<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Biohazard outbreak of wintems.exe &#8211; 28 hours later (how to get rid of a virus if you can&#8217;t boot to safe mode and your computer keeps deleting anti virus software)</title>
	<atom:link href="http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/</link>
	<description>From the Nivas crew to the galaxy of unknown</description>
	<lastBuildDate>Wed, 11 Jan 2012 08:09:59 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Digital Caliper&#160;</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-732687</link>
		<dc:creator>Digital Caliper&#160;</dc:creator>
		<pubDate>Wed, 20 Oct 2010 20:35:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-732687</guid>
		<description>for me, the best scanner is avast antivirus and kaspersky. they can really find those annoying malwares:&#039;*</description>
		<content:encoded><![CDATA[<p>for me, the best scanner is avast antivirus and kaspersky. they can really find those annoying malwares:&#8217;*</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: how to make a gun</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-719390</link>
		<dc:creator>how to make a gun</dc:creator>
		<pubDate>Sat, 28 Aug 2010 18:48:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-719390</guid>
		<description>Bitdefender! That was the name I was trying to remember. I&#039;ve been looking for something to supplement NOD32.</description>
		<content:encoded><![CDATA[<p>Bitdefender! That was the name I was trying to remember. I&#8217;ve been looking for something to supplement NOD32.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Josiah Russell</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-718205</link>
		<dc:creator>Josiah Russell</dc:creator>
		<pubDate>Sat, 21 Aug 2010 18:46:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-718205</guid>
		<description>i am only using free virus scanners like avast and avira but they seem to be great tools though,`,</description>
		<content:encoded><![CDATA[<p>i am only using free virus scanners like avast and avira but they seem to be great tools though,`,</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paul Trewhitt</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-683984</link>
		<dc:creator>Paul Trewhitt</dc:creator>
		<pubDate>Fri, 08 Jan 2010 15:27:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-683984</guid>
		<description>Interessanter Beitrag, danke.</description>
		<content:encoded><![CDATA[<p>Interessanter Beitrag, danke.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Miro</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-675258</link>
		<dc:creator>Miro</dc:creator>
		<pubDate>Tue, 03 Nov 2009 09:46:13 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-675258</guid>
		<description>7even my friend you could&#039;ve just ask, and i would told you that new Nod32 has Sysrescue option that boots and cleans your system when there is no other option. Got the cd right here.</description>
		<content:encoded><![CDATA[<p>7even my friend you could&#8217;ve just ask, and i would told you that new Nod32 has Sysrescue option that boots and cleans your system when there is no other option. Got the cd right here.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: OnlineMate</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-542837</link>
		<dc:creator>OnlineMate</dc:creator>
		<pubDate>Tue, 16 Sep 2008 23:02:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-542837</guid>
		<description>I find it ridiculous that many PC owners prefer installing all kinds of trials and demos and </description>
		<content:encoded><![CDATA[<p>I find it ridiculous that many PC owners prefer installing all kinds of trials and demos and</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: andy</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-529336</link>
		<dc:creator>andy</dc:creator>
		<pubDate>Fri, 29 Aug 2008 09:40:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-529336</guid>
		<description>Had this for a while now, cannot get rid of it!! I also would like to hang the dick who created it, gives me a thought though, if everyone donated a dollar who got stung with this it might be enough to pay a guy to break their legs</description>
		<content:encoded><![CDATA[<p>Had this for a while now, cannot get rid of it!! I also would like to hang the dick who created it, gives me a thought though, if everyone donated a dollar who got stung with this it might be enough to pay a guy to break their legs</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Miron</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-444228</link>
		<dc:creator>Miron</dc:creator>
		<pubDate>Sat, 21 Jun 2008 19:32:58 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-444228</guid>
		<description>Thanks man.
I had the same fucking problem. (I had AntiVir Anti-virus)
I solved the problem by running into Safe-Mode, and luckily, the SpyBot
was able to run, and clean it.</description>
		<content:encoded><![CDATA[<p>Thanks man.<br />
I had the same fucking problem. (I had AntiVir Anti-virus)<br />
I solved the problem by running into Safe-Mode, and luckily, the SpyBot<br />
was able to run, and clean it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kelly</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-409060</link>
		<dc:creator>Kelly</dc:creator>
		<pubDate>Tue, 27 May 2008 17:37:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-409060</guid>
		<description>I think that we have the same thing here. Thanks for posting all this information you have saved me a lot of money. We outsource most of this stuff so hopefully we can correct it.</description>
		<content:encoded><![CDATA[<p>I think that we have the same thing here. Thanks for posting all this information you have saved me a lot of money. We outsource most of this stuff so hopefully we can correct it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Korpheous</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-364072</link>
		<dc:creator>Korpheous</dc:creator>
		<pubDate>Fri, 25 Apr 2008 21:04:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-364072</guid>
		<description>I can&#039;t believe how bad trhis virus really is.. I&#039;d like to hang the bastard who created this, by his balls.
Shamless people.</description>
		<content:encoded><![CDATA[<p>I can&#8217;t believe how bad trhis virus really is.. I&#8217;d like to hang the bastard who created this, by his balls.<br />
Shamless people.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: seven</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-215739</link>
		<dc:creator>seven</dc:creator>
		<pubDate>Tue, 22 Jan 2008 08:53:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-215739</guid>
		<description>This is insane. I live in fear of infection day by day... running nightly virus scans... my workstation is operating at 50% of cpus (since other 50% is taken by ativirus scanners)...

Some of my friends suggested running virtual pc  and browsing the internet on completely separate os installation. Well, that would be a great idea if surfing the net wouldn&#039;t be may day job. :)</description>
		<content:encoded><![CDATA[<p>This is insane. I live in fear of infection day by day&#8230; running nightly virus scans&#8230; my workstation is operating at 50% of cpus (since other 50% is taken by ativirus scanners)&#8230;</p>
<p>Some of my friends suggested running virtual pc  and browsing the internet on completely separate os installation. Well, that would be a great idea if surfing the net wouldn&#8217;t be may day job. :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bloo2k</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-215468</link>
		<dc:creator>bloo2k</dc:creator>
		<pubDate>Tue, 22 Jan 2008 04:33:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-215468</guid>
		<description>I&#039;ve got same problem, however, i managed to remove the rootkit first (or i&#039;ve just thought I did :( ). 
The malware  prevent most of anti virus/rootkit running. So I had to use tool that don&#039;t need install.
I download some tool from this site _http://antirootkit.com/software/index.htm (those with five star ;) )

BEFORE extract the packages, I renamed the extention of .exe file to .exe.bak (so it can&#039;t get infected), renamed the file name (so the malware can&#039;t close the sofware by it name).
AFTER extracted, I set those *.exe.bak file to READONLY, and rename to *.exe to start using them.

First I used Panda Anti-Rootkit to detect rootkit, and it found several interesting things, but I noticed those :

C:\WINDOWS\system32\drivers\hldrrr.exe;;&quot;TRUE&quot;;&quot;FALSE&quot;;&quot;FALSE&quot;;&quot;SOFTWARE\Microsoft\Windows\CurrentVersion\Run&quot;;&quot;drvsyskit&quot;;&quot;TRUE&quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;
C:\WINDOWS\system32\wintems.exe;;&quot;FALSE&quot;;&quot;FALSE&quot;;&quot;FALSE&quot;;&quot;SOFTWARE\Microsoft\Windows\CurrentVersion\Run&quot;;&quot;german.exe&quot;;&quot;TRUE&quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;
C:\WINDOWS\system32\drivers\srosa.sys;;&quot;TRUE&quot;;&quot;FALSE&quot;;&quot;FALSE&quot;;&quot;SYSTEM\CurrentControlSet\Services\srosa&quot;;&quot;ImagePath&quot;;&quot;FALSE&quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;&quot; &quot;;

but unfortunately, It can&#039;t remove them. I can&#039;t use explorer and regedit neither.
But with Rootkit UnHooker, I killed and erase hldrrr.exe, wintems.exe, and IceSword to delete registry entries, srosa.sys file.
After reboot, I check the system again with Panda Anti-Rootkit, IceSword, Rootkit Unhooker and look like everything is clean (with rootkit :) ). Now I can running antivirus software, hope it&#039;ll clean the system (although so many services, software was broken :( )

Sorry about my English, but I hope I can give your guy some issues to solve this problem, so maybe you will not suffer as I did.</description>
		<content:encoded><![CDATA[<p>I&#8217;ve got same problem, however, i managed to remove the rootkit first (or i&#8217;ve just thought I did :( ).<br />
The malware  prevent most of anti virus/rootkit running. So I had to use tool that don&#8217;t need install.<br />
I download some tool from this site _http://antirootkit.com/software/index.htm (those with five star ;) )</p>
<p>BEFORE extract the packages, I renamed the extention of .exe file to .exe.bak (so it can&#8217;t get infected), renamed the file name (so the malware can&#8217;t close the sofware by it name).<br />
AFTER extracted, I set those *.exe.bak file to READONLY, and rename to *.exe to start using them.</p>
<p>First I used Panda Anti-Rootkit to detect rootkit, and it found several interesting things, but I noticed those :</p>
<p>C:\WINDOWS\system32\drivers\hldrrr.exe;;&#8221;TRUE&#8221;;&#8221;FALSE&#8221;;&#8221;FALSE&#8221;;&#8221;SOFTWARE\Microsoft\Windows\CurrentVersion\Run&#8221;;&#8221;drvsyskit&#8221;;&#8221;TRUE&#8221;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;<br />
C:\WINDOWS\system32\wintems.exe;;&#8221;FALSE&#8221;;&#8221;FALSE&#8221;;&#8221;FALSE&#8221;;&#8221;SOFTWARE\Microsoft\Windows\CurrentVersion\Run&#8221;;&#8221;german.exe&#8221;;&#8221;TRUE&#8221;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;<br />
C:\WINDOWS\system32\drivers\srosa.sys;;&#8221;TRUE&#8221;;&#8221;FALSE&#8221;;&#8221;FALSE&#8221;;&#8221;SYSTEM\CurrentControlSet\Services\srosa&#8221;;&#8221;ImagePath&#8221;;&#8221;FALSE&#8221;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;&#8221; &#8220;;</p>
<p>but unfortunately, It can&#8217;t remove them. I can&#8217;t use explorer and regedit neither.<br />
But with Rootkit UnHooker, I killed and erase hldrrr.exe, wintems.exe, and IceSword to delete registry entries, srosa.sys file.<br />
After reboot, I check the system again with Panda Anti-Rootkit, IceSword, Rootkit Unhooker and look like everything is clean (with rootkit :) ). Now I can running antivirus software, hope it&#8217;ll clean the system (although so many services, software was broken :( )</p>
<p>Sorry about my English, but I hope I can give your guy some issues to solve this problem, so maybe you will not suffer as I did.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: yerlizard</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-212657</link>
		<dc:creator>yerlizard</dc:creator>
		<pubDate>Sat, 19 Jan 2008 17:24:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-212657</guid>
		<description>I&#039;m having the exact same problem! Following your outline for repair. Running Bitdefender online scan right now</description>
		<content:encoded><![CDATA[<p>I&#8217;m having the exact same problem! Following your outline for repair. Running Bitdefender online scan right now</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dimas</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-209933</link>
		<dc:creator>Dimas</dc:creator>
		<pubDate>Wed, 16 Jan 2008 19:39:14 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-209933</guid>
		<description>Man you saved my life (and a lot of time)!

I&#039;ve tried a lot of things before reading your post (killing process, booting on linux... removing that one thousand *** .exe files, ...).

I&#039;ve create a batch file like this:

:@loop
taskkill /IM wintems.exe
goto @loop

And so...

Then I take notice here about the Root Kit...

Thanx a LOT! =)

Today I swear that I will put my wireless card to work on *linux*... then ALL my problems will stop.</description>
		<content:encoded><![CDATA[<p>Man you saved my life (and a lot of time)!</p>
<p>I&#8217;ve tried a lot of things before reading your post (killing process, booting on linux&#8230; removing that one thousand *** .exe files, &#8230;).</p>
<p>I&#8217;ve create a batch file like this:</p>
<p>:@loop<br />
taskkill /IM wintems.exe<br />
goto @loop</p>
<p>And so&#8230;</p>
<p>Then I take notice here about the Root Kit&#8230;</p>
<p>Thanx a LOT! =)</p>
<p>Today I swear that I will put my wireless card to work on *linux*&#8230; then ALL my problems will stop.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: seven</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-209008</link>
		<dc:creator>seven</dc:creator>
		<pubDate>Tue, 15 Jan 2008 22:28:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-209008</guid>
		<description>Nope, it wasn&#039;t nods config fault. As I said, nod already ignored couple of viruses on my system last year and he allowed them to get installed. When this shit happened, I was running nod32 daily and realtime scanning was on for everything.

Anyways...Few days later after uninstalling nod32 and testing BitDefender, I can tell you how bad nod32 email scanner is. I thought that my outlook is dying because of my 5 gb inbox, but it was nod32s fault. He was freezing my whole system while he was scanning emails. Although, now with BitDefender, I noticed radical slowdown of application startup time.</description>
		<content:encoded><![CDATA[<p>Nope, it wasn&#8217;t nods config fault. As I said, nod already ignored couple of viruses on my system last year and he allowed them to get installed. When this shit happened, I was running nod32 daily and realtime scanning was on for everything.</p>
<p>Anyways&#8230;Few days later after uninstalling nod32 and testing BitDefender, I can tell you how bad nod32 email scanner is. I thought that my outlook is dying because of my 5 gb inbox, but it was nod32s fault. He was freezing my whole system while he was scanning emails. Although, now with BitDefender, I noticed radical slowdown of application startup time.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Manuel</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-208605</link>
		<dc:creator>Manuel</dc:creator>
		<pubDate>Tue, 15 Jan 2008 06:44:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-208605</guid>
		<description>Just finished cleaning my hard drive from yet another bagle spawn. My aproach was to unhook my HD and scan it as slave from another system. And yes, NOD32 was the tool of trade. 
Usually, when someone gets infected running nod32 its because they didnt configure it right. I was infected not because nod32 is a bad antivirus, but because I ran the damn trojan. Yes, I double clicked it.</description>
		<content:encoded><![CDATA[<p>Just finished cleaning my hard drive from yet another bagle spawn. My aproach was to unhook my HD and scan it as slave from another system. And yes, NOD32 was the tool of trade.<br />
Usually, when someone gets infected running nod32 its because they didnt configure it right. I was infected not because nod32 is a bad antivirus, but because I ran the damn trojan. Yes, I double clicked it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: daemon</title>
		<link>http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/comment-page-1/#comment-208110</link>
		<dc:creator>daemon</dc:creator>
		<pubDate>Mon, 14 Jan 2008 09:37:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.nivas.hr/blog/2008/01/13/biohazard-outbreak-of-wintemsexe-28-hours-later-how-to-get-rid-of-a-virus-if-you-cant-boot-to-safe-mode-and-your-computer-keeps-deleting-anti-virus-software/#comment-208110</guid>
		<description>Quote: &quot;I tend to keep my xp in good condition (or at least better than what rest of my crew does)&quot;

LIES!! Mine works like Swiss clockwork!</description>
		<content:encoded><![CDATA[<p>Quote: &#8220;I tend to keep my xp in good condition (or at least better than what rest of my crew does)&#8221;</p>
<p>LIES!! Mine works like Swiss clockwork!</p>
]]></content:encoded>
	</item>
</channel>
</rss>

