<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-1969225905526062024</id><updated>2012-02-16T02:49:23.855-08:00</updated><title type='text'>craigduerr</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.craigduerr.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1969225905526062024/posts/default'/><link rel='alternate' type='text/html' href='http://www.craigduerr.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>cduerr</name><uri>http://www.blogger.com/profile/06044888379508006730</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-1969225905526062024.post-4848592736512464886</id><published>2010-07-29T19:47:00.000-07:00</published><updated>2010-07-29T19:58:58.619-07:00</updated><title type='text'></title><content type='html'>I just wrote this up as an FYI. I think we've all been through  some sort of malware infection - use this guide to DIY or guide you in  getting services from the Geeksquad, or whatever. -C&lt;br /&gt;&lt;br /&gt;You woke up to find a bunch of Email delivery error messages in your  inbox. Or you are getting notes from your Facebook friends that you are  posting links to bogus web sites on their walls. You're infected with  malware.  Someone somewhere (China? Russia?) could be selling time on  your pc to spam other people. Could be using your system to act in  unison with other "zombies" to attack or flood legitimate web sites  (remember when Yahoo.com went down for a day?.) Or worse still - a  sniffer or key logger is watching your system for signs of banking  activities and will send your user account name and password to the  attacker as soon as it catches you logging in. &lt;br /&gt;&lt;br /&gt;The facebook links are actually designed to entice other people into  downloading some malware. You have some component of that same malware  on your system. I recently dealt with this at home and found that no  less than three different scans from three different programs were  needed.&lt;br /&gt;&lt;br /&gt;1) Get AVG Free Antivirus (or update the one you have.) Restart in safe  mode and run the scan. At the very least rename all the files that are  Identified, delete if you feel lucky. You can use Microsoft's defender,  or your corporate antivirus scanner if you have one. Run this step until  the scan runs clean (no found items) or the found items are  quarantined.&lt;br /&gt;&lt;br /&gt;2) Get MalwareBytes, install it, and update it. In safe mode on your PC  run a scan and delete or rename everything it finds. Adaware by Lavasoft  is a good product. I have also heard Spy Bot is useful.  Run this step  until the scan runs clean, same as above..&lt;br /&gt;&lt;br /&gt;3) I like this tool for the final step - &lt;a href="http://dlpro.antivir.com/package/rescue_system/common/en/rescue_system-common-en.iso" onmousedown="'UntrustedLink.bootstrap($(this)," rel="nofollow" target="_blank"&gt;&lt;span&gt;http://dlpro.antivir.com/p&lt;/span&gt;&lt;wbr&gt;&lt;span class="word_break"&gt;&lt;/span&gt;&lt;span&gt;ackage/rescue_system/commo&lt;/span&gt;&lt;wbr&gt;&lt;span class="word_break"&gt;&lt;/span&gt;&lt;span&gt;n/en/rescue_system-common-&lt;/span&gt;&lt;wbr&gt;&lt;span class="word_break"&gt;&lt;/span&gt;en.iso&lt;/a&gt; it is a CD Rom image file that can  be burned to a blank CD. Once burned you boot to that CD and it mounts  your Windows filesystem and scans it for yet more malware. Again, run  this step till the scan runs clean.&lt;br /&gt;&lt;br /&gt;4) If you find malware in each step you may want to get one of the  malware scanners listed in step two that you didn't use and run it. If  you get a clean bill of health you may be out of the woods.&lt;br /&gt;&lt;br /&gt;5) Run windows update, take all the patches. Reboot, run windows update  again until it tells you there is nothing more required.&lt;br /&gt;&lt;br /&gt;6) Update Java - Java will try to update itself if you let it, if you  are infected via Java you may get an error that Java says points to a  malware infection. Uninstall Java via the Add and Remove Control Panel  and install the latest java  using the full installer, not the network  installer version. You will know it's the full install because it's the  bigger file of the two they offer for download.&lt;br /&gt;&lt;br /&gt;7) Update Adobe (flash? Yes. Reader? Yes.) Better yet - get foxit for  PDF files and FlashBlock. You will still want to run the latest Flash  player from Adobe.&lt;br /&gt;&lt;br /&gt;Note: Never click yes to auto update anything "on the fly" unless you  specifically went to the site to update that's site's application. (like  going straight to Adobe to update flash..) Also, if you get a message  that the server's SSL certificate  is bad for some reason, don't go  there. If you do chose to go there, don't enter any account information  like your username and password.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1969225905526062024-4848592736512464886?l=www.craigduerr.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.craigduerr.com/feeds/4848592736512464886/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.craigduerr.com/2010/07/i-just-wrote-this-up-as-fyi.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1969225905526062024/posts/default/4848592736512464886'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1969225905526062024/posts/default/4848592736512464886'/><link rel='alternate' type='text/html' href='http://www.craigduerr.com/2010/07/i-just-wrote-this-up-as-fyi.html' title=''/><author><name>cduerr</name><uri>http://www.blogger.com/profile/06044888379508006730</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1969225905526062024.post-829778155371321096</id><published>2009-09-08T21:02:00.000-07:00</published><updated>2009-09-08T21:03:00.363-07:00</updated><title type='text'></title><content type='html'>Hello, World!&lt;br /&gt;&lt;br /&gt;www.twitter.com/cduerr&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1969225905526062024-829778155371321096?l=www.craigduerr.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.craigduerr.com/feeds/829778155371321096/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.craigduerr.com/2009/09/hello-world-www.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1969225905526062024/posts/default/829778155371321096'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1969225905526062024/posts/default/829778155371321096'/><link rel='alternate' type='text/html' href='http://www.craigduerr.com/2009/09/hello-world-www.html' title=''/><author><name>cduerr</name><uri>http://www.blogger.com/profile/06044888379508006730</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
