Senseii. Malware type VB Script worm is sized around 59 KB, have quite a lot of payload, such as displaying a message like the picture at start Windows, or hide drives C through manipulation of the registry, causing drive C is not visible in Windows Explorer.Worm will spread on a removable disk with senseii.vbe and desktop.vbs name, do not miss a autorun.inf file in order to run the worm automatically if autorun is active.Some worms and companionnya duplicate files will also be created with the name:
c: \ windows \ EXPL0RER.vbs
c: \ windows \ system \ WinUpdt.vbs
c: \ antivirus.vbs
c: \ regedit.vbs
and much more. Although the drive C is not visible, but you can still access it via the Command Prompt. On the desktop, it also will create a file called Do not click.ini containing the text:
w32 s@ipud1n adalah virus tiruan dari virus yg pernah ada ingin tau siapa yang buat tiruanya yang jelas bukan kamu kan? [credits] senseii c45 sekolah di playgroup terkenal di Cirebon
List of virus addition to 3.0.3 Update PCMAV Build4:
74BE16
74BE16.exe.A
74BE16.exe.B
74BE16.fne.A
74BE16.fne.B
74BE16.fne.C
74BE16.fne.D
74BE16.fne.E
74BE16.fne.F
74BE16.fne.G
74BE16.fnr.A
74BE16.fnr.B
Aibo.C
Anti
Anti.doc
Autoit.EY
Autoit.EZ
Autoit.EZ.cmd
Autoit.EZ.inf
Autoit.FA
Autoit-ReplaceIcon
BHP
BlackLove.B
Brontok-Joseray.J
Brontok-Joseray.J.bin
CekVirus
DosenBlagu
Flyff666.vbs.B
Hasmi.B
Hasmi.B.ini
Hswdc.B
Iklan
KillMe
Malingsi.R
Malingsi.S
Malingsi.S.ini
Malingsi.T
Malingsi.T.ini
Malingsi.T.mrc
Malingsi.T.sys.A
Malingsi.T.sys.B
Malingsi.T.sys.C
Malingsi.T.sys.D
Malingsi.T.sys.E
Malingsi.T.sys.F
Malingsi.T.sys.G
Malingsi.T.sys.H
Malingsi.U
Metamorpica
Minerva.D
MyDoom.B
Nebula
QGS
QGS.dll
QGS.hosts
QGS.inf
QGS.lnk
Restui
Senseii.vbs
Senseii.vbs.ini.A
Senseii.vbs.ini.B
Senseii.vbs.vbs.A
Senseii.vbs.vbs.B
Senseii.vbs.vbs.C
Senseii.vbs.vbs.D
Download PCMAV 3.0.3 Update Build4 (Senseii: Menyembunyikan Drive C)
