In doing this procedure you should login as administrator of your PC.
1. Right Click My Computer then explore. Look for autorun.inf and Delete this.
2. Click Start - Run and type regedit. Click HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
3. Look for LegalNoticeCaption and delete the data “PROMISE???”
4. Look for LegalNoticeText and delete the data “I am still waiting for the strawberry coming from my baguio! Pls…Help!”
Then close regedit and restart your computer.
Note: Just remove the the value data. ok
Hope this helps to all of you who have this kind of virus. 
Like this blog? Why not buy me a cup of coffee?
Symptoms: C: drive has an [autoplay] function when right-clicked. Internet Explorer has “TAGA LIPA ARE!” in it’s title bar.
Mode of Transfer: USB, Fixed/Portable HDD
Target: Internet Explorer, Registry, MSConfig, Autorun.inf
Effects: Every Mass Storage Device linked to the infected PC will be inserted with an autorun file which will trigger the Windows Scripting Service to run its main file “FS6519.dll.vbs”, which is marked as a system file and is in the root directory of the Drive.
Note: You must have administrator privilege on the computer you are working with to remove this virus.
Read the rest of this entry »
Like this blog? Why not buy me a cup of coffee?