> Moreover, the engine runs unsandboxed and as NT Authority\SYSTEM.
Is there an antivirus that _doesn't_ parse untrusted input in a process with full system privileges? What a joke.
Is there an antivirus that _doesn't_ parse untrusted input in a process with full system privileges? What a joke.
[1]: https://press.avast.com/avast-announces-agreement-to-acquire...
However this piece is realtively simple to implement on windows so I can only hope they would implement the same thing for avast eventually at least. This is IMHO the only sane way to do scanning without exposing the system to a huge risk
The whole concept is just useless. Scanning all system IO for 20 year old BIOS viruses is a pure waste of energy.