Page 5 of 5 FirstFirst ... 345
Results 41 to 44 of 44
  1. #41
    Experienced User
    Overall activity: 0%

    Join Date
    May 2010
    Posts
    3,271
    Liked
    155 times
    Points
    6,541
    Windows 7 SP1 Ultimate x86 + KIS 2011 (11.0.2.556 b.a.c.d) + Sandboxie Paid (3.54) + Deep Freeze Standard (7.20.020.3398)

  2. #42
    Experienced User
    Overall activity: 0%

    Join Date
    May 2010
    Posts
    3,271
    Liked
    155 times
    Points
    6,541

    Quote

    Wikipedia (Kernel Patch Protection)

    Kernel Patch Protection (KPP), informally known as PatchGuard, is a feature of x64 editions of Microsoft Windows that prevents patching the kernel.
    ....
    Because of the design of the Windows kernel, Kernel Patch Protection cannot completely prevent kernel patching. It should be noted that Kernel Patch Protection only defends against device drivers modifying the kernel. It does not offer any protection against one device driver patching another.
    Weak protection is offered by KPP, even lower than advertised/expected. TDL3 patches miniport driver and easily bypasses KPP protection.

  3. #43
    Guest
    Overall activity: 54.0%

    Join Date
    May 2007
    Location
    Philippines
    Posts
    4,006
    Liked
    710 times
    Points
    47,645
    New functioning malware for a new platform, but uses the old dissemination trick.

    Not new after all. Just be vigilant! ...a simple awareness will do.
    "Stars and the Sun"


  4. #44
    Modern-day Romeo
    Overall activity: 0%

    Join Date
    Jul 2009
    Location
    Singapore, the "Little Red Dot" on the map
    Posts
    6,159
    Liked
    476 times
    Points
    61,007
    Because of the design of the Windows kernel, Kernel Patch Protection cannot completely prevent kernel patching.[7] This led the computer security providers McAfee and Symantec to say that since KPP is an imperfect defense, the problems caused to security providers do not outweigh the benefits because malicious software will simply find ways around KPP's defenses.[15][25]
    Just because a robber can force break entry into your house doesn't mean you should leave it wide open. I've been thinking of upgrading to 64-bit for some time but since I'm still with 3GB RAM and most software developers currently have a preference for 32-bit (e.g. 32-bit version = free while 64-bit version = you must pay), I'm sticking with 32-bit for now. And not to mention security apps that are 'weakened' by PatchGuard...such as Sandboxie. I'll wait...
    They call me the mysterious one...
    my motto is...when it's hot, chill baby

 

 
Page 5 of 5 FirstFirst ... 345

Similar Threads

  1. Mebromi: Here comes the first BIOS rootkit
    By linked in forum Spyware/Viruses
    Replies: 10
    Last Post: 09-17-2011, 05:25 AM
  2. Rootkit.TmpHider
    By Ceyfer √ in forum Spyware/Viruses
    Replies: 24
    Last Post: 08-02-2010, 05:02 AM
  3. MBR Rootkit!!!! Help ASAP!!!
    By lilangel186 in forum Spyware/Viruses
    Replies: 6
    Last Post: 02-06-2010, 10:28 AM

Tags for this Thread

All times are GMT +8. The time now is 09:01 AM.