<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: Cleaning up after an infection, and then?</title>
	<atom:link href="http://blog.didierstevens.com/2006/08/12/cleaning-up-after-an-infection-and-then/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.didierstevens.com/2006/08/12/cleaning-up-after-an-infection-and-then/</link>
	<description>(blog 'DidierStevens)</description>
	<pubDate>Fri, 21 Nov 2008 04:02:52 +0000</pubDate>
	<generator>http://wordpress.org/?v=MU</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Didier Stevens</title>
		<link>http://blog.didierstevens.com/2006/08/12/cleaning-up-after-an-infection-and-then/#comment-36</link>
		<dc:creator>Didier Stevens</dc:creator>
		<pubDate>Wed, 16 Aug 2006 20:06:22 +0000</pubDate>
		<guid isPermaLink="false">https://didierstevens.wordpress.com/2006/08/12/cleaning-up-after-an-infection-and-then/#comment-36</guid>
		<description>This is what I do at home, and it didn't happen over one night, but it evolved over many years.
I've worked at companies that are even better prepared than that! But of course, I've seen worse also ;-)</description>
		<content:encoded><![CDATA[<p>This is what I do at home, and it didn&#8217;t happen over one night, but it evolved over many years.<br />
I&#8217;ve worked at companies that are even better prepared than that! But of course, I&#8217;ve seen worse also <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: LonerVamp</title>
		<link>http://blog.didierstevens.com/2006/08/12/cleaning-up-after-an-infection-and-then/#comment-35</link>
		<dc:creator>LonerVamp</dc:creator>
		<pubDate>Mon, 14 Aug 2006 14:24:26 +0000</pubDate>
		<guid isPermaLink="false">https://didierstevens.wordpress.com/2006/08/12/cleaning-up-after-an-infection-and-then/#comment-35</guid>
		<description>Just a few things. I like your post, and it illustrates that gone are the times when you can have a 'push-button' admin or even desktop guy. They need to be able to at least read through technical information on malware in order to determine the impact and 'cleanability.' I don't 100% trust my antivirus vendors, which is why I tend to read briefs from as many as I can, and I try to verify the malware variant myself through multiple fingerprints, if you will.

I don't think many people will argue with your "prepared" list, but is that just your system(s) at home, or is your entire company prepared in that way? If so, I'd be mad impressed, and kudos to you! :) But therein lies the challenge for us admin types...we know what we need to do (let's assume we do and there aren't morons out there, for a minute) but that costs time, effort, user productivity, and in same indirect ways, happiness. That's a tough hill to climb to achieve agility, recoverability, and security like those steps you describe above.

Well...at least it will keep us with jobs for a long time to come, no? :)

Nice post though, I enjoy this stuff a lot!

LonerVamp (new visitor)</description>
		<content:encoded><![CDATA[<p>Just a few things. I like your post, and it illustrates that gone are the times when you can have a &#8216;push-button&#8217; admin or even desktop guy. They need to be able to at least read through technical information on malware in order to determine the impact and &#8216;cleanability.&#8217; I don&#8217;t 100% trust my antivirus vendors, which is why I tend to read briefs from as many as I can, and I try to verify the malware variant myself through multiple fingerprints, if you will.</p>
<p>I don&#8217;t think many people will argue with your &#8220;prepared&#8221; list, but is that just your system(s) at home, or is your entire company prepared in that way? If so, I&#8217;d be mad impressed, and kudos to you! <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> But therein lies the challenge for us admin types&#8230;we know what we need to do (let&#8217;s assume we do and there aren&#8217;t morons out there, for a minute) but that costs time, effort, user productivity, and in same indirect ways, happiness. That&#8217;s a tough hill to climb to achieve agility, recoverability, and security like those steps you describe above.</p>
<p>Well&#8230;at least it will keep us with jobs for a long time to come, no? <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Nice post though, I enjoy this stuff a lot!</p>
<p>LonerVamp (new visitor)</p>
]]></content:encoded>
	</item>
</channel>
</rss>
