<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>windowsnerd.com &#187; antivirus/spyware</title>
	<atom:link href="http://windowsnerd.com/category/antivirusspyware/feed/" rel="self" type="application/rss+xml" />
	<link>http://windowsnerd.com</link>
	<description>Admin</description>
	<lastBuildDate>Fri, 25 Jun 2010 04:42:26 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Kudos to Kirllos your facebook account is probably pwnd</title>
		<link>http://windowsnerd.com/2010/04/24/kudos-to-kirllos-your-facebook-account-is-probably-pwnd/</link>
		<comments>http://windowsnerd.com/2010/04/24/kudos-to-kirllos-your-facebook-account-is-probably-pwnd/#comments</comments>
		<pubDate>Sun, 25 Apr 2010 04:22:48 +0000</pubDate>
		<dc:creator>Nerd</dc:creator>
				<category><![CDATA[antivirus/spyware]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://windowsnerd.com/?p=503</guid>
		<description><![CDATA[I forgot to publish this from Mexico after my birthday when it hit the press. One guy in Russia named Kirllos owns 1 in 300 facebook accounts and has them for sale. A close source today tells me he has a lead on a guy who is selling more accounts than that, and cheaper than [...]]]></description>
			<content:encoded><![CDATA[<p>I forgot to publish this from Mexico after my birthday when it hit the press. One guy in Russia named Kirllos owns 1 in 300 facebook accounts and has them for sale. A close source today tells me he has a lead on a guy who is selling more accounts than that, and cheaper than Kirllos.  My only point being, if there are 2 known people who have a 1 in 300 shot at already owning your password, I hope you change it as often as I do. There are a lot more than 2 Eastern European hackers in the world.</p>
<p>The combination of facebook owning your data, and you being excluded from that ownership/permissions editing should be something to ponder.</p>
]]></content:encoded>
			<wfw:commentRss>http://windowsnerd.com/2010/04/24/kudos-to-kirllos-your-facebook-account-is-probably-pwnd/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Untangle firewall common ports to unblock</title>
		<link>http://windowsnerd.com/2009/12/16/untangle-firewall-common-ports-to-unblock/</link>
		<comments>http://windowsnerd.com/2009/12/16/untangle-firewall-common-ports-to-unblock/#comments</comments>
		<pubDate>Wed, 16 Dec 2009 14:20:06 +0000</pubDate>
		<dc:creator>Nerd</dc:creator>
				<category><![CDATA[antivirus/spyware]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://windowsnerd.com/?p=410</guid>
		<description><![CDATA[If you are setting up an Untangle firewall and want to use it at your house or business but might not know common ports to allow, here is a list. I have things a bit tighter at work but at the house I like to have instant messengers etc working. Skype TCP ports 13861, 34954, [...]]]></description>
			<content:encoded><![CDATA[<p>If you are setting up an Untangle firewall and want to use it at your house or business but might not know common ports to allow, here is a list. I have things a bit tighter at work but at the house I like to have instant messengers etc working.</p>
<p>Skype TCP ports 13861, 34954, 42045</p>
<p>Apple remote admin stuff &#8211; tcp 5354</p>
<p>typical email &#8211; tcp  25, 143, 465, 587, 993, 995 (use these at your own risk. Some you need for gmail etc, but if you open 25 outbound you may be spamming if a machine is owned)</p>
<p> web &#8211; tcp 80, 443</p>
<p>openvpn &#8211; tcp 1194</p>
<p>ssh &#8211; tcp  22</p>
<p>ftp -tcp 21</p>
<p>Instant messengers - tcp 1863, 5050, 5190, 5222, 5223</p>
<p>Remote desktop &#8211; do some port forwarding so it comes in on like 10020 and goes in to 3389. Dont open 3389 to the outside.</p>
<p>How do you find more?</p>
<p>Open a command prompt</p>
<p>type in netstat -no and hit enter</p>
<p>you will see a list of the open source and destination addresses. Compare this list to the auto refresh block list in your untangle firewall. Look for the PID. Compare that to a task manager PID and see what process is using it. Make sure you know what you are allowing when it is blocked.</p>
]]></content:encoded>
			<wfw:commentRss>http://windowsnerd.com/2009/12/16/untangle-firewall-common-ports-to-unblock/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Time to get antivirus for your Mac</title>
		<link>http://windowsnerd.com/2009/07/25/time-to-get-antivirus-for-your-mac/</link>
		<comments>http://windowsnerd.com/2009/07/25/time-to-get-antivirus-for-your-mac/#comments</comments>
		<pubDate>Sat, 25 Jul 2009 21:17:12 +0000</pubDate>
		<dc:creator>Nerd</dc:creator>
				<category><![CDATA[antivirus/spyware]]></category>
		<category><![CDATA[mac]]></category>

		<guid isPermaLink="false">http://windowsnerd.com/?p=370</guid>
		<description><![CDATA[Yup, people ask me if they need it, I&#8217;m saying get it now. Time to provide the antivirus vendors with a little cash to develop your AV just before you need it more. Which is later this week to next year.]]></description>
			<content:encoded><![CDATA[<p>Yup, people ask me if they need it, I&#8217;m saying get it now. Time to provide the antivirus vendors with a little cash to develop your AV just before you need it more. Which is later this week to next year.</p>
]]></content:encoded>
			<wfw:commentRss>http://windowsnerd.com/2009/07/25/time-to-get-antivirus-for-your-mac/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hahhahaaha, I mean, oh sucks for VA</title>
		<link>http://windowsnerd.com/2009/05/05/hahhahaaha-i-mean-oh-sucks-for-va/</link>
		<comments>http://windowsnerd.com/2009/05/05/hahhahaaha-i-mean-oh-sucks-for-va/#comments</comments>
		<pubDate>Tue, 05 May 2009 13:48:01 +0000</pubDate>
		<dc:creator>Nerd</dc:creator>
				<category><![CDATA[antivirus/spyware]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://windowsnerd.com/?p=253</guid>
		<description><![CDATA[Well Virginia went and lost their prescription drug data.  8.2million people worth of records are being held ransom by some idiot who I&#8217;m guessing is young, American and maybe drunk.  Here is the link to wikileaks who broke the story. Maybe this will be the new tax needed to make companies/govt agencies provide resources to [...]]]></description>
			<content:encoded><![CDATA[<p>Well Virginia went and lost their prescription drug data.  8.2million people worth of records are being held ransom by some idiot who I&#8217;m guessing is young, American and maybe drunk. </p>
<p>Here is the link to <a title="http://wikileaks.org/leak/virginia-ransom-2009.html" href="http://wikileaks.org/leak/virginia-ransom-2009.html" target="_blank">wikileaks who broke the story.</a></p>
<p>Maybe this will be the new tax needed to make companies/govt agencies provide resources to protect data.</p>
]]></content:encoded>
			<wfw:commentRss>http://windowsnerd.com/2009/05/05/hahhahaaha-i-mean-oh-sucks-for-va/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ad blocking</title>
		<link>http://windowsnerd.com/2009/04/28/ad-blocking/</link>
		<comments>http://windowsnerd.com/2009/04/28/ad-blocking/#comments</comments>
		<pubDate>Wed, 29 Apr 2009 00:42:49 +0000</pubDate>
		<dc:creator>Nerd</dc:creator>
				<category><![CDATA[antivirus/spyware]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://windowsnerd.com/?p=229</guid>
		<description><![CDATA[Firefox ad blocker &#8211; Adblock plus - easy install. Works well. Google Chrome ad blocker -Adsweep.org &#8211; follow the instructions, it will only take a minute or two to copy and paste what you need. IE &#8211; download and run IE8, turn on the &#8220;in private&#8221; browsing thinger. For all 3 &#8211; download and install [...]]]></description>
			<content:encoded><![CDATA[<p><a title="http://adblockplus.org/en/" href="http://adblockplus.org/en/" target="_blank"><strong>Firefox ad blocker &#8211; Adblock plus</strong></a><strong> </strong>- easy install. Works well.</p>
<p><a title="http://www.adsweep.org/" href="http://www.adsweep.org/" target="_blank"><strong>Google Chrome ad blocker -Adsweep.org</strong></a> &#8211; follow the instructions, it will only take a minute or two to copy and paste what you need.</p>
<p><strong>IE</strong> &#8211; download and run IE8, turn on the &#8220;in private&#8221; browsing thinger.</p>
<p>For all 3 &#8211; <a title="http://www.mvps.org/winhelp2002/hosts.htm" href="http://www.mvps.org/winhelp2002/hosts.htm" target="_blank">download and install the hosts file from MVPS.org</a>. This maintains a list of bad guys and prevents your computer from having any traffic going there. Make a calendar appointment to update this every few months or so.</p>
]]></content:encoded>
			<wfw:commentRss>http://windowsnerd.com/2009/04/28/ad-blocking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Antivirus boot cds</title>
		<link>http://windowsnerd.com/2009/04/27/antivirus-boot-cds/</link>
		<comments>http://windowsnerd.com/2009/04/27/antivirus-boot-cds/#comments</comments>
		<pubDate>Mon, 27 Apr 2009 17:41:36 +0000</pubDate>
		<dc:creator>Nerd</dc:creator>
				<category><![CDATA[antivirus/spyware]]></category>

		<guid isPermaLink="false">http://windowsnerd.com/?p=221</guid>
		<description><![CDATA[Antivirus boot cds are the easiest way to clean a virus. Download an .iso, burn it to a cd with a tool like iso recorder which is free thanks to Alex Feinman, the brilliant author. The magic of an antivirus boot cd comes from booting off a device other than your hard drive. If a [...]]]></description>
			<content:encoded><![CDATA[<p>Antivirus boot cds are the easiest way to clean a virus. Download an .iso, burn it to a cd with a tool like <a title="http://isorecorder.alexfeinman.com/isorecorder.htm" href="http://isorecorder.alexfeinman.com/isorecorder.htm" target="_blank">iso recorder</a> which is free thanks to Alex Feinman, the brilliant author. The magic of an antivirus boot cd comes from booting off a device other than your hard drive. If a virus is on your hard drive, it has the ability to hide itself when the hard drive boots. When you boot into a cd, it doesn&#8217;t care, doesn&#8217;t load or look at any of the code the virus has injected. It just boots to itself then lets you look at the hard drive as it really is, then clean it up. </p>
<p>So burn one of the discs below, put it in your optical drive. Do a cold reboot, start it up, if it doesn&#8217;t start booting to the cd you need to figure out how to tell your computer to boot to cd. A lot of times f8, f10 or f12 will bring up a boot menu and let you choose what device boots first. Sometimes you will have to get in to your bios and find the boot order, usually that is delete or f2. This will take some experimenting or googleing based on your on computer model. Can&#8217;t help everyone in a sentence here. </p>
<p> </p>
<p>Here is a list of places to get antivirus boot cds:</p>
<p>AVIRA &#8211; <a title="http://dl1.pro.antivir.de/package/rescue_system/common/en/rescue_system-common-en.iso" href="http://dl1.pro.antivir.de/package/rescue_system/common/en/rescue_system-common-en.iso" target="_blank">Avira boot cd-</a> seems good on sata, super lightweight. Look for the flag on the lower left corner to choose english if you speak that. Good detection rate. configure options to rename infected files BEFORE you run it. </p>
<p>BITDEFENDER- <a title="http://download.bitdefender.com/rescue_cd/" href="http://download.bitdefender.com/rescue_cd/" target="_blank">bitdefender rescue cd</a> &#8211; not that great at new sata controllers, but a really good knoppix linux OS to run out of.  This one is pretty, autoruns, is easy to use. There is a rootkit scanner called ChkRootKit, you should run that after your AV scan completes. You can also configure your network using this one, and get the latest updates off the web using the shortcut &#8220;update signatures&#8221; on the desktop. </p>
<p>KASPERSKY- <a title="http://devbuilds.kaspersky-labs.com/devbuilds/RescueDisk/" href="http://devbuilds.kaspersky-labs.com/devbuilds/RescueDisk/" target="_blank">Kaspersky bood cd</a> &#8211; this is my favorite because of it&#8217;s success rate. This one usually is all I need to clean boot sector, rootkits, whatever. Then go back with something else to fix other problems. Sysinternals ERD commander, hiren, ubcd etc. </p>
<p>UBCD- (mcafee, fprot)- <a title="http://projects.securitywonks.net/projects/details.php?file=32" href="http://projects.securitywonks.net/projects/details.php?file=32" target="_blank">Download the iso from securitywonks</a>, don&#8217;t trust a torrent. Read up either on the securitywonks or UBCD4win webpage for the latest in how their tools work for you. Multiple av scanners. good stuff. Should have everything you need to fix a computer. Password reset, system restore, disk error checking etc.</p>
]]></content:encoded>
			<wfw:commentRss>http://windowsnerd.com/2009/04/27/antivirus-boot-cds/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sweet virus scanning page</title>
		<link>http://windowsnerd.com/2008/03/21/sweet-virus-scanning-page/</link>
		<comments>http://windowsnerd.com/2008/03/21/sweet-virus-scanning-page/#comments</comments>
		<pubDate>Fri, 21 Mar 2008 14:55:30 +0000</pubDate>
		<dc:creator>Nerd</dc:creator>
				<category><![CDATA[antivirus/spyware]]></category>
		<category><![CDATA[free virus scanning]]></category>
		<category><![CDATA[multiple engine scan]]></category>

		<guid isPermaLink="false">http://windowsnerd.com/2008/03/23/sweet-virus-scanning-page/</guid>
		<description><![CDATA[Ever want to confirm some virus problems on a file? This is the coolest site for doing so: http://www.virustotal.com/ Yesterday it scanned through 32 virus scanners on a single file I uploaded. It is very fun to see that half of the virus detection engines didn&#8217;t detect the trojan in the norton 2007 keygen file I [...]]]></description>
			<content:encoded><![CDATA[<p>Ever want to confirm some virus problems on a file? This is the coolest site for doing so: <a href="http://www.virustotal.com/">http://www.virustotal.com/</a> Yesterday it scanned through 32 virus scanners on a single file I uploaded. It is very fun to see that half of the virus detection engines didn&#8217;t detect the trojan in the norton 2007 keygen file I uploaded. And the rest didn&#8217;t really agree on what it was.</p>
<p><script type="text/javascript">  <!--  google_ad_client = "pub-7985931812395988";  /* 468x60, created 3/11/08 */  google_ad_slot = "6941846772";  google_ad_width = 468;  google_ad_height = 60;  //--></script><br />
<script type="text/javascript" src="http://pagead2.googlesyndication.com/pagead/show_ads.js"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://windowsnerd.com/2008/03/21/sweet-virus-scanning-page/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
