This virus categorized as low class because actually this virus not really hard to removed and not really annoyed. Carefully when you received this messages/pop up:
2Â saat pertama berkenalan dengannya aku merasa senang
3Â dia hanya seorang gadis desa
4Â dengan cahaya pada bola matanya
5Â yang mampu membawaku terbang
6Â dengan keluguannya
7Â yang selalu membuatku membimbingnya
8Â dia adalam matahariku
9Â yang mencairkan kebekuan hatiku
10 dari :rieysha
To know if your computer infected by this virus is you will see many multimedia files with size around 148KB This virus will generate lot of this files type so it will take enough your disk-space.
Norman antivirus can detect this virus as W32/Wayrip.A
After success to active this virus will creating his master file and also copied it into another drive like d: e: etc.
Virus will change registry value in HKLM to make it active each time computer reboot:
nikmatnya_gadis_desa = C:\nikmatnya_gadis_desa.exe
To protect himself from people( like me ) this Virus will try to blocking some windows function like:
- Folder Option
- Menu Shutdown
- Drive C:\
- Registry Editor
- Task Manager
Virus will change your browser start page redirected to http://h1.ripway.com/anharku (Account already deleted by ripway company) This is the virus creator homepage he try to get lot of people come to his website maybe just for click him adsense ads *LOL*
Virus will change your time AM PM value into riesyha
Virus will change your windows information
Virus will hiding your drive C:
The best part of this virus he will try to kill all security/antivirus programs with caption:
I said this is the best part of this virus because it might make some people confused this virus also still active on windows mode “safe mode with command prompt” and the last lame autorun.inf file for spreading himself using flash disk media.
Enough now time to remove this virus!
1. Turn off “system restore” service when in cleaning process.
4. Delete all master virus with specification:
- Size 148KB
- Icon Multimedia
- File extension .exe
- File type Application
Before you do this set folder option to show hidden files.
5.Â Delete also this file list on root drive (c:\, d:\, etc)
- pesene_seng_gawe.htm (size 22 KB)
- xx pesene_seng_gawe.htm (size 1 KB), xx = Random
6. Last scan with your best antivirus program to make sure your system clean.
Done, Have a nice day
- Microsoft.lnk Shortcut Virus? Worm:PIF/Starter.A
- Remove Sandra Dewi Bugil Virus W32/Sadra.A
- Remove W32/ALMAN Virus
- Remove MaHaDeWa VBS.Autorun.AM
Related Search Terms:
- newforex3gp blogspot (9)
- newforex3gp (9)
- gadis desa (8)
- forex3gp (8)
- dewi3gp blogspot (5)
- youtubebokeptv (4)
- www blogspot co id (4)
- japanxx 3gp (3)
- My faporite 3gp (3)
- dewi3gpblogsport (3)
- puisi desa (3)
- Indo xx 3gp (3)
- newforex3gp blogspot video (2)
- Gadis bugil (2)
- forex3gp blogspot (2)
If you're new here, you may want to subscribe to my RSS feed. You may copy or publish this article to your blog or other site as long you give credit link back to this site article. Thanks for visiting my blog!
3 Responses to “Remove Gadis Desa W32/Wayrip.A”
- Remove Gadis Desa W32/Wayrip.A | Today's Bargain Electronics Store
- Remove Gadis Desa W32/Wayrip.A | Fairy Tail Manga