![]() |
|
||||
|
This is on my own lappie running Windows 7 32-bit...minor change from last setup:
Windows built-in security mechanism: LUA, UAC at max (with 'elevated program launcher' method to run trusted apps that require admin rights) Default-deny SRP with Additional Path Rules set to 'Unrestricted' (Mozilla Firefox profile folder, my PortableApps directory, special folder for trusted program installers/registry files, etc) EMET v2.0.0.1 (DEP, SEHOP, ASLR - all at 'green' settings) Sandbox/Containment: Sandboxie (for launching unknown/untrusted downloads) Real-time antimalware protection: Panda Cloud AV Pro (behavior blocker, behavior analysis) Returnil Virus Guard ("Only proven detection rules") Firewall: ZA Free (default settings; except auto-updates turned off) Light-weight HIPS/Anti-keylogger: WinPatrol Plus (custom 'locked' registry keys) SpyShelter Free (Auto-block suspicious behavior) Light-virtualization: Returnil System Safe Virtual Mode on-demand (used when lending my lappie to others - esp. click-addicts) Others: Show Hidden File Extensions, AutoRun disabled, Custom DNS service with DNS Jumper (Norton DNS, Sunbelt ClearCloudDNS, OpenDNS Family Shield, etc) A few future considerations: Comodo Firewall. (or PrivateFirewall which I have not tried) MSE when the newer version is out of beta. Pure behavior blocker such as ThreatFire or Mamutu but it may be redundant on my current setup...I'll see how things go.
__________________
Uncertainty is the only certainty there is, and knowing how to live with insecurity is the only security... |
|
||||
|
I - despite my efforts so far - cannot infect my VM which is Running Norton IS 2011 and Norton DNS. Norton snags more than half of the samples right after they are downloaded. The rest are either detected before execution, on execution, or by SONAR. Only a few cache files were left behind.
Not to mention how much the DNS blocks. I still have an extra VM that I plan on loading with the latest Kaspersky, been meaning to try! |
|
||||
|
Since I was the one to post that I hadn't had any changes, I'll post one although non security related
-Dragon Naturally Speaking Standard 10
__________________
Toshiba - 17.3" Satellite Laptop, Intel I3 processor - 4GB Memory - 640GB Hard Drive Bullguard Internet Security 12, MBAM Pro, Dragon Naturally Speaking 11.5, Google Chrome (latest), AppRemover |
|
||||
|
Norton Antivirus is very good now especially this new 2010 version,it is so fast and light
but i remember the 2007 norton monster![]()
__________________
Emsisoft Anti-Malware 7.0/WebRo0t AntiVirus 2o13 |
|
|||
|
Quote:
It's nice to see that you've found that method useful. In that thread you mentioned a problem that I have had also: the program launcher startup isn't always successful. Within the past hour, I've changed the program launcher to launch upon standard account logon via Task Scheduler instead of using the standard account's Startup folder. So far, in maybe 8 to 10 attempts, the program launcher has launched properly every time. If this trend continues, I'll document it in the appropriate thread(s) within the week. Update: In another perhaps 8 to 10 tries, I did have one failure. I'm now using a task delay of 10 seconds. Last edited by MrBrian : September 14th, 2010 at 02:58 AM. |
|
||||
|
Returning to use NIS 2011 suite that is extremely lightweight and effective, I'm not using any anti-executable, I intend to add the SRP or AppLocker , but I have to learn more about AppLocker.
UAC set a maximum, DEP for all programs, SEHOP. EMET set to maximum security settings. Using only the IE8 InPrivate with Adblock to block advertisements and using Norton Safe Web. Very happy with my current security settings! Sorry for my english!
__________________
Windows 7 Home Premium 64 Bits
Sandboxie | Keyscrambler Pro | Norton ConnectSafe Chrome > Ghostery (all enabled) | Adblock Plus | AntiSocial | Laspass Malwarebytes' Anti-Malware (PRO) | Keriver 1-Click Restore Pro | Skydrive |
|
|||
|
What's weak about the Norton firewall?
|
|
||||
|
well back before when it was bloated couple years ago i tested some malware that called home and norton stayed silent and didnt alert at all
and comodo and OA did alert![]()
__________________
Emsisoft Anti-Malware 7.0/WebRo0t AntiVirus 2o13 |
|
||||
|
Back to Prevx 3, it has served me well and is such a light and tight mix with Online Armor...
![]()
__________________
"We are here on Earth to fart around. Don't let anybody tell you any different." –Kurt Vonnegut Look N' Stop Firewall, Webroot Security Essentials, and AD Muncher 4.93 |
|
||||
|
Quote:
__________________
Sandboxie | WinPatrol | CCE | MBAM | OpenDns with DnsCrypt |
|
||||
|
Quote:
with this: Quote:
Waiting for the next Prevx SafeOnline stable release.
__________________
Win7PRO64bit | SUA | SRP | UAC | EMET | SpywareBlaster | MVPSHOST | OpenDNS | SandboxIE | Privoxy | Windows Image Backup . built-in security + sandboxing fag. Last edited by Konata Izumi : September 15th, 2010 at 08:02 AM. |
|
|||
|
Dual boot:
1st partition Main OS Arch Linux 2nd partition for games Win7 64 OA Premium |
|
||||
|
Active
Defensewall 3.07 Prevx 3.0.5.199 Light Virtualization ShadowDefender 1.1.0.325 On-Demand Gmer ~ CureIt ~ MBAM ~ Hitman OpenDNS Firefox 3.6.9
__________________
May you fly straight to heaven - but if you go to Hades - may Lethe run with Guinness Last edited by LoneWolf : September 15th, 2010 at 09:47 AM. |
|
|||
|
If I use something like Sandboxie to browse (or Comodo sandbox) do I really need a real-time web-shield/scanner? Shouldnt I be protected?
|
|
|||
|
Quote:
The Web-shield "Http scanner" is there to block websites from opening so you wont be able to even access them. So Yes, it's a nice layer to have I think.
__________________
OpenDNS ESET Smart Security -A Heavy product is not the same as a Bloated product and vice versa- |
|
||||
|
Quote:
Added Norton DNS! Internet Explorer 8 with all settings on Medium-High (only restricted sites that are set to High).
__________________
Windows 7 Home Premium 64 Bits
Sandboxie | Keyscrambler Pro | Norton ConnectSafe Chrome > Ghostery (all enabled) | Adblock Plus | AntiSocial | Laspass Malwarebytes' Anti-Malware (PRO) | Keriver 1-Click Restore Pro | Skydrive |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|