PDA

View Full Version : Re: Can you really 100% clean a compromised machine 100% of the time without wiping it?


Galen
November 14th 05, 06:38 PM
In ,
Leythos > had this to say:

My reply is at the bottom of your sent message:

> I know that some will claim they can perfectly clean a machine, but,
> if you're really that sure you can clean 100% of malware, 100% of the
> time, now and in the future, of known and unknown malware, without a
> wipe/reinstall, then I think you're just fooling yourself.

I snipped a lot to respond just to this portion. There's no such thing, in
my opinion, as being 100% certain that your system is clean if it's ever
been online or out of your sight. When I speak to people, or respond in
newsgroups or forums, I tend to say "if you're 99.9% certain your system is
free from malware _____" or something akin to that. It makes me laugh almost
every time I see someone post saying, "I know I don't have any viruses or
spyware." That just makes me smile because, well, it tells me that they have
too much false confidence and it reminds me of why I post as often as I do.
The truth is that there's no such thing as being completely secure and, as
you touch on, prevention is key to maintaining a clean system and even then
it's not enough. That being said, security is a process and not an
application; It's a fine line between knowing what the security implications
are and deciding if the actions you take are worth the dangers or deciding
if the ends justify the means. "Does the objective warrant the risk?"

--
Galen - MS MVP - Windows (Shell/User & IE)
http://dts-l.org/

Please note that if you're reading this in a browser and the domain is
not owned by Microsoft then this work is being used without permission.

Access MS Newsgroups :
http://kgiii.info/windows/all/general/msnewsgroups.html

Google