Why can't we set an ignore for User Account Security for applications that we startup everyday?
How do you guarantee - with 100% certainty - that no malware can ever modify that whitelist, adding itself to the list? If such a thing were to happen, it would completely toss the protections that UAC offers out the window. And how do you guarantee that no malware can ever modify Scheduled Tasks? If they were to do so, all that is needed is to execute schtasks.exe /Run /TN "TaskName" and, with the right properties, a task can be started with elevation, no questions asked, and no prompting. If Microsoft can lock down Scheduled Tasks, they can lock down a white list. Shamelessly reviving an old thread For Great Justice, Twizzlerite
July 4th, 2010 1:55am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics