What is your security setup these days?

Discussion in 'other anti-malware software' started by dja2k, Dec 15, 2005.

  1. FleischmannTV

    FleischmannTV Registered Member

    Joined:
    Apr 7, 2013
    Posts:
    1,093
    Location:
    Germany
    My current setup:

    Windows 8 Pro x64 with EMET 4.0 | Blue Ridge AppGuard Beta 4.0.8.0 | Sandboxie Beta 4.05.12

    EMET system wide mitigations:
    • DEP - Application Opt Out
    • SEHOP - Application Opt Out
    • ASLR - Application Opt In
    • Certificate Trust - enabled

    AppGuard Protection Level: Medium (Recommended)

    Sandbox configuration:
    • Seperate sandboxes for program groups
    • Restrictions / Start/Run-Access + Internet Access | specific apps and processes only
    • Program Stop / Leader Programs | forced programs as leader programs
    • DropRights
    • Resource Access / File Access / Read-Only Access | C:\Windows
    • Resource Access / File Access / Direct Access | for specific apps and their respected profile folders under C:\Users\Username\AppData
    • Auto-Delete

    Applications protected by Sandboxie + AppGuard + EMET:
    • MPC-HC, IrfanView, Foobar2000, Windows Media Player, PDF-XChange Viewer Pro

    Applications protected by AppGuard + EMET:
    • Google Chrome, Microsoft Office 365 Home Premium with Outlook

    Chrome settings:
    • Plugins click-to-play, Javascript is allowed only on certain domains, AppGuard Privacy mode for document folders
    • ABP | EasyList Germany+EasyList, Malware Domains, Fanboy's Social Blocking, EasyPrivacy, non-instrusive ads allowed
    • HTTPS Everywhere
    • LastPass | Two-Factor
     
  2. Overkill

    Overkill Registered Member

    Joined:
    Mar 16, 2012
    Posts:
    2,343
    Location:
    USA
    Yes ofcourse, I have to agree with Joe on this one...it's annoying and not necessary imo.
     
  3. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    Sigh(a long one).......well I've tried my best...*puppy*
     
  4. Overkill

    Overkill Registered Member

    Joined:
    Mar 16, 2012
    Posts:
    2,343
    Location:
    USA
    Everyone has their pet peeves :D
     
  5. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    You're right.:cool:
     
  6. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    ESET Smart Security 7 Beta
    :thumb:
     
  7. SweX

    SweX Registered Member

    Joined:
    Apr 21, 2007
    Posts:
    6,429
    V7 Final should be released in two days ;) Don't tell anyone :blink:
     
  8. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    this version is very nice:thumb:
     
  9. siketa

    siketa Registered Member

    Joined:
    Oct 25, 2012
    Posts:
    2,718
    Location:
    Gaia
    Tzuk has discontinued lifetime license model for Sandboxie.
    It costs 15 EUR/year now.
     
  10. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    what about those that has lifetime licence,are they going to be honor?
     
  11. siketa

    siketa Registered Member

    Joined:
    Oct 25, 2012
    Posts:
    2,718
    Location:
    Gaia
  12. Originally Posted by Windows_Security
    Windows 7 Ultmate 32 bits (E5200 dual core at 3 GHZ with SSD + 2xHDD + NAS & WL Router)

    Windows execution control
    - Deny execute for Everyone of EXE files in folders of internet facing programs and USB (ACL)
    - Deny execute for Basic Users of all executables outside Windows and Program Files folders (SRP)
    - Deny elevation of unsigned binaries (eg. Chromium, Evince PDF, VLC Media Player) in all folders (UAC)

    Addtional intrusion mitigation
    - Chromium's sandbox with click to play flash, allow javascript for [*.]NL & COM, added AdBlockPlus extension
    - Memory protection DEP, SEHOP, ALSR, added EMET and Virtualization (RunAsInvoker) for internet facing programs
    - Disabled risk-ware services, locked user autoruns and settings of Outlook & Chromium, Windows FireWall 2-way (GPO)

    Real time
    - Ad-Aware V11 Free anti virus (on execution only)
     
    Last edited by a moderator: Oct 15, 2013
  13. CrusherW9

    CrusherW9 Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    517
    Location:
    United States
    I'm realizing how nice, simple, and secure your config is. Why did you drop HMP for Ad-Aware?
     
  14. jmonge

    jmonge Registered Member

    Joined:
    Mar 20, 2008
    Posts:
    13,744
    Location:
    Canada
    how is comodo antivirus these days?i want to try it:)
     
  15. sportsfan7700

    sportsfan7700 Registered Member

    Joined:
    Jun 2, 2010
    Posts:
    499
    Location:
    Fort Worth, Texas USA "Where the West Begins"
    trialing Webroot SecureAnywhere AV 2014
     
  16. roger_m

    roger_m Registered Member

    Joined:
    Jan 25, 2009
    Posts:
    8,626
    Ashampoo Anti-Virus 2014
    Malwarebytes Anti-Malware Free
     
  17. lucien_phoenix

    lucien_phoenix Registered Member

    Joined:
    Oct 20, 2012
    Posts:
    133
    Location:
    Germany
    Hardware Firewall Router (Fritzbox 3270)
    Windows 7 Ultimate 32 Bit Firewall
    Bitdefender Antivirus Plus 2014
    MalwareBytes Antimalware Pro
    Hitman Pro 3.7.8 - Build 207


    BTW:
    Since i heard "it's a bad idea to have two Realtime Protections
    runnig at the same Time(Bitdefender/MBAM)i have deaktivated
    the Realtimeprotection from MBAM.

    Greets

    Lucien
     
  18. roger_m

    roger_m Registered Member

    Joined:
    Jan 25, 2009
    Posts:
    8,626
    Actually you can have MBAM protection enabled if you want.

    It's only a problem when you have two antiviruses installed, due to the way the interface with Windows. You can have problems, even if the real time protection is disabled on one of the antiviruses.
     
  19. sportsfan7700

    sportsfan7700 Registered Member

    Joined:
    Jun 2, 2010
    Posts:
    499
    Location:
    Fort Worth, Texas USA "Where the West Begins"
    Going to keep Webroot SecureAnywhere AV 2014. Any good deals for purchase (I'd like to get a multi year license if feasible)
     
  20. siketa

    siketa Registered Member

    Joined:
    Oct 25, 2012
    Posts:
    2,718
    Location:
    Gaia
  21. sportsfan7700

    sportsfan7700 Registered Member

    Joined:
    Jun 2, 2010
    Posts:
    499
    Location:
    Fort Worth, Texas USA "Where the West Begins"
    Siketa, not bad. (I should say I have some time to find out a good deal so I'm not that worried yet.) Perhaps a deal could be in the works around Black Friday?
     
    Last edited: Oct 15, 2013
  22. cyberpau

    cyberpau Registered Member

    Joined:
    Sep 9, 2013
    Posts:
    10
    Location:
    Philippines
    I just changed my setup from:
    Avast 2014 BETA 2 (default settings) + EMET 4.0 + USB Disk Security + Sandboxed Browsers with ABP and Zenmate


    to:
    Avast 2014.9.0.2005 Internet Security (Hardened Mode Aggressive) + WSA 2014 + USB Disk Security

    I did not remove my Avast 2014 because it BEST for offline computers like mine (during saturdays and sundays)...On the other hand, I added WSA 2014 because it is BEST for online computers like mine too (mondays to fridays).
     
  23. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
    You can keep an eye on https://www.wilderssecurity.com/showthread.php?t=349153 and on the Prevx Releases sub-forum.;)
     
  24. ams963

    ams963 Registered Member

    Joined:
    May 3, 2011
    Posts:
    6,039
    Location:
    Parallel Universe
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.