threatfire warning

Still want to know why does this happen…

You’re welcome.

Well security applications will to a certain extent have the power to kill processes even with avast’s self-defence enabled (after all some malware can) or similar to some security software it could be removed on the next boot, etc.

I don’t know if Alwil would know how MBAM removed the ashDisp.exe file and presumably the associated registry entries as MBAM would I’m sure not divulge how they do it.

As Vlk surely said somewhere, the self-defense is effective against user-mode code only.
Once you allow an application to load a kernel code (i.e. a driver), there isn’t much you can do to fight it.

Thanks Igor.

Are you sure that this happen with other antivirus also?
I’ve heard that some of them claim to be invulnerable even at driver level. Is it possible?

I’ve been using Avast with Threatfire for quite some time and this just started. I’ve been working with PCTools as well. I sent a link to this threadyesterday as well as a PM. They have yet to reply. They’re always prompt. This tells me they are working on it as well.