05.01.10 — May Day










The Dance around the May Pole, Pieter the Elder Bruegel





-----------------





Saturday, May 1, 2010 — May Day 






Puzzle by Paula Gamache, edited by Will Shortz



Twelve nine-letter entries are the main feature of this Saturday crossword:



AMEN TO THAT (26D. Response of approval)

ANNOTATES (61A. Gets some words in edgewise?)

CHIEF WAHOO (13D. Cleveland Indians mascot)

EMPTY SUIT (1A. Good-for-nothing)

GOT A MATCH (15A. Light seeker’s question)

GUARANTEE (17A. Word)

MAN BREASTS (12D. Unmacho features)

ON AN ERRAND (14D. Picking up the dry cleaning, e.g.)

SENIOR HIGH (27D. It doesn’t include the lower classes)

SOUND WAVE (58A. It can’t travel in a vacuum)

TEENSPEAK (63A. What many text messages are full of)

WORKS FOR ME (25D. Response of approval)






Eight-letter — DORA MAAR (34A. Picasso’s “private muse”), KNITTING (39A. Mufflers and such), SNIPES AT (37D. Attacks pettily) and THE ONION (9D. Its news network won a 2008 Peabody Award).





Seven — GOOD ONE (40D. “Clever!“), ICE COLD (8D. Opposite of torrid), NATASHA (38A. Adversary of Rocky), PERONS (22A. Populist power couple of the 1940s-‘50s), RENOIRS (36A. Some Musée d’Orsay hangings), SPORTY (48A. Smart).





Six — EATERY (30D. Bite site), MERTON (41A. Wimbledon’s borough), OMERTA (32A. Code broken by Joe Valachi), PETITE (22D. Diminutive), TRIUNE (44D. Like Brahma, Vishnu and Shiva) and UTTERS (7D. Spits out).





Five — AAMCO (10A. Transmission repair chain), ALBEN (21A. Vice president Barkley), APOLO (11D. Olympic speed skater Ohno), ARILS (33D. Botanical casings), ETHYL (62A. Antiknock fluid), IONIA (18A. Ancient neighbor of Lydia), KENNY (47D. “South Park” parka wearer), MAGNA (60A. Great, to Gaius), OTHER (50A. Alternative), RESOD (45A. Fix, as some bald spots), RHINE (57A. Cologne is found on it), 6D. Earl SANDE, 1930 Triple Crown-winning jockey, SCRAM (23D. Bolt), SLICE (29A. Piece of cake), SPAHN (16A. Eponym of an annual award for best left-handed pitcher), TENON (49D. Dovetail, e.g.), WASTE (25A. It may be radioactive).





Short stuff — ASIA, DECO, DESK, DTS, EDIE, EGGS, EWR, FORK, HARE, MOUE, ORFE, PATE, PTAS, REAL, SESS, SPUD, STO, SWAP, TARS (4D. Hold hands?), TROT, UVEA, YMA (5D. Sumac with a wide range).




























Click on image to enlarge.





Puzzle available on the internet at









If you subscribe to home delivery of The New York Times you are eligible to access the daily crossword via The New York Times - Times Reader, without additional charge, as part of your home delivery.







Remaining clues — ACROSS: 19. Legis. Period; 20. Like many Miami Beach buildings; 24. Ornamental pond fish; 31. Airport alternative to JFK or LGA; 42. Pou ___ (vantage point), 46. Stick with it; 52. Beggar in Sir Walter Scott’s “The Antiquary”; 53. K.P. unit. DOWN: 1. They often take a beating; 2. Sourpuss’s look; 3. Grps. Concerned with class struggle?; 10. Polo setting; 28. Go at a clip; 35. One that may 28-Down; 51. Not fantastic; 53. Quid pro quo; 54. It may have a bald spot; 55. Ciliary body locale; 56. Word after foreign or city; 59. Lush development?






AVDB UPDATE : 068

*****************************************************************
PeeTechFix - Win32/PSW.OnlineGames 2.0.7
*****************************************************************
Add new virus signature
AVDB-068 (30-04-2010) dd-mm-yyyy
*****************************************************************
91.exe
8b3.bat
ca.exe
ep9otvan.com
0e.exe
wkimt.exe
mskwivhb.dll

AVDB UPDATE : 068

*****************************************************************
PeeTechFix - Win32/PSW.OnlineGames 2.0.7
*****************************************************************
Add new virus signature
AVDB-068 (30-04-2010) dd-mm-yyyy
*****************************************************************
91.exe
8b3.bat
ca.exe
ep9otvan.com
0e.exe
wkimt.exe
mskwivhb.dll

04.30.10 — TGIFriday...










Friday, April 30, 2010





Puzzle by Natan Last, edited by Will Shortz




Since appearing in the media in the 1970s, crop circles have become the subject of speculation by various paranormal, ufological, and anomalistic investigators ranging from proposals that they were created by freak meteorological phenomena to messages from extraterrestrials — some are definitely known to be the work of human pranksters, much the same as many of the clues of this perplexing TGI Friday crossword.







Across1. Inspiration for Björn Again, ABBA; 5. Bob of stand-up comedy, SAGET; 10. Waves back?, ECHO; 14. It has many functions, briefly, CALC; 15. Art center since 1819, PRADO; 16. Risky thing to try in figure skating, QUAD; 17. Risky thing to try for on “Jeopardy!”, TRUE DAILY DOUBLE; 20. Novel whose title comes from Ecclesiastes, THE SUN ALSO RISES; 21. “Doo WOP (That Thing) (#1 hit for Lauryn Hill); 22. Nonpro?, CON; 23. Heat unit?, LAP; 24. Player of Sethe in “Beloved”, OPRAH; 26. It might go through a filter, E-MAIL; 29. Campaign crunch time: Abbr., OCT; 32. Opposite of schadenfreude, PITY; 33. Offerer of package plans, UPS STORE; 35. Source of jumbo eggs, in brief, DINO; 36. Hound, BESET; 38. Complicit with, IN ON; 39. Subject of a Sophocles tragedy, ANTIGONE; 41. Result of excessive bending, SNAP; 42. Midgets of the 1960s-’70s, e.g., MGS; 43. Gets charged up?, LOADS; 45. Hound, POOCH; 47. Image on Connecticut’s state quarter, OAK; 48. EKE out a profit; 50. Main role on “My Big Fat Greek Life”, NIA; 51. Justice League member, THE GREEN LANTERN; 57. Diamond deception, HIDDEN BALL TRICK; 58. Drive, URGE; 59. Gifted individual?, DONEE; 60. Fashionista’s read, maybe, ELLE; 61. Like some bets and patients, SEEN; 62. Bottleneck, SNARL; 63. Red, e.g., for short, NLER.







Down1. Drama center, often, ACT TWO; 2. Lush travel plan?, BARHOPPING; 3. Detailed outlines, BLUEPRINTS; 4. Hotshots, ACES; 5. “Apollo 13” actor Joe, SPANO; 6. 1906 Massenet opera, ARIANE; 7. Brass, GALL; 8. Brand with the flavor Fudge Tracks, EDY’S; 9. It might include check boxes, TO-DO LIST; 10. Outfit, EQUIP; 11. Litter lying around a den, CUBS; 12. Fit, HALE; 13. Pablo Neruda’s “Elemental ODES; 18. Brunswick, e.g., once, DUCHY; 19. Grad students often dread them, ORALS; 25. Tours “yours”, ATOI; 27. Said reflectively, MUSED; 28. Make like, APE; 29. Debutante who dated J. D. Salinger and Orson Welles, OONA O’NEILL; 30. Crushed corn creation, CROP CIRCLE; 31. Total hottie, TEN; 34. Martinez of the diamond, TINO; 35. Clog, DAM; 36. Title holders, BOOKENDS; 37. Disney doe, ENA; 40. Driving problem, GLARE; 41. Ready for retirement, SPENT; 44. Bear say, SELLER; 47. Setting of Hill Air Force Base, OGDEN; 49. Lara’s son, in DC Comics, KAL-EL; 51. So, THUS; 52. Give a name badge, say, HIRE; 53. Work (in), EDGE; 54. Like death’s dart, in Shakespeare, EBON; 55. Family moniker, NANA; 58. Tampico track transport, TREN.














Click on image to enlarge.



Puzzle available on the internet at



THE NEW YORK TIMES — Crossword Puzzles and Games.



If you subscribe to home delivery of The New York Times you are eligible to access the daily crossword via The New York Times - Times Reader, without additional charge, as part of your home delivery.





How to remove ca.exe

ca.exe , nodqq.exe
File size: 110592 bytes
MD5 : cfcdbf64641be15b533c1344e5b51367
SHA1 : d0508acbb264c82cef403116209ba054c2e1ef9c
========================================================
AntivirusVersionLast UpdateResult
a-squared4.5.0.502010.04.29Worm.Win32.Taterf!IK
AhnLab-V35.0.0.22010.04.29-
AntiVir8.2.1.2242010.04.28-
Antiy-AVL2.0.3.72010.04.28-
Authentium5.2.0.52010.04.29W32/OnlineGames.DZ!Eldorado
Avast4.8.1351.02010.04.28-
AVG9.0.0.7872010.04.29-
BitDefender7.22010.04.29-
CAT-QuickHeal10.002010.04.29-
ClamAV0.96.0.3-git2010.04.29PUA.Packed.ASPack
Comodo47072010.04.29Worm.Win32.Tarterf.KB
DrWeb5.0.2.033002010.04.29-
eSafe7.0.17.02010.04.28-
eTrust-Vet35.2.74562010.04.28-
F-Prot4.5.1.852010.04.28W32/OnlineGames.DZ!Eldorado
F-Secure9.0.15370.02010.04.29-
Fortinet4.0.14.02010.04.27-
GData212010.04.29-
IkarusT3.1.1.80.02010.04.29Worm.Win32.Taterf
Jiangmin13.0.9002010.04.29-
Kaspersky7.0.0.1252010.04.29-
McAfee5.400.0.11582010.04.29-
McAfee-GW-Edition6.8.52010.04.28Heuristic.LooksLike.Win32.SuspiciousPE.B
Microsoft1.57032010.04.29-
NOD3250702010.04.28-
Norman6.04.112010.04.28-
nProtect2010-04-28.022010.04.28-
Panda10.0.2.72010.04.28Suspicious file
PCTools7.0.3.52010.04.29-
Prevx3.02010.04.29Medium Risk Malware
Rising22.45.03.022010.04.29-
Sophos4.53.02010.04.29-
Sunbelt62352010.04.28-
Symantec20091.2.0.412010.04.29-
TheHacker6.5.2.0.2722010.04.28-
TrendMicro9.120.0.10042010.04.29-
VBA323.12.12.42010.04.28BScope.Trojan.PFP.0359
ViRobot2010.4.27.22952010.04.28-
VirusBuster5.0.27.02010.04.28Trojan.Magania.Gen!Pac.3
--------------------------------------------------------------------------------------------------------------
Files Added
%Temp%\nodqq.exe
%Temp%\herss.exe
%Temp%\nodqq0.dll (0-9)
%Temp%\cvasds0.dll (0-9)
X:\ca.exe
X:\[filename].exe (herss.exe families)

X:\autorun.inf

%Temp% = C:\Documents and Settings\[UserName]\Local Settings\Temp\
X:\ = C:\- Z:\

Registry Modifications
Keys added
HKLM\SOFTWARE\Classes\CLSID\MADOWN

Values added
HKLM\SOFTWARE\Classes\CLSID\MADOWN\urlinfo: "dsenmjq.i"
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
nod32 = %Temp%\nodqq.exe"
cdoosoft = %Temp%\herss.exe"

Values modified
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\
Advanced\ Folder\Hidden\SHOWALL\CheckedValue = 0x00000000

HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\
Advanced\Hidden = 0x00000002

HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\
Advanced\ShowSuperHidden = 0x00000000

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\
NoDriveTypeAutoRun: 0x00000091


Remote host
202.111.175.157 port 80

See all so
http://www.robtex.com/ip/202.111.175.157.html

Data identified/URLs to be download
http://qer67.com/1mg/am1.rar
http://www.yahoocde.com/1mg/am.rar

=======================================================
วิธีกำจัด/แก้ virus : ca.exe , nodqq.exe
=======================================================


------------------------------------------------------------------------------

หลังจากกำจัด virus ได้แล้ว แนะนำให้ติดตั้งโปรแกรมเพิ่มเติม เพื่อป้องกันการเรียกใช้ autorun
เช่น

Program Advice (Stop AutoRun)

NoAutoRun (.REG)
http://www.mediafire.com/?ammmxwhqmnm
or

Panda USB Vaccine
http://www.mediafire.com/download.php?qig0nmnm4ld

or
KB971029, KB967715
http://hotzone-it.blogspot.com/2009/08/kb971029-fix-autorun-microsoft.html

or
CPE17 AutoRun Killer
http://www.mediafire.com/download.php?hxoyjj0hyfh


How to remove ca.exe

ca.exe , nodqq.exe
File size: 110592 bytes
MD5 : cfcdbf64641be15b533c1344e5b51367
SHA1 : d0508acbb264c82cef403116209ba054c2e1ef9c
========================================================
AntivirusVersionLast UpdateResult
a-squared4.5.0.502010.04.29Worm.Win32.Taterf!IK
AhnLab-V35.0.0.22010.04.29-
AntiVir8.2.1.2242010.04.28-
Antiy-AVL2.0.3.72010.04.28-
Authentium5.2.0.52010.04.29W32/OnlineGames.DZ!Eldorado
Avast4.8.1351.02010.04.28-
AVG9.0.0.7872010.04.29-
BitDefender7.22010.04.29-
CAT-QuickHeal10.002010.04.29-
ClamAV0.96.0.3-git2010.04.29PUA.Packed.ASPack
Comodo47072010.04.29Worm.Win32.Tarterf.KB
DrWeb5.0.2.033002010.04.29-
eSafe7.0.17.02010.04.28-
eTrust-Vet35.2.74562010.04.28-
F-Prot4.5.1.852010.04.28W32/OnlineGames.DZ!Eldorado
F-Secure9.0.15370.02010.04.29-
Fortinet4.0.14.02010.04.27-
GData212010.04.29-
IkarusT3.1.1.80.02010.04.29Worm.Win32.Taterf
Jiangmin13.0.9002010.04.29-
Kaspersky7.0.0.1252010.04.29-
McAfee5.400.0.11582010.04.29-
McAfee-GW-Edition6.8.52010.04.28Heuristic.LooksLike.Win32.SuspiciousPE.B
Microsoft1.57032010.04.29-
NOD3250702010.04.28-
Norman6.04.112010.04.28-
nProtect2010-04-28.022010.04.28-
Panda10.0.2.72010.04.28Suspicious file
PCTools7.0.3.52010.04.29-
Prevx3.02010.04.29Medium Risk Malware
Rising22.45.03.022010.04.29-
Sophos4.53.02010.04.29-
Sunbelt62352010.04.28-
Symantec20091.2.0.412010.04.29-
TheHacker6.5.2.0.2722010.04.28-
TrendMicro9.120.0.10042010.04.29-
VBA323.12.12.42010.04.28BScope.Trojan.PFP.0359
ViRobot2010.4.27.22952010.04.28-
VirusBuster5.0.27.02010.04.28Trojan.Magania.Gen!Pac.3
--------------------------------------------------------------------------------------------------------------
Files Added
%Temp%\nodqq.exe
%Temp%\herss.exe
%Temp%\nodqq0.dll (0-9)
%Temp%\cvasds0.dll (0-9)
X:\ca.exe
X:\[filename].exe (herss.exe families)

X:\autorun.inf

%Temp% = C:\Documents and Settings\[UserName]\Local Settings\Temp\
X:\ = C:\- Z:\

Registry Modifications
Keys added
HKLM\SOFTWARE\Classes\CLSID\MADOWN

Values added
HKLM\SOFTWARE\Classes\CLSID\MADOWN\urlinfo: "dsenmjq.i"
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\
nod32 = %Temp%\nodqq.exe"
cdoosoft = %Temp%\herss.exe"

Values modified
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\
Advanced\ Folder\Hidden\SHOWALL\CheckedValue = 0x00000000

HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\
Advanced\Hidden = 0x00000002

HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\
Advanced\ShowSuperHidden = 0x00000000

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\
NoDriveTypeAutoRun: 0x00000091


Remote host
202.111.175.157 port 80

See all so
http://www.robtex.com/ip/202.111.175.157.html

Data identified/URLs to be download
http://qer67.com/1mg/am1.rar
http://www.yahoocde.com/1mg/am.rar

=======================================================
วิธีกำจัด/แก้ virus : ca.exe , nodqq.exe
=======================================================


------------------------------------------------------------------------------

หลังจากกำจัด virus ได้แล้ว แนะนำให้ติดตั้งโปรแกรมเพิ่มเติม เพื่อป้องกันการเรียกใช้ autorun
เช่น

Program Advice (Stop AutoRun)

NoAutoRun (.REG)
http://www.mediafire.com/?ammmxwhqmnm
or

Panda USB Vaccine
http://www.mediafire.com/download.php?qig0nmnm4ld

or
KB971029, KB967715
http://hotzone-it.blogspot.com/2009/08/kb971029-fix-autorun-microsoft.html

or
CPE17 AutoRun Killer
http://www.mediafire.com/download.php?hxoyjj0hyfh