Shran Config

Windows Edition
Education
User Access Control
Always notify
Real-time security
Norton Security
VoodooShield Pro [lifetime]
Firewall security
Microsoft Defender Firewall
Periodic malware scanners
Emsisoft Emergency Kit
GlassWire Basic [paid, lifetime] (not a malware scanner, but not running in real time either, so I put it here)
Malware sample testing
Browser(s) and extensions
Chrome, Firefox; LastPass
Maintenance tools
CCleaner, Process Lasso Pro
System recovery
Acronis True Image [WD Edition]

Shran

Level 5
Thread author
Verified
Well-known
Jan 19, 2015
230
908
367
Updated 14 Aug, 2016
GlassWire Basic [paid] is also installed, but not running in real time.

Have also used Group Policy to harden system, such as blocking scripts, disabled elevation of unsigned applications automatically, and deny ALL elevation (signed or not) for standard/non-admin accounts, also the limited/non-admin account is the main account I use, only using admin when absolutely necesarry.
 
Last edited:
I just want to know why are you using Python 3 in place of Python 2. You are not updated to the latest stable version Python 3.4.3.
Other than that your config looks good. Thanks for sharing.
Because my Computer Science department uses 3.4.2, not exactly sure why. We also use an outdated version of NXDesktop client to connect to our linux server
 
Hi, and thank you @Shran for sharing your well listed configuration. It was refreshing to read about your individual virtual machines, and their realtime protections in Virtual Box!:)

As you are a user of uBlock, I've read it is now available for Firefox (Thanks @exterminator20 !;)) and, earlier today, installed it on our Windows 7 SP 1.

(Edit: We prefer using uBlock Origin which is being actively developed by Raymond Hill @https://github.com/gorhill)
PS Your thread's title made me smile too! See? > :D
 
Last edited:
Update 19 June, 2015:

Added: VoodooShield to host system (still using NSBU as resident AV).
Added: two new VMs: openSUSE 13.2 x64 & Linux Mint 17.x x64
Added: a software restriction policy using gpedit.msc to each Windows machine (VMs included) to block
the opening of the following script types: *.vbs, *.vbe, *.js, *.jse, *.wsf, *.wsh.
Added: Used gpedit.msc to block all autorun commands.
 
Great config! Very solid - its toughest spot must be AppGuard. Make sure you make full use of it and consider it one of your strongest layers of security - because it really is! :p

Be sure to use Acronis True Image to create a clean, full system image to restore your system to the exact state it was in when you created that image.
 
Last edited: