<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>MooSoft Musings &#187; windows</title>
	<atom:link href="http://www.moosoft.com/blog/category/windows/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.moosoft.com/blog</link>
	<description>The tao of moo</description>
	<lastBuildDate>Mon, 15 Mar 2010 05:35:59 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Firefox Addons Lead to Malware</title>
		<link>http://www.moosoft.com/blog/2010/02/05/firefox-addons-lead-to-malware/</link>
		<comments>http://www.moosoft.com/blog/2010/02/05/firefox-addons-lead-to-malware/#comments</comments>
		<pubDate>Fri, 05 Feb 2010 18:47:25 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[firefox]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[trojan]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=242</guid>
		<description><![CDATA[
From the Mozilla Add-ons blog:
Two experimental add-ons, Version 4.0 of Sothink Web Video Downloader   and  all versions of Master Filer were found to contain Trojan code  aimed at  Windows users.  Version 4.0 of Sothink Web Video Downloader  contained  Win32.LdPinch.gen, and Master Filer contained  Win32.Bifrose.32.Bifrose  Trojan. [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.moosoft.com/blog/wp-content/uploads/2010/02/firefox_trojan.png"><img class="alignleft size-full wp-image-243" title="Firefox Trojan" src="http://www.moosoft.com/blog/wp-content/uploads/2010/02/firefox_trojan.png" alt="Firefox Trojan" width="67" height="64" /></a></p>
<p>From the <a href="http://blog.mozilla.com/addons/2010/02/04/please-read-security-issue-on-amo/" target="_blank">Mozilla Add-ons blog</a>:</p>
<blockquote><p>Two experimental add-ons, Version 4.0 of Sothink Web Video Downloader   and  all versions of Master Filer were found to contain Trojan code  aimed at  Windows users.  Version 4.0 of Sothink Web Video Downloader  contained  Win32.LdPinch.gen, and Master Filer contained  Win32.Bifrose.32.Bifrose  Trojan.  Both add-ons have been disabled on  AMO.</p>
</blockquote>
<p> </p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2010/02/05/firefox-addons-lead-to-malware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Facebook &#8220;Unnamed App&#8221; Hoax Leads to Rogue AV</title>
		<link>http://www.moosoft.com/blog/2010/01/27/facebook-unnamed-app-hoax-leads-to-rogue-av/</link>
		<comments>http://www.moosoft.com/blog/2010/01/27/facebook-unnamed-app-hoax-leads-to-rogue-av/#comments</comments>
		<pubDate>Wed, 27 Jan 2010 17:17:29 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[facebook]]></category>
		<category><![CDATA[hoax]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[rogue]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[rogue av]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=238</guid>
		<description><![CDATA[There is a hoax going around on Facebook about a bad application called &#8220;Unnamed App.&#8221;  This is leading people to Google for information on it which is turning up results for Rogue Anti-Virus.  These Rogue Anti-Virus applications try to trick you into installing them by claiming your computer is infected with a variety of malware.
Credit [...]]]></description>
			<content:encoded><![CDATA[<p>There is a hoax going around on Facebook about a bad application called &#8220;Unnamed App.&#8221;  This is leading people to Google for information on it which is turning up results for Rogue Anti-Virus.  These Rogue Anti-Virus applications try to trick you into installing them by claiming your computer is infected with a variety of malware.</p>
<p>Credit goes to Peter Kruse for finding this issue.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2010/01/27/facebook-unnamed-app-hoax-leads-to-rogue-av/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Patch available for the IE exploit along with seven others</title>
		<link>http://www.moosoft.com/blog/2010/01/21/patch-available-for-the-ie-exploit-along-with-seven-others/</link>
		<comments>http://www.moosoft.com/blog/2010/01/21/patch-available-for-the-ie-exploit-along-with-seven-others/#comments</comments>
		<pubDate>Thu, 21 Jan 2010 23:47:02 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[Internet Explorer]]></category>
		<category><![CDATA[patch]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[exploit]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=234</guid>
		<description><![CDATA[Microsoft has released a patch for the IE exploit dubbed Aurora and seven other vulnerabilities.  You can get the updates via Windows Update.
Details of the patches can be found here: http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx
]]></description>
			<content:encoded><![CDATA[<p>Microsoft has released a patch for the IE exploit dubbed Aurora and seven other vulnerabilities.  You can get the updates via Windows Update.</p>
<p>Details of the patches can be found here: <a href="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" target="_blank">http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2010/01/21/patch-available-for-the-ie-exploit-along-with-seven-others/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Malware now exploiting the IE flaw</title>
		<link>http://www.moosoft.com/blog/2010/01/20/malware-now-exploiting-the-ie-flaw/</link>
		<comments>http://www.moosoft.com/blog/2010/01/20/malware-now-exploiting-the-ie-flaw/#comments</comments>
		<pubDate>Wed, 20 Jan 2010 15:56:48 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[Internet Explorer]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[ie]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=229</guid>
		<description><![CDATA[There is now malware in the wild exploiting the IE flaw as reported here.  If you haven&#8217;t already followed the suggestions there you should do so now.
]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.moosoft.com/blog/wp-content/uploads/2010/01/cleanerdetect.jpg"><img class="size-medium wp-image-230 alignleft" title="Cleaner Detecting Malware" src="http://www.moosoft.com/blog/wp-content/uploads/2010/01/cleanerdetect-300x117.jpg" alt="Cleaner Detecting Malware" width="300" height="117" /></a>There is now malware in the wild exploiting the IE flaw as reported <a href="http://www.moosoft.com/blog/2010/01/15/internet-explorer-0-day-exploit-allows-remote-code-execution/" target="_self">here</a>.  If you haven&#8217;t already followed the suggestions there you should do so now.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2010/01/20/malware-now-exploiting-the-ie-flaw/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>UPDATE: Internet Explorer 0-Day Exploit Allows Remote Code Execution</title>
		<link>http://www.moosoft.com/blog/2010/01/19/update-internet-explorer-0-day-exploit-allows-remote-code-execution/</link>
		<comments>http://www.moosoft.com/blog/2010/01/19/update-internet-explorer-0-day-exploit-allows-remote-code-execution/#comments</comments>
		<pubDate>Tue, 19 Jan 2010 20:47:53 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[Internet Explorer]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[0-day]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[patch]]></category>
		<category><![CDATA[zero day]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=222</guid>
		<description><![CDATA[Microsoft is going to release a special patch for this exploit.  I will update this post when they announce the date of the patch availability.
See http://blogs.technet.com/msrc/archive/2010/01/19/security-advisory-979352-going-out-of-band.aspx
 
UPDATE: The patch should be released tomorrow January 21st.
UPDATE: The patch is now available on Windows Update!
]]></description>
			<content:encoded><![CDATA[<p>Microsoft is going to release a special patch for this exploit.  I will update this post when they announce the date of the patch availability.</p>
<p>See <a href="http://blogs.technet.com/msrc/archive/2010/01/19/security-advisory-979352-going-out-of-band.aspx" target="_blank">http://blogs.technet.com/msrc/archive/2010/01/19/security-advisory-979352-going-out-of-band.aspx</a></p>
<p> </p>
<p><strong>UPDATE</strong>: The patch should be released tomorrow January 21st.</p>
<p><strong>UPDATE</strong>: The patch is now available on Windows Update!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2010/01/19/update-internet-explorer-0-day-exploit-allows-remote-code-execution/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Internet Explorer 0-Day Exploit Allows Remote Code Execution</title>
		<link>http://www.moosoft.com/blog/2010/01/15/internet-explorer-0-day-exploit-allows-remote-code-execution/</link>
		<comments>http://www.moosoft.com/blog/2010/01/15/internet-explorer-0-day-exploit-allows-remote-code-execution/#comments</comments>
		<pubDate>Fri, 15 Jan 2010 09:49:17 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[Internet Explorer]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[0-day]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[zero day]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=212</guid>
		<description><![CDATA[What is is: A malicious website can be crafted that will allow IE to be compromised and allow code to be executed on your computer.
What is affected: Internet Explorer versions 6, 7 and 8.
What you can do:

Get the IE patch from WindowsUpdate.
 Run Internet Explorer in protected mode on Vista and Windows7.
Use a lower access [...]]]></description>
			<content:encoded><![CDATA[<p><strong>What is is:</strong> A malicious website can be crafted that will allow IE to be compromised and allow code to be executed on your computer.</p>
<p><strong>What is affected:</strong> Internet Explorer versions 6, 7 and 8.</p>
<p><strong>What you can do:</strong></p>
<ul>
<li>Get the IE patch from WindowsUpdate.</li>
<li> Run Internet Explorer in protected mode on Vista and Windows7.</li>
<li>Use a lower access account when browsing the web.  Do not log in as administrator.</li>
<li>Raise the security zone in Internet Explorer to high.</li>
<li>Use an alternate browser such as <a href="http://www.firefox.com" target="_blank">Firefox</a> or <a href="http://www.opera.com/" target="_blank">Opera</a>.</li>
</ul>
<p><a href="http://www.moosoft.com/blog/wp-content/uploads/2010/01/internetexplorer.jpg"><img class="alignnone size-full wp-image-213" title="Internet Explorer Settings" src="http://www.moosoft.com/blog/wp-content/uploads/2010/01/internetexplorer.jpg" alt="Internet Explorer Settings" width="565" height="361" /></a></p>
<p> </p>
<p>More technical details can be found @ <a href="http://www.microsoft.com/technet/security/advisory/979352.mspx" target="_blank">http://www.microsoft.com/technet/security/advisory/979352.mspx</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2010/01/15/internet-explorer-0-day-exploit-allows-remote-code-execution/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Latest Zbot Campaign</title>
		<link>http://www.moosoft.com/blog/2009/11/24/latest-zbot-campaign/</link>
		<comments>http://www.moosoft.com/blog/2009/11/24/latest-zbot-campaign/#comments</comments>
		<pubDate>Tue, 24 Nov 2009 21:59:29 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[malware]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=171</guid>
		<description><![CDATA[The latest Zbot campaign claims to be a package of photographs that you need to download and run to see.  This is the malware delivery.  If you see a site like this you should close it immediately.
The Cleaner 2010 users are protected from this threat.  Credit goes to &#8220;ISC SIE Security researchers&#8221; for finding this [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-full wp-image-172" title="Zbot" src="http://www.moosoft.com/blog/wp-content/uploads/2009/11/zbot_photos.jpg" alt="zbot_photos" width="196" height="202" />The latest Zbot campaign claims to be a package of photographs that you need to download and run to see.  This is the malware delivery.  If you see a site like this you should close it immediately.</p>
<p>The Cleaner 2010 users are protected from this threat.  Credit goes to &#8220;ISC SIE Security researchers&#8221; for finding this new campaign.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2009/11/24/latest-zbot-campaign/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New program: BITS</title>
		<link>http://www.moosoft.com/blog/2009/11/20/new-program-bits/</link>
		<comments>http://www.moosoft.com/blog/2009/11/20/new-program-bits/#comments</comments>
		<pubDate>Fri, 20 Nov 2009 20:40:13 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[windows]]></category>
		<category><![CDATA[moosoft]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=135</guid>
		<description><![CDATA[BITS shows you if your CPU supports 64-bits and hardware virtualization (useful for VirtualPC, VMWare and XP Mode on Windows 7). Freeware.
]]></description>
			<content:encoded><![CDATA[<p><strong>BITS</strong> shows you if your CPU supports 64-bits and hardware virtualization (useful for VirtualPC, VMWare and XP Mode on Windows 7). Freeware.</p>
<div id="attachment_136" class="wp-caption alignnone" style="width: 310px"><a title="Download BITS" href="http://www.moosoft.com/Main/OtherPrograms#bits" target="_blank"><img class="size-medium wp-image-136" title="Download BITS" src="http://www.moosoft.com/blog/wp-content/uploads/2009/11/screenshot-300x133.jpg" alt="screenshot" width="300" height="133" /></a><p class="wp-caption-text">BITS</p></div>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2009/11/20/new-program-bits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows 7?</title>
		<link>http://www.moosoft.com/blog/2009/10/26/windows-7/</link>
		<comments>http://www.moosoft.com/blog/2009/10/26/windows-7/#comments</comments>
		<pubDate>Mon, 26 Oct 2009 07:25:54 +0000</pubDate>
		<dc:creator>moosoft</dc:creator>
				<category><![CDATA[moosoft]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[the cleaner]]></category>
		<category><![CDATA[windows 7]]></category>

		<guid isPermaLink="false">http://www.moosoft.com/blog/?p=37</guid>
		<description><![CDATA[You may be wondering if The Cleaner 2010 works with Windows 7.  It does indeed and very well!  The Cleaner 2010 has been rigorously tested on Windows XP SP3, WindowsVista and Windows 7.
]]></description>
			<content:encoded><![CDATA[<p>You may be wondering if The Cleaner 2010 works with Windows 7.  It does indeed and very well!  The Cleaner 2010 has been rigorously tested on Windows XP SP3, WindowsVista and Windows 7.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.moosoft.com/blog/2009/10/26/windows-7/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
