A comparative : 10 HIPS against 'brutal unhooking' malwares

Discussion in 'other anti-malware software' started by nicM, Jul 25, 2007.

Thread Status:
Not open for further replies.
  1. Longboard

    Longboard Registered Member

    Joined:
    Oct 2, 2004
    Posts:
    3,238
    Location:
    Sydney, Australia
    :thumb:

    @Ilya Rabinovich: did you run DW against these?

    @NicM: I know it's work but did you put some of these against sandboxes yet.
    GesWall
    DW
    Sandboxie
    BufferZone

    Sandboxie should by default stop drivers and kernel level manipulation or at least keep them sandboxed.
    ( heh: but some of the other apps allegedly did too)
    There have been some threads at Sandboxie recently about possible escapes.

    Maybe worth while: BufferZone offers a $$ bounty if you can break the wall.

    Different "implementation" issues when using sanboxes re identification vs isolation.

    Regards.
     
    Last edited: Sep 5, 2007
  2. Ilya Rabinovich

    Ilya Rabinovich Developer

    Joined:
    Sep 13, 2005
    Posts:
    1,543
    No, I didn't as I have no samples.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.