What is your security setup these days?

Discussion in 'other anti-malware software' started by dja2k, Dec 15, 2005.

  1. happyyarou666

    happyyarou666 Registered Member

    Joined:
    Jan 29, 2012
    Posts:
    803


    well currently the crème de la crème of course ;) aka airvpn and mullvad , airvpn as my trusted vpn that sees my real ip and mullvad for the outer dirty buisness , both are top tier and protect your privacy , i trust both but only one with my real ip and thats air :cool: , cause thats just how we do it :rolleyes:

    so its airvpn>tor>mullvad , one hell of a combo , hell ill betcha i could even hack the nsa with that one , :ninja: , lols, but for real , its a damn solid setup, all thanks to mirimir and his genius ideas :D, hell ive learned more in the past year than all my life , when it comes to computer security, thanks to wilders

    this has been an ongoing project of mine , to completely break free of the shackels of corruption , atleast as good as possible , hell only finding the right vpn it took me atleast 25 vpn provider tests to find the right one , hell my old thread ist still alive, kinda suprised , lols its almost like dasfoxes undead anonymous vpn thread
     
  2. happyyarou666

    happyyarou666 Registered Member

    Joined:
    Jan 29, 2012
    Posts:
    803

    lols , i see , well that sounds good enough to me :argh:
     
  3. luciddream

    luciddream Registered Member

    Joined:
    Mar 22, 2007
    Posts:
    2,545
    Excellent choices, and I agree with how you're using each one too. Since it doesn't matter as much how you pay for the one that sees your real IP anyway, use Mullvad for the other layer, as it provides payment option by cash money. That to me would be the deciding factor in how I set them up, since I trust both. iVPN/Mullvad is another good option. With iVPN being multi-hop, you could get 3 hops out of it instead of 2, + the TOR tunnel. But I almost don't even want to say that because I don't want you to second guess yourself at all... you made 2 great choices!

    And it was great to see you give DasFox some props too. He and I (if you'll excuse the conceit), and a few other peeps through blood, sweat and tears combed through a ton of VPN's to weed out the shiesters and find those (very) few gems. And he was the one that pioneered it. The two you mentioned, Boleh, and iVPN are the only 4 I'd even consider at all. And Mullvad is the only one I'd fully endorse, due to the truly, 100% anonymous payment method, and not merely pseudo-anonymous, like BitCoin, etc...

    I really hope you get things up and running so you can get on with your plans for world domination. When you take over, I hope you give me a good job...
     
  4. luciddream

    luciddream Registered Member

    Joined:
    Mar 22, 2007
    Posts:
    2,545
    And when you've got that part all ironed out, make sure to read up on how to prevent DNS leaks, if you haven't already. Choose the right DNS servers for one thing, and either manually flush the cache at connection or use a tool to do it called DNS Leak Fix (I can vouch for it).

    And I recommend using Comodo FW to set things up so that in the event your VPN(s) disconnect your entire internet connection drops... as opposed to using some 3'rd party software or setting in a VPN client GUI to do it. Casper and I contributed to a thread that gave a pretty good rundown on how to accomplish it... though I'm not sure where that is now.
     
  5. happyyarou666

    happyyarou666 Registered Member

    Joined:
    Jan 29, 2012
    Posts:
    803
    second guesses , hell no problem im always open for better ways , bring it , but thats only if its really better ;)

    thats ok ill find it perhaps with the help of mirimir , currenly this guide ive used up till now from air and served me well in blocking everything not being my tap adapter


    https://airvpn.org/index.php?option=com_kunena&func=view&catid=3&id=3405&Itemid=142

    about multihop , its not that much of a problem , if youve read up on mirimirs oppinions and explanations to it , in the setup im aiming for it dont matter multi or single , what does matter is if theyre trustworthy and theyre REAL , if you know what i mean

    lets not derail the thread too much thou , lols , we got enough vpn threads to talk bout vpns ;)
     
  6. luciddream

    luciddream Registered Member

    Joined:
    Mar 22, 2007
    Posts:
    2,545
    Agreed. And as for second guessing, and "better"... nope, no way I'd change a thing. And you're in great hands.

    Now, back to our regularly scheduled paranoia...

    Is my security setup okay (sig)?... what would you add/change? Any suggestions?
     
  7. Fuzzfas

    Fuzzfas Registered Member

    Joined:
    Jun 24, 2007
    Posts:
    2,753
    I agree 100%. Comodo 5.10 will be "golden oldie". I m not going to delete the setup file ever, unless a SP comes for Win7 and breaks it. And yes, Kerio 2.1.5, one of the best firewalls EVER! :thumb:
     
  8. luciddream

    luciddream Registered Member

    Joined:
    Mar 22, 2007
    Posts:
    2,545
    Running (non built-in) Admin on XP Pro SP3:

    Realtime
    Comodo FW/D+ 5.10 - Custom Policy, Paranoid/Untrusted
    Sandboxie Lifetime 3.76 - Removable Drives/USB Ports forced

    Pseudo Realtime
    VT Hash Check 1.01 - Set to autoscan downloads via Download Statusbar tweak

    On Demand
    Shadow Defender 1.1.0.325 - Shadow Mode used on occasion
    Macrium Reflect Standard 4.2.3775 - Boot time imaging
    OpenVPN 2.3.0 - Mullvad
    Hitman Pro
    MalwareBytes Free
    Comodo Cleaning Essentials
    Emsisoft Emergency Kit
    Kaspersky TDSS Killer
    GMER
    VT Hash Check

    Browser
    Firefox w/Ixquick - Adblock Plus (EasyList, EasyPrivacy, Malware Domains, Antisocial), CS Lite Mod, Download Statusbar, HTTPS-Everywhere, *KeyScrambler, NoScript, RequestPolicy, VTzilla, WOT, Element Hiding Helper for Adblock Plus (Disabled - on demand)

    Other
    Router w/SPI - wired
    Truecrypt 7.1 - OS partition encrypted (AES), sensitives in container
    Comodo Secure DNS, Mullvad's DNS, *Swiss Privacy Foundation DNS - depends on situation

    Hardening
    A lot... wouldn't even know where to start

    * = Recent changes - Put KS back, but on browser only. Haven't tried out those DNS servers yet but they seem like good options if Mullvad's are down for some reason.
     
    Last edited: Jan 16, 2013
  9. nikanthpromod

    nikanthpromod Registered Member

    Joined:
    Oct 9, 2009
    Posts:
    1,369
    Location:
    India
    Back to Eset NOD32 Antivirus v6 :cool:
    feeling light and powerful than v5:thumb:
     
  10. JoeBlack40

    JoeBlack40 Registered Member

    Joined:
    Apr 1, 2009
    Posts:
    1,584
    Location:
    Romania
    Another image with...
    NIS 2013,Spyshelter free,Zemana AL free,Sandboxie.Hope it'll be a keeper.
     
  11. Dubslap

    Dubslap Registered Member

    Joined:
    Jan 9, 2013
    Posts:
    21
    Location:
    UK
    Gone back to no av setup after having problems with bitdefender plus.

    Chrome w/ Adblock Plus (Click to Play, Java Disabled except trusted sites)

    Norton DNS

    Windows 7 Firewall block in/outbound

    Winpatrol Plus (Paid)

    Malwarebytes PRO in real time

    I will probs get EAM 7.0 or Webroot AV to run along side mbam pro. I used to use Sandboxie but because i only visit trusted sites and dont download anything dodgy like torrents etc i had no use for it. I never get infected by malware/viruses but i like to use mbam pro mainly for the web blocking and just to be safe.
     
  12. safeguy

    safeguy Registered Member

    Joined:
    Jun 14, 2010
    Posts:
    1,795
    I know exactly what you mean but if one focuses only on the bolded part above.....:p
     
  13. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    Unbearable lightnes of being (protected by Windows 7 32 bits Ultimate only)

    Windows 7 FW, also blocking outbound traffic

    Low Rights Container
    Chrome's sandbox with --no-referrers click to play flash plug-in, safe browsing, javascript allow for HTTPS\\* and .COM & .NL domains, extension blacklist (all)/whitelist(AddBlock only), plug-in allowed/disabled list, no history and other settings enforced through GPO.

    User Space protection
    Set a deny execute for everyone/all executables on Data Partitions (through ACL) and USB (with GPO). Addtional GPO template to enhance security of Outlook. Hardened GPO settings to limit user access to regedit, command, scripts, 16-bit, active desktop, Active-X & COM installation, task creation and obvious HKCU autostarts. Removed permissions for Users to change remaining (mostly empty) HKCU autostart entries (of Sysinternal autoruns) with RegEdit.

    Admin space protection
    Set UAC on Full and deny elevation of unsigned executables. Don't allow unsigned drivers to install. Applocker controls EXE & MSI, allowing only selected publishers/programs to update. Memory mitigation with EMET on all non-system/security programs of Program Files directory.
     
    Last edited: Jan 20, 2013
  14. Dubslap

    Dubslap Registered Member

    Joined:
    Jan 9, 2013
    Posts:
    21
    Location:
    UK
    Nice setup Kees. Just wondering how you force chrome in incognito mode and also how you allow java for only https etc.
     
  15. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
  16. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    Changed setup.

    Webroot SecureAnywhere
    Google Chrome
    Hitman Pro

    I like the new setup. Very fast and light
     
  17. Tyrizian

    Tyrizian Registered Member

    Joined:
    Apr 26, 2012
    Posts:
    2,839
    Changed mine

    Added avast! Free Antivirus, Outpost Firewall Pro, BitDefender Trafficlight and VTzilla

    The rest remained from previous setup (In Sig)

    I'm actually pretty satisfied with this one
     
  18. internet addict

    internet addict Registered Member

    Joined:
    Nov 26, 2012
    Posts:
    517
    You can easily disable java in Chrome by going to chrome://plugins. Firefox automatically disabled java.
     
  19. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    Emsisoft Anti-Malware 7.0:thumb: :thumb:
    huge virus database of more than 13 millions
     
  20. Solarlynx

    Solarlynx Registered Member

    Joined:
    Jun 25, 2011
    Posts:
    2,015
    Just a question concerning all that virus databases of all av vendors. Do they include all this antiviral stuff from old DOS times and other signatures of outdated viruses which are not actual anymore? Or they include only signatures of really actual viruses?
     
  21. siketa

    siketa Registered Member

    Joined:
    Oct 25, 2012
    Posts:
    2,718
    Location:
    Gaia
    Comodo @ 15M
    :D

    @ Solarlynx: I can tell you for sure that Malwarebytes deletes older signatures.
     
  22. The Red Moon

    The Red Moon Registered Member

    Joined:
    May 17, 2012
    Posts:
    4,101
    The amount of signatures is irrelevant...its how the av engine detects and utilises those signatures which is more important.:D
     
  23. siketa

    siketa Registered Member

    Joined:
    Oct 25, 2012
    Posts:
    2,718
    Location:
    Gaia
    Of course. We know that.
     
  24. The Red Moon

    The Red Moon Registered Member

    Joined:
    May 17, 2012
    Posts:
    4,101
    I really do wish comodo would submit there av for testing and ive asked this on the comodo forum and melih said that some of the testing organisations are not iso accredited and so will not submit it..but comodo av has been tested by ICSA labs and performed quite well.
     
  25. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,944
    Location:
    USA
    I've often thought that for this reason alone, it wouldn't be a bad idea for the bad guys to recycle old malware, i.e. bring something back to life, since it would largely go undetected.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.