HitmanPro.Alert
#2
HitmanPro.Alert version 3.7.9.771

Changelog (compared to build 759)

Added
  • Dynamic Shellcode Mitigation aka Heap Heap Protect, which helps prevent threat actors from loading unsafe code into memory). This mitigation is still in silent detection mode.
  • Improved Shellcode mitigation (system-wide) to detect backdoor stage/payload on the heap
  • Improved Code Cave mitigation (system-wide) to detect rare Shellter Pro binaries configured with uncommon evasion technique
  • Reduction of false-positives for DEP alerts in case of crashing applications
  • New LoLBin to Application Lockdown
  • OpenWith.exe to the Office Template to help mitigate the CVE-2018-8495 exploit attack
Improved
  • CryptoGuard to block specific variants of the Dharma ransomware, that include a specific needless action to thwart behavior monitoring
  • Dynamic Heap Spray Mitigation to allow certain memory block patterns
  • Dynamic Heap Spray compatibility issue's with .NET applications
  • Code Cave mitigation (system-wide) to detect rare Shellter Pro binaries configured with uncommon evasions technique
  • CryptoGuard compatibility on Windows 10 19H1 (i.e. current Windows Insider preview builds)
  • 64-bit call stack parsing (improves stability)
  • Code Cave Mitigation, now showing SHA-256 of the process in the Alert Info
Fixed
  • Compatibility issue with ESET Smart Security in combination with Google Chrome
  • WipeGuard can now handle disks with other sector sizes than 512
  • Rare BSOD in WipeGuard when it was running out of stack
  • Process Protection user interface menu now correctly disables the features when no valid license is present
  • Automatic update when running HitmanPro.Alert in Anti-Ransomware (CryptoGuard) only
  • Issue when Anti-Malware is enabled/disabled; the service stopped responding/system became unstable
  • Minor update problem in CryptoGuard UI when an attack had occured
  • Issue with pipe communication between service and client when volume name is changed
  • Hollow Process Mitigation false positive with VMware ThinApps
  • Issue that caused Visual Studio's vswhere.exe not to start correctly
  • IAT/IAF hardcoded whitelisting not working properly
  • Stability issue when report files get corrupted
Removed
  • Menu option to enable/disable SMB CryptoGuard protection (crypto-ransomware attack from remote machine); it is always enabled on supported systems, i.e. 64-bit Windows
HitmanPro.Alert Support and Discussion Thread HERE
[-] The following 4 users say Thank You to jasonX for this post:
  â€˘ Deep900, harlan4096, silversurfer, wwd
Reply


Messages In This Thread
HitmanPro.Alert - by silversurfer - 29 December 18, 10:45
RE: HitmanPro.Alert (Sophos Product) - by jasonX - 29 December 18, 21:43
HitmanPro.Alert 3.8.19 Build 923 - by harlan4096 - 02 December 21, 11:29
HitmanPro.Alert 3.8.22 Build 947 - by harlan4096 - 20 September 22, 06:02
HitmanPro.Alert 3.8.25 Build 975 - by harlan4096 - 15 December 23, 10:29
RE: HitmanPro.Alert - by jasonX - 19 December 23, 03:12
HitmanPro.Alert 3.8.26 Build 979 - by harlan4096 - 08 February 24, 09:39
RE: HitmanPro.Alert - by jasonX - 08 April 24, 09:43
RE: HitmanPro.Alert - by jasonX - 01 March 25, 09:20

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Wikipedia sees decline in human pageview...
Wikipedia has reve...harlan4096 — 11:30
Google announces end of many of its Priv...
When Google announ...harlan4096 — 11:29
Xubuntu's website was hacked to spread a...
Xubuntu's website ...harlan4096 — 07:19
EPIM PRO
NOTE Astonsoft ...jasonX — 18:32
PrivadoVPN - Secure Every Device with On...
PrivadoVPN - Secure ...jasonX — 17:45

[-]
Birthdays
Today's Birthdays
avatar (47)vikgoMam
Upcoming Birthdays
avatar (47)Michaelaceve
avatar (37)QuadirLigh
avatar (38)Mblippek
avatar (44)viecontAceve
avatar (40)Michaelcrini

[-]
Online Staff
There are no staff members currently online.

>