Sunday, 8 July 2012

Desktop Security Configuration

Basic Information
PC Environment: Private
Security Awareness: Advanced
Exposure to Malware: Medium
Infection Rate: Occasionally
Level of security risk: Medium
Operating system: Windows 7 Ultimate SP1
OS architecture: 64 bit
User Account Type: Administrator

Browsers:
Normal usage: Google Chrome
Security/anonymous usage: Mozilla Firefox

Extensions and Plugins
Chrome Add-Ons: Adblock Plus, WOT, Ghostery, HTTPS Everywhere, LastPass
Firefox Add-Ons: Adblock Plus, WOT, Ghostery, NoScript, FoxyProxy

Computer Settings
Windows Update: Weekly Updates
Windows Firewall: Turned Off
Remote Settings: Turned Off
Windows Backup: Turned Off
Indexing: Turned Off
Startup Manager: AutoRuns
System Startup: Optimized
Recovery: Turned Off
Virus Scan: Weekly

Real-time Protection
Main Local Anti-Virus: Emsisoft Internet Security (EAM + OAP)
Main Cloud Anti-Virus: Webroot SA (WSA), EAM (Anti-Malware Network)
Main Behavior Blocker: Emsisoft AM (Mamutu)
Main Anti-Logger: OAP Anti-Keylogger Shield
Main Anti-Spyware: EAM, WSA
Main Anti-Rootkit: EAM, WSA

Prevention Systems
HIPS: Online Armor Premium (OAP) Tweaked for Max Protection
Behavior Blocker: Emsisoft Mamutu (Built-in EAM), WSA
Anti-Executable: -
Infection Rollback: WSA

Firewall
Main Firewall: OAP Tweaked for Max Protection, WSA (Outbound Monitor)
Intrusion Detection System: -
Packet Inspection: -
Protocol Filter: -
Certificate checker: -
Network Protection: -

Companion Real-Time Protection
Companion Local + Cloud Anti-Virus: -
Companion Standalone Cloud Anti-Virus: -
Companion Firewall: -
Companion HIPS: -
Companion Behavior Blocker: -
Companion Anti-Logger: Keyscrambler Pro

On-demand scanners
Local: Comodo Cleaning Essential, MBAM, ESET Online Scanner
Cloud: Hitman Pro (Registered), IObit Malware Fighter

Web/Network Protection
Web Shield/URL Filter: WSA
Anti-Phishing: OAP
Web Reputation: WOT
Ad-Blocker: Adblock Plus
Script Protection: NoScript
Domain/Website manager: OAP
Host Blocker: EAM (Surf Protection)
Host File Protection: OAP, WSA
DNS Checker: OAP (Web Shield)
Password/Form Protection: LastPass
Dedicated Anti-Spyware/Keylogger: -
DNS Server: Open DNS
DNS Traffic Encryption: DNS Crypt
VPN: -

Additional Protection
UAC: Maximum
Hash Checker: Hashtab
Apps Protection: -
File Protection: OAP (File Shield)
File Reputation: EAM (Anti-Malware Network), WSA
Registry Protection: OAP (Registry Shield)
Autorun Protection: OAP Autorun Protection
Email & Anti-Spam Protection: EAM
Instant Messenger Protection: -
P2P Protection: -
Document Protection: -
Removable media/USB Protection: WSA
Identity Protection/Banking Protection: OAP Banking Mode, WSA (ID Shield)
Social Media Protection: ESET Social Scanner
Rollback: Rollback Rx Pro
Anti-Theft: Prey

Virtualization
System-Wide: Shadow Defender
Restriction-based Sandbox: OAP (Runsafer), WSA (Safestart Sandbox)
Full Virtualization Sandbox: Sandboxie (Registered)
Virtual Machine: Virtual Box (WinXP)

System Reinforcement
Apps Hardening: EMET v3 (On/Out/In)
Encryption: Truecrypt v7

Monitoring
System Vulnerabilities Monitor: WSA (System Anlyzer), Secunia PSI
Process Monitor: WSA, Comodo Killswitch, Process Hacker, Emsisoft Hijack Free
Autorun/Startup Monitor: Comodo Autorun
Registry Manager: Comodo Autorun
Network Monitor: OAP, Comodo Killwitch

System Maintenance & Optimization
Browser Cleaner: -
System Cleaner: WSA, Ccleaner with CCEnhancer, Tune-up Utilities 2013
System Optimizer: WiseCare 365 Portable, Tune-up Utilities 2013

USB Toolbox 
Boot CD: Hiren Boot CD made bootable via USB
Portable OS: WinXP/Win7
Scanners: Emsisoft Emergency Kit, McAffee Stinger, MBAM, Comodo CE, Norton PE, Kaspersky, TDSSKiller, Dr Web CureIt, Gmer...
Disinfecting tools: Rkill, Combofix, Sanitycheck, etc...

Portable Apps (most used)
- Attacker (port monitor/honeypot)
- Autoruns
- Bill2's Process Manager
- Cports & Ipnetinfo (port monitor & whois)
- CCenhancer
- Nero Burning ROM 12
- Comodo System Utilities
- Deskhedron (virtual multi-desktop)
- DNS Jumper
- Everything (Windows search tool)
- Gigatweaker (Windows tweaking tool)
- HostsXpert (HOSTS file manager)
- Iobit Uninstaller
- Process Hacker 2
- Process Monitor
- Regwatcher
- SMART (service manager)
- Superscan 3 (port scanner)
- Svchost viewer
- System Ninja (system cleaner)
- TCP optimizer
- TCP View (network monitor)
- Trout (Traceroute tool)
- Truecrypt
- µtorrent
- VLC
- Winpatrol To Go
- Win7 Logon Background Changer
- Wise Registry Cleaner/Disk Cleaner/Jetsearch/Disc Recovery

My configuration is made by virtue of the layered protection idea.
All my security software are selected specifically to run together without conflict, I set them for maximum compatibility/protection with the lowest resources usage possible.

0 comments: