<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Another Tech Blog &#187; Anti-Virus</title>
	<atom:link href="http://www.baumel.com/category/anti-virus/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.baumel.com</link>
	<description></description>
	<lastBuildDate>Fri, 01 Jan 2010 15:46:38 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>How do I boot into Safe Mode?</title>
		<link>http://www.baumel.com/2009/12/how-do-i-boot-in-safe-mode/#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed</link>
		<comments>http://www.baumel.com/2009/12/how-do-i-boot-in-safe-mode/#comments</comments>
		<pubDate>Tue, 01 Dec 2009 22:13:50 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[Anti-Virus]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tech Tips]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Boot.ini]]></category>
		<category><![CDATA[Safe Mode]]></category>

		<guid isPermaLink="false">http://www.baumel.com/?p=223</guid>
		<description><![CDATA[If you are fighting a virus/malware on your computer, it is best to boot in safe mode before you start removing things and running scans.  If you don&#8217;t, it is likely that the malware will likely just re-install itself.  I&#8217;m not going to go into a whole tutorial on virus fighting (maybe in a future [...]]]></description>
			<content:encoded><![CDATA[<p>If you are fighting a virus/malware on your computer, it is best to boot in safe mode before you start removing things and running scans.  If you don&#8217;t, it is likely that the malware will likely just re-install itself.  I&#8217;m not going to go into a whole tutorial on virus fighting (maybe in a future post) but the basics are as follows:</p>
<p>1) As soon as you notice you are infected, unplug your internet connection or turn off your wireless.  This will prevent the infection from spreading, and will isolate the offending program from its source.</p>
<p>2) Boot into Safe Mode</p>
<p>3) Run your favorite antivirus/anti-malware program.</p>
<p>This post is really about Safe Mode &#8211; how do you get there?  There are a couple of ways depending on the operating system you are using.  <a href="http://support.microsoft.com/kb/315222">Here&#8217;s</a> the Microsoft Page on the topic.</p>
<p><strong>Windows XP</strong></p>
<p>If XP is the only operating system installed on your computer, boot into Safe Mode with these instructions.</p>
<ul>
<li> If the computer is running, shut down Windows, and then turn off the power</li>
<li>Wait 30 seconds, and then turn the computer on.</li>
<li>Start tapping the F8 key. The Windows Advanced Options Menu appears. If you begin tapping the F8 key too soon, some computers display a &#8220;keyboard error&#8221; message.  If this happens, resstart the computer and try again.</li>
<li>Ensure that the Safe mode option is selected.  If you are trying to clean a machine that is virus laden, choose Safe Mode Without Networking.</li>
<li>Press Enter. The computer then begins to start in Safe mode.</li>
<li>When you are finished with all troubleshooting, close all programs and restart the computer as you normally would.</li>
</ul>
<p>If you don&#8217;t want to bother with function keys, you can use the System Configuration Utility method.</p>
<ul>
<li> Close all open programs.</li>
<li>Click Start, Run and type MSCONFIG in the box and click OK</li>
<li>The System Configuration Utility appears, On the BOOT.INI tab, Check the &#8220;/SAFEBOOT&#8221; option, and then click OK and Restart your computer when prompted.</li>
<li>The computer restarts in Safe mode.</li>
<li>Perform the troubleshooting steps for which you are using Safe Mode.</li>
<li>When you are finished with troubleshooting in Safe mode, open MSCONFIG again, on the BOOT.INI tab,  uncheck &#8220;/SAFEBOOT&#8221; and click OK to restart your computer.  <span style="color: #ff0000;"><strong>THIS STEP IS CRITICAL</strong></span>.  If you don&#8217;t change this back, then the computer will continue to boot in Safe Mode until you do.</li>
</ul>
<p><strong>Windows 7</strong></p>
<p>Safe Mode in Windows 7 is basically the same as XP &#8211; use F8 to get to the Safe Mode startup screen.  MSCONFIG is slightly different &#8211; Safe Mode is called Safe Boot, but otherwise the process is the same.</p>
<p>
				<table cellspacing="0" cellpadding="0" border="0" style="width: 300px; height: 50px; text-align: left; margin-left: auto; margin-right: auto;">
				<tbody>
				<tr>
				<td style="text-align: center;">
				<a href="http://del.icio.us/post?url=http://www.baumel.com/2009/12/how-do-i-boot-in-safe-mode/&title=How do I boot into Safe Mode?" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/delicious.png" alt="Add to Del.cio.us" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				</td>
				<td style="text-align: center;">
				<a href="http://www.baumel.com/feed/rss/#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/feeds.png" alt="RSS Feed" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				</td>
				<td style="text-align: center;">
				<a href="http://technorati.com/faves?add=http://www.baumel.com/2009/12/how-do-i-boot-in-safe-mode/" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/technorati.png" alt="Add to Technorati Favorites" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				</td>
				<td style="text-align: center;">
				<a href="http://www.stumbleupon.com/submit?url=http://www.baumel.com/2009/12/how-do-i-boot-in-safe-mode/&title=How do I boot into Safe Mode?" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/stumble.png" alt="Stumble It!" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				
				</td>
				<td style="text-align: center;">
				<a href="http://digg.com/submit?phase=2&url=http://www.baumel.com/2009/12/how-do-i-boot-in-safe-mode/" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/digg.png" alt="Digg It!" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				
				</td>
				</tr>
				<tr><td>&nbsp;</td><td>&nbsp;</td><td>&nbsp;</td><td>&nbsp;</td><td style="text-align: right;" ><a href="http://www.sajithmr.com"><img style="border:none" src="http://www.baumel.com/wp-content/plugins/addtothis/sajithmr.png"  title="Powered By Sajithmr.com" alt="www.sajithmr.com"/></a></td></tr>
				</tbody>
				</table>

                
		
				</p> <a STYLE="border:none;text-decoration:none;outline:none;" href="http://www.blogtrafficexchange.com"><img border="0" alt="Blog Traffic Exchange" src="http://www.baumel.com/wp-content/plugins/related-websites/24x24.png"></a> <a href="http://www.blogtrafficexchange.com/related-posts"><strong>Related Posts</strong></a> <ul>  <li> <a onClick="window.location='http://bte.tc/fzm'; return false;" href="http://www.baumel.com/2009/07/well-that-didnt-take-long-iphone-3gs-jailbreak-is-released/">Well that didn't take long - iPhone 3Gs jailbreak is released</a> <small>Independence day for iPhone 3GS users is here.  George Hotz has released an application that will unlock the 3GS so that you can install whatever applications you want, not just what Apple wants you to have.  The blog post with instructions is here.  You need Windows (but not windows 7),......</small> </li> <li> <a onClick="window.location='http://bte.tc/9wq'; return false;" href="http://www.baumel.com/2009/07/growl-for-windows/">Growl for Windows</a> <small>Growl v2.0 beta 18 was recently released for Windows - should you care?  If you are like most people, it is getting harder and harder to keep up with everything happening around you on the web.  Twitter, facebook, email, calendar, IM - the draws on your attention are almost overwhelming. ......</small> </li> <li> <a onClick="window.location='http://bte.tc/e62'; return false;" href="http://www.baumel.com/2009/08/10-windows-7-tips/">10 Windows 7 Tips </a> <small>So far, Windows 7 is the bee's knees.  The more I find out, the more I like, which is saying a lot - with operating systems, it's usually the other way around! Here are a few things that make Windows 7 neat.  Big thanks to Tim Sneath for most of......</small> </li> <li> <a onClick="window.location='http://bte.tc/9wn'; return false;" href="http://www.baumel.com/2009/06/iphone-tips-10-things-you-may-not-know/">iPhone Tips - 10 things you may not know</a> <small>Here are 10 things you may not know how to do on the iPhone. Web Clips:You can create a short cut to a web page as an icon on your iPhone.  To do this, tap the "+"  when on a web page, then tap "Add to Home Screen."  This will......</small> </li> <li> <a onClick="window.location='http://bte.tc/e-D'; return false;" href="http://www.baumel.com/2009/04/remote-reboot-from-mmc/">Remote reboot from MMC</a> <small>Have you ever needed to reboot a machine remotely? This is easy to do via MMC, the Microsoft Management Console. In XP, do the following. 1) Right click the My Computer icon and choose manage to bring up the MMC. 2) From there, go to the Action menu and choose......</small> </li> </ul> <a STYLE="border:none;text-decoration:none;outline:none;" href="http://www.blogtrafficexchange.com"><img border="0" alt="Blog Traffic Exchange" src="http://www.baumel.com/wp-content/plugins/related-websites/24x24.png"></a> <a href="http://www.blogtrafficexchange.com/related-websites"><strong>Related Websites</strong></a> <ul>  <li> <a onClick="window.location='http://bte.tc/wTEz'; return false;" href="http://www.averyjparker.com/2009/09/04/how-to-remove-blockdefense-block-defense-removal/">How to Remove BlockDefense | Block Defense Removal</a> <small>Blockdefense is yet another of these wolves in sheep clothing that make some computer users lives so miserable these days. It is from the same group of malware that includes Trustninja, save soldier, and savedefense. These are part of a group of rogue antivirus programs that are part of the......</small> </li> <li> <a onClick="window.location='http://bte.tc/7Pe'; return false;" href="http://www.handymanfixhomerepair.com/washing-windows-101/">Washing Windows 101</a> <small>Washing windows is one of those household chores that no really looks forward to. But cleaned windows can really give the appearance of your home, both inside and out, a boost. If you've been spraying window cleaner and rubbing away with paper towels, or hosing off those upper floor windows,......</small> </li> <li> <a onClick="window.location='http://bte.tc/wTVG'; return false;" href="http://www.averyjparker.com/2006/05/19/zero-day-microsoft-word-exploit/">Zero-day ( 0-day) Microsoft Word exploit</a> <small>There was some news on this last night at Incidents.org, today F-secure has some details as well on the trojan that's dropped in this circulating, exploit. It seems as though the initial attack was very targetted against a specific organization. Antivirus packages did not recognize the trojan that the exploit......</small> </li> <li> <a onClick="window.location='http://bte.tc/wTsF'; return false;" href="http://www.averyjparker.com/2009/09/19/how-to-remove-windows-pc-defender-windows-pc-defender-removal/">How to Remove Windows PC Defender | Windows PC Defender Removal</a> <small>Windows PC Defender is a rogue antivirus application that resembles the legitimate antispyware known as Windows Defender from Microsoft. Their intent apparently is to mimic the look an theming of that application to trick potential customers into trusting and downloading (and paying for) their product. It is a clone of......</small> </li> <li> <a onClick="window.location='http://bte.tc/wTCn'; return false;" href="http://www.averyjparker.com/2007/01/19/windows-lost-administrator-password-rundown/">Windows lost administrator password rundown....</a> <small>I've done one or two mentions in the past of ways to recover/reset lost windows passwords and thought it was probably time for another "brain dump/web research dump" of things that I've run across. This is not just for lost administrator passwords, but could apply to a lost user account......</small> </li> </ul>]]></content:encoded>
			<wfw:commentRss>http://www.baumel.com/2009/12/how-do-i-boot-in-safe-mode/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>I hate viruses</title>
		<link>http://www.baumel.com/2009/05/i-hate-viruses/#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed</link>
		<comments>http://www.baumel.com/2009/05/i-hate-viruses/#comments</comments>
		<pubDate>Sat, 16 May 2009 13:22:34 +0000</pubDate>
		<dc:creator>Andy</dc:creator>
				<category><![CDATA[Anti-Virus]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Client Computer Issues]]></category>
		<category><![CDATA[Malware]]></category>

		<guid isPermaLink="false">http://www.baumel.com/?p=124</guid>
		<description><![CDATA[Working on a client computer for the last two days that is massively infected.  When they handed the machine to me, there was no firewall, no virus protection and windows updates were way out of sync.  Whoo boy.
Windows update was not working at all &#8211; one if the viruses had put in their own DNS [...]]]></description>
			<content:encoded><![CDATA[<p>Working on a client computer for the last two days that is massively infected.  When they handed the machine to me, there was no firewall, no virus protection and windows updates were way out of sync.  Whoo boy.</p>
<p>Windows update was not working at all &#8211; one if the viruses had put in their own DNS entries so that when you click on Windows Update, you got sent to Google.  It had also removed DNS entries for all of the update sites for the major anti-virus and anti-spy-ware sites.  Once that was corrected I was able to run several virus and malware scans with updated software.  There were some viruses (50 or so) that were cleaned, several reg hacks that were fixed and the drives were de-fraged, but I&#8217;m still having issues.</p>
<p>Right now, there are two problems left.  First, some of the recent windows updates won&#8217;t install (sp3 for example).  The installation starts, goes for a few minutes then I get a pop up that says &#8220;installation cancelled&#8221;.  Frustrating, but I&#8217;m assuming this is a virus I have not eradicated completely yet.  The second problem is that the machine will randomly freeze.  I don&#8217;t know if this is hardware related (heat? disk? memory?) or part of a virus.  This was the initial complaint from the owner, by the way &#8211; that the machine would randomly freeze.</p>
<p>I&#8217;m using Zone Alarm, Ad-Aware, IO-Bit, and malwarebytes.  Next up, McAfee.</p>
<p>
				<table cellspacing="0" cellpadding="0" border="0" style="width: 300px; height: 50px; text-align: left; margin-left: auto; margin-right: auto;">
				<tbody>
				<tr>
				<td style="text-align: center;">
				<a href="http://del.icio.us/post?url=http://www.baumel.com/2009/05/i-hate-viruses/&title=I hate viruses" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/delicious.png" alt="Add to Del.cio.us" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				</td>
				<td style="text-align: center;">
				<a href="http://www.baumel.com/feed/rss/#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/feeds.png" alt="RSS Feed" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				</td>
				<td style="text-align: center;">
				<a href="http://technorati.com/faves?add=http://www.baumel.com/2009/05/i-hate-viruses/" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/technorati.png" alt="Add to Technorati Favorites" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				</td>
				<td style="text-align: center;">
				<a href="http://www.stumbleupon.com/submit?url=http://www.baumel.com/2009/05/i-hate-viruses/&title=I hate viruses" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/stumble.png" alt="Stumble It!" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				
				</td>
				<td style="text-align: center;">
				<a href="http://digg.com/submit?phase=2&url=http://www.baumel.com/2009/05/i-hate-viruses/" rel="nofollow">
				<img src="http://www.baumel.com/wp-content/plugins/addtothis/digg.png" alt="Digg It!" style="border: 0px solid ; width: 48px; height: 48px;"/>
				</a>
				
				</td>
				</tr>
				<tr><td>&nbsp;</td><td>&nbsp;</td><td>&nbsp;</td><td>&nbsp;</td><td style="text-align: right;" ><a href="http://www.sajithmr.com"><img style="border:none" src="http://www.baumel.com/wp-content/plugins/addtothis/sajithmr.png"  title="Powered By Sajithmr.com" alt="www.sajithmr.com"/></a></td></tr>
				</tbody>
				</table>

                
		
				</p> <a STYLE="border:none;text-decoration:none;outline:none;" href="http://www.blogtrafficexchange.com"><img border="0" alt="Blog Traffic Exchange" src="http://www.baumel.com/wp-content/plugins/related-websites/24x24.png"></a> <a href="http://www.blogtrafficexchange.com/related-posts"><strong>Related Posts</strong></a> <ul>  <li> <a onClick="window.location='http://bte.tc/9wg'; return false;" href="http://www.baumel.com/2009/03/windows-7-first-impressions/">Windows 7 - First impressions</a> <small>So far so good - I installed the beta on a couple of laptops in the last month, and so far I like what I see.  It's very much Vista centric, but without the sllllloooooowwwwwness.  Boot time is much improved (under a minute) and there are some added features that......</small> </li> <li> <a onClick="window.location='http://bte.tc/9wq'; return false;" href="http://www.baumel.com/2009/07/growl-for-windows/">Growl for Windows</a> <small>Growl v2.0 beta 18 was recently released for Windows - should you care?  If you are like most people, it is getting harder and harder to keep up with everything happening around you on the web.  Twitter, facebook, email, calendar, IM - the draws on your attention are almost overwhelming. ......</small> </li> <li> <a onClick="window.location='http://bte.tc/AnQ'; return false;" href="http://www.baumel.com/2009/08/wep-vs-wpa/">WEP vs WPA</a> <small>Another question I get asked a lot is on Wireless security.  People get very confused by the security options out there, and the industry doesn't help by adding acronym after acronym.  So what do you do?  The answer is fairly simple - secure your network with WPA!! There are lots......</small> </li> <li> <a onClick="window.location='http://bte.tc/e62'; return false;" href="http://www.baumel.com/2009/08/10-windows-7-tips/">10 Windows 7 Tips </a> <small>So far, Windows 7 is the bee's knees.  The more I find out, the more I like, which is saying a lot - with operating systems, it's usually the other way around! Here are a few things that make Windows 7 neat.  Big thanks to Tim Sneath for most of......</small> </li> <li> <a onClick="window.location='http://bte.tc/7HY'; return false;" href="http://www.baumel.com/2009/06/dual-core-processors-for-mobile-devices-arm-dual-core-chips-for-iphone-palm-pre-next-year/">Dual core processors for mobile devices? ARM dual core chips for iPhone, Palm Pre next year</a> <small>CNET is reporting that ARM, the company responsible for designing the architecture behind most mobile comuting CPU's said  that mobile phone makers will be delivering devices that run on ARM"s latest dual core CPU's as early as next year. They are referring to the ARM Cortex-A9 MPCore application processor.  According......</small> </li> </ul> <a STYLE="border:none;text-decoration:none;outline:none;" href="http://www.blogtrafficexchange.com"><img border="0" alt="Blog Traffic Exchange" src="http://www.baumel.com/wp-content/plugins/related-websites/24x24.png"></a> <a href="http://www.blogtrafficexchange.com/related-websites"><strong>Related Websites</strong></a> <ul>  <li> <a onClick="window.location='http://bte.tc/BTG'; return false;" href="http://www.handymanfixhomerepair.com/how-to-update-bathroom-cabinetry/">How to Update Bathroom Cabinetry</a> <small>Whether you have only a little bathroom cabinetry or a large vanity and other cabinets throughout the room, updating the cabinetry can refresh your bathroom in the absence of a total remodel. Bathroom cabinets can start looking worn prematurely, usually much faster than kitchen cabinets, because of all the moisture......</small> </li> <li> <a onClick="window.location='http://bte.tc/c6n'; return false;" href="http://www.vintageantiquecollectible.com/antiquing/antique-singer-sewing-machine/">Antique Singer Sewing Machine</a> <small>Antiques -&gt; Sewing -&gt; Machines and Machine Parts If you love sewing collectibles and are trying to build up your collection, one of the best additions you can find is an antique Singer sewing machine. These machines can enhance any personal collection and may even be the focal point in......</small> </li> <li> <a onClick="window.location='http://bte.tc/aySq'; return false;" href="http://gotoretirement.com/2010/02/low-cost-computing-baby-boomer-lifestyle/">Low Cost Computing for a Baby Boomer Lifestyle</a> <small>I rely heavily on personal computers for work and home activities. So do you. One of my objectives over the past couple of years has been to reduce the cost of computing in the one area where cost-control is easiest: software. I have found many free software applications that work......</small> </li> <li> <a onClick="window.location='http://bte.tc/kpA'; return false;" href="http://www.phawville.com/blog/my-take-on-windows-vista/">My Take on Windows Vista</a> <small>When I bought my laptop (my first and only laptop by the way...), it came pre-installed with Windows Vista Home Premium. And being a Windows user all my life, I had my qualms and doubts. You probably know of BSOD (blue screen of death) and the many viruses directed at......</small> </li> <li> <a onClick="window.location='http://bte.tc/wTKJ'; return false;" href="http://www.averyjparker.com/2009/12/24/how-to-remove-anti-virus-elite-anti-virus-elite-removal-guide/">How to Remove Anti-Virus Elite | Anti-Virus Elite Removal Guide</a> <small>Anti-Virus Elite is a rogue antivirus application. These rogue antivirus applications pose as a legitimate security application, but in reality is a scam to try to trick you out of money. They will find and claim that there are multiple security problems with your computer. They will claim that you......</small> </li> </ul>]]></content:encoded>
			<wfw:commentRss>http://www.baumel.com/2009/05/i-hate-viruses/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

