WHIPS (Windows Host Intrusion Prevention System) is a Host Intrusion Prevention System for Windows NT/XP/2003. WHIPS uses the system call interposition technics and it is developed as a kernel module.

Project Activity

See All Activity >

Categories

Security

License

GNU General Public License version 2.0 (GPLv2)

Follow WHIPS (Windows Host IPS)

WHIPS (Windows Host IPS) Web Site

Other Useful Business Software
Vivantio IT Service Management Icon
Vivantio IT Service Management

Your service operation isn’t one-size-fits all, so your IT service management solution shouldn’t be either

The Vivantio Platform allows you to focus on the IT service management tools that make sense for your organization’s unique service model: from incident, problem and change requests, to service requests, client knowledge and asset management
Rate This Project
Login To Rate This Project

User Ratings

★★★★★
★★★★
★★★
★★
0
0
0
1
0
ease 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 1 / 5
features 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 3 / 5
design 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 3 / 5
support 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 2 / 5

User Reviews

  • Specialist HIPS programs are no longer being developed because HIPS is now incorporated into firewalls and security suites. This may the reason this project was abandoned in 2008, and has not been updated for Windows 7 and 8. The project website does not inform you that .NET Framework 4 is a prerequisite. There is no installer, so you have to copy the XPPack to your Programs folder, then copy SCIndexes.sci to the System32 folder, and run Install.bat. This installs the WHIPS service that should start automatically at boot-up, but does so after a considerable delay. Executing WHIPSAgent.exe opens a control panel that sits in the system tray. This contains three tabs - ACD; Monitor Log and Status. There is no documentation for users apart from the introduction at the project website, but ACD appears to refer to the Access Control Database that contains all rules defining system behavior. When I press the Refresh ACD button no entries are displayed the ACD panel. In the ACD tab are buttons to insert and delete filters that define which processes can make system calls. The approach here is to limit system calls to legitimate processes and block calls from unrecognized processes. There are also buttons for enable protection, disable protection and log only. It is not clear if the user has to manually enable protection every time the system boots up. The monitor log tab just shows a message saying 'log file not found'. The status tab is empty. This looks like an original approach to HIPS, but I think the average user would be better off using Malware Defender, because it requires an advanced knowledge of the operating system.
Read more reviews >

Additional Project Details

Operating Systems

Windows

Intended Audience

Information Technology

User Interface

Win32 (MS Windows)

Programming Language

C#, C++, C

Related Categories

C# Security Software, C++ Security Software, C Security Software

Registered

2005-03-31