What is your security setup these days?

Discussion in 'other anti-malware software' started by dja2k, Dec 15, 2005.

  1. Trooper

    Trooper Registered Member

    Joined:
    Jan 26, 2005
    Posts:
    5,507
    That is good to know.

    Comodo firewall huh? Is it rather chatty? Display a lot of alerts etc?
     
  2. zitch

    zitch Guest

    Agreed. I have only used the online scannners to double check my installed antivirus periodically when I have time to do so. Was thinking it couldn't hurt to do that.
     
  3. zitch

    zitch Guest

    Well, to answer your question about using Emet along side of ExploitShield, since I am running Windows/XP/SP3, Emet is somewhat limited in what it can do on this system. It is limited to Application Opt In, I cannot configure it to Always On, or Maximum Security Settings. That is a limitation of XP. Also, SEHOP and ASLR protection is disabled by default on Emet/XP apps. Sooooo, I decided to run Emet alongside of ExploitShield to see how it would work, and talked to one of the ExploitShield tech guys, who said he doubted if the 2 programs would conflict. And so far, they have not. There has been no sign of a system slowdown, my CPU usage averages between 4, and 22, which is right where it should be, and you know what? I think I have some good protection on this old machine. And Avast 7 antivirus still in my opinion is the BEST antivirus for XP machines. A lot of the other antivirus vendors have geared their products toward 64 bit newer operating systems. Avast is still the king on these old 32 bit 'puters. And, there are millions of computers like mine, that are still running, and I will wager a bet that a lot of them aren't secured as well as mine.

    XP/SP3 PRO, [MS config/SSDP Discovery Service disabled],[UPNP disabled], [system 32\ping.exe blocked in/out],Java uninstalled, Javascript enabled in Opera, Flash Player blocked, Emet, ExploitShield,Opera/Yahoo, Opera/delete private data/Netcraft/Phishtank,want nothing Google, VPN4All, Comodo secure DNS server, Sandboxie/drop my rights/delete invocation, Comodo 3.0 22.349, Hips set on paranoid mode, Zemana antikeylogger free, Avast 7 set tight, MBAM, SuperAntispyware, Ccleaner.
     
    Last edited by a moderator: Feb 5, 2013
  4. nikanthpromod

    nikanthpromod Registered Member

    Joined:
    Oct 9, 2009
    Posts:
    1,369
    Location:
    India
    Windows 7 Home premium x64
    ° updated

    Realtime protection
    ° Bitdefender Internet Security 2013
    ° Windows 7 Firewall control free

    On demand
    ° Hitmanpro

    Instant Recovery
    ° Rollback RX

    Browser

    ° Firefox
    Addons: Adblock plus & Flashblock
    ° IE9

    Software updater
    ° KC Softwares SUMo
     
  5. VectorFool

    VectorFool Registered Member

    Joined:
    Oct 21, 2012
    Posts:
    280
    Location:
    India
    Its totally silent now

    after these 3 steps, i receive absolutely no popups from Comodo, unless i am installing a new app
    and the entire process takes about 15-20 minutes
    after that....... peace;)
     
  6. zitch

    zitch Guest

    One difference-I set firewall on safe mode, and Hips on paranoid.
     
  7. VectorFool

    VectorFool Registered Member

    Joined:
    Oct 21, 2012
    Posts:
    280
    Location:
    India
    So you like Fine granular controls eh?:thumb:
    will try out Outpost Firewall with Kaspersky AV today
    Outpost is not quite as silent as Comodo, and it is a little counter-intuitive
    But it does pass the Comodo Leak Test
     
  8. CrusherW9

    CrusherW9 Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    517
    Location:
    United States
    If you made the partition 6gigs, it would probably be slow due to having no room for the page file and other temporary locations.
     
  9. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    @Kees1958
    Nice setup as always.:thumb:
     
  10. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    @LoneWolf
    What happened to DefenseWall?:D
     
  11. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    @nikanthpromod
    Nice setup. How's BIS? Feel any drag?
     
  12. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    I was playing with an 'in the wild' fresh sample (which tried to change chrome user profile, allow silent plug-in install, set plug-in to run unsandboxed and execute the plug-in dll).

    My group policy settings of Chrome stopped the intrusion sequence, but chrome's flash plug-in did not wan't to play anymore, so had to re-install chrome. Also had to revert to an older image last year in which system was not intruded by a fresh malware sample, but system was partly damaged, because I could not install programs anymore.

    Therefore installed Toolwiz TimeFreeze to use on-demand (un-do side effect changes of malware testing).

    Thx
     
    Last edited: Feb 6, 2013
  13. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    Good going Kees.:thumb:
     
  14. Mman79

    Mman79 Registered Member

    Joined:
    Sep 19, 2012
    Posts:
    2,016
    Location:
    North America
    Umm, yes it does actually. Where are you getting that it doesn't? EMET will protect every plugin and application you have, including the latest Java. Download the latest XML that HungryMan provides a link to on his blog for EMET 3/3.5. The only exceptions to coverage in EMET are some drivers like audio. Otherwise it covers far far more than ExploitShield with, in my own personal experience, much less of a performance hit.

    @Zitch: Okay, I missed you referring to XP.
     
  15. Trooper

    Trooper Registered Member

    Joined:
    Jan 26, 2005
    Posts:
    5,507
    Will test it out in a vm.

    Thanks.
     
  16. bo elam

    bo elam Registered Member

    Joined:
    Jun 15, 2010
    Posts:
    6,147
    Location:
    Nicaragua
    Hi Kees, none of this would happen if the browser is running under Sandboxies supervision.

    Bo
     
  17. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    Right you are Bo.:thumb:
     
  18. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    :thumb:Emsisoft/HitmanPro
     
  19. jo3blac1

    jo3blac1 Registered Member

    Joined:
    Sep 15, 2012
    Posts:
    739
    Location:
    U.S.
  20. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    :D :thumb: Yes because I have hardened chrome so much through GPO, SPR, ACl etc. that a sandboxed Chrome is unable to connect to the internet. So that would not have happened for sure.
     
  21. luciddream

    luciddream Registered Member

    Joined:
    Mar 22, 2007
    Posts:
    2,545
    "Better" is such a subjective term. It can depend on the needs of each individual, and depend on so many other factors too. Seems that the products are 2 different approaches to accomplishing basically the same thing. For my needs personally ES would be "better" on account of the fact I don't need .NET Framework for it to function... which slows down my setup considerably and adds more attack surface. But if you're using a post XP OS and .NET FW is forced/shoved down your throat anyway, then one may as well take advantage of a tool like EMET if there's no noticeable, negative impact on your boxes performance and stability.

    But the subjective nature of the term "better" aside... I thought it was pretty much universally recognized that ES was lighter? I guess not... as usual I'll just have to see for myself. No doubt that also varies depending on the circumstances. But you're the first person I've seen say that EMET was lighter than ES.
     
  22. Securon

    Securon Registered Member

    Joined:
    Jan 11, 2009
    Posts:
    1,960
    Location:
    London On
    Good Evening ! J Monge...Sweet and Dynamic...Two some! Sincerely...Securon
     
  23. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    Good Evening Securon this is the best combo i can find around penny by penny this two are the best from the west :) !Sincerely...J Monge:thumb: :thumb: :thumb:
     
  24. LoneWolf

    LoneWolf Registered Member

    Joined:
    Jan 2, 2006
    Posts:
    3,784
    Its on the backburner. :D
     
  25. wat0114

    wat0114 Registered Member

    Joined:
    Aug 5, 2012
    Posts:
    4,066
    Location:
    Canada
    With that security setup you have, how did all this happen?? Did you deliberately allow the dll to blow past SRP?
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.