Fighting all malware at once - Page 2

Do you have a question? Post it now! No Registration Necessary.  Now with pictures!

Threaded View

Re: Fighting all malware at once

Quoted text here. Click to load it

As you said when I mentioned ShadowSurfer (ShadowUser is it big
brother) that I could not save changes.  That was the entire point of
why I use ShadowSurfer: so changes will never get saved WHEN I have
chosen when to activate ShadowSurfer.  Invariably users will start to
feel comfortable after the install of unknown and untested software
(i.e., it was unknown to them since they have not experienced it
previously on other hosts and also have not tested it before).  When
they feel comfortable, and when their anti-virus program and other
anti-malware software doesn't find anything for awhile (which is more
freebie utilities) then they decide to commit the change.  Then
sometime later they find they were infected or simply ended up with a
configuration that causes problems (non-viral apps can also screw up
the registry) but they have no prior image from which to restore.  Of
course, images and logical backups don't guarantee absolute freedom
from pests since they may contain them at the time the image or backup
was saved.  However, with images and backups, the user often has
several instances of them to walk forward from some starting point to
discover at which point their system gets screwed up, and then walk
forward to just short of that point, and without having to revert all
the way back to fresh installs of the OS and applications.

ShadowUser, PC Guard, and other such "recovery" utilities give you
just one-shot for recovery.  You get one image or state to which you
can return.  They do NOT obviate the need to periodically save
disk/partition images or logical file backups.  As such, I see no need
to just a one-shot recovery state using the version of those utilities
that will let you save a change.  You only get to save one change;
i.e., you get to go back to the prior state until you overwrite that
saved state with the next time you choose to save the current state.
ShadowSurfer doesn't let me save changes but then one state back is
often insufficient to eradicate any pest or corruption since it may
not be discovered until AFTER you have already commited to save the
changes to overwrite that saved state.  I look at it like disk
mirroring: it is NOT used for data recovery but as a quick means of
restoring the hardware to a known state.  It's a known state.  It may
not be a desired state.  If you don't have images or backups, you
could end up trying switch from a more infested or more corrupted
state which is the current one to step back to a less infested or less
corrupted state, but that may not step you back far enough to
eradicate a pest or undo the corruption.

Re: Fighting all malware at once

Vanguard wrote:
Quoted text here. Click to load it

I gave you 4 stars for you excelent point of view.
Not only viruses  and malware damage your system.
Software poorly planned, or bad uninstalled programs can also damage
your system's registry. And there is no antivirus on anything against

Of course it depends what is the final user's habits.
If there is a teenager, or anybody else with nasty internet habits
(download games, try whatever free stuff they find etc) or
inexperienced, I second your opinion. They should implement their
solutions with a selection of at least 2 last saves for recovery
Either way, the previous saved configuration will always be better than
the messed up one you trying to get rid of.
But I was basically talking about my personal experience.
I'm in charge of a medium size computer lab in a local school, were the
students use the computers without supervision.
Pc Guard  gives me the "Controlled environment" I was looking for.
Before installing new software, or patches, I try it on one computer.
If I see good results, it is when I save the new configuration.
And Laptop Guard protects my Laptop when I access the internet from
unknown Hot spots wireless internet access on the road.
Bottom line, users are the responsable for their system's safety.

Site Timeline