Comodo HIPS winevent hooks monitoring

Status
Not open for further replies.

Prayag

Level 4
Thread author
Verified
Well-known
Mar 27, 2017
160
Will enabling winevent hooks monitoring in hips is really needed?
Is patchguard efficient enough so that
this feature of comodo isn't needed to be enabled?
Will it have any negative impact on legitimate apps that use hooks for their functioning like media players?
Are malwares that use hooks really prevalent these days?
What effect does it have on games as they are generally not in tvl but use hooks?
 

Maxwell Sien

Level 2
Verified
Nov 15, 2016
97
Will enabling winevent hooks monitoring in hips is really needed?
Is patchguard efficient enough so that
this feature of COMODO isn't needed to be enabled?
Will it have any negative impact on legitimate apps that use hooks for their functioning like media players?
Are malwares that use hooks really prevalent these days?
What effect does it have on games as they are generally not in tvl but use hooks?

Do you mean this?

cis_hi10.png


If so, I recommended enable it all (Check it all). All of this point can be misused by malware.

Any Trusted files or Allowed Applications that have been set by user, will automatically be allowed to access/modify all of this item except Process Executions. You'll always be asked by HIPS alert if Allowed Applications want to another applications untill user set it as Installer/Updater.

-2017-65.jpg


-2017-64.jpg
 
Last edited:
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top