<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>NAS Technology</title>
	<atom:link href="http://www.nickshertzer.com/wordpress/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>http://www.nickshertzer.com/wordpress</link>
	<description>Professional Network Security &#38; Technology Advice</description>
	<pubDate>Sun, 22 Apr 2012 19:18:34 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Malware and Virus Removal for 2012</title>
		<link>http://www.nickshertzer.com/wordpress/?p=933</link>
		<comments>http://www.nickshertzer.com/wordpress/?p=933#comments</comments>
		<pubDate>Sun, 22 Apr 2012 13:42:44 +0000</pubDate>
		<dc:creator>Nick Shertzer</dc:creator>
		
		<category><![CDATA[Business]]></category>

		<category><![CDATA[Microsoft]]></category>

		<category><![CDATA[cleanup]]></category>

		<category><![CDATA[comodo]]></category>

		<category><![CDATA[malware]]></category>

		<category><![CDATA[malwarebytes]]></category>

		<category><![CDATA[removal]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://www.nickshertzer.com/wordpress/?p=933</guid>
		<description><![CDATA[This is an updated round up of security tools used for Windows PC cleanup and virus removal.  The original post can be found here: http://www.nickshertzer.com/wordpress/?p=247
Realtime Protection
The first step to malware and virus removal is to never get infected in the first place.  Start by installing a realtime AV scanner. (Important Note: only install ONE realtime A/V [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-934" title="malware" src="http://www.nickshertzer.com/wordpress/wp-content/uploads/2012/04/malware.jpg" alt="malware" width="210" height="198" />This is an updated round up of security tools used for Windows PC cleanup and virus removal.  The original post can be found here: <a href="http://www.nickshertzer.com/wordpress/?p=247">http://www.nickshertzer.com/wordpress/?p=247</a></p>
<h1>Realtime Protection</h1>
<p>The first step to malware and virus removal is to never get infected in the first place.  Start by installing a realtime AV scanner. (Important Note: only install ONE realtime A/V scanner.  Computer performance can be severely affected by running multiple file system scanners at once)</p>
<p>AVG is the current PC World editors pick for A/V as best in class  (PC Mag.com Best Free Antivirus 2012) .</p>
<p>AVG Free:</p>
<p><a href="http://download.cnet.com/AVG-Anti-Virus-Free-Edition-2012/3000-2239_4-10320142.html?part=dl-avg_free_us&amp;subj=dl&amp;tag=button">http://download.cnet.com/AVG-Anti-Virus-Free-Edition-2012/3000-2239_4-10320142.html?part=dl-avg_free_us&amp;subj=dl&amp;tag=button</a></p>
<p>The free AntiVirus software from Microsoft called Security Essentials is also a good choice.  In addition, I typically also configure Spybot Search and Destroy to use it’s “Tea Timer” and IE Protection.</p>
<p><span>Microsoft Security Essentials:</span></p>
<p><a href="http://www.microsoft.com/en-us/security_essentials/default.aspx">http://www.microsoft.com/en-us/security_essentials/default.aspx</a><span id="more-933"></span></p>
<p>Spybot Search and Destroy:</p>
<p><a href="http://www.safer-networking.org/en/index.html">http://www.safer-networking.org/en/index.html</a></p>
<p>I often times have people ask how to keep from getting infected with crap ware .  Many times the problem rides in on an unattended installer masquerading on a banner ad.  Hackers tend to target the largest base and infecting banner ad companies such as ad.doubleclick.net must return the biggest results.  I recommend running the latest version of Firefox with the AdBlock extension or Google Chrome with AdBlock Plus extension.</p>
<p>Firefox AdBlock Plus Extension:</p>
<p><a href="https://addons.mozilla.org/en-us/firefox/addon/adblock-plus/">https://addons.mozilla.org/en-us/firefox/addon/adblock-plus/</a></p>
<p>Google Chrome AdBlock Extension:</p>
<p><a href="https://chrome.google.com/webstore/detail/gighmmpiobklfepjocnamgkkbiglidom">https://chrome.google.com/webstore/detail/gighmmpiobklfepjocnamgkkbiglidom</a></p>
<h1>Post Infection Removal</h1>
<p>Step one is to run RKILL.  This small app is designed to stop currently running known malware processes.  This is nessecarry as some of the nastier viruses will disable several Windows components such as running EXE files.  RKill comes in a variety of formats for this reason (EXE, COM, SCR)</p>
<p>RKill:</p>
<p><a href="http://www.bleepingcomputer.com/download/anti-virus/rkill">http://www.bleepingcomputer.com/download/anti-virus/rkill</a></p>
<p>A new addition to my PC cleaning arsenal is a free tool called Comodo Cleaning Essentials.</p>
<blockquote><p>Powerful antivirus scanner capable ofremoving malware, rootkits, hidden files and malicious registry keys hidden deep within a system</p></blockquote>
<p><a href="http://www.comodo.com/business-security/network-protection/cleaning_essentials.php">http://www.comodo.com/business-security/network-protection/cleaning_essentials.php</a></p>
<p>The next tried and true scanner to run is Malwarebytes Anti-malware.  It is important to note that this app does not include a real time scanner.  This means it will remove an infection from your PC, but there is no mechanism inherent with the app to keep the malware from installing on your machine in the first place.</p>
<p>Malwarebytes:</p>
<p><a href="http://download.cnet.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html">http://download.cnet.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html</a></p>
<p>“manually copy the database from a working computer - database file is stored in the following locations.<br />
* Windows XP and 2000:<br />
C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes’ Anti-Malware\rules.ref<br />
* Windows Vista and Windows 7:<br />
C:\ProgramData\Malwarebytes\Malwarebytes’ Anti-Malware\rules.ref”</p>
<p>Microsoft Malicious Software Removal Tool:</p>
<p><a href="http://www.microsoft.com/DOWNLOADS/en/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&amp;displaylang=en">http://www.microsoft.com/DOWNLOADS/en/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&amp;displaylang=en</a></p>
<p>SuperAntiSpyware Portable Scanner:</p>
<p><a href="http://www.superantispyware.com/portablescanner.html?tag=SAS_HOMEPAGE">http://www.superantispyware.com/portablescanner.html?tag=SAS_HOMEPAGE</a></p>
<p>Microsoft Safety Scanner:</p>
<p><a href="http://www.microsoft.com/security/scanner/en-sg/default.aspx">http://www.microsoft.com/security/scanner/en-sg/default.aspx</a></p>
<p>TDSSKiller (rootkit remover):</p>
<p><a href="http://www.bleepingcomputer.com/download/anti-virus/tdsskiller">http://www.bleepingcomputer.com/download/anti-virus/tdsskiller</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.nickshertzer.com/wordpress/?feed=rss2&amp;p=933</wfw:commentRss>
		</item>
		<item>
		<title>AOL Postmaster Delivery to the following recipients has been delayed</title>
		<link>http://www.nickshertzer.com/wordpress/?p=925</link>
		<comments>http://www.nickshertzer.com/wordpress/?p=925#comments</comments>
		<pubDate>Fri, 20 Apr 2012 13:09:08 +0000</pubDate>
		<dc:creator>Nick Shertzer</dc:creator>
		
		<category><![CDATA[Business]]></category>

		<category><![CDATA[4.4.7]]></category>

		<category><![CDATA[AOL]]></category>

		<category><![CDATA[delayed]]></category>

		<category><![CDATA[FeedbackLoop]]></category>

		<guid isPermaLink="false">http://www.nickshertzer.com/wordpress/?p=925</guid>
		<description><![CDATA[
Hopefully these links will continue to work, unlike previous email link:


The Whitelist Request form can be found at:
http://postmaster-us.info.aol.com/whitelist
http://postmaster.aol.com/cgi-bin/fbl.pl


Reporting-MTA: dns;YOURDOMAIN.com Final-Recipient: rfc822;ANYONE@aol.com Action: delayed Status: 4.4.7
Will-Retry-Until: Thu, 19 Apr 2012 15:13:46 -0400
FYI
 



Subject: Delivery Status Notification (Delay)
This is an automatically generated Delivery Status Notification.
THIS IS A WARNING MESSAGE ONLY.
YOU DO NOT NEED TO RESEND YOUR MESSAGE.
Delivery [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoPlainText">
<p class="MsoNormal"><img class="alignright size-thumbnail wp-image-928" title="aol_logo" src="http://www.nickshertzer.com/wordpress/wp-content/uploads/2012/04/aol_logo-150x150.png" alt="aol_logo" width="150" height="150" />Hopefully these links will continue to work, unlike previous email link:</p>
<blockquote>
<p class="MsoNormal">
<p class="MsoPlainText">The Whitelist Request form can be found at:</p>
<p class="MsoPlainText"><a href="http://postmaster-us.info.aol.com/whitelist"><span style="text-decoration: line-through;">http://postmaster-us.info.aol.com/whitelist</span></a></p>
<p class="MsoPlainText"><a href="http://postmaster.aol.com/cgi-bin/fbl.pl">http://postmaster.aol.com/cgi-bin/fbl.pl</a></p>
<p class="MsoPlainText">
</blockquote>
<p class="MsoNormal">Reporting-MTA: dns;YOURDOMAIN.com Final-Recipient: rfc822;<a href="mailto:interiorscc@aol.com">ANYONE@aol.com</a> Action: delayed Status: 4.4.7</p>
<p class="MsoNormal">Will-Retry-Until: Thu, 19 Apr 2012 15:13:46 -0400</p>
<p><span>FYI</span><img class="alignright size-full wp-image-929" title="aol-email-features" src="http://www.nickshertzer.com/wordpress/wp-content/uploads/2012/04/aol-email-features.gif" alt="aol-email-features" width="218" height="50" /><span id="more-925"></span></p>
<div><span> <!--[if !supportLineBreakNewLine]--><br />
<!--[endif]--></span></div>
<blockquote>
<p class="MsoPlainText">
<p class="MsoNormal"><strong>Subject:</strong> <strong>Delivery Status Notification (Delay)</strong></p>
<p><span>This is an automatically generated Delivery Status Notification.</span></p>
<p>THIS IS A WARNING MESSAGE ONLY.<br />
YOU DO NOT NEED TO RESEND YOUR MESSAGE.</p>
<p>Delivery to the following recipients has been delayed.</p>
<p><!--[if !supportLineBreakNewLine]--><br />
<!--[endif]--></p></blockquote>
<p class="MsoPlainText">AOL Postmaster Support Request #86138 Update General</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Hello,</p>
<p class="MsoPlainText">
<p class="MsoPlainText">I am contacting you regarding the ticket you opened with AOL concerning an email delivery issue for the IP(s) EARTHLINK.STATIC.IP.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">The block on the IP(s)  EARTHLINK.STATIC.IP. has been removed. Please allow 24-48 business hours for this removal to take effect. In order to help manage your spam complaints and ensure best deliverability, please consider the following steps:</p>
<p class="MsoPlainText">
<p class="MsoPlainText">1) If you do not already have a feedback loop, I recommend visiting the AOL Postmaster website and applying for one.</p>
<p class="MsoPlainText"><a href="http://postmaster.aol.com/cgi-bin/fbl.pl">http://postmaster.aol.com/cgi-bin/fbl.pl</a></p>
<p class="MsoPlainText">
<p class="MsoPlainText">When an AOL member clicks &#8220;This Is Spam&#8221; on an email sent from one of your IP&#8217;s, this is considered a complaint. Once you have set up a feedback loop, every complaint will sent from <a href="mailto:SCOMP@aol.net">SCOMP@aol.net</a> to the email address specified when the application was submitted. It will contain the complete email and header information, and it will be in ARF (Abuse Reporting Format).</p>
<p class="MsoPlainText">
<p class="MsoPlainText">For more detailed information about AOL&#8217;s feedback loop system, please see <a href="http://postmaster.aol.com/Postmaster.FeedbackLoop.html">http://postmaster.aol.com/Postmaster.FeedbackLoop.html</a></p>
<p class="MsoPlainText">
<p class="MsoPlainText">The above URL will also provide additional information about ARF and some tips on processing it.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">2) Ensure you are following AOL&#8217;s Best Practices: <a href="http://postmaster.aol.com/Postmaster.Guidelines.html">http://postmaster.aol.com/Postmaster.Guidelines.html</a></p>
<p class="MsoPlainText">
<p class="MsoPlainText">3) Understand IP reputation and how it works at AOL:</p>
<p class="MsoPlainText"><a href="http://postmaster.aol.com/Postmaster.Reputation.html">http://postmaster.aol.com/Postmaster.Reputation.html</a></p>
<p class="MsoPlainText">
<p class="MsoPlainText">Thank You,</p>
<p class="MsoPlainText">Rahul</p>
<p class="MsoPlainText">AOL Postmaster.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.nickshertzer.com/wordpress/?feed=rss2&amp;p=925</wfw:commentRss>
		</item>
		<item>
		<title>Stop SOPA</title>
		<link>http://www.nickshertzer.com/wordpress/?p=914</link>
		<comments>http://www.nickshertzer.com/wordpress/?p=914#comments</comments>
		<pubDate>Wed, 18 Jan 2012 14:37:42 +0000</pubDate>
		<dc:creator>Nick Shertzer</dc:creator>
		
		<category><![CDATA[Apple]]></category>

		<category><![CDATA[Business]]></category>

		<category><![CDATA[Google]]></category>

		<category><![CDATA[Microsoft]]></category>

		<category><![CDATA[Personal]]></category>

		<category><![CDATA[pipa]]></category>

		<category><![CDATA[piracy]]></category>

		<category><![CDATA[sopa]]></category>

		<category><![CDATA[takeaction]]></category>

		<guid isPermaLink="false">http://www.nickshertzer.com/wordpress/?p=914</guid>
		<description><![CDATA[
 https://action.eff.org/o/9042/p/dia/action/public/?action_KEY=8173
https://www.google.com/landing/takeaction/
&#8220;SOPA and PIPA wouldn’t stop piracy
To make matters worse, SOPA and PIPA won’t even work. The censorship regulations written into these bills won’t shut down pirate sites. These sites will just change their addresses and continue their criminal activities, while law-abiding companies will suffer high penalties for breaches they can’t possibly control.&#8221;
Keep the Internet [...]]]></description>
			<content:encoded><![CDATA[<p><img class="size-medium wp-image-915 alignleft" title="takeaction" src="http://www.nickshertzer.com/wordpress/wp-content/uploads/2012/01/takeaction-300x184.png" alt="takeaction" width="300" height="184" /><br />
<a href="https://action.eff.org/o/9042/p/dia/action/public/?action_KEY=8173" target="_blank"> https://action.eff.org/o/9042/p/dia/action/public/?action_KEY=8173</a></p>
<p><a href="https://www.google.com/landing/takeaction/" target="_blank">https://www.google.com/landing/takeaction/</a></p>
<p>&#8220;SOPA and PIPA wouldn’t stop piracy</p>
<p>To make matters worse, SOPA and PIPA won’t even work. The censorship regulations written into these bills won’t shut down pirate sites. These sites will just change their addresses and continue their criminal activities, while law-abiding companies will suffer high penalties for breaches they can’t possibly control.&#8221;</p>
<p>Keep the Internet in technocratic hands.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.nickshertzer.com/wordpress/?feed=rss2&amp;p=914</wfw:commentRss>
		</item>
		<item>
		<title>Samsung Galaxy Note CM9 Alpha</title>
		<link>http://www.nickshertzer.com/wordpress/?p=911</link>
		<comments>http://www.nickshertzer.com/wordpress/?p=911#comments</comments>
		<pubDate>Mon, 09 Jan 2012 14:36:39 +0000</pubDate>
		<dc:creator>Nick Shertzer</dc:creator>
		
		<category><![CDATA[Business]]></category>

		<category><![CDATA[Google]]></category>

		<category><![CDATA[Personal]]></category>

		<category><![CDATA[CM9]]></category>

		<category><![CDATA[Galaxy Note]]></category>

		<category><![CDATA[Ice Cream Sandwich]]></category>

		<category><![CDATA[ICS]]></category>

		<category><![CDATA[Samsung]]></category>

		<guid isPermaLink="false">http://www.nickshertzer.com/wordpress/?p=911</guid>
		<description><![CDATA[A quick ScreenCast showing of CM 9 Alpha on the Galaxy Note [XDA Thread]
Ice Cream Sandwich runs GREAT, even with the pre-beta build that does not have ICS graphic blobs.  I changed the DPI to 160 to activate the tablet interface.  Too bad I can&#8217;t hang up that phone call  
Notice how smooth GTA3 [...]]]></description>
			<content:encoded><![CDATA[<p>A quick <a href="https://market.android.com/details?id=com.ms.screencast" target="_blank">ScreenCast</a> showing of CM 9 Alpha on the Galaxy Note <a href="http://forum.xda-developers.com/showthread.php?t=1423795" target="_blank">[XDA Thread]</a></p>
<p>Ice Cream Sandwich runs GREAT, even with the pre-beta build that does not have ICS graphic blobs.  I changed the DPI to 160 to activate the tablet interface.  Too bad I can&#8217;t hang up that phone call <img src='http://www.nickshertzer.com/wordpress/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>Notice how smooth GTA3 runs (any stuttering is due to the screencast software and not the build).</p>
<p><iframe width="420" height="315" src="http://www.youtube.com/embed/416fOhnkr0o" frameborder="0" allowfullscreen></iframe></p>
]]></content:encoded>
			<wfw:commentRss>http://www.nickshertzer.com/wordpress/?feed=rss2&amp;p=911</wfw:commentRss>
		</item>
		<item>
		<title>SBS 2003 W3SVC1 log file grew to 50GB!</title>
		<link>http://www.nickshertzer.com/wordpress/?p=906</link>
		<comments>http://www.nickshertzer.com/wordpress/?p=906#comments</comments>
		<pubDate>Mon, 12 Dec 2011 04:35:51 +0000</pubDate>
		<dc:creator>Nick Shertzer</dc:creator>
		
		<category><![CDATA[Business]]></category>

		<category><![CDATA[Microsoft]]></category>

		<category><![CDATA[IIS]]></category>

		<category><![CDATA[sbs 2003]]></category>

		<category><![CDATA[Server]]></category>

		<guid isPermaLink="false">http://www.nickshertzer.com/wordpress/?p=906</guid>
		<description><![CDATA[W3SVC1 log file located in C:\inetpub\logs\logfiles grew to 50GB on a client SBS 2003 server.
Safe to delete manually.   Controlled by Start&#62;Run&#62;%SystemRoot%\system32\inetsrv\iis.msc
Web Sites &#62; Right click Default Web Site &#62; Properties &#62; Enable Logging
Scheduled task to keep it on but stop the log file from growing unrestricted found here on Microsoft Technet:
Start&#62;Run&#62;CMD
at 12:00 /EVERY:Su Forfiles.exe [...]]]></description>
			<content:encoded><![CDATA[<p>W3SVC1 log file located in C:\inetpub\logs\logfiles grew to 50GB on a client SBS 2003 server.</p>
<p>Safe to delete manually.   Controlled by Start&gt;Run&gt;%SystemRoot%\system32\inetsrv\iis.msc</p>
<p><img class="alignright size-medium wp-image-907" title="iislogging" src="http://www.nickshertzer.com/wordpress/wp-content/uploads/2011/12/iislogging-300x194.png" alt="iislogging" width="300" height="194" />Web Sites &gt; Right click Default Web Site &gt; Properties &gt; Enable Logging</p>
<p>Scheduled task to keep it on but stop the log file from growing unrestricted <a href="http://social.technet.microsoft.com/Forums/en/configmgrgeneral/thread/d989b249-0159-41fc-b78c-1f1d91ce8bb3?prof=required" target="_blank">found here on Microsoft Technet</a>:</p>
<p>Start&gt;Run&gt;CMD</p>
<blockquote><p><span>at 12:00 /EVERY:Su Forfiles.exe -p C:\WINDOWS\system32\LogFiles\W3SVC1 -m *.log -d -30 -c \&#8221;Cmd.exe /C del @path\&#8221;</span></p></blockquote>
<p>Best I&#8217;ve found so far.</p>
<p>The process is a little different with SBS 2008 and IIS7:</p>
<p><a href="http://theessentialexchange.com/blogs/michael/archive/2010/01/11/disabling-wsus-logging-or-any-website-on-windows-server-2008.aspx" target="_blank">Disabling WSUS Logging (or any website on Windows Server 2008)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.nickshertzer.com/wordpress/?feed=rss2&amp;p=906</wfw:commentRss>
		</item>
	</channel>
</rss>

