this post was submitted on 22 Mar 2024
641 points (96.1% liked)

linuxmemes

24652 readers
1104 users here now

Hint: :q!


Sister communities:


Community rules (click to expand)

1. Follow the site-wide rules

2. Be civil
  • Understand the difference between a joke and an insult.
  • Do not harrass or attack users for any reason. This includes using blanket terms, like "every user of thing".
  • Don't get baited into back-and-forth insults. We are not animals.
  • Leave remarks of "peasantry" to the PCMR community. If you dislike an OS/service/application, attack the thing you dislike, not the individuals who use it. Some people may not have a choice.
  • Bigotry will not be tolerated.
  • 3. Post Linux-related content
  • Including Unix and BSD.
  • Non-Linux content is acceptable as long as it makes a reference to Linux. For example, the poorly made mockery of sudo in Windows.
  • No porn, no politics, no trolling or ragebaiting.
  • 4. No recent reposts
  • Everybody uses Arch btw, can't quit Vim, <loves/tolerates/hates> systemd, and wants to interject for a moment. You can stop now.
  • 5. πŸ‡¬πŸ‡§ Language/язык/Sprache
  • This is primarily an English-speaking community. πŸ‡¬πŸ‡§πŸ‡¦πŸ‡ΊπŸ‡ΊπŸ‡Έ
  • Comments written in other languages are allowed.
  • The substance of a post should be comprehensible for people who only speak English.
  • Titles and post bodies written in other languages will be allowed, but only as long as the above rule is observed.
  • 6. (NEW!) Regarding public figuresWe all have our opinions, and certain public figures can be divisive. Keep in mind that this is a community for memes and light-hearted fun, not for airing grievances or leveling accusations.
  • Keep discussions polite and free of disparagement.
  • We are never in possession of all of the facts. Defamatory comments will not be tolerated.
  • Discussions that get too heated will be locked and offending comments removed.
  • Β 

    Please report posts and comments that break these rules!


    Important: never execute code or follow advice that you don't understand or can't verify, especially here. The word of the day is credibility. This is a meme community -- even the most helpful comments might just be shitposts that can damage your system. Be aware, be smart, don't remove France.

    founded 2 years ago
    MODERATORS
     

    Though the Windows thing was really funny πŸ˜‚.

    you are viewing a single comment's thread
    view the rest of the comments
    [–] Heavybell@lemmy.world 7 points 1 year ago (1 children)

    Is that actually true? Does Windows check every file with Defender before deleting it?

    [–] 0x4E4F@sh.itjust.works 17 points 1 year ago* (last edited 1 year ago) (3 children)

    Not just every file deleted, every file written to disk as well (downloaded, extracted from an archive, whatever).

    It's also how most AV software works, except Defender is slow AF.

    [–] vox@sopuli.xyz 8 points 1 year ago (1 children)

    also, defender is synchronous by default (e.g. nothing gets written until it gets scanned, and scanning parallelization is limited), and can only act asynchronously (aka write first, then queue check) on "trusted dev drives" (aka ReFS-based virtual vhdx partitions aimed at developers as a solution to horrible ntfs throughput, especially if defender is enabled)

    [–] 0x4E4F@sh.itjust.works 1 points 1 year ago* (last edited 1 year ago)

    Not true, it does get written before it gets scanned. In fact, it doesn't even always scan before the file is read by explorer (yes, it's the worst AV ever). It's easy to prove this, just extract FFF's WinRAR keygen and you'll see what I mean.

    [–] HStone32@lemmy.world 7 points 1 year ago (1 children)

    Huh. All that security, and yet there are still so many viruses capable of infecting windows.

    [–] deur@feddit.nl 7 points 1 year ago (1 children)

    Huh.... all that immune system yet there are still so many viruses capable of infecting humans.

    [–] 0x4E4F@sh.itjust.works 1 points 1 year ago

    Humans are easy targets 😁... we've lived semi-isolated from nature at least the last few hundred years.

    [–] uis@lemm.ee 1 points 1 year ago (1 children)

    I thought it checks every file closed

    [–] 0x4E4F@sh.itjust.works 1 points 1 year ago (1 children)

    No, it scans file headers when you do read/write operations on disk. Every AV works this way, except, as I said, Defender is slow AF.

    [–] uis@lemm.ee 1 points 1 year ago (1 children)

    I can't find talk I watched, but I found github issue it was based on.

    Short version: Defender is triggered not on open, not on read or write, but on CloseHandle.

    [–] 0x4E4F@sh.itjust.works 1 points 1 year ago* (last edited 1 year ago) (1 children)

    CloseHandle of what? Read/write operations?

    [–] uis@lemm.ee 2 points 1 year ago (1 children)
    [–] PipedLinkBot@feddit.rocks 1 points 1 year ago

    Here is an alternative Piped link(s):

    Found

    Piped is a privacy-respecting open-source alternative frontend to YouTube.

    I'm open-source; check me out at GitHub.