<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>techcosupport.com &#187; Malware</title>
	<atom:link href="http://techcosupport.com/press/tag/malware/feed/" rel="self" type="application/rss+xml" />
	<link>http://techcosupport.com/press</link>
	<description>Techco Support Site - We support your business through Technology, Training and Coaching</description>
	<lastBuildDate>Thu, 29 Jul 2010 07:08:25 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>McAfee Security Scan Problems</title>
		<link>http://techcosupport.com/press/mcafee-security-scan-problems/</link>
		<comments>http://techcosupport.com/press/mcafee-security-scan-problems/#comments</comments>
		<pubDate>Mon, 04 Jan 2010 19:34:09 +0000</pubDate>
		<dc:creator>bgt</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[PC]]></category>
		<category><![CDATA[Support]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[McAfee]]></category>
		<category><![CDATA[Remove Security Scan]]></category>
		<category><![CDATA[Windows XP]]></category>

		<guid isPermaLink="false">http://techcosupport.com/press/?p=544</guid>
		<description><![CDATA[<p>It was reported by one of our Windows XP users that they were getting a message from McAfee Security Scan® with a request to Check My Security Status.  As we protect all of our Windows PCs using McAfee, this message was not out of place, and the user clicked Scan Now.  The alarm [...]]]></description>
			<content:encoded><![CDATA[<p>It was reported by one of our Windows XP users that they were getting a message from McAfee Security Scan® with a request to Check My Security Status.  As we protect all of our Windows PCs using McAfee, this message was not out of place, and the user clicked Scan Now.  The alarm bells started when the Security Scan reported that there was no anti-virus software installed, which just is not true.</p>
<p>A cursory glance (right click on the Shield in the system tools) shows that VirusScan Enterprise was alive and well on his machine, and the consol showed that the last auto-update was successful.  Initial attempts to uninstall the unwanted program using Control Panel, Add or Remove Programs were unsuccessful.  Googling the phrase <strong>How do I get rid of McAfee Security Scan</strong> turned up several suggestions involving booting into Safe Mode or installing anti-malware programs.  There were also several suggestions that McAfee Security Scan is downloaded with an update to Adobe Reader, which our user had recently installed.</p>
<p>This is the removal method which worked for us:</p>
<ul>
<li>Run <strong>msconfig</strong> using the Start, Run dialoge</li>
<li>When msconfig has loaded, click on the <strong>Startup</strong> tab</li>
<li>Find the entry for <strong>McAfee Security Scan</strong>, and uncheck the box</li>
<li>Then click on <strong>Apply</strong></li>
</ul>
<p>This will prevent the application from reloading next time you start up.  Next you need to uninstall the application:</p>
<ul>
<li>Call up <strong>Windows Task Manager</strong></li>
<li>Click on the <strong>Applications</strong> tab</li>
<li>Click on <strong>McAfee Security Scan</strong> then click the <strong>End Task</strong> button</li>
<li>Fire up <strong>Control Panel</strong> then double click <strong>Add or Remove Programs</strong></li>
<li>Wait a minute and McAfee Security Scan will relaunch and appear again in Task Manager, just like malware!</li>
<li>In Task Manager,  click <strong>McAfee Security Scan</strong>, then  <strong>End Task</strong> again</li>
<li>In Control Panel, immediately click <strong>Change</strong> for McAfee Security Scan, then <strong>Remove</strong></li>
</ul>
<p>If you have found this program installing itself without your conscious intent or consent we suggest that you voice your disapproval to Adobe.  If enough people post their disapproval of this forced installation of annoying software to Adobe, they might just change their policy.</p>
<p>To any Adobe directors reading this, let me be the first to admit that you market some brilliant software, which is a credit to your company.  Why risk your excellent corporate image with this offensive and shoddy software installation tactic?</p>
<p>For anyone else who is installing or upgrading Adobe Flash or Reader, take special note that there is an optional McAfee Scan listed in the installation that must be unchecked if you do not want to install McAfee Security Scan.</p>
]]></content:encoded>
			<wfw:commentRss>http://techcosupport.com/press/mcafee-security-scan-problems/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Parliamentary computers infected by Conficker worm</title>
		<link>http://techcosupport.com/press/parliamentary-computers-infected-by-conficker-worm/</link>
		<comments>http://techcosupport.com/press/parliamentary-computers-infected-by-conficker-worm/#comments</comments>
		<pubDate>Fri, 27 Mar 2009 17:33:28 +0000</pubDate>
		<dc:creator>bgt</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Support]]></category>
		<category><![CDATA[Conficker]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://techcosupport.com/press/?p=280</guid>
		<description><![CDATA[<p>The House of Commons internal computer network has been infected by the &#8220;Conficker&#8221; worm and has had to ban its users from attaching outside storage, such as USB memory sticks, in case it gets reinfected.  An estimated 10 million PCs worldwide have also been infected and experts fear next week will see problems worsen. [...]]]></description>
			<content:encoded><![CDATA[<p>The House of Commons internal computer network has been infected by the &#8220;Conficker&#8221; worm and has had to ban its users from attaching outside storage, such as USB memory sticks, in case it gets reinfected.  An estimated 10 million PCs worldwide have also been infected and experts fear next week will see problems worsen. For more on this story, see the article <a href="http://www.guardian.co.uk/technology/2009/mar/27/conficker-downadup-parliament-virus-april-1"><strong>House of Commons network hit by Conficker computer worm</strong></a> from <a href="http://www.guardian.co.uk/">guardian.co.uk</a></p>
<p>If your computer is infected with this worm, you may not experience any symptoms, or you may experience any of the following symptoms: </p>
<ul>
<li>Account lockout policies are being tripped. </li>
<li>Automatic Updates, Background Intelligent Transfer Service (BITS), Windows Defender, and Error Reporting Services are disabled. </li>
<li>Domain controllers respond slowly to client requests.</li>
<li>The network is congested. </li>
<li>Various security-related Web sites cannot be accessed. </li>
</ul>
<p>For more information about Win32/Conficker.b, visit the following Microsoft Malware Protection Center Web page <a href="http://www.microsoft.com/security/portal/Entry.aspx?Name=Win32/Conficker">http://www.microsoft.com/security/portal/Entry.aspx?Name=Win32/Conficker</a></p>
<p>Network managers can also stop Conficker from spreading by using Group Policy, and creating a policy that applies to all computers in a specific organizational unit (OU), site, or domain in your environment. For more details on this process see <a href="http://support.microsoft.com/kb/962007" title="Microsoft Help and Support Article ID 962007"><strong>Microsoft Help and Support Article ID 962007</strong></a></p>
]]></content:encoded>
			<wfw:commentRss>http://techcosupport.com/press/parliamentary-computers-infected-by-conficker-worm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
