Thursday, March 24, 2011

Cara Menghapus Virus Shortcut

Buat download Killernya buka aja Link ini dibawah. Ciri2 Komputer Terjangkit virus ini: - Pada komputer terjangkit gak terdapat perubahan apa - Jika flaskdisk dicolokan pada system operasi lain kelihatan beberapa file dibawah ini: * Copy of Shortcut to.Ink * Copy of Copy of Shortcut to.lnk * Copy of Copy of Copy of Shortcut to.lnk * Copy of Copy of Copy of Copy of Shortcut to.lnk * ~WTR4132.tmp * ~WTR4141.tmp Cara menghapusnya: 1. Copy tool ini ke harddisk sobat (jangan letakan pada USB Drive). 2. Klik kanan StuxNet Killer dan pilih Run as administrator dan Klik Tombol Yes. 3. Kemudian klik tombol Delete Excution. 4. Klik Tombol Protect Excutation 5. Kemudian restart komputer sobat. 6. Setelah komputer hidup, klik tombol FixUSB Drive. 7. Jangan buka Windows Explorer sebelum mengklik tombol FixUSB Drive.





  1. 1. Copy tool ini ke harddisk sobat (jangan letakan pada USB Drive).
  2. 2. Klik kanan StuxNet Killer dan pilih Run as administrator dan Klik Tombol Yes.
  3. 3. Kemudian klik tombol Delete Excution.
  4. 4. Klik Tombol Protect Excutation
  5. 5. Kemudian restart komputer sobat.
  6. 6. Setelah komputer hidup, klik tombol FixUSB Drive.
  7. 7. Jangan buka Windows Explorer sebelum mengklik tombol FixUSB Drive.

Virus Shortcut Remover

You fell ill a computer virus / malware folder shortcut harry potter.lnk, microsoft.lnk, new folder with file type is shortcut, file size is 1 Kb and many more indicator. The author use of Windows XP SP2 but this virus may attack on vista too.

According to my way of hypothetical virus / malware is as follows:
  • Virus / malware will put this file database.mdb, thumb.db, Autorun.inf, shortcut folder harry potter .... lnk, microsoft folder shortcuts, folders and shortcuts to folders on the new document.
  • Virus / malware will enable wscript.exe file that is located in the system32 folder on the Windows folder to run the file on my database.mdb document.
  • Shortcut folders will be related to the earlier file wscript.exe and thumb.db.
  • If you open a shortcut folders before they will activate the file wscript.exe and thumb.db and file will create a duplicate folder shortcut is on your computer, thumb.db file and the file autorun.inf in the drive C.
  • If your computer is exposed to the virus / malware then this whole drive C: you will have found duplicates on your computer, thumb.db file and the file autorun.inf. It also will scan a drive, CD ROM, flash and your network as the media spread of the virus / malware this.

There are 2 methods to remove this virus:


Method 1 - With the use of Antivirus update.

Antivirus which can identify the virus (You can download directly "here" ), namely:
  • AVG free: detect as VBS Worm.
AVG will delete all folders and shortcuts duplicate files main virus earlier.
  • Norton Antivirus 2009 (trial 15 days) : detect as VBSRunauto.
Norton will delete all files on the drive thumb.db C.
You can delete the Autorun.inf file and folder shortcuts all the duplicates manually.
  • Antivir Avira Premium (license 6 months free) : detect as VBS/Yuyun A or malware DR/Agent.JP.4.
Antivir will delete all thumb.db files on the drive C.
You can delete the Autorun.inf file and folder shortcuts all the duplicates manually.
  • or other antivirus that have newest update.

Method 2 - With the manual.
  1. Turn off system Restore.
  2. Turn off the virus by using wscript.exe tool CProcess or CurrProcess (you can download via google). Run Crocess, search tab on the process name wscript.exe then right click on the name of the file and click kill procesess selected.
  3. Open Windows Explorer, click the tool menu option, folder option, view, click show hidden files and folders, click / uncheck the Hide extensions for known file types and Hide protected operating system files.Klik OK.
  4. Open my documents. Delete the file database.mdb.
  5. Click the Search button. Click All Files and Folders. In the All or part of the file name type: thumb.db, in the Look in a click. Delete all files that have been found. Repeat the steps above and delete all files that are found again.
  6. Click the Search button. Click All Files and Folders. In the All or part of the file name type: Autorun.inf, Look at the click in my computer. Delete all files that have been found. Repeat the steps above and delete all files that are found again.
  7. In step 6 virus is actually missing or no longer active but still have the rest of the shortcut duplicate folders created by malware earlier.
  8. If you also want removed, you must be careful once the shortcut is created by the virus with a shortcut to the default windows. The shortcut of the folder is created by the virus that is when we refer to the folder will appear in the link from the shortcut to the windows/system32. That we should be clear.
  9. How to find the folder shortcut: Click the Search button. Click All Files and Folders. In the All or part of the file name type: *. lnk, Look at the click in my computer. You must choose from based on the characteristics of a folder shortcut is created by the virus at the top of the line.
  10. You can delete the registry made by the virus earlier by using the tool HijackThis. (You can download HijackThis 2.0.2 here). Click Scan system and only looking at the HKCU \ ... \ ... database.mdb, HKLM \ ... \ .... relating to the WindowsXP cd (I forget the name length, and for that sometimes there is also sometimes not), and HKCU \ ... \ .... disableregedit = 1. click the button fixed.
  11. Now restart your computer.

In fact, if we do not delete the registry before (step 10) is not a problem, but at the restart windows will appear 2 text box that the first search for the file dialog database.mdb we remove earlier, the second prompted enter cd WindowsXP (this show is that there are also who does not). click Ok. Regedit and then it is likely we will didisable by the virus earlier. This also ga not problem if your brain is often especial registry windows.


Method to prevent the virus come again:

Virus this work if we click the folder shortcut new harry potter ... lnk, microsoft. Once we click the folder shortcut its so activated wsript.exe will find a file that is located in the folder windows system32 folder. Wscript.exe actively with the virus will begin to spread. So the key is that the virus is active on the file wscript.exe. For that we must kill wscript.exe way change of the name.

Open Windows Explorer, click the tool menu option, folder option, view, click show hidden files and folders, click / uncheck the Hide extensions for known file types and Hide protected operating system files.Klik OK.

Open the folder C: \ Windows \ system32 \ dllcache. This folder is collection of files from the backup files in the system32 folder. Find the file and click the right wsript.exe rename a wscriptx.exe for example. And open the C: \ Windows \ system32, find the file and click the right wsript.exe rename wscriptx.exe also be, for example.

Now you can start trying and Good Luck!



Monday, March 7, 2011

Kisah Karpet

Kisah Karpet
Sebuah kisah nyata...

Ada seorang ibu rumah tangga yang memiliki 4 anak laki-laki. Urusan belanja, cucian, makan, kebersihan & kerapihan rumah dapat ditanganinya dengan baik. Rumah tampak selalu rapih, bersih & teratur dan suami serta anak-anaknya sangat menghargai pengabdiannya itu.
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjDJ4U3RbK0Ez600YFRRQS1iR6hA_m1mXKzUWFRa1kIm2K2Gh8FFUfKkw9B6goUFCDUT64lwWcb6qPODSOfhshpKIHgeB9lQfxLs7h9vP5ILrBnsFH7VU6xSs3af0stX3nuZ6kNh-TlJmmI/s320/karpet.jpg
Cuma ada satu masalah, ibu yang pembersih ini sangat tidak suka kalau karpet di rumahnya kotor. Ia bisa meledak dan marah berkepanjangan hanya gara-gara melihat jejak sepatu di atas karpet, dan suasana tidak enak akan berlangsung seharian. Padahal, dengan 4 anak laki-laki di rumah, hal ini mudah sekali terjadi dan menyiksanya. 

Atas saran keluarganya, ia pergi menemui seorang psikolog bernama Virginia Satir, dan menceritakan masalahnya.

Setelah mendengarkan cerita sang ibu dengan penuh perhatian, Virginia Satir tersenyum & berkata kepada sang ibu:

"Ibu harap tutup mata ibu dan bayangkan apa yang akan saya katakan" 

Ibu itu kemudian menutup matanya.

"Bayangkan rumah ibu yang rapih dan karpet ibu yang bersih mengembang, tak ternoda, tanpa kotoran, tanpa jejak sepatu, bagaimana perasaan ibu?"
Sambil tetap menutup mata, senyum ibu itu merekah, mukanya yang murung berubah cerah. Ia tampak senang dengan bayangan yang dilihatnya.

Virginia Satir melanjutkan; "Itu artinya tidak ada seorangpun di rumah ibu. Tak ada suami, tak ada anak-anak, tak terdengar gurau canda dan tawa ceria mereka.”

“Rumah ibu sepi dan kosong tanpa orang-orang yang ibu kasihi".

Seketika muka ibu itu berubah keruh, senyumnya langsung menghilang, nafasnya mengandung isak. Perasaannya terguncang. Pikirannya langsung cemas membayangkan apa yang tengah terjadi pada suami dan anak-anaknya.

"Sekarang lihat kembali karpet itu, ibu melihat jejak sepatu & kotoran di sana, artinya suami dan anak-anak ibu ada di rumah, orang-orang yang ibu cintai ada bersama ibu dan kehadiran mereka menghangatkan hati ibu".

Ibu itu mulai tersenyum kembali, ia merasa nyaman dengan visualisasi tsb.

"Sekarang bukalah mata ibu" Ibu itu membuka matanya

"Bagaimana, apakah karpet kotor masih menjadi masalah buat ibu?"

Ibu itu tersenyum dan menggelengkan kepalanya.

"Aku tahu maksud anda" ujar sang ibu, "Jika kita melihat dengansudut yang tepat, maka hal yang tampak negatif dapat dilihat secara positif".

Sejak saat itu, sang ibu tak pernah lagi mengeluh soal karpetnya yang kotor, karena setiap melihat jejak sepatu disana, ia tahu, keluarga yang dikasihinya ada di rumah.

https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhPvtS7kndv3F649-3m7jd0m3yFid8GD26UA-idVgeOLGoTjvcmQZyJ_sbxjmjYy6QgSy_-B91ZFt0H7TT1GXvqipRfopn_fFFbrA8yYGRoA6rMxbcv45Gq48-anLU6bSJ-b7zxN4MKJE5p/s320/Virginia+Satir.jpg

Kisah di atas adalah kisah nyata. Virginia Satir adalah seorang psikolog terkenal yang mengilhamiRichard Bandler & John Grinder untuk menciptakan NLP (Neurolinguistic Programming) . Dan teknik yang dipakainya di atas disebut Reframing, yaitu bagaimana kita 'membingkai ulang' sudut pandang kita sehingga sesuatu yang tadinya negatif dapat menjadi positif,

salah satu caranya dengan mengubah sudut pandangnya.