RE: Bootable Vipre Rescue

2010-05-17 Thread Alex Eckelberry
Ok, we get it... ;-) -Original Message- From: Peter van Houten [mailto:peter...@gmail.com] Sent: Monday, May 17, 2010 5:23 PM To: NT System Admin Issues Subject: Re: Bootable Vipre Rescue In preparation for my possible meeting with Pan Virut (Virut Pan anyone?) tomorrow, I prepared a

Re: Bootable Vipre Rescue

2010-05-17 Thread Peter van Houten
In preparation for my possible meeting with Pan Virut (Virut Pan anyone?) tomorrow, I prepared a bootable USB flash drive with the following recipe. I used Winternals ERD Commander (as I also run the built-in functionality extensively) but I'm sure most other WinPE implementations will work. 1) D

RE: Bootable Vipre Rescue

2010-05-17 Thread Alex Eckelberry
onday, May 17, 2010 9:10 AM To: NT System Admin Issues Subject: Re: Bootable Vipre Rescue Not what you are wanting to read, but currently the way to remedy this (especially on a laptop) is: 1. Physically remove the suspected drive 2. Attach it externally to a recently scanned system 3. Use your r

RE: Bootable Vipre Rescue

2010-05-17 Thread John Aldrich
: Monday, May 17, 2010 11:53 AM To: NT System Admin Issues Subject: Re: Bootable Vipre Rescue What about F8 before the windows logo comes up, then Safe mode, then you can use winmsd or sysinternals autoruns to disable all the bad stuff. Hopefully while in safe mode you can run the scan with

Re: Bootable Vipre Rescue

2010-05-17 Thread Don Kuhlman
What about F8 before the windows logo comes up, then Safe mode, then you can use winmsd or sysinternals autoruns to disable all the bad stuff. Hopefully while in safe mode you can run the scan with your tools via a stick or cd, and if not, as long as you remove enough junk from starting at normal b

RE: Bootable Vipre Rescue

2010-05-17 Thread John Aldrich
, 2010 9:28 AM To: NT System Admin Issues Subject: RE: Bootable Vipre Rescue Have you tried a hard power reset, *then* F8 into Safe Mode ? Erik Goldoff IT Consultant Systems, Networks, & Security ' Security is an ongoing process, not a one time event ! ' From: John Aldrich

Re: Bootable Vipre Rescue

2010-05-17 Thread Angus Scott-Fleming
On 17 May 2010 at 9:39, Stu Sjouwerman wrote: > Results: The following members were successfully deleted: > > nwri...@frontieroil-eld.com Thanks. I was thinking we might have to submit his email to http://pleaserobme.com/ -- Angus Scott-Fleming GeoApps, Tucson, Arizona 1-520-290-5038 Securi

Re: Bootable Vipre Rescue

2010-05-17 Thread Andrew Levicki
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, *JUST KIDDING, DON'T DELETE ME PLEASE! - andrew * On 17 May 2010 22:39, Stu Sjouwerman wrote: > Results: The following members were successfully deleted: > > nwri...@frontieroil-eld.com > > Warm

RE: Bootable Vipre Rescue

2010-05-17 Thread Stu Sjouwerman
: NT System Admin Issues Subject: RE: Bootable Vipre Rescue I think Nathan's out of the office for awhile. What do you think? -Original Message- From: Wright, Nathan L. [mailto:nwri...@frontieroil-eld.com] Sent: Monday, May 17, 2010 8:19 AM To: NT System Admin Issues Subject: RE: Boo

RE: Bootable Vipre Rescue

2010-05-17 Thread Stu Sjouwerman
Results: The following members were successfully deleted: nwri...@frontieroil-eld.com Warm regards, Stu Sjouwerman Co-Founder, Publisher, Sunbelt Media P: +1-727-562-0101 ext 218 F: +1-727-562-5199 s...@sunbelt-software.com .. ~ Finally, powerful endpoint security that ISN'T a resource hog! ~

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

RE: Bootable Vipre Rescue

2010-05-17 Thread Erik Goldoff
Have you tried a hard power reset, *then* F8 into Safe Mode ? Erik Goldoff IT Consultant Systems, Networks, & Security ' Security is an ongoing process, not a one time event ! ' From: John Aldrich [mailto:jaldr...@blueridgecarpet.com] Sent: Monday, May 17, 2010 9:02 AM To: NT System Adm

RE: Bootable Vipre Rescue

2010-05-17 Thread tony patton
Yep, and it's only may, he's planning well in advance :) Regards Tony Patton Desktop Operations Cavan Ext 8078 Direct Dial 049 435 2878 email: tony.pat...@quinn-insurance.com From: "Maglinger, Paul" To: "NT System Admin Issues" Date: 17/05/2010 14:23 Subject:

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

RE: Bootable Vipre Rescue

2010-05-17 Thread RichardMcClary
[mailto:nwri...@frontieroil-eld.com] > Sent: Monday, May 17, 2010 8:19 AM > To: NT System Admin Issues > Subject: RE: Bootable Vipre Rescue > > I am out of the office from July 31 until August 7. I will get back to > you when I return. > > Thanks, > Nathan > >

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

RE: Bootable Vipre Rescue

2010-05-17 Thread Maglinger, Paul
I think Nathan's out of the office for awhile. What do you think? -Original Message- From: Wright, Nathan L. [mailto:nwri...@frontieroil-eld.com] Sent: Monday, May 17, 2010 8:19 AM To: NT System Admin Issues Subject: RE: Bootable Vipre Rescue I am out of the office from July 31

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

RE: Bootable Vipre Rescue

2010-05-17 Thread Martin Blackstone
Try Combofix. From: John Aldrich [mailto:jaldr...@blueridgecarpet.com] Sent: Monday, May 17, 2010 6:16 AM To: NT System Admin Issues Subject: RE: Bootable Vipre Rescue Thanks. I managed to get into safe mode (Vista Home Premium) and remove some junk. Now I have to go through and do the

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

RE: Bootable Vipre Rescue

2010-05-17 Thread John Aldrich
cl...@aspca.org [mailto:richardmccl...@aspca.org] Sent: Monday, May 17, 2010 9:10 AM To: NT System Admin Issues Subject: Re: Bootable Vipre Rescue Not what you are wanting to read, but currently the way to remedy this (especially on a laptop) is: 1. Physically remove the suspected drive 2. Attach it

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

RE: Bootable Vipre Rescue

2010-05-17 Thread Fogarty, Richard R Mr CTR USA USASOC USA
I use the Ultimate Boot Disk with I believe (it's been a bit since I had to use it) with an add-in for VIPRE Rescue. Might want to look into that. From: John Aldrich [mailto:jaldr...@blueridgecarpet.com] Sent: Monday, May 17, 2010 9:02 AM To: NT System Admin Issues Subject: Bootable Vipre Res

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov

Re: Bootable Vipre Rescue

2010-05-17 Thread RichardMcClary
Not what you are wanting to read, but currently the way to remedy this (especially on a laptop) is: 1. Physically remove the suspected drive 2. Attach it externally to a recently scanned system 3. Use your rescue tools (VIPRERESCUE, MalwareBytes, etc) on the external Good luck! -- Richard D. M

RE: Bootable Vipre Rescue

2010-05-17 Thread Wright, Nathan L.
I am out of the office from July 31 until August 7. I will get back to you when I return. Thanks, Nathan The information in this email may be confidential or privileged. This email is intended to be reviewed by only the individual or organization named abov