Best free newb-friendly HIPS?

Discussion in 'other anti-malware software' started by Robot_Z, Jul 22, 2012.

Thread Status:
Not open for further replies.
  1. Blues7

    Blues7 Registered Member

    Joined:
    May 11, 2009
    Posts:
    870
    Location:
    2500'
    It's also not free so it's a moot point for this discussion.

    Why does it appear to be so unreasonably difficult for folks to actually try to provide the type of info and assistance the OP has requested rather than just listing their personal favorites regardless of whether they are germane to the topic?
     
  2. I think the problem is that there's no such thing as a newbie-friendly HIPS. HIPS can be made easier to use, with learning mode or by tuning down the paranoia, but ultimately the user needs to know a good deal about their OS.

    Mind you, I am a bit biased, because I think most HIPS have a serious design flaw: they rely on the user. Computers are dumb, predictable machines that cannot make mistakes. Users, no matter how experienced, can make mistakes, and with a HIPS that can lead to all kinds of problems.

    Default deny is a good strategy. Process isolation is a good strategy. Querying the user on everything remotely suspicious-looking is not a good strategy. Even with extensive use of learning mode, most HIPS I know of default to querying the user on everything with a nice yes/no prompt, which invites me to do something dumb every time it happens.

    P.S. There is software in the Linux world - chiefly AppArmor - that works on the same principles as a HIPS. The difference is that learning mode for it is per process. This makes it vastly more useful and vastly more secure... But sadly, such software basically doesn't exist for Windows. Too bad.
     
  3. JoeBlack40

    JoeBlack40 Registered Member

    Joined:
    Apr 1, 2009
    Posts:
    1,584
    Location:
    Romania
    To lazy to read carefully the post?:D :D Agree 100%.
    Another vote for Comodo FW.
     
  4. Vilmalith

    Vilmalith Registered Member

    Joined:
    Nov 28, 2007
    Posts:
    68

    Online Armor for me is the heaviest of the freebies with multiple processes using a totaly of around 40mb of memory, vm. It also has the most I/O activity. 2nd in terms of resource usage is PrivateFirewall with its one process usually around 25mb of memory. Lowest resoure usage has been Comodo FW and D+ with two processes using a total of 4mb of memory and very very little I/O.
     
  5. Robot_Z

    Robot_Z Registered Member

    Joined:
    Jul 22, 2012
    Posts:
    45
    Location:
    Canada
    Comodo sounds very light, are you using it right now?

    I might test the 3 and compare them (I'm using Online Armor at the moment) and see how they perform when I'm casually browsing.
     
  6. guest

    guest Guest

    I thought for a beginner it was the most friendly out there
    and if sit up right does act like a hips just with more help
    for the user, but you are right it is not free
    and it seems some people are just touch-e o_O :doubt: o_O
     
    Last edited by a moderator: Jul 25, 2012
  7. blacknight

    blacknight Registered Member

    Joined:
    Sep 25, 2007
    Posts:
    3,351
    Location:
    Europe, UE citizen
    Comodo or OA.
     
  8. Blues7

    Blues7 Registered Member

    Joined:
    May 11, 2009
    Posts:
    870
    Location:
    2500'
    On my XP Pro system, both Comodo and PrivateFirewall are by far the lightest.

    I am currently using Comodo and it is very quiet and resource friendly.
     
  9. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    Is Spyshelter a HIPS? I know it's a anti-keylogger but it does gives me prompts like the HIPS of OA and CMD D+.
     
  10. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    Yep. Spyshelter is a HIPS/keylogger. They call it System defense.

    "System DefenseSpyShelter guards your registry, your physical memory (RAM), and other sensitive computer parts and processes so that malicious code cannot be injected to seize control of your PC."

    I tried the free version and found it chatty at times. It gave great prompts when sometheing came up. The firewall version of it is very good too.
     
  11. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    Ah thanks kjdemuth
     
  12. Kernelwars

    Kernelwars Registered Member

    Joined:
    Aug 12, 2010
    Posts:
    2,155
    Location:
    TX
    Private firewall is free and provides great protection:)
     
  13. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    That's for sure. :thumb:
     
  14. Syobon

    Syobon Registered Member

    Joined:
    Dec 27, 2009
    Posts:
    469
    Comodo, without a shadow of doubt.
     
  15. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    Maybe not strictly HIPS but very close - SpyShelter Personal Free mainly as the anti-keylogger but with strong and friendly HIPS module. And of course ThreatFire with advanced settings.
     
  16. zip

    zip Registered Member

    Joined:
    Apr 19, 2007
    Posts:
    359
    Location:
    Mars
    How do you determine "resource friendly"?

    Task manager doesn't give accurate resource usage.
     
  17. Blues7

    Blues7 Registered Member

    Joined:
    May 11, 2009
    Posts:
    870
    Location:
    2500'
    I go by the response and "zip" (no pun intended...well, maybe a little) manifested by the system. As I mentioned in an earlier post, I don't think the numbers alone are a good enough predictor of how a given app will coexist with one's setup. (I will occasionally employ Process Explorer or Process Hacker to look deeper.)

    On my system, Comodo and PrivateFirewall are by far the most copacetic.
    Online Armor (formerly my favorite) and Outpost are both problematical.

    I don't rely much upon the numbers anymore as I've seen more "needy" apps (resource usage-wise) run more compliantly than so-called "lighter" apps in the past.
     
  18. zip

    zip Registered Member

    Joined:
    Apr 19, 2007
    Posts:
    359
    Location:
    Mars
    Online Armor Free is the way to go. :)
     
  19. Blues7

    Blues7 Registered Member

    Joined:
    May 11, 2009
    Posts:
    870
    Location:
    2500'
    Well, that's it then. ;)
     
  20. guest

    guest Guest

    Try comodo specially if you are in a x64 machine and if you want a pure HIPS deactivate the sandbox and take a look to the settings. It's totally transparent to the computer performance.
     
  21. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    Couldn't agree more my friend. :thumb:
     
  22. zip

    zip Registered Member

    Joined:
    Apr 19, 2007
    Posts:
    359
    Location:
    Mars
    Not every antivirus has a web shield, for those using an antivirus without a webshield, OA is a boon to them. OA comes with a webshield, it can be used with or without another webshield. ;)
     
    Last edited: Jul 30, 2012
  23. LoneWolf

    LoneWolf Registered Member

    Joined:
    Jan 2, 2006
    Posts:
    3,784
    I assume your on 32-bit.
    Free = Malware Defeder
    Paid = DefenseWall (Must be installed on a clean system)
    Personally I really like both but DefenseWall has been a part of my setup for quite a long time now.
    Online Armor is quite good too.
    (still wondering why "Best free newb-friendly HIPS?" thread is in the "other firewalls" section)
     
    Last edited: Jul 30, 2012
  24. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    164,145
    Location:
    Texas
    Thread moved. Please report misplaced threads. ;)
     
  25. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    So which one you ended up using?
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.