Aggressive HIPS recommendation needed

Discussion in 'other anti-malware software' started by Metting, Sep 21, 2011.

Thread Status:
Not open for further replies.
  1. kareldjag

    kareldjag Registered Member

    Joined:
    Nov 13, 2004
    Posts:
    622
    Location:
    PARIS AND ITS SUBURBS
    hi,
    The right terminology is not aggressive HIPS, but System Expert HIPS, classical HIPS, proactive or behavioural protection.
    I've not tried SpyShelter, then as a recent and maintained choice i would say OSSS, but as an old (designed for XP) HIPS, i guess that Parador File protection would be interesting:
    http://e-securion.com/Public/App_E-securion/Products/Security/Parador_Product.aspx

    Choose the paranoid mode and you'll need to click every second...each one his way of having fun :)

    Rgds
     
  2. Old Monk

    Old Monk Registered Member

    Joined:
    Feb 8, 2005
    Posts:
    633
    Location:
    Sheffield, UK
    I don't think anything could quite beat good old System Safety Monitor in that regard.

    Especially if you installed in non-Learning Mode :D A veritable pop-up extravaganza !
     
    Last edited: Sep 22, 2011
  3. SLE

    SLE Registered Member

    Joined:
    Jun 30, 2011
    Posts:
    361
    Maintained?? They talk about development of version 2, but atm you can see not much development. And with the kernel approach they have choosen there is always a risk.
    __

    For x86: I still recommend malware defender, although it development got slower/stopped. English freeware version: here
     
  4. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    i am using MD;)
     
  5. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    Well i have always done that since a few months ago, i got it in Pop Up Machine mode :D
     
  6. 1chaoticadult

    1chaoticadult Registered Member

    Joined:
    Oct 28, 2010
    Posts:
    2,342
    Location:
    USA
    Figures because you just love popups Noobie. I'm still waiting on that coupon :D
     
  7. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    Man i ran out of coupons but for you ma friends i'll send you a few pills for free. :D
     
  8. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    I know...All-Seeing Eye (Fortego) is abandoned HIPS but I remember that is "one of the best" HIPS to tiring and weaken each user and sometimes to "kill" him. If you remove all authorized processes, drivers, dll's, autostart entries, etc. it can do it of course faster :cool:
     
  9. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
  10. Cutting_Edgetech

    Cutting_Edgetech Registered Member

    Joined:
    Mar 30, 2006
    Posts:
    5,694
    Location:
    USA
    I hope you don't plan on doing much with your computer other than answering popups lol Productivity will come to a stand still. Anyways, I would recommend you use Online Armor or Comodo without using their whitelist. You will go insane in no time lol
     
  11. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    or if you want block them all kind of thing then go with appguard it is very silent but very effective;)
     
  12. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    Well if he can get through the first 7 days then it will be a lot quieter unless you tend to install/uninstall a lot of things then i'm pretty sure you won't survive (Because even for ME! it's too much when doing lots of install/uninstall LOL) :D
     
  13. SUPERIOR

    SUPERIOR Registered Member

    Joined:
    Dec 10, 2007
    Posts:
    161
    Location:
    Syria
    um.... after trying some HIPS (which mentioned in this thread) against stuxnet rootkit and i can tell this
    1-for aggressive HIPS u need to pickup ones which you can define rules like MD or EQSecure or even SSM(the problem with SSM is that default rules for system processes i couldnt modify so SSM failed against stuxnet)
    2- then come OSSS and comodo
    now FWIW only All seeing Eye could detect ASLR dll trick when it loaded
    and MD has no MBR protection whereas SSM and EQsecure have
    you cant have aggressive HIPS without predefined rules or it will be very annoying o_O
    BTW, to my info ..there are many chinese HIPS software i tried some but barely i could deal with them :S if you are interested you may search them ;)
     
  14. 1chaoticadult

    1chaoticadult Registered Member

    Joined:
    Oct 28, 2010
    Posts:
    2,342
    Location:
    USA
    Hahaha Noobie. I knew I count on you :D


    Yea that would be a popup extravaganza :D
     
  15. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    When i used MD i used to disable it when i was installing uninstalling things, it was endless pop ups o_O o_O And i still do it nowadays with OA
     
  16. 1chaoticadult

    1chaoticadult Registered Member

    Joined:
    Oct 28, 2010
    Posts:
    2,342
    Location:
    USA
    I hear ya. Yea OA would give me nice popups when I used to install and uninstall software alot more. I barely do that now even though I don't use OA :D
     
  17. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    Don't they have some sort of installation mode?
     
  18. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    Yeah it does :D
     
  19. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    Why do you still disable it then?
     
  20. 1chaoticadult

    1chaoticadult Registered Member

    Joined:
    Oct 28, 2010
    Posts:
    2,342
    Location:
    USA
    Cuz he's Noobie and he likes popup heaven :D
     
  21. Kernelwars

    Kernelwars Registered Member

    Joined:
    Aug 12, 2010
    Posts:
    2,155
    Location:
    TX
    howz popup even considered as heaven lol:D
     
  22. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    I think that means lack of popups.
     
  23. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    I still have not made sure how the "Install mode" works.
    What i don't want is OA to creature rules for all these temporary actions, that's why i opt for disabling it completely. :D
     
  24. datarishik

    datarishik Registered Member

    Joined:
    May 11, 2010
    Posts:
    182
    What about Appdefend/Regdefend? Isn't that a System Expert HIPS?

    I want to try GSS someday so I have a question. Is it possible to enforce 'Default-Deny' using GSS?
     
  25. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    Never tried those apps, haven't seen those names in the Wilders and that's a rare thing :rolleyes:
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.