Bullet Proof Setup

Discussion in 'other anti-malware software' started by Gasp, Mar 9, 2010.

Thread Status:
Not open for further replies.
  1. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    you mean defensewall and prevx?
     
  2. SIR****TMG

    SIR****TMG Registered Member

    Joined:
    May 31, 2004
    Posts:
    833
    No not defensewall I use that and sandboxie.
     
  3. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    ah i see:D
     
  4. Phantasm

    Phantasm Registered Member

    Joined:
    Jul 29, 2009
    Posts:
    87
    Mamutu + ThreatFire + anything else = The Bullet Proof Bomber!
     
  5. firzen771

    firzen771 Registered Member

    Joined:
    Oct 29, 2007
    Posts:
    4,815
    Location:
    Canada
    umm thats kind of some overlap there...
     
  6. Creer

    Creer Registered Member

    Joined:
    Jun 29, 2008
    Posts:
    1,345
    In "Bullet Proof" config you should (include) have few layers of protection:

    1. Prevention
    2. Detection
    3. Cure

    + common sense.
    This is all you need for your bullet proof setup ;)
     
  7. dw426

    dw426 Registered Member

    Joined:
    Jan 3, 2007
    Posts:
    5,543
    That will prevent things alright, prevent the system from operating halfway decently.
     
  8. Gasp

    Gasp Registered Member

    Joined:
    Jan 13, 2010
    Posts:
    82
    Doesn't appears to be an issue now.


    Mamutu has shown to be very poor against 0day, or any trojans for that matter :p
     
  9. firzen771

    firzen771 Registered Member

    Joined:
    Oct 29, 2007
    Posts:
    4,815
    Location:
    Canada
    "shown"? not in my experience...
     
  10. Gasp

    Gasp Registered Member

    Joined:
    Jan 13, 2010
    Posts:
    82
    You learn something new everyday right? I have installed VMware Player on my PC and setup a virtual XP machine. This XP machine is installed with Returnil. I assume I can now install trialware onto the virtual XP machine then reboot to renew the machine state. This menas I can reinstall the trialware and get another 30 days.

    Can malware ever jump out of a VM and infect the disk or host's machine?
     
  11. Longboard

    Longboard Registered Member

    Joined:
    Oct 2, 2004
    Posts:
    3,238
    Location:
    Sydney, Australia
    @Gasp
    Used to be able to; if using the shared folder tools :)
    http://www.coresecurity.com/content/vulnerability-vmware
    Haven't really chased this for some time.
    AFAICR this was fixed but: "..any code is exploitable.." :shifty:
    You should still take some precautions especially with an XP VM
    Some malware will not run in VMs: to avoid analysis.
    If you drop a KL ,for example, in the VM, that runs, and are connected: the KL could still rip off whatever you are doing in the VM prior to next "reboot to clean".

    FWIW: if you want to "reboot to a clean state" don't pfaff around with Returnil
    Just use the snapshot functions of VMWAre and/or keep copies of your VMs 'somewhere else' ie another folder or such.

    I know its maybe not specifically helpful to you but nowhere do I see mentioned as a bulletproof option: LINUX. ;)
    Just a lot of froth and bubble re ~16 'anti'/recovery apps
    Despite opinions to the contrary: Windchild said it: "there (practically) ain't no such thing as bullet proof security"

    Try Linux in the VM: you'll love it: absolutely no exploits that I know of..so far..Heh heh.

    But: if you have to run windows..carry on :thumb:
     
    Last edited: Mar 16, 2010
  12. pbust

    pbust AV Expert

    Joined:
    Apr 29, 2009
    Posts:
    1,176
    Location:
    Spain
    Huh?? Sorry I don't get it... what's this 48 hour downside you're referring to?
     
  13. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    i was going to say that as cloud is an instant updates from the net;)
     
  14. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    Yeah ditto to that.
     
  15. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    i just trust defensewall alone with couple of registry tweaks,but as i have licences for the other software i run i use them as well other wise Defdensewall will be running alone:thumb:
     
  16. Threedog

    Threedog Registered Member

    Joined:
    Mar 20, 2005
    Posts:
    1,125
    Location:
    Nova Scotia, Canada
    I have 2 VM's set up with Microsoft's Virtual PC and have them both setup to drop changes on shut down. Both (one is Win 2000 and the other XP Pro) are protected only with Defensewall and the drop change option. I haven't had anything break thru to my real system.
     
  17. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    3dog that is a very good idea;) like it,sounds good man:thumb:
     
  18. Threedog

    Threedog Registered Member

    Joined:
    Mar 20, 2005
    Posts:
    1,125
    Location:
    Nova Scotia, Canada
    I travel thru some rough territory with that setup Jmonge and never run into problems. Would never surf with my real system like that.
     
  19. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
  20. Threedog

    Threedog Registered Member

    Joined:
    Mar 20, 2005
    Posts:
    1,125
    Location:
    Nova Scotia, Canada
    Sheesh Jmonge....don't you ever sleep LOL!!!!

    I forgot to add when I am using my Virtual PC's I also have my real system Returniled so if anything did get screwed up I would just have to reboot my real system and all would be good.
     
  21. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    how is Microsoft's Virtual PC ?is it lite?
     
  22. Threedog

    Threedog Registered Member

    Joined:
    Mar 20, 2005
    Posts:
    1,125
    Location:
    Nova Scotia, Canada
    Yes it is, on my machine anyways. I have 3 gigs of Ram on the real machine and have the virtual PC's set to use 1 gig when they are running. I only ever run 1 at a time.
     
  23. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    i see:)
     
  24. Threedog

    Threedog Registered Member

    Joined:
    Mar 20, 2005
    Posts:
    1,125
    Location:
    Nova Scotia, Canada
    In my mind if you do a lot of testing, playing around, etc then a VM is the way to go. But with a VM it counts as a different computer so you will have to have a separate copy of XP or whatever you want to install for an operating system in order to satisfy the activation requirements in Windows.
     
  25. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.