- Dec 18, 2017
- 4
Hello everyone.
This is my first time posting here and I apologize if you may encounter some grammar mistakes during the read, but english isn't my native language. Hope you understand.
So, why I'm opening a new thread? Well, yesterday something happened and, after searching around the web and in this forum, I didn't find all the answers I was looking for. So, since the Internet is (sometimes) a beautiful place to exchange knowledge and learn some more, here I am writing these questions.
Let's begin then:
Ok, yesterday I went back home and before going to sleep I decided to surf the web a bit (Firefox with uBlock Origin). It was a stressing day so why not... um, surf some... sites you know what I mean, maybe. Everything was going fine, but then a page opened itself (by a script I think?) when I clicked on the player. It was not a problem, since I was feeling protected enough, but then another one opened with a fake Firefox page asking for e-mail and password and the infamous "click CANCEL to continue". Of course I didn't type anything and I killed the firefox.exe just in case. But in that occasion, a thousand of questions came to my mind. I NEVER and I really mean NEVER took a virus, malware or other kinds of infections in my system (maybe only when I was a kid, without being aware of it). So I scanned my computer with Kaspersky Free: nothing found. Then, for a second opinion, I ran Emisoft Emergency Kit: nothing at all. Also I'm using Comodo Firewall (in conjuction with Kaspersky Free) with cruelsister1 famous configuration. Here then are some questions:
1. If Kaspersky and Emisoft Emergency Kit didn't found anything, does it mean that my computer is
completely clean or should delve deep even more with other softwares? So if two major softwares don't
find anything, there's a need to scan even more?
1a. And if a system is clean, can something infect you online and online only within the browser? what I
mean is, if Comodo don't warn me of an external attempt to access something, then what has been
executed is only an online script? (time to try out NoScript I think).
1b. Some softwares, like Kaspersky and others offer a web and mail protection. I always disabled such
things, but may they help against online threats that can infect your computer or if a user
configuration is already "protected" they are superflous?
Let's move on a bit, this time asking for containment and firewall(s) in general.
2. Firewalls software that sometimes have cointainment utilies (like Comodo) tend to monitor everything. But
when in these kind of programs a user create a folder (or a group of them) to execute trusted application,
there is a way that a virus or malware infection can KNOW that location who is not "guarded" and then
attack or use it? or it's just too fictional to be true?
2a. Another thing is that Comodo blocks one of my svchost exes in Firewall, but as I said earlier if a
computer scan don't find anything, does it mean that the problem is another or something malicious is
operating in backrgound still undetected and since it's a Windows process third party softwares have
difficulties to find the cause of it? (that process uses alone 140MB of RAM).
And I still have some more, but I think this is enough for now. Hope to not have bored you, since I'm very verbose, so thanks in advance. Also, but I don't think it matters much since these are question not much related to an OS, I'm using Windows 7 Ultimate 64bit.
This is my first time posting here and I apologize if you may encounter some grammar mistakes during the read, but english isn't my native language. Hope you understand.
So, why I'm opening a new thread? Well, yesterday something happened and, after searching around the web and in this forum, I didn't find all the answers I was looking for. So, since the Internet is (sometimes) a beautiful place to exchange knowledge and learn some more, here I am writing these questions.
Let's begin then:
Ok, yesterday I went back home and before going to sleep I decided to surf the web a bit (Firefox with uBlock Origin). It was a stressing day so why not... um, surf some... sites you know what I mean, maybe. Everything was going fine, but then a page opened itself (by a script I think?) when I clicked on the player. It was not a problem, since I was feeling protected enough, but then another one opened with a fake Firefox page asking for e-mail and password and the infamous "click CANCEL to continue". Of course I didn't type anything and I killed the firefox.exe just in case. But in that occasion, a thousand of questions came to my mind. I NEVER and I really mean NEVER took a virus, malware or other kinds of infections in my system (maybe only when I was a kid, without being aware of it). So I scanned my computer with Kaspersky Free: nothing found. Then, for a second opinion, I ran Emisoft Emergency Kit: nothing at all. Also I'm using Comodo Firewall (in conjuction with Kaspersky Free) with cruelsister1 famous configuration. Here then are some questions:
1. If Kaspersky and Emisoft Emergency Kit didn't found anything, does it mean that my computer is
completely clean or should delve deep even more with other softwares? So if two major softwares don't
find anything, there's a need to scan even more?
1a. And if a system is clean, can something infect you online and online only within the browser? what I
mean is, if Comodo don't warn me of an external attempt to access something, then what has been
executed is only an online script? (time to try out NoScript I think).
1b. Some softwares, like Kaspersky and others offer a web and mail protection. I always disabled such
things, but may they help against online threats that can infect your computer or if a user
configuration is already "protected" they are superflous?
Let's move on a bit, this time asking for containment and firewall(s) in general.
2. Firewalls software that sometimes have cointainment utilies (like Comodo) tend to monitor everything. But
when in these kind of programs a user create a folder (or a group of them) to execute trusted application,
there is a way that a virus or malware infection can KNOW that location who is not "guarded" and then
attack or use it? or it's just too fictional to be true?
2a. Another thing is that Comodo blocks one of my svchost exes in Firewall, but as I said earlier if a
computer scan don't find anything, does it mean that the problem is another or something malicious is
operating in backrgound still undetected and since it's a Windows process third party softwares have
difficulties to find the cause of it? (that process uses alone 140MB of RAM).
And I still have some more, but I think this is enough for now. Hope to not have bored you, since I'm very verbose, so thanks in advance. Also, but I don't think it matters much since these are question not much related to an OS, I'm using Windows 7 Ultimate 64bit.