3D Screen Saver.scr&lt;br /&gt;#  ?:\WINDOWS\system32\MCR Screen Saver.scr&lt;br /&gt;#  ?:\WINDOWS\system32\Romantic Rapshody Saver.scr&lt;br /&gt;#  ?:\WINDOWS\system32\Laskar Cinta Saver.scr&lt;br /&gt;#  ?:\WINDOWS\system32\3D Animation Saver.scr&lt;br /&gt;#  ?:\Documents and Settings\USER\Start Menu\Programs\Startup\milu.bat&lt;br /&gt;#  ?:\TINUTUAN.TXT&lt;br /&gt;# Loader : Winlogon Shell ==&gt; ?:\WINDOWS\system32\drivers\gedi.exe&lt;br /&gt;# Loader : HKLM\Software\Microsoft\Windows\CurrentVersion\Run\message ==&gt; ?:\WINDOWS\System32\config\smss.cmd&lt;br /&gt;# Loader : HKCU\Software\Microsoft\Windows\CurrentVersion\Run\manado-kota-tinutuan ==&gt; ?:\WINDOWS\System32\Kota-Tinu.exe&lt;br /&gt;&lt;br /&gt;Removir : http://www.macancrew.net/removir/Rem_Tinutuan_B.zip&lt;br /&gt;&lt;br /&gt;****&lt;br /&gt;Kill the loader&lt;br /&gt;-Gedi.exe&lt;br /&gt;-smss.cmd&lt;br /&gt;-Kota-Tinu.exe&lt;br /&gt;&lt;br /&gt;*** QUICKLY RESTART&lt;br /&gt;- delete all files&lt;br /&gt;-fix all the registry&lt;br /&gt;&lt;br /&gt;* Winlogon Shell&lt;br /&gt;-HKLM/SOFTWARE/MICROSOFT/WIndows NT/CurrentVersion/WinLogon&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/38872205-117111706964343200?l=kurniawanantivirus.blogspot.com' alt='' /&gt;&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/KurniawansAntiVirus/~4/X2658WARAf8" height="1" width="1"/&gt;</description><link>http://feedproxy.google.com/~r/KurniawansAntiVirus/~3/X2658WARAf8/tinutuanb-antivirus.html</link><author>noreply@blogger.com (Kurniawan)</author><thr:total>1</thr:total><feedburner:origLink>http://kurniawanantivirus.blogspot.com/2007/02/tinutuanb-antivirus.html</feedburner:origLink></item><language>en-us</language><media:rating>nonadult</media:rating></channel></rss>

