- Oct 26, 2014
- 11
Having used Hitmanpro in the past as a second opinion, now that I have increased threats this HitmanPro Alert really intrigued me. So I added it to my computer. Was over at Wilders, and read about the Beta which offers CookieGuard which was exactly what I needed (My hacker loves XSS) . And they improved the heap heap protect. At this point in my life, its a matter of I want the Beta features and need to make this work. Their staff is at Wilders, but my old logon won't work and suspect my email address is one that I lost with a cable provider. So I registered again and they deleted all my well thought out posts, so I can't work with the Beta crew there. (Guess they want no new members)
So I have 2 options, live with it and see if anyone can help me here, or see if anyone can send the Hitmanpro folks here? Because I think they would be missing some serious product issues that can help make a better product. This is the thread name:
Here are some questions for anyone that can answer them.
1. Which is better, the Hitman Pro Heap Heap protect or the abbreviated version in Windows? Because it seems like I get to use one or the other and I want the most protection possible.
It appears the Windows exploit protections etc added after Hitmanpro are not happy with my system so I disabled it. Slows it down and causes freezes etc. I imagine it's from the HMP Heap Heap protect features. Seems like this would be double of similar protection. I never used those features before on Windows because my computer missed Windows version changes since late 2019 and never told me. I was working myself to death and happily updating with security patches. Got an end of service notice the other day and was like what the heck? So I updated and that's when my system got unhappy. Shut off the Windows stuff and it's happy again.
2. HitmanPro Alert Beta keeps triggering with valid browser software downloads. One was an Edge browser download of the HitmanPro Alert beta to see if a fresh install would help, another was chrome browser update, and the last was a Java old version remover download from their site. A second attempt, works. Why is this happening?
3. The next issue is with the Keystroke Encryption, sometimes the text in everyday windows operations is scrambled. In just about every function or program. Even windows search. The cure is to close it and start over again and it always works.
(The reason I keep scanning my computer is I have a hacker after me and I had a whole directory of downloads that was deleted and didn't think I deleted it by accident. Would be difficult since the folder itself was still intact, just the contents were gone. But my system always comes up clean. But it's enough to make me want the HitmanPro Alert to work out) I'm in a new user too in case the old one was corrupted.
- New CookieGuard mitigation. It protects (MFA) session cookies and passwords stored in Google Chrome and Microsoft Edge on Chromium.
So I have 2 options, live with it and see if anyone can help me here, or see if anyone can send the Hitmanpro folks here? Because I think they would be missing some serious product issues that can help make a better product. This is the thread name:
HHitmanPro.Alert BETA
Here are some questions for anyone that can answer them.
1. Which is better, the Hitman Pro Heap Heap protect or the abbreviated version in Windows? Because it seems like I get to use one or the other and I want the most protection possible.
I have some information to share, about a protection that we've been working on over the last two years (and Wilder Security members have been enjoying it for that long too). It's about our Heap Heap Protect mitigation - called Dynamic Shellcode Protection in Sophos's flagship endpoint product Intercept X.
If you haven't read it yet and have 10 minutes, be sure to read my blog about it: Covert code faces a Heap of trouble in memory – Sophos News
Below a relatively short primer about why it's actually pretty bold.
Heap Heap Protect is unique in the world. It basically puts a hard limit on any application to what memory they can allocate. It impacts every process on the box, even Windows’ own processes.
How this works? Applications can ‘loan’ an extra memory region from the system for the purpose to run added code. But when the added code requests an additional ‘loan’ for the purpose to introduce and run even more code, we say NO.
- Note: In a normal multi-stage scenario, Cobalt Strike Beacon is already proactively blocked by our patented HeapHeapProtect mitigation. This new Cobalt Strike mitigation now also thwarts the single-stage scenario. And upon detection of Beacon it also extracts and reports the full Cobalt Strike C2 profile configuration from memory.
- As part of the HeapHeapHooray mitigation, we now apply our proprietary SysCall mitigation system wide. This means when unknown malware employs, for example, the Heaven’s Gate defense evasion technique, it is now also blocked (this technique allows 32-bit malware running on 64-bit systems to hide API calls by switching to a 64-bit environment).
It appears the Windows exploit protections etc added after Hitmanpro are not happy with my system so I disabled it. Slows it down and causes freezes etc. I imagine it's from the HMP Heap Heap protect features. Seems like this would be double of similar protection. I never used those features before on Windows because my computer missed Windows version changes since late 2019 and never told me. I was working myself to death and happily updating with security patches. Got an end of service notice the other day and was like what the heck? So I updated and that's when my system got unhappy. Shut off the Windows stuff and it's happy again.
2. HitmanPro Alert Beta keeps triggering with valid browser software downloads. One was an Edge browser download of the HitmanPro Alert beta to see if a fresh install would help, another was chrome browser update, and the last was a Java old version remover download from their site. A second attempt, works. Why is this happening?
3. The next issue is with the Keystroke Encryption, sometimes the text in everyday windows operations is scrambled. In just about every function or program. Even windows search. The cure is to close it and start over again and it always works.
(The reason I keep scanning my computer is I have a hacker after me and I had a whole directory of downloads that was deleted and didn't think I deleted it by accident. Would be difficult since the folder itself was still intact, just the contents were gone. But my system always comes up clean. But it's enough to make me want the HitmanPro Alert to work out) I'm in a new user too in case the old one was corrupted.
Last edited: