<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Kenapa Dengan Computer Sekarang ...!!!</title>
	<atom:link href="http://asrulstmik.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://asrulstmik.wordpress.com</link>
	<description>Just another WordPress.com weblog</description>
	<lastBuildDate>Fri, 16 Jan 2009 09:16:40 +0000</lastBuildDate>
	<language>id</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='asrulstmik.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Kenapa Dengan Computer Sekarang ...!!!</title>
		<link>http://asrulstmik.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://asrulstmik.wordpress.com/osd.xml" title="Kenapa Dengan Computer Sekarang ...!!!" />
	<atom:link rel='hub' href='http://asrulstmik.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Cara Mengatasi Bulu Bebek</title>
		<link>http://asrulstmik.wordpress.com/2009/01/16/cara-mengatasi-bulu-bebek/</link>
		<comments>http://asrulstmik.wordpress.com/2009/01/16/cara-mengatasi-bulu-bebek/#comments</comments>
		<pubDate>Fri, 16 Jan 2009 09:16:39 +0000</pubDate>
		<dc:creator>asrulstmik</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://asrulstmik.wordpress.com/?p=14</guid>
		<description><![CDATA[CARA MENGATASI VIRUS BULU BEBEK CARA YANG TERBAIK, TERMUDAH MENGATASINYA DAN MENGHAPUS VIRUS  INI HINGGA KE AKAR AKARNYA GUNAKAN PVMAV 1.7 S/D 1.9 (dijamin) JANGAN SAMPAI DI INSTAL ULANG OK!&#8230;&#8230;.. CARA RIBET : HASIL PENEMUAN DARI  PAMAN GOOGLE SEPERTI DIBAWAH INI!&#8230;&#8230;&#8230;&#8230;.. CARA PERTAMA : Rupanya Donal Bebek tidak mau kalah dengan Kenshin, Doraemon dan Naruto. [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=14&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<table border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td class="icon" width="24"></td>
<td class="cattitle"><a rel="bookmark" href="http://agusmp3.multiply.com/journal/item/92/CARA_MENGATASI_VIRUS_BULU_BEBEK">CARA MENGATASI VIRUS BULU BEBEK</a></td>
<td class="itemsubsub"></td>
</tr>
</tbody>
</table>
<div class="itemshadow">
<div class="itembox">
<div id="item_body" class="bodytext">
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID"><span style="color:#006600;font-weight:bold;"><img src="http://images.multiply.com/common/smiles/thumbs_up.png" alt="" /></span></span></span><span style="font-size:x-small;"><span class="style1" lang="id-ID"><span style="color:#006600;font-weight:bold;"><span style="color:#cc0000;"> CARA YANG TERBAIK, TERMUDAH MENGATASINYA DAN MENGHAPUS VIRUS  INI HINGGA KE AKAR AKARNYA GUNAKAN <span style="color:#3333ff;">PVMAV 1.7 S/D 1.9 (dijamin) </span>JANGAN SAMPAI DI INSTAL ULANG OK!&#8230;&#8230;..</span></span><br />
</span></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;font-weight:bold;" align="justify">
<span style="font-size:x-small;"><span class="style1" lang="id-ID"></span></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;font-weight:bold;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID"><span style="font-style:italic;color:#cc0000;"><img src="http://images.multiply.com/common/smiles/thumbs_down.png" alt="" />CARA RIBET :<br />
</span></span></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID"><span style="font-weight:bold;font-style:italic;color:#cc0000;"><span style="color:#3366ff;text-decoration:underline;">HASIL PENEMUAN DARI  PAMAN GOOGLE SEPERTI DIBAWAH INI!&#8230;&#8230;&#8230;&#8230;.. </span><br />
</span></span></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID"><span style="font-weight:bold;font-style:italic;color:#cc0000;">CARA PERTAMA :</span><br />
</span></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Rupanya Donal Bebek tidak mau kalah dengan Kenshin, Doraemon dan Naruto. Setelah melihat “saingannya” dari Jepang beraksi, kini muncul virus lokal yang mungkin terinspirasi Donal Bebek. Virus ini dapat dikenali dengan ciri khasnya mengandung nama Bulu Bebek. Penyebaran Bulu Bebek ini sebulan terakhir cukup merata dan diperkirakan ribuan komputer di seluruh Indonesia “dikerjai” oleh si Donal Bebek ini. Virus ini berusaha untuk menyembunyikan folder/subfolder dan membut file duplikat dengan tujuan untuk mengelabui user.</span></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Bulubebek dibuat menggunakan Visual Basic dengan ukuran file sebesar 53 KB (lihat gambar 1) yang terdiri dari 2 jenis file yakni .EXE dan .INI. Dengan update terbaru Norman Virus Control dan Norman Security Suite telah mendeteksi virus ini sebagai VbWorm.QXE (lihat gambar 2)</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_32c7a835.png" border="0" alt="" width="412" height="53" align="bottom" /></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><em>Gambar 1, File induk virus</em></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_mceacad9.png" border="0" alt="" width="554" height="294" align="bottom" /></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><em>Gambar 2, Hasil deteksi Norman Security Suite</em></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><strong>File Induk</strong></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Pada saat virus ini aktif ia akan membuat sejumlah file yang akan dijalankan pertama kali pada saat komputer dinyalakan serta membuat file autorun.inf agar virus tersebut dapat aktif secara otomatis setiap kali user akses folder. Berikut beberapa file induk yang akan dibuat oleh VBWorm.QXE</span></span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">C:\Windows\Script.exe</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">C:\Windows\LSASS.exe</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">C:\Documents and 	Settings\%user%\autorun.inf</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">C:\Documents and 	Settings\%user%\bulubebek.ini</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">C:\bulubebek.ini</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">c:\autorun.inf</span></p>
</li>
</ul>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><strong>Auto start registry</strong></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Untuk memastikan agar file tersebut dapat dijalankan, ia akan membuat string pada registry berikut:</span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">HKEY_CURRENT_USER\Software\Microsoft\Windows 	NT\CurrentVersion\Winlogon</span></span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Shell = explorer.exe 		script.exe</span></p>
</li>
</ul>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows 	NT\CurrentVersion\Winlogon</span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Shell = explorer.exe 		script.exe</span></p>
</li>
</ul>
</li>
</ul>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><strong>Blok Fungsi Windows</strong></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Sebagai bentuk pertahanan ia akan mencoba untuk blok beberapa fungsi Windows seperti Task Manager, Folder Option atau CMD. Untuk melakukan hal tersebut ia akan membuat string pada registry berikut:</span></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\HideFileExt</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue=2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; UncheckedValue = 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue= 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue= 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\ShowFullPath</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue= 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; UncheckedValue = 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\ShowFullPathAddress</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue= 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; UncheckedValue = 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SuperHidden</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue= 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; UncheckedValue = 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\HideFileExt</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue= 1</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 1</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">KEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SuperHidden</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; CheckedValue= 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DefaultValue = 0</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; NoFolderOptions</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; DisableRegistryTools</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; Hidden = 2</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; HideFileExt = 1</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"> &#8211; ShowSuperHidden = 1</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Command Processor</span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">AutoRun 	= exit</span></span></p>
</li>
</ul>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKEY_CURRENT_USER\Software\Microsoft\Command Processor</span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">AutoRun 	= exit</span></span></p>
</li>
</ul>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Ia juga akan mencoba blok eksekusi file “Microsoft Visual Studio Spy Debugging Tools” yang mempunyai nama file SPYXX.exe dengan menampilkan pesan berikut saat file tersebut di eksekusi dengan terlebih dahulu membuat string pada registry berikut : (lihat gambar 3)</span></span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows 	NT\CurrentVersion\Image File 	Execution Options\SPYXX.EXE</span></span></p>
<ul>
<li>
<ul>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">debugger = TAI BEBEK</span></p>
</li>
</ul>
</li>
</ul>
</li>
</ul>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m582e8c46.png" border="0" alt="" width="491" height="132" align="bottom" /></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><em>Gambar 3, Pesan Error saat menjalankan file Spyxx.exe</em></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><strong>Penyebaran otomatis</strong></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Flash Disk adalah salah satu media yang akan digunakan untuk menyebarkan dirinya dengan memanfaatkan celah autorun Windows yakni dengan membuat file autorun.inf dan bulubebek.ini (lihat gambar 4)</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m2ef2b475.png" border="0" alt="" width="395" height="180" align="bottom" /></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><em>Gambar 4, Script yang terdapat pada file autorun.inf</em></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><strong>Hidden folder dan membuat duplikat folder</strong></span></p>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Tidak seperti virus lain yang jahat menginjeksi atau menghancurkan file komputer korbannya, pembuat Bulu Bebek ini kelihatannya tidak memiliki niat jahat menghancurkan data komputer korbannya. Bulubebek akan mencoba untuk menyembunyikan folder/subfolder pada flash disk, untuk mengelabui user ia akan membuat file duplikat disetiap folder/subfolder sesuai dengan nama older/subfolder tersebut. File duplikat ini mempunyai ciri-ciri : (lihat gambar 5)</span></span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Menggunakan icon Folder</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Ukuran file 53 KB</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Ekstensi EXE</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Type File “Application</span></p>
</li>
</ul>
<p class="western" style="text-indent:.25in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_7e04a09d.png" border="0" alt="" width="553" height="393" align="bottom" /></p>
<p class="western" style="text-indent:.25in;margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style2" lang="id-ID">Gambar 5, File duplikat yang dibuat oleh VBWorm.QXE / bulubebek</span></span></p>
<p class="western" style="text-indent:.25in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><strong>Membersihkan virus Bulubebek</strong></span></p>
<ol>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Sebaiknya putuskan 	komputer yang akan dibersihkan dari jaringan (jika terhubung ke LAN)</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Disable “System 	Restore” untuk sementara selama proses pembersihan berlangsung 	(jika menggunakan Windows ME/XP)</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Matikan proses virus yang sedang aktif di memori, untuk mematikan proses virus ini gunakan tools penggganti taks manager seperti procexp, kemudian matikan proses virus yang mempunayi icon “Folder”. (lihat gambar 6)</span></span></p>
</li>
</ol>
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m37bab458.png" border="0" alt="" width="498" height="445" align="bottom" /></p>
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><em>Gambar 6, Mematikan proses virus yang aktif dimemory</em></span></p>
<ol>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Repair registry Windows yang sudah di ubah oleh virus. Untuk mempercepat proses tersebut salin script dibawah ini pada program notepad kemdian simpan dengan nama repair.inf. Jalankan file tersebut dengan cara:</span></p>
</li>
</ol>
<ul>
<li>
<ul>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Klik kanan repair.inf</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Klik Install</span></p>
</li>
</ul>
</li>
</ul>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">[Version]</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Signature=&#8221;$Chicago$&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Provider=Vaksincom Oyee</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">[DefaultInstall]</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">AddReg=UnhookRegKey</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">DelReg=del</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">[UnhookRegKey]</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, Software\CLASSES\batfile\shell\open\command,,,&#8221;"&#8221;%1&#8243;&#8221; %*&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, Software\CLASSES\comfile\shell\open\command,,,&#8221;"&#8221;%1&#8243;&#8221; %*&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, Software\CLASSES\exefile\shell\open\command,,,&#8221;"&#8221;%1&#8243;&#8221; %*&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, Software\CLASSES\piffile\shell\open\command,,,&#8221;"&#8221;%1&#8243;&#8221; %*&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, Software\CLASSES\regfile\shell\open\command,,,&#8221;regedit.exe &#8220;%1&#8243;&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, Software\CLASSES\scrfile\shell\open\command,,,&#8221;"&#8221;%1&#8243;&#8221; %*&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon, Shell,0, &#8220;Explorer.exe&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SYSTEM\ControlSet001\Control\SafeBoot, AlternateShell,0, &#8220;cmd.exe&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SYSTEM\ControlSet002\Control\SafeBoot, AlternateShell,0, &#8220;cmd.exe&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SYSTEM\CurrentControlSet\Control\SafeBoot, AlternateShell,0, &#8220;cmd.exe&#8221;</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\SuperHidden, UncheckedValue,0&#215;00010001,1</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Command Processor, AutoRun,0,</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL, CheckedValue, 0&#215;00010001,1</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL, DefaultValue, 0&#215;00010001,2</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Command Processor, AutoRun,0,</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">[del]</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegistryTools</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableTaskMgr</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NoFolderOptions</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NOFind</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NORun</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\WinOldApp</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PAYXX.exe</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows NT\CurrentVersion\Winlogon, Shell</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\HideFileExt</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\ShowFullPath</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\ShowFullPathAddress</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKLM, SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SuperHidden</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\Explorer, NoFolderOptions</span></p>
<p class="western" style="margin-left:1in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">HKCU, Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegistryTools</span></p>
<p class="western" style="margin-left:.75in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<ol>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Cari dan hapus file duplikat yang dibuat oleh virus. Untuk mempercepat proses pencarian sebaiknya gunakan fungsi “Search Windows” dengan terlebih dahulu menampilkan file yang disembunyikan. (lihat gambar 7)</span></p>
</li>
</ol>
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_573366d3.png" border="0" alt="" width="383" height="474" align="bottom" /></p>
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><em>Gambar 7, Menampilkan file yang disembunyikan</em></span></p>
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Jika Folder Option belum muncul sebaiknya LogOff komputer terlebih dahulu kemudian tampilkan file yang tersebunyi.</span></p>
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify">
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Setelah file duplikat ditemukan, hapus file yang mempunyai ciri-ciri : (lihat gambar <img src='http://s0.wp.com/wp-includes/images/smilies/icon_cool.gif' alt='8)' class='wp-smiley' /> </span></p>
<ul>
<li>
<ul>
<li>
<ul>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Menggunakan icon 			Folder</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Ukuran file 53 KB</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Ekstensi EXE</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Type File 			“Application</span></p>
</li>
</ul>
</li>
</ul>
</li>
</ul>
<p class="western" style="margin-left:.5in;text-indent:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_69478cc3.png" border="0" alt="" width="444" height="333" align="bottom" /></p>
<p class="western" style="margin-left:.5in;text-indent:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;"><em>Gambar 8, Mencari dan menghapus file duplikat Bulubebek</em></span></p>
<ol>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Tampilkan kembali file/folder pada Flash Disk yang sudah disembunyikan. Untuk menampilkan file yang disembunyikan anda dapat menggunakan bebarapa tools alternatif seperti Batch File Utility atau dengan menggunakan perintah ATTRIB</span></span></p>
</li>
</ol>
<p class="western" style="margin-left:.5in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Berikut cara menampilkan file/folder yang disembunyikan dengan menggunakan ATTRIB (lihat gambar 9)</span></p>
<ul>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Klik 	“Start”</span></span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Klik “Run”</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Ketik “CMD”, 	kemudian tekan tombol “Enter”</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><span style="font-size:x-small;">Pindahkan posisi kursor 	ke drive Flash Disk</span></p>
</li>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span class="style1" style="font-size:x-small;"><span lang="id-ID">Kemudian 	ketik perintah <strong>ATTRIB 	–s –h –r /s /d</strong> kemudian tekan tombol “enter”</span></span></p>
</li>
</ul>
<p class="western" style="margin-left:.75in;margin-bottom:0;font-family:Arial;margin-top:0;" lang="id-ID" align="justify"><img src="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m396f0c3.png" border="0" alt="" width="433" height="196" /></p>
<p class="western" style="margin-left:.25in;text-indent:.5in;margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style2" lang="id-ID">Gambar 9, Menampilkan file yang disembunyikan</span></span></p>
<ol>
<li>
<p class="western" style="margin-bottom:0;margin-top:0;" align="justify"><span style="font-size:x-small;"><span class="style1" lang="id-ID">Untuk pembersihan optimal dan mencegah infeksi ulang scan, dengan antivirus yang up-to-date dan sudah dapat mendeteksi virus ini.</span></span></p>
</li>
</ol>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify">Aj<span style="font-size:x-small;"> Tau</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;"><a href="mailto:info@vaksin.com">info@vaksin.com</a></span></p>
<p class="western" style="margin-bottom:0;font-family:Tahoma,sans-serif;font-size:x-small;margin-top:0;" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;">PT. Vaksincom</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;">Jl. Tanah Abang III / 19E</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;">Jakarta 10160</span></p>
<p class="western" style="margin-bottom:0;font-family:Tahoma,sans-serif;font-size:x-small;margin-top:0;" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;">PH : 021 345 6850</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;">Fx : 021 345 6851</span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify">
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;"><span style="font-style:italic;font-weight:bold;color:#cc0000;">CARA KEDUA :</span></span></p>
<h2>Cara mengatasi virus bulu bebek</h2>
<p><span class="submitted">Oktober 19, 2008 — myblogerlangga </span></p>
<div class="content">
<div class="snap_preview">
<p>Tools yang dibutuhkan:<br />
-Processxp. <a href="http://technet.microsoft.com/en-us/sysinternals/bb896653.aspx" target="_blank">http://technet.microsoft.com/en-us/s…/bb896653.aspx</a><br />
-The Killer Machine. <a href="http://www.indowebster.com/TheKillerMachinezip.html" target="_blank">http://www.indowebster.com/TheKillerMachinezip.html</a><br />
-Ansav antivirus. <a href="http://www.ansav.com/index.php?option=com_docman&amp;task=doc_download&amp;gid=25&amp;Itemid=55" target="_blank">http://www.ansav.com/index.php?optio…d=25&amp;Itemid=55</a></p>
<p>Langkah-langkahnya:<br />
-Matikan system restore<br />
-Jalankan ProcessXp untuk melihat process induk virusnya<br />
-Jalankan The killer machine untuk menghapus induknya<br />
-Jalankan search untuk mencari anak” virusnya. file .exe bericon folder dengan ukuran 53KB.<br />
-Jalankan registry Fx ansav untuk repair registry.</p>
<p>Peringatan…<br />
Program the killer di beberapa PC menyebabkan free atau hang. gunakan task manager untuk endtask processnya<br />
Atau restart PC anda.</p></div>
</div>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;"><span style="font-weight:bold;color:#ff0000;"><img src="http://images.multiply.com/common/smiles/angry.png" alt="" />VIDEO TUTORIAL CARA HAPUS VIRUS BULU BEBEK :<br />
</span></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify"><span style="font-size:x-small;"><span style="font-weight:bold;color:#ff0000;"><img src="http://images.multiply.com/common/smiles/thumbs_up.png" alt="" /><span style="color:#3366ff;">http://www4.indowebster.com/6c6397ad6d0bd7c95417816847f0d9d8.gif</span></span></span></p>
<p class="western" style="margin-bottom:0;font-family:Arial;font-size:x-small;margin-top:0;" align="justify">
<span style="font-size:x-small;"><span style="font-weight:bold;color:#ff0000;"></span></span></p>
<ul>
<li><span style="font-size:x-small;"><span style="font-weight:bold;color:#ff0000;"><span style="color:#3366ff;">Notes : Bingung Mode On Tetep Ga bisa! Ada yg lebih simple ga cara hapusnya</span></span><br />
</span></li>
</ul>
</div>
<div style="clear:both;"><!-- --></div>
</div>
</div>
<p>by Asrul STMIK H Makassar</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/asrulstmik.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/asrulstmik.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/asrulstmik.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/asrulstmik.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/asrulstmik.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/asrulstmik.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/asrulstmik.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/asrulstmik.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/asrulstmik.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/asrulstmik.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/asrulstmik.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/asrulstmik.wordpress.com/14/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/asrulstmik.wordpress.com/14/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/asrulstmik.wordpress.com/14/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=14&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://asrulstmik.wordpress.com/2009/01/16/cara-mengatasi-bulu-bebek/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ce93d3d9f683a36cb2cc125065db64b5?s=96&#38;d=identicon" medium="image">
			<media:title type="html">asrulstmik</media:title>
		</media:content>

		<media:content url="http://images.multiply.com/common/smiles/thumbs_up.png" medium="image" />

		<media:content url="http://images.multiply.com/common/smiles/thumbs_down.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_32c7a835.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_mceacad9.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m582e8c46.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m2ef2b475.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_7e04a09d.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m37bab458.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_573366d3.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_69478cc3.png" medium="image" />

		<media:content url="http://www.vaksin.com/2008/1008/bulubebek/bulubebek_html_m396f0c3.png" medium="image" />

		<media:content url="http://images.multiply.com/common/smiles/angry.png" medium="image" />

		<media:content url="http://images.multiply.com/common/smiles/thumbs_up.png" medium="image" />
	</item>
		<item>
		<title>Daftar Virus local &#8216;Aksi GanaZ</title>
		<link>http://asrulstmik.wordpress.com/2009/01/16/daftar-virus-local-aksi-ganaz/</link>
		<comments>http://asrulstmik.wordpress.com/2009/01/16/daftar-virus-local-aksi-ganaz/#comments</comments>
		<pubDate>Fri, 16 Jan 2009 09:02:10 +0000</pubDate>
		<dc:creator>asrulstmik</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://asrulstmik.wordpress.com/?p=11</guid>
		<description><![CDATA[Daftar Virus Lokal Dengan Aksi Ganas Ditulis pada September 1, 2007 oleh putuyoga Jakarta &#8211; Virus-virus lokal banyak bermunculan, dan dibuat dengan bahasa pemrograman Visual Basic.Spesialis antivirus dari perusahaan PT Vaksincom Alfons Tanujaya menilai, para pembuat virus cukup kreatif dengan membuat terobosan-terobosan yang mampu menutupi kelemahan virus yang dibuat dengan Visual Basic. Berdasarkan data dari [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=11&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Daftar Virus Lokal Dengan Aksi Ganas Ditulis pada September 1, 2007 oleh putuyoga  Jakarta &#8211; Virus-virus lokal banyak bermunculan, dan dibuat dengan bahasa pemrograman Visual Basic.Spesialis antivirus dari perusahaan PT Vaksincom Alfons Tanujaya menilai, para pembuat virus cukup kreatif dengan membuat terobosan-terobosan yang mampu menutupi kelemahan virus yang dibuat dengan Visual Basic.  Berdasarkan data dari PT Vaksincom, berikut adalah daftar virus lokal dengan aksi paling ganas pada kuartal pertama tahun 2007:  &#8211; Babon, 49 KB, mengubah properties dan AM/PM pada jam menjadi tulisan Babon.  &#8211; Aksika (4k51k4), 45 KB, membuat backup MSVBVM60.DLL. disable System Restore, aktif di normal mode, Safemode dan Safemode with Command Prompt.  &#8211; Coolface, 78 KB, virus Bangka yang ditulis dalam bahasa C++ dan berusaha membasmi semua virus Visual Basic dengan menghapus file MSVBVM60.DLL.  &#8211; KillAV, 22 KB, menyembunyikan semua file MS word dan mengganti dengan dirinya.  &#8211; Pendekar Blank, 34 KB, menyembunyikan folder C:\Windows\System32 dan membuat file duplikat sesuai dengan nama folder yang disembunyikan [system32.exe], membackup MSVBVM60.dll di C:\WINDOWS\system32\dllChache, manipulasi file .com dan .txt sehingga setiap kali dijalankan akan menjalankan virus.  &#8211; Pacaran, 59 KB, mengubah ikon file “non virus” (MP3, txt, reg file, jpeg, inf dan exe) di komputer korban menjadi folder dan tipe file application sehingga pengguna komputer mengira itu adalah virus dan menghapusnya. Aksi lainnya virus ini memanipulasi Host file, menyembunyikan drive dan folder, mengubah tipe file “File Folder”, MP3, JPEG menjadi W32.Pacaran.  &#8211; Blue Fantasy, 40 KB, otomatis menginfeksi dari Flash Disk, menyembunyikan folder dan menggantikan dengan file virus duplikat dengan ikon folder.  Lebih lanjut Alfons mengungkap, virus-virus yang dibuat dengan bahasa pemrograman Visual Basic memiliki beberapa ciri khas dan kelemahan sehingga “relatif” lebih mudah dibasmi. Pembasmian akan lebih mudah jika kita mampu mengakses file utama yang diperlukan untuk menjalankan Visual Basic, yaitu MSVBVM60.DLL.  Tetapi keterbatasan ini tidak menjadikan virus lokal yang dibuat kehilangan “kesaktiannya”, karena beberapa pembuat virus menyadari kelemahan bahasa Visual Basic ini.  Pembuat virus berusaha menutupi kelemahan yang ada dengan melakukan backup file MSVBVM60.DLL pada direktori lain, dan akan melakukan loading secara otomatis jika MSVBVM60.DLL dihapus.  Para programmer yang menguasai bahasa pemrograman lain menggunakan kelemahan ini untuk menyerang virus-virus yang dibuat dengan Visual Basic, yaitu dengan menghapus file MSVBVM60.DLL dalam aksinya dan menulis virusnya dalam bahasa seperti C++.</p>
<p>by Asrul_07@ymail.com</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/asrulstmik.wordpress.com/11/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/asrulstmik.wordpress.com/11/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/asrulstmik.wordpress.com/11/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/asrulstmik.wordpress.com/11/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/asrulstmik.wordpress.com/11/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/asrulstmik.wordpress.com/11/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/asrulstmik.wordpress.com/11/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/asrulstmik.wordpress.com/11/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/asrulstmik.wordpress.com/11/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/asrulstmik.wordpress.com/11/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/asrulstmik.wordpress.com/11/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/asrulstmik.wordpress.com/11/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/asrulstmik.wordpress.com/11/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/asrulstmik.wordpress.com/11/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=11&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://asrulstmik.wordpress.com/2009/01/16/daftar-virus-local-aksi-ganaz/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ce93d3d9f683a36cb2cc125065db64b5?s=96&#38;d=identicon" medium="image">
			<media:title type="html">asrulstmik</media:title>
		</media:content>
	</item>
		<item>
		<title>Ciri-ciri Komputer yang Terkena Virus</title>
		<link>http://asrulstmik.wordpress.com/2009/01/16/ciri-ciri-komputer-yang-terkena-virus/</link>
		<comments>http://asrulstmik.wordpress.com/2009/01/16/ciri-ciri-komputer-yang-terkena-virus/#comments</comments>
		<pubDate>Fri, 16 Jan 2009 08:57:16 +0000</pubDate>
		<dc:creator>asrulstmik</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://asrulstmik.wordpress.com/?p=9</guid>
		<description><![CDATA[Ciri-ciri Komputer yang Terkena Virus Diposkan oleh Fahru di 10:29 . Senin, 2008 Desember 29 Label: Tips dan Trik, Virus .fullpost{display:inline;}Anda kebingungan dengan tingkah laku komputer anda&#8230;? jalannya sangat lamban, file-file bayak yang hilang atau ke-hiden dan msconfig,taksmanager ma regeditnya gak bisa dibuka wah-wah itu disibabkan virus boo..tus gmana ciri-ciri komputer yang terkena virus? sekarang [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=9&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a href="http://f4hru.blogspot.com/2008/12/ciri-ciri-komputer-yang-terkena-virus.html">Ciri-ciri Komputer yang Terkena Virus</a></p>
<div class="post hentry uncustomized-post-template">
<h3 class="post-title entry-title"></h3>
<div class="postedby">
<div class="post-status"><span class="post-author vcard"> Diposkan oleh <span class="fn">Fahru</span> </span> <span class="post-timestamp"> di <a class="timestamp-link" title="permanent link" rel="bookmark" href="http://f4hru.blogspot.com/2008/12/ciri-ciri-komputer-yang-terkena-virus.html"><abbr class="published" title="00">10:29</abbr></a> </span>.         <span class="date-header">Senin, 2008 Desember 29</span></div>
<p><span class="post-comment-link"> </span></div>
<p><span class="post-labels"> Label: <a rel="tag" href="http://f4hru.blogspot.com/search/label/Tips%20dan%20Trik"> Tips dan Trik</a>, <a rel="tag" href="http://f4hru.blogspot.com/search/label/Virus"> Virus</a> </span></p>
<div class="post-body">.fullpost{display:inline;}Anda kebingungan dengan tingkah laku komputer anda&#8230;? jalannya sangat lamban, file-file bayak yang hilang atau ke-hiden dan msconfig,taksmanager ma regeditnya gak bisa dibuka wah-wah itu disibabkan virus boo..tus gmana ciri-ciri komputer yang terkena virus? sekarang kita akan bahas hal itu<br />
<span class="fullpost"><br />
Berikut salah satu ciri-ciri Komputer Yang Terjangkit Virus :</p>
<p>1. Komputer Anda berjalan lebih lambat dari biasanya.<br />
2. Menu Run, Search disembunyikan oleh virus.<br />
3. CTRL+ALT+DEL tidak bisa digunakan.<br />
4. Regedit dan MSCONFIG di disabled<br />
5. Folder asli pada komputer anda disembunyikan dan diganti dengan file virus.<br />
6. Menu Tools -&gt; Folder Options di Windows EXplorer hilang.<br />
7. Komputer sering berhenti atau tidak merespon.<br />
8. Komputer tiba-tiba restart atau crash dan ini terjadi beberapa menit sekali.<br />
9. Aplikasi komputer tidak berjalan dengan semestinya dan sering error.<br />
10. Muncul File dengan Icon Folder tetapi mempunyai file type .exe<br />
11. Hardisk atau disk drive tidak bisa diakses.<br />
12. Aktivitas print tidak bekerja dengan semestinya.<br />
13. Sering terjadi pesan error yang aneh dan tidak biasanya.<br />
14. Sering terlihat menu atau dialog box yang rusak.<br />
15. Terdapat Duplikasi nama folder di dalam folder tersebut.<br />
16. Komputer selalu mengeluarkan pesan dari mana virus ini berasal.</p>
<p>Jika komputer anda mengalami salah satu ciri-ciri diatas, berarti ada kemungkinan komputer anda terkena virus, segera update antivirus anda dan scan komputer anda<br />
untuk membersihkan virus tersebut.</span></p>
<p><span class="fullpost">By Asrul<br />
</span></div>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/asrulstmik.wordpress.com/9/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/asrulstmik.wordpress.com/9/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/asrulstmik.wordpress.com/9/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/asrulstmik.wordpress.com/9/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/asrulstmik.wordpress.com/9/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/asrulstmik.wordpress.com/9/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/asrulstmik.wordpress.com/9/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/asrulstmik.wordpress.com/9/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/asrulstmik.wordpress.com/9/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/asrulstmik.wordpress.com/9/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/asrulstmik.wordpress.com/9/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/asrulstmik.wordpress.com/9/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/asrulstmik.wordpress.com/9/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/asrulstmik.wordpress.com/9/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=9&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://asrulstmik.wordpress.com/2009/01/16/ciri-ciri-komputer-yang-terkena-virus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ce93d3d9f683a36cb2cc125065db64b5?s=96&#38;d=identicon" medium="image">
			<media:title type="html">asrulstmik</media:title>
		</media:content>
	</item>
		<item>
		<title>Membuat Windows XP Live CD</title>
		<link>http://asrulstmik.wordpress.com/2009/01/16/membuat-windows-xp-live-cd/</link>
		<comments>http://asrulstmik.wordpress.com/2009/01/16/membuat-windows-xp-live-cd/#comments</comments>
		<pubDate>Fri, 16 Jan 2009 08:53:21 +0000</pubDate>
		<dc:creator>asrulstmik</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://asrulstmik.wordpress.com/?p=6</guid>
		<description><![CDATA[Membuat Windows XP Live CD Ditulis pada Februari 4, 2008 oleh fendix Linux Live CD mungkin udah tidak asing lagi bagi anda, lantaran banyak distro linux yang dikemas dalam bentuk live CD. tapi bagaimana dengan Windows Live CD mungkin tidak banyak orang yang tau. Windows live CD tidak banyak berbeda dari linux live CD keduanya sama2x [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=6&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h2><a title="Membuat Windows XP Live CD" rel="bookmark" href="http://fendix.wordpress.com/2008/02/04/membuat-windows-xp-live-cd/">Membuat Windows XP Live CD</a></h2>
<div class="postinfo">Ditulis pada <span class="postdate">Februari 4, 2008</span> oleh fendix</div>
<div class="snap_preview">
<p align="justify">Linux Live CD mungkin udah tidak asing lagi bagi anda, lantaran banyak distro linux yang dikemas dalam bentuk live CD. tapi bagaimana dengan Windows Live CD mungkin tidak banyak orang yang tau. Windows live CD tidak banyak berbeda dari linux live CD keduanya sama2x dijalankan dari CD. Sedangkan bagaimana cara dan langkah pembuatannya berikut ini caranya.</p>
<p align="justify">Buatlah sebuah folder di hardisk anda dengan nama C:\sp2\winxp (Sesuka Anda). Copykan seluruh content yang ada di dalam CD instalasi windows XP ke dalam folder yang telah anda buat tadi. Sebagai contoh aku gunakan windows XP Profesional SP2. pastikan tidak ada file yang ketinggalan atau tersembunyi.</p>
<p align="justify">Download Utility bernama PEBuilder di <a href="http://www.nu2.nu/pebuilder/" target="_blank">www.nu2.nu/pebuilder/</a>. Utility ini nantinya akan menyertakan sebuah fitur bernama BartPE. Selanjutnya install PEBuilder tadi.</p>
<p align="justify"><img style="width:239px;height:234px;" src="http://fendix.files.wordpress.com/2008/02/live-cd-pebuilder.jpg?w=400&#038;h=400&#038;h=400" border="0" alt="" width="400" height="400" align="left" /></p>
<p align="justify">- Jalankan PEBuilder,<br />
- Dibagian source arahkan ke C:\sp2\winxp.<br />
- Dibagian Output menggunakan “BartPE”<br />
- Dibagian media output ganti menjadi “Create ISO Image” lalu isi dengan c:\pebuilder\pebuilder.iso<br />
- Beri tanda centang  pada “Burn to CD/DVD”. Pilih CD Writer device dari Device listbox.<br />
- Jika anda menggunakan kepingan CDRW aktifkan pula opsi “AutoErase RW”</p>
<p align="justify">Anda dapat menambahkan plugin caranya anda dapat melihat di <a href="http://www.nu2.nu/pebuilder/plugins/" target="_blank">www.nu2.nu/pebuilder/plugins/</a>.</p>
<p align="justify">- Masukkan CD Blank atau CDRW ke CD-ROM Drive<br />
- Klik Build, pada “create directory” pilih yes.<br />
- Akan tampil lisensi produk Windows XP baca dan setujui jika anda hendak melanjutkan<br />
- Proses Build akan berjalan<br />
- Setelah selesai, OK dan tutup PEBuilder.<br />
- Restart PC Anda dan atur BIOS untuk Booting dari CD.<br />
- Anda akan segera melihat hasilnya</p>
<p align="justify">Windows Live CD sangat berguna apabila komputer kita terkena virus khususnya virus lokal. misalkan aja beberapa virus yang melakukan aksi dengan mengunci komputer pada menu logon sehingga sekalipun pengguna komputer sudah memasukkan Username dan Password yang benar, komputer tetap menolak untuk logon dan tetap meminta username dan password. repotnya lagi hal ini terjadi pula saat komputer start dalam safe mode atau safe mode with command Prompt. jadi untuk penanganan virusnya kita lakukan proses scaning virus melalui windows live CD.</p>
<p align="justify">
<p align="justify">by Asrul_07@ymail.com</p>
<p align="justify">
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/asrulstmik.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/asrulstmik.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/asrulstmik.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/asrulstmik.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/asrulstmik.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/asrulstmik.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/asrulstmik.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/asrulstmik.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/asrulstmik.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/asrulstmik.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/asrulstmik.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/asrulstmik.wordpress.com/6/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/asrulstmik.wordpress.com/6/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/asrulstmik.wordpress.com/6/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=6&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://asrulstmik.wordpress.com/2009/01/16/membuat-windows-xp-live-cd/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ce93d3d9f683a36cb2cc125065db64b5?s=96&#38;d=identicon" medium="image">
			<media:title type="html">asrulstmik</media:title>
		</media:content>

		<media:content url="http://fendix.files.wordpress.com/2008/02/live-cd-pebuilder.jpg?w=400&#38;h=400" medium="image" />
	</item>
		<item>
		<title>Cara Membuat Blog di blogspot</title>
		<link>http://asrulstmik.wordpress.com/2009/01/16/cara-membuat-blog/</link>
		<comments>http://asrulstmik.wordpress.com/2009/01/16/cara-membuat-blog/#comments</comments>
		<pubDate>Fri, 16 Jan 2009 08:45:28 +0000</pubDate>
		<dc:creator>asrulstmik</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://asrulstmik.wordpress.com/?p=3</guid>
		<description><![CDATA[Caranya : People Asrul &#8216; HMTI STMIK Handayani Makassar ( Domain User : http://user.blogspot.com Keuntungan : ~ Bisa membuat lebih dari 1 blog dengan 1 acount. ~ Layout bisa diganti. ~ Acount di GMAIL ( jika diaktifkan ). ~ Otomatis akan masuk dalam Search Engine GOOGLE. Kelemahan : ~ Tak adanya category posting. ~ Tak [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=3&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><!-- Mulai Code Blog --></p>
<div class="day">
<div class="post"><strong>Caranya :</strong></div>
<div class="post"><span style="text-decoration:line-through;"><strong>People</strong></span><em><strong> Asrul &#8216; HMTI STMIK Handayani Makassar </strong></em>(</div>
<div class="post">
<div class="posttext">
<p><strong>Domain User : </strong>http://user.blogspot.com<br />
<strong>Keuntungan : </strong><br />
~ Bisa membuat lebih dari 1 blog dengan 1 acount.<br />
~ Layout bisa diganti.<br />
~ Acount di <strong>GMAIL</strong> <em>( jika diaktifkan )</em>.<br />
~ Otomatis akan masuk dalam Search Engine <strong>GOOGLE</strong>.<br />
<strong>Kelemahan :</strong><br />
~ Tak adanya category posting.<br />
~ Tak adanya search dalam 1 blog juga 1 database.<br />
~ Tak adanya calendar arsip.<br />
~ Anonymous jika pemberi komentar tidak login blogger.com</p>
<p><strong>A. REGISTER : </strong></p>
<p>Jika belum mempunyai <em>acount</em> di <a href="http://belajarblog.blogsome.com/go.php?http://www.blogger.com" target="_blank"><strong>BLOGGER.COM</strong></a>, kamu bisa mulai dari sini, yaitu cara mendaftar….</p>
<p><strong>1. Create Your Blog Now</strong><br />
Buka browser window, buka situs <a href="http://belajarblog.blogsome.com/go.php?http://www.blogger.com" target="_blank"><strong>blogger.com</strong></a> <em>( klik di link disamping )</em><br />
Pilih tombol yang terdapat tulisan <strong>CREATE YOUR BLOG NOW</strong> pada halaman web <em>( yang dilingkari pada gambar dibawah )</em>.<br />
<img src="http://www.geocities.com/belajarblog/blogger/1.jpg" alt="Blogger.Com" /></p>
<p><strong>2. Isi Formulir</strong><br />
Isilah <em>form</em> dengan lengkap, kemudian tekan <strong>CONTINUE</strong> <em>( yang dilingkari pada gambar )</em><br />
<img src="http://www.geocities.com/belajarblog/blogger/2.jpg" alt="Blogger.Com" /></p>
<p><strong>3. Pilih Domain Blog</strong><br />
Isilah title blogmu, kemudian isi <em>form</em> address blog mu <em>( URL )</em> untuk membuka blog mu jika sudah selesai.<br />
Sebagai contoh, saya membuat domain <em>http://bantuanbelajar.blogspot.com</em>, berarti di <em>form</em> ke dua diisi <em>bantuanbelajar</em>.<br />
Pada form ke tiga, di isi <em>code</em> yang ada pada gambar atasnya <em>( gambar berupa perpaduan angka dan huruf , yang diberi tanda kotak pada gambar )</em>.<br />
Kemudian <strong>CONTINUE</strong> <em>( yang dilingkari pada gambar )</em><br />
<img src="http://www.geocities.com/belajarblog/blogger/3.jpg" alt="Blogger.Com" /></p>
<p><strong>4. Memilih Template</strong><br />
Pilih template yang kamu sukai. Template yang di sediakan adalah template standart pada Blogger.Com. Jika ingin mengganti bisa pada halaman admin acountmu <em>( akan di bahas di belakang )</em>.<br />
Pilih template yang di suka dengan cara memberi tanda titik (.) pada bawah gambar template yang ada <em>( gambar yang dilingkari )</em>, kemudian <strong>CONTINUE</strong>.<br />
<img src="http://www.geocities.com/belajarblog/blogger/4.jpg" alt="Blogger.Com" /></p>
<p><strong>B. POSTING</strong></p>
<p>Selamat, kamu sudah memiliki sebuah blog…..<br />
Kamu tinggal memulai untuk menulis di blog mu….<br />
<strong>[+]</strong> Setelah memilih template, maka kamu akan masuk ke halaman yang bertiliskan :<br />
<strong>Your blog has been created!</strong><br />
Kamu tinggal menekan tombol <strong>START POSTING</strong> <em>( yang dilingkari pada gambar )</em><br />
<img src="http://www.geocities.com/belajarblog/blogger/5.jpg" alt="Blogger.Com" /></p>
<p><strong>[+]</strong> Jika kamu sudah memiliki <em>acount</em>, kamu tinggal login saja di halaman depan.<br />
Kemudian kamu memilih gambar <strong>+</strong> <em>( yang diberi tanda lingkaran )</em> untuk menulis postingan baru.<br />
Jika ingin membuat blog baru, tak perlu untuk register kembali, karena untuk membuat beberapa blog, cukup 1 <em>acount</em> juga bisa, yaitu dengan cara menekan tombol <strong>CREAT A BLOG</strong> <em>( dalam gambar diberi tanda panah )</em>.<br />
<img src="http://www.geocities.com/belajarblog/blogger/6.jpg" alt="Blogger.Com" /></p>
<p><strong>[+]</strong> Mulai isi postingan yang akan kamu tulis, mulai dari judul postingan, juga isi postingan. Diatas tempat postingan telah tersedia tool &#8211; tool untuk style tulisan, baik mau text miring, ataupun tebal, dan sebagainya….<br />
Untuk menampilkan gambar pada isi postingan, bisa menggunakan code berikut…</p>
<p><code>&lt;img src="<strong>http://geocities.com/user/gambar.jpg</strong>"&gt;</code></p>
<p>dalam code di atas, yang text tebal adalah lokasi file gambar berada.<br />
Bagi yang mempunyai <strong>ID Yahoo</strong> bisa mendapatkan hosting gratis di <strong>Geocities</strong> untuk meletakkan file gambar ataupun file lainnya, yaitu tentu dengan cara mendaftar….<br />
Atau juga bisa mencari di <strong>Google</strong>, atau di situs manapun.<br />
Untuk mengetahui letak <em>(lokasi)</em> file gambar di situs lain yaitu klik kanan pada gambar, pilih <strong>properties</strong>, nanti disitu keluar keterangan gambar, mulai dari ukuran, jenis juga letak gambar…<br />
Ambil yang <em>Address [URL]</em>, taruh dalam tag tadi….</p>
<p>Setelah postingan selesai, tinggal mem-publish kannya, yaitu tekan tombol <strong>PUBLISH POST</strong>, atau yang dibeli lingkaran pada gambar dibawah…<br />
<img src="http://www.geocities.com/belajarblog/blogger/7.jpg" alt="Blogger.Com" /></p>
<p><strong>*)</strong> Kemudian tekan tombol <strong>REPUBLISH ENTIRE BLOG</strong>, setelah itu tekan tombol <strong>REPUBLISH INDEX ONLY</strong>.<br />
<img src="http://www.geocities.com/belajarblog/blogger/8.jpg" alt="Blogger.Com" /></p>
<p><strong>C. EDIT / ERASE POST</strong><br />
Jika ingin meng-edit atau menghapus postingan, pilih menu <strong>EDIT POST</strong> <em>( yang diberi lingkaran pada gambar )</em><br />
<img src="http://www.geocities.com/belajarblog/blogger/9.jpg" alt="Blogger.Com" /><br />
Setelah di edit, atau di hapus, ulangi langkah <strong>*)</strong> <em>( diatas )</em>.</p>
<p><strong>D. TEMPLATE</strong><br />
Untuk mengganti template, atau menambahkan tool dalam blog, pilihlah menu <strong>TEMPLATE</strong> <em>( yang dilingkari pada gambar dibawah )</em>. Dihalaman tersebut akan terlihat code-code, tag <em>HTML</em> dari blogmu. Tentang cara mengganti template akan saya bahas di lain waktu….<br />
<img src="http://www.geocities.com/belajarblog/blogger/10.jpg" alt="Blogger.Com" /></p>
<p><strong>E. LIHAT HASIL</strong><br />
Disamping kanan menu <strong>TEMPLATE</strong>, terdapat menu <strong>VIEW BLOG</strong>, klik kanan menu tersebut, pilih <strong>Open in New Window</strong>.<br />
Dan hasilnya…….<br />
Yahoyyyyy………………<br />
Blogmu sudah jadi……, selamat yahh…… <img class="wp-smiley" src="http://belajarblog.blogsome.com/wp-images/smilies/icon_biggrin.gif" alt="D" /> <img class="wp-smiley" src="http://belajarblog.blogsome.com/wp-images/smilies/icon_biggrin.gif" alt="D" /> <img class="wp-smiley" src="http://belajarblog.blogsome.com/wp-images/smilies/icon_smile.gif" alt=")" /></p>
<p>by Asrul</p>
<p>asrul_07@ymail.com</p>
<p>asrulstmik@gmail.com</p></div>
</div>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/asrulstmik.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/asrulstmik.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/asrulstmik.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/asrulstmik.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/asrulstmik.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/asrulstmik.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/asrulstmik.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/asrulstmik.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/asrulstmik.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/asrulstmik.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/asrulstmik.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/asrulstmik.wordpress.com/3/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/asrulstmik.wordpress.com/3/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/asrulstmik.wordpress.com/3/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=3&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://asrulstmik.wordpress.com/2009/01/16/cara-membuat-blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ce93d3d9f683a36cb2cc125065db64b5?s=96&#38;d=identicon" medium="image">
			<media:title type="html">asrulstmik</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/1.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/2.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/3.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/4.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/5.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/6.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/7.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/8.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/9.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://www.geocities.com/belajarblog/blogger/10.jpg" medium="image">
			<media:title type="html">Blogger.Com</media:title>
		</media:content>

		<media:content url="http://belajarblog.blogsome.com/wp-images/smilies/icon_biggrin.gif" medium="image">
			<media:title type="html">D</media:title>
		</media:content>

		<media:content url="http://belajarblog.blogsome.com/wp-images/smilies/icon_biggrin.gif" medium="image">
			<media:title type="html">D</media:title>
		</media:content>

		<media:content url="http://belajarblog.blogsome.com/wp-images/smilies/icon_smile.gif" medium="image">
			<media:title type="html">)</media:title>
		</media:content>
	</item>
		<item>
		<title>Hello world!</title>
		<link>http://asrulstmik.wordpress.com/2008/12/31/hello-world/</link>
		<comments>http://asrulstmik.wordpress.com/2008/12/31/hello-world/#comments</comments>
		<pubDate>Wed, 31 Dec 2008 14:21:53 +0000</pubDate>
		<dc:creator>asrulstmik</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Welcome to WordPress.com. This is your first post. Edit or delete it and start blogging!<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=1&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Welcome to <a href="http://wordpress.com/">WordPress.com</a>. This is your first post. Edit or delete it and start blogging!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/asrulstmik.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/asrulstmik.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/asrulstmik.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/asrulstmik.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/asrulstmik.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/asrulstmik.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/asrulstmik.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/asrulstmik.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/asrulstmik.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/asrulstmik.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/asrulstmik.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/asrulstmik.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/asrulstmik.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/asrulstmik.wordpress.com/1/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=asrulstmik.wordpress.com&amp;blog=6008002&amp;post=1&amp;subd=asrulstmik&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://asrulstmik.wordpress.com/2008/12/31/hello-world/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ce93d3d9f683a36cb2cc125065db64b5?s=96&#38;d=identicon" medium="image">
			<media:title type="html">asrulstmik</media:title>
		</media:content>
	</item>
	</channel>
</rss>
