Just got this interesting note from fellow Windows victim, MS:I tried getting a screen shot of hidden notifications (in the notification area of the t
[See the full post at: Create a Restore Point]
![]() |
Patch reliability is unclear. Unless you have an immediate, pressing need to install a specific patch, don't do it. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Create a Restore Point
Home » Forums » Newsletter and Homepage topics » Create a Restore Point
- This topic has 10 replies, 3 voices, and was last updated 10 years, 10 months ago by
Mike.
AuthorTopicViewing 9 reply threadsAuthorReplies-
rc primak
GuestJuly 7, 2014 at 9:28 pm #52710Concensus onGoogle Search is that there is a rootkit associated with Conduit Search. Browser is hijacked, Home Page is changed, Google Search is disabled, Registry is altered, and the underlying rootkit is concealed.
Typical case for Malwarebytes. (Their quick scan option is sufficient, IF you check off to look for and remove rootkits). The infection is well known and removable if you act fast enough.
As with any rootkit, this one can leave open a backdoor through which additional malware can be downloaded, not intended by the original wuthors/vendors, but using the rootkit as a springboard.
Uponn removing the rootkit, each browser affected should be checked for toolbars and search engines, and anything not wanted should be removed or at least disabled from within the browser’s options.
Security programs worth their salt should have detected the attempt to install this crapware, and should have flagged it with a popup alert. The installation shold have been stopped.
Clearly, whatever active antivirus and firewall MS was using, have failed. Time to get better protection.
I hate the way Avast Free slows down my laptop, especially at boot time. But the annoyance may be worth it to avoid this sort of infection.
I also HATE that some once respectable freeware has sunk to the level of spreading rootkits and adware in the name of sustaining the economic viability of the free products. This abhorrant practice is rampant, and threatens the very foundations of Free and Open Source Software (FOSS).
DO NOT download PicPick. there are alternatives whichgive many of the screenshot options which PicPick offers, but without installing a rootkit on your PC.
In Linux, everything (well, almost everything) is free and open source, and we do just fine with our growing universe (multiverse?) of OS distros and software. True, some projects die, some GUIs leave a LOT ton be desired, and there are frequent cases where the update of one part of the ecosystem breaks some other parts. But we DO NOt TOLERATE malware masquerading as freeware, and in NO CASE allow anything potentially unwanted to piggyback on an installer.
Enough of my soapbox. Remove with prejudice (using GeekUninstaller, which forces everythingto be uninstalled and removes 64-bit Programs for free), run Malwarebytes Free (I HATE their new Windows8/Metro style user interface!), cleann up the browser, and install something active which does a better job of protecting you — especially your browser.
And don’t let old freeware rest on its laurels. Get current reviews before downloading anything.
-
Charlie
AskWoody Plus -
woody
ManagerJuly 10, 2014 at 7:03 am #52712@RC –
Is PicPick – the version available from the developer’s site – installing malware???? I installed it a couple of weeks ago and didn’t see anything.
BTW, your rant about bundling malware with freeware is spot on. I’m even more concerned with the wrappers that are so common now. At least one big-name download site is accepting software with those wrappers. And many of the developers’ sites now have ads (some at the top of the main page), which lead to infected downloads of the same product.
Scary.
-
woody
Manager -
MoreOff
Guest -
Mike
GuestJuly 11, 2014 at 3:15 am #52715DO NOT download PicPick. there are alternatives whichgive many of the screenshot options which PicPick offers, but without installing a rootkit on your PC.
@RC
Or you could just install Portable PicPick from PortableApps. No Adware or spyware included!
http://portableapps.com/apps/graphics_pictures/picpick-portable
The same goes for Filezilla as well (the install version from Sourceforge unfortunately has malware).
http://portableapps.com/apps/internet/filezilla_portable
Any program that has a portable version is awesome because they don’t install adware! You just get the program, plain and simple. One more good reason to use portable apps.
If possible, try to use the portable version of a program.
PS: Updating some of the portable apps are a hassle but they’re worth the hassle!
PSS: I am not affiliated with PortableApps in anyway. -
Oxford Al
GuestJuly 11, 2014 at 4:27 am #52716Surely it cannot be beyond the wit and/or logic an/or morals of the s/w industry to protect its own future by stopping this rife practice of allowing other companies (which they [usually] have no control over) to piggyback (largely unknown/unproven/unsecure) s/w with their own? Do they not see that this could irrevocably damage their own reputation? Do they care?
-
rcprimak
GuestJuly 15, 2014 at 10:37 am #52717@Woody —
Yep. It’s the Installer/Wrapper which offers the malware.
@Mike — Not YET, the Portable Apps don’t include malware. I use SUMo Lit updates checker form KC Softwares. It also is a special edition for those who abhor piggybacks.@Oxford Al — As I stated, Linux doesn’t tolerate this sort of crapware. Then again, in Linux, an Install operation is usually simply the act of Extracting from an Archive (the Installer) and Copying Files to their appropriate Locations, or MakingDirectories and Copying. Most of the installation is done without altering anything in the OS. And there’s no Registry in which to hide reinstaller keys or such garbage. It’s hard to hide something unwanted when the end user can go inside the archive and see everything which is to be installed. Unfortunately, Windows isn’t like that.
-
rcprimak
Guest -
Mike
GuestJuly 16, 2014 at 5:05 pm #52719@rcprimak
“Not YET…”
Well, you have a point there. PortableApps COULD one day turn to the dark side (e.g., have adware/crapware) like many other once respectable programs.Call it blind faith but I completely trust John Haller (guy behind PortableApps) that he won’t succumb to the dark side.
Viewing 9 reply threads - This topic has 10 replies, 3 voices, and was last updated 10 years, 10 months ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Microsoft: Troubleshoot problems updating Windows
by
Alex5723
2 hours, 32 minutes ago -
Woman Files for Divorce After ChatGPT “Reads” Husband’s Coffee Cup
by
Alex5723
2 hours, 41 minutes ago -
Moving fwd, Win 11 Pro,, which is best? Lenovo refurb
by
Deo
1 hour, 28 minutes ago -
DBOS Advanced Network Analysis
by
Kathy Stevens
12 hours, 30 minutes ago -
Microsoft Edge Launching Automatically?
by
healeyinpa
2 hours, 55 minutes ago -
Google Chrome to block admin-level browser launches for better security
by
Alex5723
15 hours, 10 minutes ago -
iPhone SE2 Stolen Device Protection
by
Rick Corbett
7 hours, 26 minutes ago -
Some advice for managing my wireless internet gateway
by
LHiggins
3 hours, 7 minutes ago -
NO POWER IN KEYBOARD OR MOUSE
by
HE48AEEXX77WEN4Edbtm
9 hours, 23 minutes ago -
A CVE-MITRE-CISA-CNA Extravaganza
by
Nibbled To Death By Ducks
1 day ago -
Sometimes I wonder about these bots
by
Susan Bradley
20 hours, 57 minutes ago -
Does windows update component store “self heal”?
by
Mike Cross
11 hours ago -
Windows 11 Insider Preview build 27858 released to Canary
by
joep517
1 day, 14 hours ago -
Pwn2Own Berlin 2025: Day One Results
by
Alex5723
1 day, 14 hours ago -
Windows 10 might repeatedly display the BitLocker recovery screen at startup
by
Susan Bradley
2 hours, 15 minutes ago -
Windows 11 Insider Preview Build 22631.5409 (23H2) released to Release Preview
by
joep517
1 day, 17 hours ago -
Windows 10 Build 19045.5912 (22H2) to Release Preview Channel
by
joep517
1 day, 17 hours ago -
Kevin Beaumont on Microsoft Recall
by
Susan Bradley
1 day, 5 hours ago -
The Surface Laptop Studio 2 is no longer being manufactured
by
Alex5723
2 days, 1 hour ago -
0Patch, where to begin
by
cassel23
1 day, 19 hours ago -
CFPB Quietly Kills Rule to Shield Americans From Data Brokers
by
Alex5723
2 days, 15 hours ago -
89 million Steam account details just got leaked,
by
Alex5723
2 days, 2 hours ago -
KB5058405: Linux – Windows dual boot SBAT bug, resolved with May 2025 update
by
Alex5723
2 days, 23 hours ago -
A Validation (were one needed) of Prudent Patching
by
Nibbled To Death By Ducks
2 days, 14 hours ago -
Master Patch Listing for May 13, 2025
by
Susan Bradley
2 days, 1 hour ago -
Installer program can’t read my registry
by
Peobody
18 hours, 33 minutes ago -
How to keep Outlook (new) in off position for Windows 11
by
EspressoWillie
2 days, 12 hours ago -
Intel : CVE-2024-45332, CVE-2024-43420, CVE-2025-20623
by
Alex5723
2 days, 19 hours ago -
False error message from eMClient
by
WSSebastian42
3 days, 10 hours ago -
Awoke to a rebooted Mac (crashed?)
by
rebop2020
3 days, 19 hours ago
Recent blog posts
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.