Question Mal-ad ware and virus nesting block diagram for further understanding (by us rookies :) )

keithnh

Distinguished
Dec 15, 2009
7
0
18,510
Just wondering if there are block diagrams anywhere that might help someone better understand how and where undesired programs are nested.

A "black box" like illustration/encyclopedia of each particular such undesirable program and how it is typically nested, possibly with recommendations to battle it.

I have many older computers .. likely many users do as we are pushed to continually upgrade. Using last computer upgraded from's full capabilities as an internet "screening " device might be an area for development, at least for us old-timers who do not need the fastest/newest.

Looks like I have a "New tab" virus that is hijacking?/affecting my browser even with my Norton 360/Ultimate Utilities software continuously grooming. I have printed out a multi-page procedure going here and there all over in my computer .. doing this and that to try to eradicate. Have a command prompt along with coming up with no command every time I turn on computer. Wish I had more background info to help understand my issues.
 
I'm afraid the list would be exhaustive and less than helpful in your situation. Unless you know the specific qualities of a particular infection.

I don't think Norton has the best reputation these days, but I haven't used anything beyond Windows defender in some years. Those tools can only prevent and remove things they already know about, if you have something new or disguised, not much to be done besides wiping the whole system.

Rootkits might exist in boot sectors or even the BIOS/firmware of your various hardware components. Not that common, but even a typical OS wipe is sometimes not enough.

I would start with tools like ComboFix (part of using combofx is running Anti-Malware Bytes, you can also just give that a try and maybe something like a Bitdefender Rescue CD.
 
Which Windows OS 's are you using?

What browsers?

Take a couple of sreenshots showing the "New tab" that you are seeing. Post the screenshots here via imgur (www.imgur.com).


Look in Process Explorer (Microsoft, free). Any unrecognized or unknown processes?

https://learn.microsoft.com/en-us/sysinternals/downloads/process-explorer


= = = =

Undesirables can be anywhere.

Even hidden in plain sight. Trojan horse, etc.....

The first thing I would do is to remove Norton 360.

All that is needed is Windows Defender/Security and Malwarebytes (free) for occassional back up scans.

You mentioned "command prompt": are you using DOS?

What sort of things does your multi-page procedure do?

I recommend Powershell - much more powerful with ample cmdlets, functions, and scripts.

Powershell can be used to apply Windows Defender - likely more useful at an admin level.

FYI:

https://learn.microsoft.com/en-us/defender-endpoint/schedule-antivirus-scans-powershell

Basically run scans indirectly with and without the browser running.....

Overall though, with respect to finding files, unless there is some idea of what is being looked for Powershell may be of limited use.

Maybe find targeted filenames or file types in places where they should not be.