View Single Post
Old 08-27-2023, 06:34 AM   #11
Quoth
Still reading
Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.Quoth ought to be getting tired of karma fortunes by now.
 
Quoth's Avatar
 
Posts: 14,341
Karma: 105899727
Join Date: Jun 2017
Location: Ireland
Device: All 4 Kinds: epub eink, Kindle, android eink, NxtPaper
Quote:
Originally Posted by ownedbycats View Post
Some antiviruses really do not like Nirsoft's tools (especially the password recovery applications), so you might just want to blanket-exempt whatever folder you install that in.
Almost all AV software fails on new malware and periodically damages systems with false positives. It's equivalent to security on a building that relies on arrogant security guards with little knowledge of the employees who patrol the rooms more than the perimeter. User training on use of external devices/storage, email use (attachments, remote content) and web script blocking by default is more use than AV. Also configuring so nothing autoruns. MS was stupid adding Autorun to Win95, because the Amiga floppy autorun virus already existed. Then they added it to certain kinds of network shares.
Also then USB HID allows silent autorun of a script, so an evil mouse (on phone/tablet an evil charger) can install a root-kit.
Intel then lost the plot and added JTAG over USB and ability to change the management engine via USB.

Don't rely on AV.

When I did IT in the past, all the computers with malware had AV already installed.
Quoth is offline   Reply With Quote