Jump to content

how can kaspersky failed badly against terminator virus ??


Recommended Posts

11 hours ago, Xeno said:

Is this going to help against other drivers that terminate Kaspersky? I've seen other ones terminate the anti-virus (in detections) but what if there is a day zero one?

It is impossible to block generically all vulnerable drivers in advance because we are working on the same access level. But is is possible to block known drivers, rules for blocking are updated regularly

  • Like 1
Link to comment
Share on other sites

8 hours ago, Bav said:

But it didn't cause terminator was shutting down a fully enabled kaspersky just last week. Again, it's all on video with proof. And it happened SO Fast, kasperky didn't even try to stop it.

It's unknown what's in this video. But definitely not a publicly available utility Terminator using Zemana driver

  • Like 2
Link to comment
Share on other sites

10 minutes ago, Yury Parshin said:

It is impossible to block generically all vulnerable drivers in advance because we are working on the same access level. But is is possible to block known drivers, rules for blocking are updated regularly

Hello sir

I found some vendors may use hardware virtualization to enhance HIPS and proactive defense. Is it possible that K product also use hardware virtualization to block more R0 level dangerous actions? for example, direct syscall.

thx

Link to comment
Share on other sites

7 hours ago, Yury Parshin said:

It is impossible to block generically all vulnerable drivers in advance because we are working on the same access level. But is is possible to block known drivers, rules for blocking are updated regularly

Couldnt it be possible though to stop unknown drivers - take the safe rather than sorry approach. In theory really, you shouldnt have unknown applications try to terminate Kaspersky.

Edited by Xeno
Link to comment
Share on other sites

15 hours ago, Yury Parshin said:

It's unknown what's in this video. But definitely not a publicly available utility Terminator using Zemana driver

Possible they made a exclusion to test just its termination abilities

Link to comment
Share on other sites

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...