PisangBakar: PCMAV 1.93 Update Build2
Author: pcmav
14
Feb
Update Build2 hadir dengan penambahan 10 pengenal varian virus baru. Bagi Anda pengguna PCMAV 1.93 sangat disarankan segera melakukan update, agar PCMAV Anda dapat mengenali dan membasmi virus lebih banyak lagi. Jadi, total virus yang dapat dikenali hingga Build2 kali ini adalah sebanyak 20 virus.
Untuk mendapatkan dan menggunakan update PCMAV ini, pastikan terlebih dahulu PCMAV RealTime Protector tidak sedang aktif. Jika iya, Anda harus menutup aplikasi tersebut terlebih dahulu. Lalu Anda cukup menjalankan PCMAV Cleaner (PCMAV-CLN.exe), tentunya komputer harus dalam keadaan aktif terhubung ke Internet (non-proxy). Fitur GetUpdates dari PCMAV secara otomatis akan memberikan alamat internet yang aktif di mana Anda bisa men-download file update tersebut. Letakkan file hasil download tersebut (PCMAV.vdb) ke dalam folder di mana PCMAV berada. Jika sebelumnya telah terdapat file update yang lama, Anda cukup menimpanya. Pastikan sekali lagi, bahwa nama file update adalah PCMAV.vdb, jika berbeda, cukup ubah namanya. Dan nanti saat Anda kembali menjalankan PCMAV, ia sudah dalam keadaan kondisi ter-update.
Namun bagi Anda yang ingin mendapatkan file update tersebut secara manual, Anda bisa men-download file-nya melalui beberapa alamat ini: SendSpace.com, ZippyShare.com (mirror), atau Badongo.com (mirror).
PisangBakar. Icon yang digunakan virus ini mirip dengan aplikasi WinAmp atau file mp3. Ia dibuat menggunakan Visual Basic dengan ukuran tubuh sekitar 182KB, di-pack menggunakan UPX. Saat menginfeksi komputer, ia akan mencari file .MP3 untuk kemudian dibuat duplikatnya dengan menyerupai nama yang sama, namun dengan extension .EXE. Begitu pula saat menginfeksi flash disk, ia akan membuat sebuah folder baru dengan nama “Lagu baru” yang di dalamnya berisi file “Marley-Bird Of Paradise.Exe”. Pada root drive C: akan ditemukan file “Info Pisang Bakar.Txt” yang berisi pesan dari si pembuat virus, selain itu ada juga file “Pisang Bara.Exe”.
Daftar tambahan virus hingga PCMAV 1.93 Update Build2:
Autoit.CL
Autoit.CM
Autorunme.D
Hidea
Nabe.A
Nabe.B
Nabe.C
Nginul.B
PisangBakar
PisangBakar.bat
PisangBakar.txt
Recycler.Q
Recycler.Q.inf
Recycler.R
Recycler.S
Vfp
Vfp.bat
Vfp.inf
Yeanqin
Yuyun.vbs.C
15 Responses for "PisangBakar: PCMAV 1.93 Update Build2"
pc mav he best….!
Kmaren MMC ku kena virus yg namanya Koklm & di situ di bilang post this to pcmav. Pls help krn ga bisa ilang virusnya
terima kasih PCMAV
Trims PCMAV, ada nggak update untuk virus W32Sality
Thanks PCMAV…. gw udah install……
TOLONG……
Virus yang bikin computer gw lemot banget… harus pake CurrProsses Dulu supaya priority-nya high karena task managernya dah diilangin ama virus…
Nih Gw bawain data2 yang ada di CurrProsses!
==================================================
Process Name : svchost.exe
ProcessID : 796
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Generic Host Process for Win32 Services
Company : Microsoft Corporation
Window Title :
File Size : 14,336
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\system32\svchost.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:23 PM
Visible Windows : 0
Hidden Windows : 0
User Name :
Mem Usage : 2056 K
Mem Usage Peak : 3976 K
Page Faults : 1170
Pagefile Usage : 1668 K
Pagefile Peak Usage : 1700 K
File Attributes :
==================================================
==================================================
Process Name : svchost.exe
ProcessID : 940
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Generic Host Process for Win32 Services
Company : Microsoft Corporation
Window Title :
File Size : 14,336
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\system32\svchost.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:24 PM
Visible Windows : 0
Hidden Windows : 0
User Name :
Mem Usage : 1308 K
Mem Usage Peak : 2800 K
Page Faults : 856
Pagefile Usage : 1124 K
Pagefile Peak Usage : 1196 K
File Attributes :
==================================================
==================================================
Process Name : svchost.exe
ProcessID : 988
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Generic Host Process for Win32 Services
Company : Microsoft Corporation
Window Title :
File Size : 14,336
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\system32\svchost.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:24 PM
Visible Windows : 0
Hidden Windows : 0
User Name :
Mem Usage : 2304 K
Mem Usage Peak : 6764 K
Page Faults : 1874
Pagefile Usage : 3312 K
Pagefile Peak Usage : 3364 K
File Attributes :
==================================================
==================================================
Process Name : Explorer.EXE
ProcessID : 1576
Priority : High
Product Name : Microsoft® Windows® Operating System
Version : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
Description : Windows Explorer
Company : Microsoft Corporation
Window Title : Program Manager
File Size : 1,032,192
File Created Date : 8/3/2004 5:56:50 PM
File Modified Date : 8/3/2004 5:56:50 PM
Filename : C:\WINDOWS\Explorer.EXE
Base Address : 0×01000000
Created On : 2/18/2009 3:57:32 PM
Visible Windows : 2
Hidden Windows : 21
User Name : BARLEY-08E33FAE\Adrian Barley
Mem Usage : 16564 K
Mem Usage Peak : 33180 K
Page Faults : 102067
Pagefile Usage : 19108 K
Pagefile Peak Usage : 24832 K
File Attributes :
==================================================
==================================================
Process Name : winampa.exe
ProcessID : 1768
Priority : Normal
Product Name :
Version :
Description :
Company :
Window Title :
File Size : 33,792
File Created Date : 12/13/2003 12:50:34 AM
File Modified Date : 12/13/2003 12:50:34 AM
Filename : C:\Program Files\Winamp\winampa.exe
Base Address : 0×00400000
Created On : 2/18/2009 3:57:34 PM
Visible Windows : 0
Hidden Windows : 1
User Name : BARLEY-08E33FAE\Adrian Barley
Mem Usage : 1308 K
Mem Usage Peak : 3316 K
Page Faults : 949
Pagefile Usage : 936 K
Pagefile Peak Usage : 944 K
File Attributes : A
==================================================
==================================================
Process Name : StyleXP.exe
ProcessID : 1776
Priority : Normal
Product Name : StyleXP Application
Version : 0, 30, 19, 0
Description : StyleXP Application
Company :
Window Title :
File Size : 1,441,792
File Created Date : 5/24/2006 6:31:39 PM
File Modified Date : 5/24/2006 6:31:39 PM
Filename : C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
Base Address : 0×00400000
Created On : 2/18/2009 3:57:34 PM
Visible Windows : 0
Hidden Windows : 1
User Name : BARLEY-08E33FAE\Adrian Barley
Mem Usage : 6184 K
Mem Usage Peak : 20900 K
Page Faults : 978800
Pagefile Usage : 30432 K
Pagefile Peak Usage : 31880 K
File Attributes : A
==================================================
==================================================
Process Name : ctfmon.exe
ProcessID : 1784
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : CTF Loader
Company : Microsoft Corporation
Window Title :
File Size : 15,360
File Created Date : 8/3/2004 5:56:50 PM
File Modified Date : 8/3/2004 5:56:50 PM
Filename : C:\WINDOWS\system32\ctfmon.exe
Base Address : 0×00400000
Created On : 2/18/2009 3:57:34 PM
Visible Windows : 0
Hidden Windows : 4
User Name : BARLEY-08E33FAE\Adrian Barley
Mem Usage : 1972 K
Mem Usage Peak : 3500 K
Page Faults : 3013
Pagefile Usage : 976 K
Pagefile Peak Usage : 984 K
File Attributes :
==================================================
==================================================
Process Name : wvcp.exe
ProcessID : 188
Priority : Normal
Product Name :
Version :
Description :
Company :
Window Title :
File Size : 0
File Created Date : N/A
File Modified Date : N/A
Filename : c:\Documents and Settings\Adrian Barley\Application Data\Microsoft\wvcp.exe
Base Address : 0×00400000
Created On : 2/18/2009 3:57:37 PM
Visible Windows : 0
Hidden Windows : 3
User Name : BARLEY-08E33FAE\Adrian Barley
Mem Usage : 2640 K
Mem Usage Peak : 5384 K
Page Faults : 1482
Pagefile Usage : 3032 K
Pagefile Peak Usage : 3088 K
File Attributes : ACRHS
==================================================
==================================================
Process Name : WZQKPICK.EXE
ProcessID : 424
Priority : Normal
Product Name : WinZip
Version : 1.0 (32-bit)
Description : WinZip Executable
Company : WinZip Computing, S.L.
Window Title :
File Size : 599,392
File Created Date : 9/10/2008 5:00:00 AM
File Modified Date : 9/10/2008 5:00:00 AM
Filename : D:\Program Files\WinZip\WZQKPICK.EXE
Base Address : 0×00400000
Created On : 2/18/2009 3:57:39 PM
Visible Windows : 0
Hidden Windows : 1
User Name : BARLEY-08E33FAE\Adrian Barley
Mem Usage : 1340 K
Mem Usage Peak : 2908 K
Page Faults : 809
Pagefile Usage : 1260 K
Pagefile Peak Usage : 1260 K
File Attributes :
==================================================
==================================================
Process Name : CProcess.exe
ProcessID : 3268
Priority : Normal
Product Name : CurrProcess
Version : 1.13
Description : CurrProcess
Company : NirSoft
Window Title : Select a filename to save the processes list
File Size : 36,352
File Created Date : 2/18/2009 11:29:33 AM
File Modified Date : 2/18/2009 11:29:33 AM
Filename : D:\Adrian Barley\New Software\New Folder\cprocess\CProcess.exe
Base Address : 0×00400000
Created On : 2/18/2009 6:29:33 PM
Visible Windows : 2
Hidden Windows : 12
User Name : BARLEY-08E33FAE\Adrian Barley
Mem Usage : 7248 K
Mem Usage Peak : 7444 K
Page Faults : 5443
Pagefile Usage : 3564 K
Pagefile Peak Usage : 3984 K
File Attributes : A
==================================================
==================================================
Process Name : smss.exe
ProcessID : 448
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Windows NT Session Manager
Company : Microsoft Corporation
Window Title :
File Size : 50,688
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\System32\smss.exe
Base Address : 0×48580000
Created On : 2/18/2009 3:56:15 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 96 K
Mem Usage Peak : 464 K
Page Faults : 212
Pagefile Usage : 164 K
Pagefile Peak Usage : 1672 K
File Attributes :
==================================================
==================================================
Process Name : csrss.exe
ProcessID : 512
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Client Server Runtime Process
Company : Microsoft Corporation
Window Title :
File Size : 6,144
File Created Date : 8/3/2004 5:56:50 PM
File Modified Date : 8/3/2004 5:56:50 PM
Filename : C:\WINDOWS\system32\csrss.exe
Base Address : 0x4A680000
Created On : 2/18/2009 3:57:20 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 2304 K
Mem Usage Peak : 5604 K
Page Faults : 5050
Pagefile Usage : 1548 K
Pagefile Peak Usage : 5128 K
File Attributes :
==================================================
==================================================
Process Name : winlogon.exe
ProcessID : 536
Priority : High
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Windows NT Logon Application
Company : Microsoft Corporation
Window Title :
File Size : 502,272
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\system32\winlogon.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:22 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 1752 K
Mem Usage Peak : 14944 K
Page Faults : 10984
Pagefile Usage : 7372 K
Pagefile Peak Usage : 8244 K
File Attributes :
==================================================
==================================================
Process Name : services.exe
ProcessID : 580
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Services and Controller app
Company : Microsoft Corporation
Window Title :
File Size : 108,032
File Created Date : 8/3/2004 5:56:56 PM
File Modified Date : 8/3/2004 5:56:56 PM
Filename : C:\WINDOWS\system32\services.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:22 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 1840 K
Mem Usage Peak : 3280 K
Page Faults : 3418
Pagefile Usage : 1664 K
Pagefile Peak Usage : 1732 K
File Attributes :
==================================================
==================================================
Process Name : lsass.exe
ProcessID : 592
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : LSA Shell (Export Version)
Company : Microsoft Corporation
Window Title :
File Size : 13,312
File Created Date : 8/3/2004 5:56:52 PM
File Modified Date : 8/3/2004 5:56:52 PM
Filename : C:\WINDOWS\system32\lsass.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:22 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 1116 K
Mem Usage Peak : 5704 K
Page Faults : 5649
Pagefile Usage : 3656 K
Pagefile Peak Usage : 3864 K
File Attributes :
==================================================
==================================================
Process Name : svchost.exe
ProcessID : 740
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Generic Host Process for Win32 Services
Company : Microsoft Corporation
Window Title :
File Size : 14,336
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\system32\svchost.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:23 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 2008 K
Mem Usage Peak : 4732 K
Page Faults : 1429
Pagefile Usage : 3036 K
Pagefile Peak Usage : 23212 K
File Attributes :
==================================================
==================================================
Process Name : svchost.exe
ProcessID : 832
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Generic Host Process for Win32 Services
Company : Microsoft Corporation
Window Title :
File Size : 14,336
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\System32\svchost.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:23 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 10368 K
Mem Usage Peak : 20476 K
Page Faults : 13419
Pagefile Usage : 10836 K
Pagefile Peak Usage : 17260 K
File Attributes :
==================================================
==================================================
Process Name : StyleXPService.exe
ProcessID : 860
Priority : Normal
Product Name : StyleXPService Module
Version : 0, 20, 0, 3000
Description : StyleXPService Module
Company :
Window Title :
File Size : 372,736
File Created Date : 5/24/2006 6:31:06 PM
File Modified Date : 5/24/2006 6:31:06 PM
Filename : C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
Base Address : 0×00400000
Created On : 2/18/2009 3:57:23 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 1524 K
Mem Usage Peak : 3056 K
Page Faults : 320753
Pagefile Usage : 820 K
Pagefile Peak Usage : 1004 K
File Attributes : A
==================================================
==================================================
Process Name : spoolsv.exe
ProcessID : 1116
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Spooler SubSystem App
Company : Microsoft Corporation
Window Title :
File Size : 57,856
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\system32\spoolsv.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:25 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 1480 K
Mem Usage Peak : 4460 K
Page Faults : 1720
Pagefile Usage : 3032 K
Pagefile Peak Usage : 3340 K
File Attributes :
==================================================
==================================================
Process Name : svchost.exe
ProcessID : 1312
Priority : Normal
Product Name : Microsoft® Windows® Operating System
Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Description : Generic Host Process for Win32 Services
Company : Microsoft Corporation
Window Title :
File Size : 14,336
File Created Date : 8/3/2004 5:56:58 PM
File Modified Date : 8/3/2004 5:56:58 PM
Filename : C:\WINDOWS\system32\svchost.exe
Base Address : 0×01000000
Created On : 2/18/2009 3:57:26 PM
Visible Windows : 0
Hidden Windows : 0
User Name : NT AUTHORITY\SYSTEM
Mem Usage : 2136 K
Mem Usage Peak : 3944 K
Page Faults : 1294
Pagefile Usage : 2348 K
Pagefile Peak Usage : 2460 K
File Attributes :
==================================================
Gw dah nyerah dah, berkali gw cari di internet kagak adad2 solisinya! Terus pas gw masukin flashdisk gw ke computer warnet semua situs antivirus di blokir semua jadi gw gak bisa dapet update-an and gw dah download aplikasi dari blog2 yang ngasih masukan gitu, tapi aplikasinya gak bisa kebuka atawa diinstal gitu!!!
Pas gw pengen install HiJackThis, taunya gak bisa
Terus PCmav update-annya ilang
Kalo pake AVG Aplikasi Gw ilang semua
Kagak ada tanda2 di my document tapi gw curiga ama “application data” yang ada di “C:\Documents and Settings\Adrian Barley\Application Data\Microsoft” gw, banyak file2 gak jelas gitu kayak : asca.exe, csaw.exe, dsna.exe, scnw.exe, vcw.exe, dan lain2. Di flashdisk gw juga ada file .pif yang gak jelas juga, Free_mine.
Bisa ditolong gak soalnya computer gw offline and gw ke warnet kalo mau internetan, dan semua antivirus yang mantep adanya online…
Terus gw pengen Tanya nih kalo pengen dapet antivirus offline yang mantep, antivirus apa yah???
Thank’s…
PC MAV memang Hebring………..
dulu saya coba ke PC pribadi PC MAV oke-oke saja.
sekarang saya mengelola warnet, mencoba mengunakan PC MAV terbaru.
Masalah pemilik modal lebih menyukai AVIRA Anti Virus. jadi dua-duanya di install.
tapi AVIRA menganggap PCMAV.vdb yang update itu selalu virus/trojan/worm (nampaknya, lalu beberapa fasilitas yahoo game.
apa sekarang anti virus bersaing dengan menganggap anti virus saingannya sebagai virus
kalo ada file yang di suspect virus, kan diminta untuk di submit for further analysis. Cara submitnya gimana ya?
PC Mav tersayang.. saya ada masalah mengenai instal pcmav yg baru.
karena sebelumnya sy telah menggunakan AVG v.8 free terbaru, akan tetapi etelah sy cb instal.malah pcmav terdeteksi sebagai jenis virus? bagaimana ini.. apakah sy harus menghapus AVG tsb, lalu instal pcmav saja.. karena sy inggin menggunakan 2 antivirus baik untuk virus yg lokal (pcmav) dan virus luar (AVG). mohon sarrannya… terimakasih
wah . . .
aq kepengin tiap minggu sllu ada update virus nih . .
thanks aj deh buat pcmav . .
ku scan PCMAV.vdb pake avast,ternyata ada trojan nya? gimana ini?anti virus koq ada virusnya?
mirror :
http://m4n.web.id/pcmav_1.93.rar
http://m4n.web.id/pcmav_1.93_build3.rar
software pendukung :
http://m4n.web.id/fdminst-lite.exe
http://m4n.web.id/wrar380.exe
Dear PC Mav,
Saya juga mengalami yg mas qomari sanjaya alami, saya juga pakai AV Avira di laptop saya, namun begitu saya download pcmav.dvb langsung terdeteksi virus dgn keterangan : “TR/ATRAPS.Gen”
Nah Lho?? Gimana dong PC MAV?? Makasih Klo Di Reply.. XD
ass. sblumnya aq thanks ya kpd pc mav… tapi aq mw tanya nh ? klo virus suspected itu ap yah, cz setiap aq scan dg pc mav aq, pasti ada virus suspected, klo itu virus bagaimana cara menghilangkanya . sesudahnya thanks ya…
Leave a reply