- Jul 1, 2014
- 302
will ReHIPS block code injection and hollow process?
Release date is not yet disclosed. Follow the Rehips topic in this forum and when they do someone will post it.question to Rehips:
when stay a stable version to disposal?
also available in German language?
No
ReHIPS is not a full HIPS like ESET, SpyShelter or COMODO
okay, but most applications are not running in virtual desktop.it does bro, in the virtual desktop ; Fixer said it.
okay, but most applications are not running in virtual desktop.
so that is the advantage of ReHIPS over default/deny. You can still run it, even if you don't trust it. just run it isolated.But where do you get weaponized dll injections? from apps you got from "unknown/suspicious" sources. so if you don't run those apps first isolated , that is your fault.
Exactly. Anything you don't trust or think that it can be exploited should be run isolated.so that is the advantage of ReHIPS over default/deny. You can still run it, even if you don't trust it. just run it isolated.
it does bro, in the virtual desktop ; Fixer said it.
If I interpreted what he said, the code injection, process hollow, memory scraping, etc isn't blocked - but any "damage" is limited to the isolated environment.
Think about it... TorrentLocker allowed to run - will perform hollow process (the HIPS does not block) - but the encryption of the files is limited to the isolated environment.
The HIPS itself doesn't block code injection, dll injection, process hollow, memory scraping, etc; what is blocked is file and registry system access. I think that is what he meant.
so maybe it is the reason why it doesn't bock those vectors directly, because they will run in an IE.
I made a feature request to spyshelter, for process hollowing protection.Some vendor HIPS are behind in their capabilities on 64-bit systems - for just a single example Datpol (SpyShelter).
I made a feature request to spyshelter, for process hollowing protection.
they responded: "Can you show me example of this "process hollow" ?"
does anyone have an example for them?
and I did not post the uncomplimentary remarks that came along with their rude request...they just making fun of you...they knows exactly what it is, and how it works and how to replicate one... if not, i feel sorry for their customers...
Why do you care and want to show them info. If they are not capable to run a simple test on their own why would you try their software even when they are rude. Move on and ignore them. Some companies have 0 understanding on how much good customer support would benefit them.and I did not post the uncomplimentary remarks that came along with their rude request...
I never gave them a penny in my life. I just grab giveaways...Why do you care and want to show them info. If they are not capable to run a simple test on their own why would you try their software even when they are rude. Move on and ignore them. Some companies have 0 understanding on how much good customer support would benefit them.