PDA

View Full Version : Resistance against malware



Macmies
07-07-2008, 01:26 PM
How does iAntiVirus protect itself against malware?

I'm sure the first thing any malware software would try to do is to kill iAntiVirus app. This have been seen with rootkits and Little Snitch security software. Little Snitch was patched to resist attemps to kill it.

JeePee
07-07-2008, 03:32 PM
Good question, I think it's not in there yet. It's too easy to stop it (no password required). :rolleyes:

NSArchitect
07-08-2008, 06:43 AM
Thanks, this is a good point. Currently iavd cannot be terminated without the admin password, but we plan on extending this mechanism (and adding others) to include the iAntiVirus GUI application as well.

JeePee
07-08-2008, 01:28 PM
Currently iavd cannot be terminated without the admin password
Is this true? When I quit iAntivirus, through the Dock, iavd keeps running, but when I do Command Q, I can Exit the program and the iavd-proces is gone from my ActivityMonitor. Is this a bug or is it just on my system?:confused:

NSArchitect
07-08-2008, 02:10 PM
Is this true? When I quit iAntivirus, through the Dock, iavd keeps running, but when I do Command Q, I can Exit the program and the iavd-proces is gone from my ActivityMonitor. Is this a bug or is it just on my system?:confused:

Thanks, you've found a bug :)
Selecting quit from the dock should prompt you before exit in the same way that you're prompted when you do Command + Q.

When you quit iAntiVirus iavd should also shut down (for the time being). Eventually iavd will be set to run all the time. For now you can try to terminate iavd using Activity Monitor.app - you should be prompted for your password before you can kill it.