Windows XP error / Blue Screen, mungkin McAfee biang keladinya

Sembilan jam yang lalu banyak pengguna facebook ataupun twitter yang mengalami error ataupun kerusakan pada sistem operasi mereka khususnya Windows XP dan memposting keluhan mereka di situs sosial. Ternyata kebanyakan dari mereka menggunakan McAfee AntiVirus, dan kejadian ini merupakan hail dari false positive (salah identifikasi) virus.

dibawah ini adalah informasi yang berhasil didapatkan mengenai kejadian dan solusi yang dapat dilakukan untuk mengembalikan sistem agar berjalan normal kembali.

McAfee Dat 5958 Issue
Description
The McAfee 5958 Dat is causing the SVCHost.exe (a critical Windows system file) to be classed as a Virus. Cleansing action against this file is then undertaken making some critical elements of Windows cease to function. Most critically systems are coming back up without any network functionality which makes remote resolution of the issue difficult.
Only Windows XP systems seem to be affected at this stage, although we have Windows XP machines with the 5958 update that are not affected.
We have a number of clients affected by this issue and have put some resolution steps together to resolve the problem. Our recommendations are below:
Option 1 : Manual recovery
Boot Windows in to Safe Mode

Log on and get to a command prompt

Copy the contents of the McAfee OldEngine folder to the parent "Engine" folder.
On most machines this will mean copying: "c:\program files\common files\mcafee\engine\oldengine\*.*" to "c:\program files\common files\mcafee\engine"

Then copy svchost.exe from the DLLCache to SYS32.

Again, on most machines, this will mean copying "c:\windows\system32\dllcache\svchost.exe" to "c:\windows\system32"

Reboot your machine

Go in to McAfee Console and prevent any automatic updates until you are confident it is safe to re-enable them.

by: Certality Ltd

POST TGL: 22 April 2010
KATEGORI: Windows

Site Version: 0.9.3, Date Build: Oct-2008, thanks to php-mysql tutorial and Intranet Journal
Isi bebas didistribusikan dengan mencantumkan alamat asal.