What is your security setup these days?

Discussion in 'other anti-malware software' started by dja2k, Dec 15, 2005.

  1. xnevermore

    xnevermore Registered Member

    Joined:
    Feb 16, 2010
    Posts:
    143
    Updated Security Setup

    Real Time

    Defensewall firewall 3.0
    Panda Cloud

    On Demand

    Hitman Pro

    Backups/Sync

    PureSync

    Browser

    Google Chrome (adblock,last pass, xmarks)

    Others
    Secunia PSI
    OpenDNS
    mvpHOSTS

    Running these on windows 7 32 bit
    __________________
     
  2. Cyrano2

    Cyrano2 Registered Member

    Joined:
    Mar 19, 2010
    Posts:
    131
    Location:
    Spain
    Real-time

    Avira AntiVir Personal.
    Inmunet Protect.
    Online Armor Free (Apps set to "Run Safer": Firefox, Windows Live Messenger, Foxit Reader, VLC and OpenOffice).

    On-demand

    MBAM (daily scan).
    Hitman Pro (to check all my downloads).
    Hostman (MVPS Hosts)

    Browser

    Firefox with WOT, Better Privacy, NoScript, TACO, Ghostery and CSLite.
     
  3. Matthijs5nl

    Matthijs5nl Guest

    Do you feel Immunet actually adds something to your setup?
     
  4. Cyrano2

    Cyrano2 Registered Member

    Joined:
    Mar 19, 2010
    Posts:
    131
    Location:
    Spain
    Really? I don't think so (maybe this will change with the upcoming beta). But I like the project and I want to give it my support :).
     
    Last edited: Apr 21, 2010
  5. Matthijs5nl

    Matthijs5nl Guest

    Oke, honest answer :D
     
  6. mhf

    mhf Registered Member

    Joined:
    Feb 13, 2006
    Posts:
    55
    Location:
    Europe
    real time
    browser : K-meleon 1.5.4 with Proxomitron
    Peerblock
    avast! 5.0.57 free
    PrivateFirewall
    Mailwasher pro

    on demand
    SAS
    or MBAM
    CCleaner

    restore
    Farstone Driveclone pro

    backup
    Cobian Backup 9
     
  7. AvinashR

    AvinashR Registered Member

    Joined:
    Dec 26, 2009
    Posts:
    2,063
    Location:
    New Delhi Metallo β-Lactamase 1
    Running Following Setup:-

    1. Windows 7
    2. NIS 2010
    3. LUA & DEP
    4. AppLocker Policy
    5. Returnil 3
    6. Non-Sense :p

    No Prevx :( :'( :'( ...
     
  8. G1111

    G1111 Registered Member

    Joined:
    May 11, 2005
    Posts:
    2,294
    Location:
    USA
    Firewall:
    Linksys Router (NAT hardware firewall)
    DefenseWall Personal Firewall 3.00 (with Windows XP firewall)

    Anti-Virus:
    Kaspersky Anti-Virus 9.0.0.736 (a.b)
    Malwarebytes Anti-Malware 1.45

    HIPS/IDS:
    Malware Defender 2.6.0
    SpywareBlaster 4.3 (with Ad-Aware custom blocking)

    Resident on Demand Scanners:
    Hitman Pro 3.5.4 Build 92
    Mischel TrojanHunter 5.3 (994)
    Trend Micro Rootkit Buster 2.80.0.1077 Beta
     
  9. doktornotor

    doktornotor Registered Member

    Joined:
    Jul 19, 2008
    Posts:
    2,047
    Pretty much the same here. I installed it on a multitude of computers, it's practically invisible, doesn't harm anything, no resource hog and I like testing new stuff. :D
     
  10. Creer

    Creer Registered Member

    Joined:
    Jun 29, 2008
    Posts:
    1,345
    Windows 7 HP x32
    (Windows Firewall: Disabled, UAC: Enabled, DEP: Enabled)

    Realtime:
    Look 'n' Stop v2.07,
    DefenseWall HIPS v3 (final)

    On-demand:
    ShadowProtect Desktop v4 (image backup),
    SyncBack (data backup),
    MBAM and Dr.Web CureIt! (scanning once per few months).


    Fast & ultra light setup which gives me a lot of fun, control and peace of mind.
     
  11. trjam

    trjam Registered Member

    Joined:
    Aug 18, 2006
    Posts:
    9,102
    Location:
    North Carolina USA
    Prevx and nothing else.
     
  12. EscapeVelocity

    EscapeVelocity Registered Member

    Joined:
    Apr 1, 2010
    Posts:
    368
    Added PeerBlock IP blocker with BlueTack....Ads, Spyware, Bogon, DShield, Hijacked lists.
     
    Last edited: Apr 21, 2010
  13. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    Yeah both in real time, A-Squared is on Exec and Panda on default o_O
     
  14. icr

    icr Registered Member

    Joined:
    Sep 6, 2008
    Posts:
    1,589
    Location:
    UK
    Testing Norton Internet Security 2011:p
     
  15. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    On XP Pro playing machine, back to basics

    Realtime Security aps
    Windows own FW

    Windows own LUA + SRP + ACL (downloads/attachements + user space registry + autorun/task dir)

    Avast (file and behavioral shield)

    Portable Chrome:
    - Chrome's excellent Policy Sandbox FREE
    - Trusteer Rapport FREE (protects chrome process itself, key encryption and screen protection on sites selected, )
    - Safer-plugins switch, allow cookies, javascript only on selected sites
    - SiteAdvisor + WOT FREE
    - Manual Privacy Protection in Local State file of Chrome (set red only afterwards)

    On demand
    Hitman Pro

    Lean and mean see pic :thumb: (less than 0.1 % overhead of security aps)
     

    Attached Files:

    Last edited: Apr 22, 2010
  16. Newby

    Newby Registered Member

    Joined:
    Jan 12, 2007
    Posts:
    153
    Kees,

    SRP has been bypassed in the past, also Xp does not protect against process modifications etc. When something changes the processes in memory, are you still protected?

    Regards Newby
     
  17. doktornotor

    doktornotor Registered Member

    Joined:
    Jul 19, 2008
    Posts:
    2,047
    For "something" to change the processes in memory, that "something" has to run (be executed) first. To execute, if must place itself to a location from which it can be executed. To those locations a limited user has no write access. Also, see the note on Trusteer Rapport in Kees's post.
     
  18. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    thanks for the explanation Doktor :thumb:

    On top of SRP

    ACL trick of deny access to downloaed executables by browser and mail
    With a registry tweak the OS sets the ADS bit of downloaded executables (or likes) when browser or mail writes them to disk. While this block is on ACL prevents execution access to these downloads. So when SRP should be bypassed this will prevent execution.

    Avast
    Avast has one of the best protection rates against scripts (see latest AV-comparatives). Since nothing can execute, scripts are the only possible source of malware entry. Avast filters out 95% of the bad ones when they are executed/written to disk.

    Chrome Sandbox
    The Chrome sandbox only allows access to temp, download and profile directory (and HKCU google registry key). JavaScript of extentions and content scripts are seperated by Chrome
    Trusteer
    On top of that Trusteer looks at Windows API interfacing with the browser. It tries to set up a secure tunnel and protects browser process from tampering.

    Chrome content settings + WOT + SiteAdvisor
    By allowing javascript and storing cookies only on selected sites (okay by WOT plus McfeeSiteAdvisor and Chrome's own phising protection), the remaining risk is minimalised to practically zero.

    So I am not afraid of SRP being intruded :D
     
  19. kjdemuth

    kjdemuth Registered Member

    Joined:
    Jul 29, 2005
    Posts:
    2,974
    Location:
    Boston, MA
    Light, airy and free. Nice set-up kees. Of course if I had that running I'd be starring at my task manager waiting for a malicious item to pop up. :doubt:
     
  20. Newby

    Newby Registered Member

    Joined:
    Jan 12, 2007
    Posts:
    153
    Thanks Doktor & Kees,

    I used to be on Vista x64, but due to work related propierty application, I went back to XP. I used SBIE, but dropped it after the latest incident.

    I will go for Surun and your anti-execute registry tweak on the user I will be using for work (using IE8 ).

    I will go full LUA and deny execute SRP (with PGS of Sully) on my personal user (using PortableChrome). I guess it is better/safer to have two different user profiles/environments).

    I will try the keyscrambler + Trusteer Rapport combo you posted

    Thx
     
  21. Konata Izumi

    Konata Izumi Registered Member

    Joined:
    Nov 23, 2008
    Posts:
    1,557
    You can substitute PrevX SafeOnline free for Facebook users as an alternative to the Keyscrabler + Trusteer combo.
     
  22. Newby

    Newby Registered Member

    Joined:
    Jan 12, 2007
    Posts:
    153
    @ Konata: Thanks, is it a one year lisence?


    @ Kees: How easy is the script block to use in Chrome?
     
  23. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    Simple see pic
     

    Attached Files:

  24. Konata Izumi

    Konata Izumi Registered Member

    Joined:
    Nov 23, 2008
    Posts:
    1,557
    lifetime. :cool:
    I think I saw Kees said SafeOnline offers more complete protection than Trusteer + Keyscrambler does. :D
     
  25. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    That is correct :thumb: , on my rig PrevX safe online lags when entering something in the address bar
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.