![]() |
|
|||
|
Quote:
![]()
__________________
Windows 8 Pro 32bit Bitdefender Antivirus Free Edition 1.0.13.862 | Chrome Dev 25.0.1364.5 | Ad Muncher Basic 4.93 Last edited by gsarang : March 26th, 2012 at 07:06 AM. |
|
||||
|
After two years of safe-admin, now safe-lua on Win7 32 bits ultimate
----------- from network stack to process stack ------------------ Use Windows FW both for inbound and outbound. Set a deny execute on receiving folders of browser, e-mail and media player using Access Control Lists deny execute/traverse folder for Everyone (change ACL with right click folder, tab security). --- from Low Rights (Protected mode) to Medium Rights (LUA) --- Using Chrome (Comodo Dragon version incognito all the time) with its internal (low rights) sandbox and AVG Threatlabs plug-in (plus build in safe browsing of Google) -------- from Medium (LUA) rights to High (Admin) Rights --------- Running LUA with basic user as default level (run as admin for both EXE and MSI to install) which acts as deny execute in user folders. Group Policy hardening (e.g. deny elevation of unsigned, deny install from USB, System & Logon options to block autostarts for users) on top of that used ICACLS to add a mandatory Medium Level Intergrity to Outlook, media player and pdf-reader and browser. ---------------------------- Real Time ----------------------------- EMET 2.1 (Browsers, eMail, Media Player and PDF reader). --------------------------- On demand ----------------------------- - Windows7 Image backup (saved a clean install to revert to) - Sync Toy data backup (quick save to old 2nd HD, NAS for pictures and USB disk for business data). - Hitman Pro free quick scan before monthly data backup Is problably the end of my security quest ![]() Last edited by Kees1958 : March 28th, 2012 at 07:25 PM. |
|
||||
|
Comodo Internet Security Premium (Antivirus, Defence+, Firewall)
DropMyRights (All my browsers) or LUA EMET Microsoft (All my browsers, java, Office Programs, Media Player, Foxit Reader) Norton DNS (Security Policy) Spyware Blaster Google Chrome (Adblock Plus with Easy List) casual browsing Firefox (Adblock Plus with Malware Domains list only, NoScript and Referer disabled) searching unknown Internet Disabled autorun All latest updates Common Sense 2012 So far so good no conflictions, rare questions from CIS and easy rides... Last edited by JohnMult : March 26th, 2012 at 02:58 PM. |
|
|||
|
Quote:
So, you finally surrended to lua... ![]() |
|
||||
|
Quote:
Yep it has taken some time. On Win95 I started to use an antivirus. With XP I engaged in third party security (programs like Antihook/SSM and a good old Tiny FireWall/Kerio with Blitzen Zeus rules), evolving via many HIPS setups to geswall and defensewall security focused on threatgates. Since Vista I am buying Business/Pro versions of the OS. I really think Vista was a landmark in terms of security (user rights, integrity levels and access control lists). Under Vista the good old run as basic user still worked. So combining SRP (with sully's PGS) with right click (ACL) and ICACLS (assigning mandatory tokens) was the idea behind safe-admin. Windows 7 has a different implementation with basic user. So I finally surrended to LUA. Last edited by Kees1958 : March 26th, 2012 at 02:05 PM. |
|
||||
|
Quote:
you can change windows firewall to block all inbound for Home and public networks.
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB. |
|
||||
|
Now I'm using:
TrueCrypt 7.1a - TweakUAC MSE - Comodo FW with D+ - Mbam Pro - Hitman Pro (on demand) Kerier 1-click restore free Gonna add something like Panda USB Vaccine or similar. And maybe SpyShelter free. I think it's nice setup, what do you think?
__________________
http://bezpieczenstwoit.wordpress.com/ Last edited by lubieplacki : March 26th, 2012 at 03:42 PM. |
|
||||
|
Quote:
Looks good to me
__________________
Built-in OS Security + EMET + HitmanPro |
|
||||
|
Quote:
Good to hear, most versions after v1 were kind of buggy for me,shame as I always liked OA.
__________________
May you fly straight to heaven - but if you go to Hades - may Lethe run with Guinness |
|
||||
|
Quote:
![]() |
|
||||
|
Quote:
![]()
__________________
Windows Firewall-Shadow Defender-MBAM PRO (OD) |
|
||||
|
Jumped on board with light virtualization. Took advantage of Filestream discount at bitsdojour. Put AVG free on as a backup to catch anything in virtual mode.
__________________
Shadow Defender + AppGuard |
|
||||
|
Quote:
__________________
✓The first principle is that you must not fool yourself, and you are the easiest person to fool. ✓Science is the belief in the ignorance of experts. ✓I don't know anything, but I do know that everything is interesting if you go into it deeply enough. -------Richard P. Feynman--------- |
|
||||
|
Quote:
![]()
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB. |
|
||||
|
Quote:
![]()
__________________
✓The first principle is that you must not fool yourself, and you are the easiest person to fool. ✓Science is the belief in the ignorance of experts. ✓I don't know anything, but I do know that everything is interesting if you go into it deeply enough. -------Richard P. Feynman--------- |
|
||||
|
Quote:
Agree.
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB. |
|
||||
|
only using oa J?.....or still pairing it with wsa?......explosive duo I tell you......
__________________
✓The first principle is that you must not fool yourself, and you are the easiest person to fool. ✓Science is the belief in the ignorance of experts. ✓I don't know anything, but I do know that everything is interesting if you go into it deeply enough. -------Richard P. Feynman--------- |
|
||||
|
Quote:
....
__________________
✓The first principle is that you must not fool yourself, and you are the easiest person to fool. ✓Science is the belief in the ignorance of experts. ✓I don't know anything, but I do know that everything is interesting if you go into it deeply enough. -------Richard P. Feynman--------- |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|