Search found 4 matches

by securityphreak
Fri Sep 17, 2010 1:04 pm
Forum: Feature Requests
Topic: New 64-bit root-kit gave me an idea...
Replies: 28
Views: 16227

Programs like GMER are not in common use, but a lot of virus/malware scanners look at the boot sector. There's a difference. Anyway the boot sector is probably just an example. The principle here is you're saying you wouldn't mind if Sandboxie acted more like a rootkit. And I'm saying, as a legitim...
by securityphreak
Tue Sep 14, 2010 10:43 am
Forum: Feature Requests
Topic: New 64-bit root-kit gave me an idea...
Replies: 28
Views: 16227

Honestly, most anti-virus/malware vendors would be able to tell whether or not Sandboxie had ben the on to patch the Boot Sector. Most already know that Sandboxi is legit. A rootkit scanner will already find Sandboxie as malicious because it does patch the kernel. I think doing this wouldn't be too ...
by securityphreak
Mon Sep 13, 2010 4:25 pm
Forum: Feature Requests
Topic: New 64-bit root-kit gave me an idea...
Replies: 28
Views: 16227

Thank you

Thank you D1G1T@L for seeing my reasoning. I like the comments so far, and I do agree with tzuk with the idea that it might set off a few more alarms with security software. However, the people who are installing SandBoxie on their computers probably know that it isn't dangerous, so when a security ...
by securityphreak
Mon Sep 13, 2010 11:35 am
Forum: Feature Requests
Topic: New 64-bit root-kit gave me an idea...
Replies: 28
Views: 16227

New 64-bit root-kit gave me an idea...

Okay, so it's not exactly new, but this could be a good idea, if the developers of Sandboxie can figure out how to do it. There are now root-kits that hi-jack the Master Boot record in order to load their drivers into windows, and hide themselves. Would it be possible to do the same with Sandboxie. ...