HitmanPro.Alert - wersje stabilne

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
Re: HitmanPro.Alert

Bardzo ciekawie się zapowiada ten HitmanPro.Alert.

Trochę screenów z pełnej wersji :jezyk

Zaloguj lub Zarejestruj się aby zobaczyć!
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3 build 90 CTP4

HitmanPro.Alert 3 build 90 CTP4
With each Community Technology Preview (CTP) of HitmanPro.Alert 3 we introduce new features for compatibility testing. CTP1 was our first development release of HitmanPro.Alert 3 wherein we introduced our hardware-assisted exploit mitigations. A few weeks later, with CTP2, we added the ability for users to add and protect custom applications through an easy-to-use Running Applications interface. In CTP3 we enabled our network inspection driver and delivered Network Lockdown for Java applications, while we also expanded support to all Intel Core i3, i5 and i7 processors for our hardware- assisted exploit protection.

With this fourth and last Community Technology Preview (CTP4) we introduce Application Lockdown, Virtual Machine Simulation (part of Activate Vaccination) and a second (default) Simplified User Interface. In addition we applied Network Lockdown not only to Java but also Office applications, while we improved compatibility with applications reported by the security community.

As before, this preview is released here at Wilders Security Forum only.
This preview is NOT to be used in production environments.

UI-Simplified.PNG UI-Advanced.PNG Exploit-mitigations.PNG
ui-simplified-png.244625
ui-advanced-png.244626
exploit-mitigations-png.244627

Release Notes

Added Application Lockdown feature to Exploit Mitigations’ code mitigations, which enables safe use of protected applications while preventing high risk actions. If attackers successfully bypass sandbox, memory and other code mitigations, they still cannot introduce and run new executables, or manipulate the Windows Registry to run malicious code. For example, because Microsoft Word is designed to write documents, it can no longer be abused to abnormally download, create and run binaries – Alert blocks this inappropriate behavior, effectively stopping attackers from executing malicious payloads. Application Lockdown also affects attacks that abuse e.g. macros in Office documents to hoist in malware via phishing emails.
Added Virtual Machine Simulation to Active Vaccination. This new feature adds to our Debugger Simulation and are both designed to make VM-aware malware believe it is attacking a virus research sandbox/honeypot, which causes it not to infect the machine and self-terminate. Vaccination turns malware’s own defenses against itself.
Added Minimize button to the installer and main user interface.
Added Simplified User Interface, which is now the default interface. Users can use the new Settings menu, next to the new Minimize window button, to reveal the Advanced Interface. The simplified user interface also warns users when important features are disabled or when the computer needs to be scanned for malware.
Added Network Lockdown to Office applications, including PDF programs like Acrobat Reader. This helps to stop attackers from establishing a command-and-control connection. The Network Lockdown setting can be found by clicking on the orange Security tile.
Added registry protection to prevent illegal registry data. This feature is part of Vaccination and blocks e.g. the persistent Poweliks malware, which is diskless and lives in the registry.
Added automatic activation of the trial license so Exploit Mitigations, Vaccination and Hollow Process protections are automatically enabled after installation.
Improved performance of Control-Flow Integrity (CFI) technology, which blocks ROP attacks by analyzing on-chip branch-traces (inside Intel® processor hardware).
Improved Java (Network) Lockdown compatibility with legitimate applications like Cisco ADSM. Java (Network) Lockdown is now part of Network Lockdown.
Improved Keystroke Encryption which now offers dependable performance.
Improved detection of installed web browsers by the Software Radar.
Fixed a 32-bit stack traversal corner-case condition that affected Intuit QuickBooks.
Fixed a compatibility problem with Windows 8.0.
Fixed a compatibility issue with Microsoft Office 2007.
Fixed a problem with orphaned browser plugins, e.g. Silverlight (agcp.exe) when closing Netflix in the browser.
Fixed a compatibility issue with Steam games installed on non-default path.
Fixed a compatibility issue with AdwCleaner.
Added Anti-VM test to the Exploit Test Tool (32-bit). This test can be used to trigger the Active Vaccination feature of HitmanPro.Alert 3. The used technique is identical to how 99% of all VM-aware malware evade sandboxes.
Enabled the Updater. When there is a new version, the user interface will notify you.

Known Issues

Webcam Notifier works with webcams that use the Windows usbvideo.sys driver. Webcams using vendor specific drivers are currently not supported.
The checkbox ‘Show border around applications’ under ‘Safety notification’ is currently checked and locked on purpose.
HitmanPro.Alert 3 is currently not compatible with Sandboxie on Windows Vista 32.
Sandboxie and Norton (Internet) Security can interfere with the drawing of the notification border around protected applications.
Agnitum Outpost Firewall on 64-bit versions of Windows is currently incompatible with HitmanPro.Alert 3.
The Export Address Table Access Filtering (EAF) module of Microsoft EMET 5.0 is currently incompatible with HitmanPro.Alert 3, but our Exploit Test Tool is compatible. Microsoft EMET 4.1 Update 1 is fully compatible with HitmanPro.Alert 3.
Malwarebytes Anti-Exploit is currently incompatible with HitmanPro.Alert 3, but our Exploit Test Tool is compatible

Download

Zaloguj lub Zarejestruj się aby zobaczyć!

HitmanPro.Alert 3 supports Windows XP Service Pack 3, Windows Vista, Windows 7, Windows 8, Windows 8.1 and Windows 10 Technology Preview.

Note: This preview is NOT to be used in production environments.

Reporting issues
Please report issues via PM or via email:

Zaloguj lub Zarejestruj się aby zobaczyć!
Please send me a PM if you need a product key for testing purposes.

Looking forward to hearing from you how this build runs on your computer :thumb:
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3 CTP4 build 92

HitmanPro.Alert 3 CTP4 build 92

:eek: I made a mistake in build 91 causing the Alert service to crash when launching apps from a short path (for example, C:\some.exe).

Hereby build 92.

Download

Zaloguj lub Zarejestruj się aby zobaczyć!

Please let me know this version runs on your computer
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3 Build 120 Release Candidate

HitmanPro.Alert 3 Build 120 Release Candidate
During development we planned and released four versions of HitmanPro.Alert 3 as open beta to a limited group, a security software enthusiast community. With each of these Community Technology Preview (CTP) builds we introduced new features for directed and focused testing of the planned features.

CTP1, released in July 2014, was our first development release of HitmanPro.Alert 3 wherein we introduced our hardware-assisted exploit mitigations. A few weeks later, with CTP2, we added the ability for users to add and protect custom applications through an easy-to-use Running Applications interface. In CTP3 we enabled our network inspection driver and delivered Network Lockdown for Java applications, while we also expanded support to all Intel® Core™ i3, i5 and i7 processors for our hardware-assisted exploit protection. With the fourth and last Community Technology Preview (CTP4), released in September 2014, we introduced Application Lockdown, Virtual Machine Simulation (part of Active Vaccination) and a second (default) Simplified User Interface. In addition we applied Network Lockdown not only to Java but also Office applications, while we improved compatibility with applications reported by the security community.

Release Candidate
This Release Candidate introduces BadUSB Protection, Import Address Table Filtering (IAF) (part of Control-Flow Integrity), Heap Spray Pre-Allocation (part of Dynamic Heap Spray), default Keystroke Encryption for password manager applications and several improvements to CryptoGuard and Application Lockdown. The program is now feature complete and comes with 10 built-in languages. Though, depending on feedback, minor things might still change before the General Availability release.

Release notes

Added BadUSB Protection, which warns users when they connect a USB device with keyboard functionality. USB devices can potentially contain hostile firmware to infect the computer with malware, or open it for remote attackers. New connected USB keyboards are blocked until the user recognizes and allows them.
Background information on BadUSB:
Zaloguj lub Zarejestruj się aby zobaczyć!

Added Import Address Table Filtering (IAF) to the Control-Flow Integrity module. This new exploit mitigation feature hides IAT function addresses (e.g. VirtualProtect) and validates that both IAT function caller and IAT table belong to the same module. This effectively helps prevent attackers from bypassing Windows security features like ASLR.
Added ability to unblock objects blocked by CryptoGuard. It allows users to view and unblock processes or remote computers that were attacking local photos, documents, or other data.
Added automatic exploit protection and Keystroke Encryption for password manager applications, including KeePass, 1Password, Password Safe and Enpass.
Background:
Zaloguj lub Zarejestruj się aby zobaczyć!

Added Heap Spray Pre-Allocation to the Dynamic Heap Spray module. Whereas the Dynamic Heap Spray mitigation handles the larger heap spray attack, the Heap Spray PreAllocation mitigation pre-allocates commonly used memory addresses, like 0x0c0c0c0c, to stop less-creative attackers from spraying it with hostile code.
Added DEP (Data Execution Prevention) alerts when attackers try to execute code in memory areas marked for read/write only.
Added 9 languages: Portuguese (Brazil), Chinese (Simplified), Chinese (Traditional), Dutch, French, German, Italian, Russian and Spanish.
Improved Application Lockdown to block attacks that abuse Microsoft PowerShell or macros in Office documents.
Improved Webcam Notifier, which now practically supports every webcam (not only camera’s that rely on usbvideo.sys). HitmanPro.Alert will warn the user and block the video stream until the user allows it.
Improved the CryptoGuard detection logic to handle crypto-ransomware that rename the attacked data, like CTB-Locker.
Improved protection of the 32-bit Internet Explorer browser on 64-bit Windows.
Improved detection of running (interactive) applications so more software can be manually added Exploit Mitigations.
Improved the safety notification border around protected applications. It will now reveal which modules are active when the user clicks on the HitmanPro.Alert icon in the lower right corner of the border. In addition, when the border is visible and the user types in e.g. the web browser, the encrypted keystrokes are shown in real-time.
Improved the security of Alert’s modules in applications to prevent skilled attackers from disarming protection.
Improved network performance on Windows 8 (WFP driver).
Improved HTTP filtering (TDI and WFP drivers).
Improved the “Attack Intercepted” dialog, which now automatically resizes depending on the alert contents.
Improved high-DPI display support.
Improved compatibility with Microsoft EMET 5.1.
Improved upgrade from HitmanPro.Alert version 2 to version 3.

Exploit Test Tool:

Added the ability to detonate exploit tests in other applications like Internet Explorer, so it’s now even easier to check the pc’s security posture (i.e. verify capabilities of all installed security software combined).
Added ROP – CALL preceded VirtualProtect() test, which can only be blocked by HitmanPro.Alert when performed on physical hardware (i.e. not in a virtual environment).
Added DEP, IAT Filtering, and two Lockdown tests.
Improved ROP and Heap Spray tests in the Exploit Test Tools so they no longer trigger incorrect security features of Microsoft EMET.

Remarks and known issues

HitmanPro.Alert 3 is not compatible with Sandboxie on Windows Vista.
Agnitum Outpost Firewall on 64-bit versions of Windows is currently incompatible with HitmanPro.Alert 3.

Download

Zaloguj lub Zarejestruj się aby zobaczyć!
cryptoguard-png.245504

your-applications-png.245502

advanced-png.245501
/
welcome-png.245500

install-png.245503
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
Re: HitmanPro.Alert

HitmanPro.Alert version 3.0.21 build 124 Release Candidate
Changes

Added compression of the resource section to optimize the binary, reducing the file size over 30%.
Improved process startup performance.
Improved Import Address Table Filtering (IAF) mitigation.
Fixed issue with Application Lockdown that prevented some applications from installing updates.
Fixed sudden loss of keyboard encryption that could occur when the computer wakes from sleep.
Fixed drawing of the notification and keystroke encryption indicator in Internet Explorer 11.
Fixed a problem when opening Office documents from the Windows Command Prompt.
Fixed a problem that manifested when opening the multiplayer version of Call of Duty: Advanced Warfare.

Download


Zaloguj lub Zarejestruj się aby zobaczyć!

Let us know how this version runs on your machine.
Users running build 120 will be automatically updated at a later moment.
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
Re: HitmanPro.Alert

HitmanPro.Alert version 3.0.21 build 125 Release Candidate

Changes

Improved compatibility with third-party security software.
Improved performance of protected applications.

Build 124 changes:

Added compression of the resource section to optimize the binary, reducing the file size over 30%.
Improved process startup performance.
Improved Import Address Table Filtering (IAF) mitigation.
Fixed issue with Application Lockdown that prevented some applications from installing updates.
Fixed sudden loss of keyboard encryption that could occur when the computer wakes from sleep.
Fixed drawing of the notification and keystroke encryption indicator in Internet Explorer 11.
Fixed a problem when opening Office documents from the Windows Command Prompt.
Fixed a problem that manifested when opening the multiplayer version of Call of Duty: Advanced Warfare.

Download


Zaloguj lub Zarejestruj się aby zobaczyć!

Let us know how this version runs on your machine.
If you were running build 124, you will be automatically updated to build 125.
Users running build 120 will be updated at a later moment.
 

andyxa

Bardzo aktywny
Fąfel
Dołączył
29 Grudnia 2011
Posty
2119
Reakcje/Polubienia
977
Re: HitmanPro.Alert

HitmanPro.Alert 3.0.22 build 129 release candidate

Changes
Improved compatibility with third-party security software/hooking engines.
Improved performance of protected applications.
Minor improvements to the user interface.
Build 124 changes:
Added compression of the resource section to optimize the binary, reducing the file size over 30%.
Improved process startup performance.
Improved Import Address Table Filtering (IAF) mitigation.
Fixed issue with Application Lockdown that prevented some applications from installing updates.
Fixed sudden loss of keyboard encryption that could occur when the computer wakes from sleep.
Fixed drawing of the notification and keystroke encryption indicator in Internet Explorer 11.
Fixed a problem when opening Office documents from the Windows Command Prompt.
Fixed a problem that manifested when opening the multiplayer version of Call of Duty: Advanced Warfare.

Let us know how this version runs on your machine.
Users running build 120, 124 or 125 will be updated at a later moment.

FYI: Our behavior-based CryptoGuard technology in HitmanPro.Alert 3 protects against CryptoLocker, CryptoWall, TorrentLocker, CoinVault, OphionLocker and variants.

download

Zaloguj lub Zarejestruj się aby zobaczyć!
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3.0.22 build 131 Release Candidate

HitmanPro.Alert 3.0.22 build 131 Release Candidate
Changelog

Improved compatibility with third-party security software/hooking engines, incl. Malwarebytes Anti-Exploit.
Fixed issue regarding CryptoGuard detecting mass file change by Dropbox.

Download


Zaloguj lub Zarejestruj się aby zobaczyć!
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3.0.23 Build 137 Release Candidate

HitmanPro.Alert 3.0.23 Build 137 Release Candidate
Changelog

Added additional APIs to IAF mitigations.
Added Reset Settings menu item (via gear icon next to the minimize button).
Added English names of the supported languages.
Added ability to disable Window Border (see notifier menu).
Improved mitigations window to turn on/off IAF mitigations.
Improved CryptoGuard handling of alternate data streams.
Improved performance of IAF mitigation.
Fixed CryptoGuard false positives regarding handling of unpackers like Steam.
Fixed keystroke encryption indicator in IE11 Enhanced Protected Mode.
Fixed scrolling issue in IE11 Enhanced Protected Mode.
Fixed stack alignment issue on 64-bit trampolines.
Several other minor improvements.
windowborder-png.246151
language-png.246152

Download

Zaloguj lub Zarejestruj się aby zobaczyć!
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3.0.24 Build 140 Release Candidate

HitmanPro.Alert 3.0.24 Build 140 Release Candidate
Changelog

Improved mitigation of Java applications
Improved ROP mitigation (solved false positives)

Download

Zaloguj lub Zarejestruj się aby zobaczyć!
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3.0.24 Build 141 Release Candidate

HitmanPro.Alert 3.0.24 Build 141 Release Candidate

Changelog

Improved CallerCheck mitigation.
Improved BadUSB mitigation.
Improved ROP mitigation.
Improved Software Radar.
Fixed AIMP3 false positive.
Added Plugins mitigation category.

Download

Zaloguj lub Zarejestruj się aby zobaczyć!
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
Re: HitmanPro.Alert

HitmanPro 3.0.25 Build 143 Release Candidate
A build with merely fixes and minor improvements.

Changelog

Improved ROP mitigation while stack is pivoted
Improved hardware-assisted ROP mitigation
Improved HollowProcess mitigation
Improved performance on webpages with flash videos
Fixed keystroke encryption on some Windows 7 computers
Fixed false positive when playing Netflix videos
Fixed AIMP3 false positive
Fixed crash in service when running mitigated apps in different sessions
Fixed crash in service when a specific alert was triggered
Fixed memory leak in service
Added Polish language
Added Korean language

Download

Zaloguj lub Zarejestruj się aby zobaczyć!

Exploit Test Tool 1.5
We provide an updated test tool with improved ROP gadget crawler. This so that each test will trigger the proper mitigation. You can use this test tool to test whether HitmanPro.Alert is working properly.

Zaloguj lub Zarejestruj się aby zobaczyć!
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3 Build 155 Release Candidate

HitmanPro.Alert 3 Build 155 Release Candidate

Changelog

IMPROVED: CryptoGuard now blocks more variants of CryptoWall 3.
IMPROVED: An alert can now be shown on the winlogon desktop when a new keyboard is connected.
IMPROVED: BadUSB mitigation.
FIXED: CryptoGuard false positive on NET 3.5 installation (TiWorker) on some system.
FIXED: Compatibility issue with some 3rd party security products causing protected applications to sporadically deadlock on startup.
FIXED: Outlook failed to connect to some mail server on specific configurations.
FIXED: Crash in hmpalert service.

Zaloguj lub Zarejestruj się aby zobaczyć!


Jak wygląda sprawa z darmowym HMP.Alert i Płatnym
hmpa-version-comparison-png.246705
 

OXYGEN THIEF

Bardzo aktywny
Członek Załogi
Administrator
Dołączył
26 Maj 2010
Posty
35949
Reakcje/Polubienia
25043
Miasto
Trololololo
HitmanPro.Alert 3 Build 166 Release Candidate

HitmanPro.Alert 3 Build 166 Release Candidate
Changelog

IMPROVED: ROP mitigation
IMPROVED: LoadLib mitigation
IMPROVED: BadUSB mitigation
IMPROVED: Intruder detection in Safe Browsing
FIXED: Webcam Notifier enable/disable was broken
FIXED: BSOD caused by race condition in driver

Download

Zaloguj lub Zarejestruj się aby zobaczyć!
 
Do góry