Согласно исследованиям matousec.com:
"Если антивирусное ПО использует SSDT хуки или иные подобные виды перехватов в режиме ядра - это ПО уязвимо атаке методом переключения аргументов.
...
Протестированы наиболее распространенные секьюрити-приложения и все они уязвимы. Иными словами популярные современные решения безопасности просто-напросто не работают."
If a product uses SSDT hooks or other kind of kernel mode hooks on similar level to implement security features it is vulnerable. In other words, 100 % of the tested products were found vulnerable
...
We tested the most widely used security applications and found out that all of them are vulnerable. Today's most popular security solutions simply do not work. (с) matousec.com
Подробнее:
http://www.matousec.com/info/articles/khobe-8.0-earthquake-for-windows-desktop-security-software.php "Небольшой" список (*** The only reason there are not more products in the following table is our time limitation. Otherwise,
the list would be endless):
Product name and version / Result
3D EQSecure Professional Edition 4.2 /VULNERABLE
avast! Internet Security 5.0.462 /VULNERABLE
AVG Internet Security 9.0.791 /VULNERABLE
Avira Premium Security Suite 10.0.0.536 /VULNERABLE
BitDefender Total Security 2010 13.0.20.347 /VULNERABLE
Blink Professional 4.6.1 /VULNERABLE
CA Internet Security Suite Plus 2010 6.0.0.272 /VULNERABLE
Comodo Internet Security Free 4.0.138377.779 /VULNERABLE DefenseWall Personal Firewall 3.00 /VULNERABLE
Dr.Web Security Space Pro 6.0.0.03100 /VULNERABLE
ESET Smart Security 4.2.35.3 /VULNERABLE
F-Secure Internet Security 2010 10.00 build 246 /VULNERABLE
G DATA TotalCare 2010 /VULNERABLE
Kaspersky Internet Security 2010 9.0.0.736 /VULNERABLE
KingSoft Personal Firewall 9 Plus 2009.05.07.70 /VULNERABLE
Malware Defender 2.6.0 /VULNERABLE
McAfee Total Protection 2010 10.0.580 /VULNERABLE
Norman Security Suite PRO 8.0 /VULNERABLE
Norton Internet Security 2010 17.5.0.127 /VULNERABLE
Online Armor Premium 4.0.0.35 /VULNERABLE
Online Solutions Security Suite 1.5.14905.0 /VULNERABLE
Outpost Security Suite Pro 6.7.3.3063.452.0726 /VULNERABLE
Outpost Security Suite Pro 7.0.3330.505.1221 BETA VERSION /VULNERABLE
Panda Internet Security 2010 15.01.00 /VULNERABLE
PC Tools Firewall Plus 6.0.0.88 /VULNERABLE
Prevx 3.0.5.143 /VULNERABLE
PrivateFirewall 7.0.20.37 /VULNERABLE
Security Shield 2010 13.0.16.313 /VULNERABLE
Sophos Endpoint Security and Control 9.0.5 /VULNERABLE
ThreatFire 4.7.0.17 /VULNERABLE
Trend Micro Internet Security Pro 2010 17.50.1647.0000 /VULNERABLE
Vba32 Personal 3.12.12.4 /VULNERABLE
VIPRE Antivirus Premium 4.0.3272 /VULNERABLE
VirusBuster Internet Security Suite 3.2 /VULNERABLE
Webroot Internet Security Essentials 6.1.0.145 /VULNERABLE
ZoneAlarm Extreme Security 9.1.507.000 /VULNERABLE