Suka mengkoleksi MP3 diharddisk, awas jangan sampai terkena W32.Deletemusic Virus W32. Deletemusic adalah sebuah virus aneh dan nakal. Karena suka menghapus file MP3 baik file didalam harddisk maupun flash drive. Virus W32.Deletemusic bukan virus pertama yang menghilangkan file MP3. Nopir-B, dua tahun lalu melakukan hal yang sama dengan menghapus file MP3. Virus lain dengan Erazer, tidak saja menghilangkan file MP3, tetapi file lain seperti AVIs, MPEGs, WMVs, dan ZIP W32.Deletemusic dapat menginfeksi computer dengan OS Windows 2000/95/98/Me/NT/Server 2003/Vista/XP.
Info Symantec :
Discovered: July 30, 2007 Updated: July 30, 2007 4:26:33 PM Also Known As: W32/Deletemp3.worm [McAfee], W32/DelMP3-A [Sophos] Type: Worm Infection Length: 380,416 bytes Systems Affected: Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows Server 2003, Windows Vista, Windows XP W32.Deletemusic is a worm that copies itself to all drives on the compromised computer. It also deletes all .mp3 files from the compromised computer.
Protection Initial Rapid Release version July 30, 2007 revision 007 Latest Rapid Release version July 30, 2007 revision 007 Initial Daily Certified version July 30, 2007 revision 016 Latest Daily Certified version July 30, 2007 revision 016 Initial Weekly Certified release date August 1, 2007 Click here for a more detailed description of Rapid Release and Daily Certified virus definitions. Threat Assessment Wild Wild Level: Low Number of Infections: 0 - 49 Number of Sites: 0 - 2 Geographical Distribution: Low Threat Containment: Easy Removal: Easy Damage Damage Level: Medium Deletes Files: May delete all .mp3 files from the compromised computer. Distribution Distribution Level: Low Target of Infection: Copies itself to all drives on the compromised computer.
Cara mematikan virus untuk Symantec
Disable System Restore (Windows Me/XP).
Update the virus definitions.
Run a full system scan.
Delete any values added to the registry.
Tahap kedua
Click Start > Run. Type regedit Click OK.
Navigate to and delete the following registry entry:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\"Worms" = "C:\WINDOWS\system32\logon.bat"
Restore the following registry entries to their previous values, if required: HKEY_ALL_USERS\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\"NoFolderOptions" = "1" HKEY_ALL_USERS\Software\Microsoft\Windows\CurrentVersion\Policies\System\"DisableTaskMgr" = "1"
|