Advice Request SecureAPlus as an anti-exe

Please provide comments and solutions that are helpful to the author of this topic.

notabot

Level 15
Thread author
Verified
Oct 31, 2018
703
2,047
1,368
Hi,

I was wondering, viewing SecureAPlus purely from the anti-exe point of view, does it support monitoring & allowing/not allowing : parent process -> child process pairs
Or it operates only on the basis is process XYZ allowed to run no matter which process started it?
 
Voodooshield is better as it uses 50+ engines instead of only 12, its also only like 30 megabytes in task manager compared to securea's 150-180 megabytes, as much as kaspersky and twice as much as norton.
I don't think this answers OP's question. Since the question is about its anti-exe capabilities, not number of AV engines.
 
Voodooshield is better as it uses 50+ engines instead of only 12, its also only like 30 megabytes in task manager compared to securea's 150-180 megabytes, as much as kaspersky and twice as much as norton.
To use voodooshield with parent/child process control you need to purchase the pro license.
If you want a free software, better to use re:hips :)
 
Last edited:
If you looking for strict parent-child monitoring, only 2 mechanisms are fitting:
Pure Anti-exe (ERP, VS) and HIPS (Comodo, Spyshelter).
Eventually you have ReHIPS.

If you want a free software, better to use re:hips :)
nope NVT ERP fits better and it is really free, ReHIPS is a demo which have limited sandboxed processes, so no way to use modern browsers with it.
 
nope NVT ERP fits better and it is really free, ReHIPS is a demo which have limited sandboxed processes, so no way to use modern browsers with it.
The anti-exe feature of Re:HIPS is not affected by the demo restrictions, only the sandbox part is :)
NVT ERP is free only if you install the v4 beta, v3 is still a paid software :)
 
The anti-exe feature of Re:HIPS is not affected by the demo restrictions, only the sandbox part is
This is very true. But in the current version of ReHIPS, the anti-exe feature is not as strongly configured as in the competitors. Unless you go and tweak the rules, some of them are a little bit on the permissive side, if you are using it without isolation, which is the primary feature. On the other hand, you have to be a real paranoid to isolate modern multi-process browsers such as Chrome and Firefox. They are safe enough without isolation.
 
Other alternatives have been mentioned and some of them are probably very good solutions for a single machine.

However SecureAplus offers administration via web dashboard - without this feature I'd rather go for no anti-exe at all. It's not meant to compare anti-exe features, it's more like if secureaplus doesn't offer it (unless eg Voodooshied offers a web dashboard in the future), I'll pass on anti-exes altogether.
 
I haven't tried out SecureAPlus in a couple years, but when I did, it was the weakest of the anti-exe programs available at the time, but also the most user-friendly (unless you try to apply advanced tweaks, at which point it becomes very difficult to use).
 
lol seems this atrocious mechanism get popular recently, some see it as The Graal of security LOL

It's the most honorable, number one, AV on the market.

How do I know?

I've seen all their commercials, and you know, everything you see on TV is true. CNN says so.
 
It's the most honorable, number one, AV on the market.
The idea behind it seems efficient on paper, but when you think a bit deeper about it, implementing it is atrocious and requires heavy workforce that even MS don't dare to try lol.
Imagine adding to the list thousands of files on a daily basis LOL.
 
The idea behind it seems efficient on paper, but when you think a bit deeper about it, implementing it is atrocious and requires heavy workforce that even MS don't dare to try lol.
Imagine adding to the list thousands of files on a daily basis LOL.

I agree, I also was joking with u
 
  • Like
Reactions: shmu26
Hi,

I was wondering, viewing SecureAPlus purely from the anti-exe point of view, does it support monitoring & allowing/not allowing : parent process -> child process pairs
Or it operates only on the basis is process XYZ allowed to run no matter which process started it?
It operates only on the basis is process XYZ allowed to run no matter which process started it.