<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>Remove-Malware.com &#187; Malware</title> <atom:link href="http://remove-malware.com/category/malware/feed/" rel="self" type="application/rss+xml" /><link>http://remove-malware.com</link> <description>Antivirus Reviews For 2011 / 2012, Tools and How To&#039;s</description> <lastBuildDate>Mon, 14 May 2012 20:56:29 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.2</generator> <xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" /> <item><title>Removing Rootkit.Boot.SST.a leaves you with unbootable Windows 7</title><link>http://remove-malware.com/malware/rootkits/removing-rootkit-boot-sst-a-leaves-you-with-unbootable-windows-7/</link> <comments>http://remove-malware.com/malware/rootkits/removing-rootkit-boot-sst-a-leaves-you-with-unbootable-windows-7/#comments</comments> <pubDate>Mon, 14 May 2012 20:56:29 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[rootkits]]></category> <category><![CDATA[0x0000007b]]></category> <category><![CDATA[rootkit]]></category> <category><![CDATA[won't boot]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=3442</guid> <description><![CDATA[<p>Last night I had to deal with one very nasty rootkit.   It&#8217;s called Rootkit.Boot.SST.a.  Removing the rootkit is pretty easy (used the kaspersky rescue disk), however after it&#8217;s removed Windows 7 becomes unbootable and you&#8217;re left with a 0x0000007b.    If you try to use a Windows 7 disc to repair the mbr using bootrec.exe [...]</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/rootkits/removing-rootkit-boot-sst-a-leaves-you-with-unbootable-windows-7/">Removing Rootkit.Boot.SST.a leaves you with unbootable Windows 7</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/rootkits/removing-rootkit-boot-sst-a-leaves-you-with-unbootable-windows-7/feed/</wfw:commentRss> <slash:comments>5</slash:comments> </item> <item><title>Picture of Rootkit that Prevents Windows 7 from Loading</title><link>http://remove-malware.com/malware/rootkits/picture-of-rootkit-that-prevents-windows-7-from-loading/</link> <comments>http://remove-malware.com/malware/rootkits/picture-of-rootkit-that-prevents-windows-7-from-loading/#comments</comments> <pubDate>Thu, 26 Apr 2012 15:09:52 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[rootkits]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=3405</guid> <description><![CDATA[<p
style="float:right; margin:0 0 10px 15px; width:240px;"> <img
src="http://remove-malware.com/wp-content/uploads/2012/04/image.jpeg" width="240" /></p><p>Following up on my last post, here&#8217;s a picture of the rootkit that causes Windows 7 to lockup / freeze.</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/rootkits/picture-of-rootkit-that-prevents-windows-7-from-loading/">Picture of Rootkit that Prevents Windows 7 from Loading</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/rootkits/picture-of-rootkit-that-prevents-windows-7-from-loading/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>Rootkit Causes Windows Not To Boot &#8211; Freezes at Windows Load Screen</title><link>http://remove-malware.com/malware/rootkits/rootkit-causes-windows-not-to-boot-freezes-at-windows-load-screen/</link> <comments>http://remove-malware.com/malware/rootkits/rootkit-causes-windows-not-to-boot-freezes-at-windows-load-screen/#comments</comments> <pubDate>Thu, 26 Apr 2012 14:20:32 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[rootkits]]></category> <category><![CDATA[freeze]]></category> <category><![CDATA[lockup]]></category> <category><![CDATA[not bootable]]></category> <category><![CDATA[rootkit]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=3401</guid> <description><![CDATA[<p>Hi Guys,  just an FYI here.  I&#8217;ve had 3 rootkits this week that prevent Windows 7 from loading.  Basically when you start the PC Windows starts to load and then freezes on Windows screen (black background, before the colored spinning balls). This is easy to resolve.  Just download the latest Kaspersky Rescue Disk, burn the [...]</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/rootkits/rootkit-causes-windows-not-to-boot-freezes-at-windows-load-screen/">Rootkit Causes Windows Not To Boot &#8211; Freezes at Windows Load Screen</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/rootkits/rootkit-causes-windows-not-to-boot-freezes-at-windows-load-screen/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Rootkit Zero Access Removal Notes</title><link>http://remove-malware.com/malware/rootkits/rootkit-zero-access-max-notes/</link> <comments>http://remove-malware.com/malware/rootkits/rootkit-zero-access-max-notes/#comments</comments> <pubDate>Tue, 27 Dec 2011 15:51:05 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[rootkits]]></category> <category><![CDATA[max++ removal]]></category> <category><![CDATA[rootkit zero access]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=3274</guid> <description><![CDATA[<p>This post is split up in a few sections.  It&#8217;s mostly my notes on dealing with rootkit zero access (a.k.a &#8211; rootkit.zeroacess, w32/Sirefef or Max++) Methods of Infection for Rootkit Zero Access (max++) Outdated Java (this seems to be the #1 way) .exe&#8217;s that have random porn type names.  They are made to look like [...]</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/rootkits/rootkit-zero-access-max-notes/">Rootkit Zero Access Removal Notes</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/rootkits/rootkit-zero-access-max-notes/feed/</wfw:commentRss> <slash:comments>37</slash:comments> </item> <item><title>TDL4 Rootkit Video &#8211; Being Used as a Proxy</title><link>http://remove-malware.com/malware/rootkits/tdl4-rootkit-video-being-used-as-a-proxy/</link> <comments>http://remove-malware.com/malware/rootkits/tdl4-rootkit-video-being-used-as-a-proxy/#comments</comments> <pubDate>Tue, 12 Jul 2011 15:44:34 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[rootkits]]></category> <category><![CDATA[tdl4 rootkit]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=2807</guid> <description><![CDATA[<p>In this video you get to see how the TDL4 rootkit uses your PC as a proxy server.  The tools used in this video are Comodo Cleaning Essentials and the Windows Task Manager. &#160;</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/rootkits/tdl4-rootkit-video-being-used-as-a-proxy/">TDL4 Rootkit Video &#8211; Being Used as a Proxy</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/rootkits/tdl4-rootkit-video-being-used-as-a-proxy/feed/</wfw:commentRss> <slash:comments>54</slash:comments> </item> <item><title>Searching Online Whitepages Often Leads To Rogue Antivirus&#8230;or Worse</title><link>http://remove-malware.com/malware/malware-warnings/searching-online-whitepages-often-leads-to-rogue-antivirus-or-worse/</link> <comments>http://remove-malware.com/malware/malware-warnings/searching-online-whitepages-often-leads-to-rogue-antivirus-or-worse/#comments</comments> <pubDate>Tue, 07 Dec 2010 20:02:27 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[Malware Warnings]]></category> <category><![CDATA[fake anti-virus]]></category> <category><![CDATA[malware]]></category> <category><![CDATA[rogue anti-virus]]></category> <category><![CDATA[white pages]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=2461</guid> <description><![CDATA[<p
style="float:right; margin:0 0 10px 15px; width:240px;"> <img
src="http://remove-malware.com/wp-content/uploads/2010/12/whitepages_111110.jpg" width="240" /></p><p>I&#8217;m often curious on how my clients become infected.  What websites they visited, what they were searching for and of course what kind of protection they had on their computer.   After taking notes for a month it seams that 75% of the clients infected with rogue (fake) anti-virus first observed the rogues infecting their [...]</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/malware-warnings/searching-online-whitepages-often-leads-to-rogue-antivirus-or-worse/">Searching Online Whitepages Often Leads To Rogue Antivirus&#8230;or Worse</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/malware-warnings/searching-online-whitepages-often-leads-to-rogue-antivirus-or-worse/feed/</wfw:commentRss> <slash:comments>4</slash:comments> </item> <item><title>How the TLD4 Rootkit Bypasses Driver Signing on Windows 64-bit</title><link>http://remove-malware.com/malware/malware-news/how-the-tld4-rootkit-bypass-driver-signing-on-windows-64-bit/</link> <comments>http://remove-malware.com/malware/malware-news/how-the-tld4-rootkit-bypass-driver-signing-on-windows-64-bit/#comments</comments> <pubDate>Mon, 15 Nov 2010 18:41:58 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[Malware News]]></category> <category><![CDATA[64-bit]]></category> <category><![CDATA[rootkit]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=2436</guid> <description><![CDATA[<p>Per the Sunbelt Blog: Microsoft’s Windows operating system, running on a 64-bit machine provides enhanced security with driver signing of system and low level drivers. This policy, called the kernel mode code signing policy, disallows any unauthorized or malicious driver to be loaded [1]. The TDL4 rootkit bypasses driver signing policy on 64-bit machines by [...]</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/malware-news/how-the-tld4-rootkit-bypass-driver-signing-on-windows-64-bit/">How the TLD4 Rootkit Bypasses Driver Signing on Windows 64-bit</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/malware-news/how-the-tld4-rootkit-bypass-driver-signing-on-windows-64-bit/feed/</wfw:commentRss> <slash:comments>14</slash:comments> </item> <item><title>Kaspersky Website Serves Up Malware</title><link>http://remove-malware.com/malware/malware-news/kaspersky-website-serves-up-malware/</link> <comments>http://remove-malware.com/malware/malware-news/kaspersky-website-serves-up-malware/#comments</comments> <pubDate>Wed, 20 Oct 2010 17:32:41 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[Malware News]]></category> <category><![CDATA[first reaction]]></category> <category><![CDATA[national security]]></category> <category><![CDATA[security firm]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=2412</guid> <description><![CDATA[<p>My first reaction to this was&#8230;.&#8221;oooooo&#8230;.that&#8217;s bad&#8221;.  Anyway, check out the article. http://www.examiner.com/technology-in-national/security-firm-kaspersky-serves-up-malware-from-its-site</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/malware-news/kaspersky-website-serves-up-malware/">Kaspersky Website Serves Up Malware</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/malware-news/kaspersky-website-serves-up-malware/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Combofix Not As Effective As It Once Was</title><link>http://remove-malware.com/malware/malware-notes/combofix-not-as-effective-as-it-once-was/</link> <comments>http://remove-malware.com/malware/malware-notes/combofix-not-as-effective-as-it-once-was/#comments</comments> <pubDate>Sat, 06 Feb 2010 22:51:12 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[Malware Notes]]></category> <category><![CDATA[same time period]]></category> <category><![CDATA[waste of time]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=1990</guid> <description><![CDATA[<p>I don&#8217;t know if anyone else has noticed but for the last 2-3 weeks Combofix has been more or less&#8230;.a waste of time, in fact I just had to resort to my UBCD4Win on every malware appointment.  The latest round of rootkits seem to be evading it rather well. Also, I&#8217;ve really had to rely [...]</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/malware-notes/combofix-not-as-effective-as-it-once-was/">Combofix Not As Effective As It Once Was</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/malware-notes/combofix-not-as-effective-as-it-once-was/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Microsoft Security Essentials &#8211; Rootkit Followup Video</title><link>http://remove-malware.com/malware/rootkits/microsoft-security-essentials-rootkit-followup-video/</link> <comments>http://remove-malware.com/malware/rootkits/microsoft-security-essentials-rootkit-followup-video/#comments</comments> <pubDate>Thu, 10 Dec 2009 18:07:16 +0000</pubDate> <dc:creator>malwarekilla</dc:creator> <category><![CDATA[rootkits]]></category> <category><![CDATA[Video Reviews]]></category> <category><![CDATA[microsoft security]]></category> <category><![CDATA[security essentials]]></category><guid
isPermaLink="false">http://remove-malware.com/?p=1953</guid> <description><![CDATA[<p>In this followup video to the Microsoft Security Detection and Removal tests video I show you what rootkit was present on the PC, what apps couldn&#8217;t even detect it and what finally removed it. http://www.youtube.com/watch?v=aRfnBjTCG4I</p><p>Thanks for reading the feed for <a
href="http://remove-malware.com">Remove-Malware.com</a> !!!  This post was originally published here: <a
href="http://remove-malware.com/malware/rootkits/microsoft-security-essentials-rootkit-followup-video/">Microsoft Security Essentials &#8211; Rootkit Followup Video</a></p>]]></description> <wfw:commentRss>http://remove-malware.com/malware/rootkits/microsoft-security-essentials-rootkit-followup-video/feed/</wfw:commentRss> <slash:comments>5</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk: basic
Page Caching using disk: enhanced (User agent is rejected)
Database Caching 1/48 queries in 0.058 seconds using disk: basic
Object Caching 1793/1893 objects using disk: basic

Served from: remove-malware.com @ 2012-05-22 03:22:29 -->
