What is your security setup these days?

Discussion in 'other anti-malware software' started by dja2k, Dec 15, 2005.

  1. m00nbl00d

    m00nbl00d Registered Member

    Joined:
    Jan 4, 2009
    Posts:
    6,623
    Think again: https://www.wilderssecurity.com/showpost.php?p=1757933&postcount=247

    Sully's credit

    Mine (Chromium) does run with Low IL, always. Does yours? ;)
     
  2. Securon

    Securon Registered Member

    Joined:
    Jan 11, 2009
    Posts:
    1,960
    Location:
    London On
    Good Evening ! REAL-TIME-Vipre Premium...Prevx 3.0 & Safe-On-Line...ON DEMAND-S.A.S.Pro...Primary Browsers...Chrome By Google...Opera 10.6...I.E.8...O/S..Windows 7. Sincerely...Securon
     
  3. The Hammer

    The Hammer Registered Member

    Joined:
    May 12, 2005
    Posts:
    5,753
    Location:
    Toronto Canada
    Win 7 64 bit?
     
  4. eugene91

    eugene91 Registered Member

    Joined:
    Jun 18, 2010
    Posts:
    192
    Currently trying out Norton Internet Security 2011 since it has 90 days :D
     
  5. Kernelwars

    Kernelwars Registered Member

    Joined:
    Aug 12, 2010
    Posts:
    2,155
    Location:
    TX
    :thumb: :thumb: :thumb:
     
  6. eugene91

    eugene91 Registered Member

    Joined:
    Jun 18, 2010
    Posts:
    192
    Oh well NIS 2011 didn't turn out to be good on my system.. Took longer boot-up time and sometimes sluggish..

    Back to Avast! IS 5.0.677 :D
     
  7. Konata Izumi

    Konata Izumi Registered Member

    Joined:
    Nov 23, 2008
    Posts:
    1,563
    A slightly modified Kees1958's setup.

    Safe-Admin recap (manually set)
    a) Windows FW 2-way inbound/outbound only application level

    b) OS Hardening (mainly through UAC)
    - set UAC to quiet (silently auto elevate without prompt :eek: )
    - disabled intelligent installer detection
    - allow only to elevate from safe locations (Windows & Program Files)
    - allow only signed programs to run elevated
    - disable auto run of USB
    - registry editing disabled
    - cmd disabled

    c) Threatgate hardening
    - Threatgates isolated by GeSWall.
    - Applied EMET-2.
    - Assign RunAsInvoker trick to virtualise ThreatGates with Windows internal mechanism.
    - Set Download and Mail directory to deny execute through ACL.


    d) GeSWall'd Internet Explorer 8 w/ Prevx SafeOnline (medium-high settings for privacy and security)

    e) Software Restriction Policy - Disallowed by default

    SanityCheck for on-demand scan ^^



     
    Last edited: Sep 30, 2010
  8. trjam

    trjam Registered Member

    Joined:
    Aug 18, 2006
    Posts:
    9,102
    Location:
    North Carolina USA
    time for a change
     
  9. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    for me it is same Peg2 and winpatrol plus;)
    finally my computer is fast and stable again:)
     
  10. makios

    makios Registered Member

    Joined:
    Apr 18, 2008
    Posts:
    126
    Okay, okay, I could control myself, bút Comodo gave a lot of trouble using a game.
    So I decided to buy SpyShelter for my x64 pc and use SpyShelter free on my netbook.
    And removed Comodo. Using Windows Firewall again.
     
  11. m00nbl00d

    m00nbl00d Registered Member

    Joined:
    Jan 4, 2009
    Posts:
    6,623
    I've been testing this in a virtual machine, and, well... I can only make it work for installers not containing the manifest file. If they do have it, UAC will prompt you.

    So, I don't truly see the point in this setting. Most of installers, I came across, have the manifest file. For example, 7-zip installer doesn't have it, so in this case UAC won't prompt you if you try to install it. But, had it one, it would prompt you.
     
  12. Threedog

    Threedog Registered Member

    Joined:
    Mar 20, 2005
    Posts:
    1,125
    Location:
    Nova Scotia, Canada
    Almost identical setup to mine. :thumb:
     
  13. Nevis

    Nevis Registered Member

    Joined:
    Aug 28, 2010
    Posts:
    812
    Location:
    255.255.255.255
    no av at all in dsktop

    i practice safe surfing and hardly get any viruses .. after installing my av , my PC feels light

    unfortunately , have to go with some av .. thinking about light av such as eset

    laptop will always have norton
     
  14. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    @Konata

    It is not advised to set UAC to quiet. I am just doing it for test purposes (I can go back with CTM or in worst case with Paragon restore an image).

    @Moonblood

    Yes that is quite a flaw in Chrome. I have the same results with Iron and Chrome for Google pack. We (Sul & I) entered a bug report for Chrome, no one has responded yet. o_O Shows Safe-admin is really nessecary

    How come yours run all with IL? Did you apply Low Integrity on Chrome?

    My setup for the time being (chrome tabs running with medium rights in some occasion)

    Safe-Admin

    Treatgates
    Iron - EMET2 + GeSWall Pro
    Outlook - EMET2 + virtualisation through RunAsInvoker + SRP Basic User +1806 trick
    Winmail - same as outlook
    WMP - same as outlook

    I do not virtualise Iron anymore, seems that downloaded programs with Iron, also run virtualised even when installed as Admin :D
     
  15. ExtremeGamerBR

    ExtremeGamerBR Registered Member

    Joined:
    Aug 3, 2010
    Posts:
    1,350
    Windows 7 Home Premium x64:

    Real-Time
    • Norton Internet Security 2011 (Paid)
    • Emsisoft Mamutu 3.0.0.16 (Paid)
    • Malwarebytes Anti-Malware 1.46 (Paid)
    On-Demand
    • Emsisoft Emergency Kit 1.0.0.19
    • VMware Player 3.1.2 (W7 HP X64)
    Windows Hardening
    • Admin Account with Safe-Admin Tweaks
    • Data Execution Prevention
    • Structured Exception Handling Overwrite Protection
    • Address Space Layout Randomization
    • Enhanced Mitigation Experience Toolkit 2.0
    • Drive-by Protection via 1806 Trick
    Browser and Network
    • Mozilla Firefox 3.6.10 (Adblock, Norton IPS, NoScript)
    • Internet Explorer 8 (Norton IPS + Hardening)
    • Norton DNS (Block Malicious Websites)
    * Using NIS with Heuristics/Sonar/Boot Time in aggressive mode, Mamutu on Paranoid mode, EMET configured for maximum security, UAC OFF.
    * Tablet PC, Gadgets, Remote Registry, Remote Assistance, Remote Desktop and CD/DVD/USB Autorun are disabled.
     
  16. Konata Izumi

    Konata Izumi Registered Member

    Joined:
    Nov 23, 2008
    Posts:
    1,563
    @Kees1958

    no tutorial for icacls? :(:'(
     
  17. m00nbl00d

    m00nbl00d Registered Member

    Joined:
    Jan 4, 2009
    Posts:
    6,623
    Yes, I have applied an explicit Low IL to Chromium. If you check the SAFE-Admin thread, you'll notice that I mentioned I can run Chromium (explicit Low IL) via a batch file, otherwise starting Chromium via shortcut or chrome.exe will fail to run.

    I could do the same for Opera... But, I messed it so much lol ... no longer works, at all. :D

    Edit: Chromium makes it a lot easier to work with Low IL, due to the fact you can set profile folder to one specific location, unlike Opera. :(
     
  18. m00nbl00d

    m00nbl00d Registered Member

    Joined:
    Jan 4, 2009
    Posts:
    6,623
    Open command line and type icacls /?

    I don't think you need more than that. ;)
     
  19. Divenow

    Divenow Registered Member

    Joined:
    Sep 18, 2010
    Posts:
    37
    Out: Comodo Firewall, EAM, Threatfire.
    In: NIS 2011 90 days trial, Norton DNS.

    NIS2011 installed fast, uses less then 30k memory on my system, fast updates and when i did a fast malware links testing it detected most of it. But i been using it for 30 min only, maybe i will keep it :) And i must say congrats to Norton, i always told people to NOT install Norton on their system because it sucks and is more an resource hog then anything useful but this time Norton seems to have made it right.

    Btw how is the fp's with NIS 2011, someone just told me it has alot of FP?

    Edit: + On demand: "ESET SysInspector (Freeware)" to detect malicious-unknown processes / system changes.
     
    Last edited: Sep 30, 2010
  20. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
  21. Konata Izumi

    Konata Izumi Registered Member

    Joined:
    Nov 23, 2008
    Posts:
    1,563
    I know but I was like tl;dr on it :D
    I guess I'll wait for Safe-Admin ^^

    I've reached my limit... :argh: o_O you guys are genius!! :oops:
     
  22. CiX

    CiX Registered Member

    Joined:
    Feb 22, 2010
    Posts:
    404
    AVG AV Free 2011
    360 Safeguard
    Google Chrome (Adthwart+WOT)
     
  23. atomomega

    atomomega Registered Member

    Joined:
    Jul 27, 2010
    Posts:
    1,290
    Hey CiX, what's exactly the difference between 360 Safeguard and 360 Antivirus (this might be a stupid question, but the 360.cn webpage doesn't help at all with it's chinese-only version nor does google translator)... o_O
     
  24. CiX

    CiX Registered Member

    Joined:
    Feb 22, 2010
    Posts:
    404
    360 AV: Cloud+BD engine AV, (recently bundled with safeguard cloud HIPS and webshield)

    360 Safeguard: Light cloud HIPS with heuristic engine(optional), webshield (adblock, download guard, browser fixer), IE add-on cleaner, Anti-malware component, windows vulnerability scanner, Junk file cleaner, Software manager (Startup manager, Uninstaller, Process manager..and more)
     
  25. justenough

    justenough Registered Member

    Joined:
    May 13, 2010
    Posts:
    1,549
    Turned on Windows Defender.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.