Reply
Regular Contributor
Bug
Posts: 61
Registered: ‎09-14-2008

Kill NAV 2008 GUI

[ Edited ]

Sample download:

 

 [link removed]

 

Kaspersky Internet Security 2009 Report:


Internet Explorer (events: 2)
2008/10/16 下午 10:22:04 Placed in group Untrusted : Heur.Downloader
2008/10/16 下午 10:22:05 Autorun Denied: KLPrivileges/KLSelfStart
2008/10/16 下午 10:22:05 Autorun Denied: KLPrivileges/KLSelfStart
Internet Explorer (events: 2)
2008/10/16 下午 10:22:05 Placed in group Untrusted : Heur.Downloader
2008/10/16 下午 10:22:05 Autorun Denied: KLPrivileges/KLSelfStart
2008/10/16 下午 10:22:05 Autorun Denied: KLPrivileges/KLSelfStart
Internet Explorer (events: 2)
2008/10/16 下午 10:22:09 Placed in group High Restricted
2008/10/16 下午 10:22:09 Create C:\WINDOWS\system32\winlbi32.dll Denied: KLSystemData/KLSystemFiles/SystemDll
2008/10/16 下午 10:22:09 Create C:\WINDOWS\system32\winlbi32.dll Denied: KLSystemData/KLSystemFiles/SystemDll
2008/10/16 下午 10:22:09 Create C:\WINDOWS\system32\winlbi32.dll Denied: KLSystemData/KLSystemFiles/SystemDll
2008/10/16 下午 10:22:09 Process start c:\windows\system32\cmd.exe Allowed: KLPrivileges/KLPermissionAppAccess/KLPermissionProcManage/KLStartProc
2008/10/16 下午 10:22:14 Code intrusion c:\program files\internet explorer\iexplore.exe Denied: KLPrivileges/KLPermissionAppAccess/KLPermissionProcEmbed/KLCodeInject
2008/10/16 下午 10:22:14 Code intrusion c:\program files\internet explorer\iexplore.exe Denied: KLPrivileges/KLPermissionAppAccess/KLPermissionProcEmbed/KLCodeInject
2008/10/16 下午 10:22:14 Process start c:\documents and settings\administrator\local settings\temp\twe3.bat Allowed: KLPrivileges/KLPermissionAppAccess/KLPermissionProcManage/KLStartProc
2008/10/16 下午 10:22:15 Process start c:\documents and settings\administrator\desktop\keygen.bat Allowed: KLPrivileges/KLPermissionAppAccess/KLPermissionProcManage/KLStartProc
Internet Explorer (events: 2)
2008/10/16 下午 10:22:10 Placed in group Trusted/MICROSOFT
2008/10/16 下午 10:22:11 Access to internal browser data Allowed: KLPrivileges/KLPermissionSystem/KLPermissionSysObjAccess/KLShellWindowsAcceess


 

[edit: removed link per the Participation Guidelines and Terms of Service. Link is still on file.]

Message Edited by Tony_Weiss on 10-17-2008 02:56 PM
Regular Contributor
Dieselman743
Posts: 1,909
Registered: ‎09-11-2008

Re: Kill NAV 2008 GUI

Your point is?
Real Time Protection = NIS 2009 + NAT
Behavior Analysis = Threatfire
On Demand = MBAM
Regular Contributor
Bug
Posts: 61
Registered: ‎09-14-2008

Re: Kill NAV 2008 GUI

[ Edited ]

Just want to Remind Symantec development team to FIX or upgrade Self-Defence

and Remain everyone have to upgrade to NIS 2009 because 2009 can detected as Suspicious. AH. 109

 

NIS2009+AntiBot is better !

 

:)

 

Regards from Taiwan !

 

AVPClub Security Forum -  Kaspersky Section Moderator " Bug "

 

Message Edited by Bug on 10-16-2008 04:34 PM
Regular Contributor
Dieselman743
Posts: 1,909
Registered: ‎09-11-2008

Re: Kill NAV 2008 GUI

NIS 2009 with Threatfire is better. I tested Anti Bot and it fails alot of HIPS tests. Threatfire also uses less services and resouces. It also catches alot more. Cracks,keygens and patches will always be around. No one no how can stop it.
Real Time Protection = NIS 2009 + NAT
Behavior Analysis = Threatfire
On Demand = MBAM