I guess Python might have some use among Linux/Unix (server) malware creators. Those systems often have Python interpreter installed (unlike Windows), might be non-x86, might have slight differences in APIs (BSD vs Linux vs HP-UX...) and system level access may not be very necessary. Just my 2cents....

Looks like the November 2016 cumulative security update for Windows 7 (KB3197868) installs the diagtrack service. To check: sc query diagtrack To disable: sc config diagtrack start= disabled (Note the space after "=") Or, delete: sc delete diagtrack Has anyone found out if it brings other nasty stuf...

I remember getting this sort of spam years ago. If the Gmail spam filter doesn't detect them, one quick n dirty solution is to make a filter that puts all incoming messages that have your own address as sender to trash. You don't usually need to send messages to yourself so it only affects spam.

Good old ErrorSafe :P

Besides going through the list of bad updates, is there an easy way to check the existence of the spy features? At least these can be done: 1. Check the existence of GWXUXWorker.exe as instructed by EP_X0FF (Windows 7/8/8.1): If KB3035583 failed to completely remove files - go to %systemroot%\System...

Avast! because it is the least bad of the 3+1 big free AVs. Unfortunately even it is not free of bloat and various kinds of social media garbage anymore.

Sounds interesting. Does this work in the freeware edition (5.xx whatever)? Gonna test if it works...

I suggest old versions too, as malware on W98 isn't likely very new.

Is F-PROT still available for DOS based Windows?

How about ClamAV? My friend used it on 98 a few years ago. Don't know about its detection capabilities however.

Reformatting is of course easiest.

Has anyone considered forking VBox source and removing the "hardenings" to make a version suitable for malware analysis? It would cause problems with driver signing I guess? And of course lots of work as well.

Just my random 2 cents...