TIP: Click on subject to list as thread! ANSI
echo: osdebate
to: Rich
from: Geo
date: 2006-07-30 16:22:48
subject: Re: Bad developers whine over Windows kernel security

From: "Geo" 

This is a multi-part message in MIME format.

------=_NextPart_000_00ED_01C6B3F4.65FADF90
Content-Type: text/plain;
        charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

What trojans or malware are known to modify the kernel or other kernel =
mode components?

Geo.
  "Rich"  wrote in message news:44cac451$1{at}w3.nls.net...
     The sales and marketing guy being quoted is either an idiot or a =
liar.  The protection present in x64 systems protects against trojans = and
other bad code that attempt to modify the kernel or other kernel = mode
components.  Well behaved code that calls system APIs is not = affected in
any way.  What makes this guy an idiot or a liar is that = using the well
documented Windows API provides the means to remain = compatible.  Patching
and modifying random code or data in the kernel or = other components is
not portable or compatible from version to version.  = Even you, mike
miller, should be able to see this as you have whined in = the past when a
firewall you used or liked broke because it did stupid = stuff like this.

     As for making it easy for third parties to provide firewalls, =
Microsoft makes a significant effort to not only allow for this but it =
recently made it much easier with the Windows Filtering Platform =
(http://windowssdk.msdn.microsoft.com/en-us/library/ms758462.aspx).

  Rich


------=_NextPart_000_00ED_01C6B3F4.65FADF90
Content-Type: text/html;
        charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable








What trojans or malware are known to =
modify the=20
kernel or other kernel mode components?
 
Geo.
"Rich" <{at}> wrote in message news:44cac451$1{at}w3.nls.net... The sales and marketing = guy being=20 quoted is either an idiot or a liar. The protection present in = x64=20 systems protects against trojans and other bad code that attempt to = modify the=20 kernel or other kernel mode components. Well behaved code that = calls=20 system APIs is not affected in any way. What makes this guy an = idiot or=20 a liar is that using the well documented Windows API provides the = means to=20 remain compatible. Patching and modifying random code or data in = the=20 kernel or other components is not portable or compatible from version = to=20 version. Even you, mike miller, should be able to see this = as you=20 have whined in the past when a firewall you used or liked broke = because it did=20 stupid stuff like this. As for making it easy = for third=20 parties to provide firewalls, Microsoft makes a significant effort to = not only=20 allow for this but it recently made it much easier with the Windows = Filtering=20 Platform (http://windowssdk.msdn.microsoft.com/en-us/library/ms758462.aspx"= >).http://windowssdk.msdn.microsoft.com/en-us/library/ms758462.aspx).= FONT> Rich ------=_NextPart_000_00ED_01C6B3F4.65FADF90-- --- BBBS/NT v4.01 Flag-5
* Origin: Barktopia BBS Site http://HarborWebs.com:8081 (1:379/45)
SEEN-BY: 633/267 270
@PATH: 379/45 1 106/2000 633/267

SOURCE: echomail via fidonet.ozzmosis.com

Email questions or comments to sysop@ipingthereforeiam.com
All parts of this website painstakingly hand-crafted in the U.S.A.!
IPTIA BBS/MUD/Terminal/Game Server List, © 2025 IPTIA Consulting™.