Advanced Plus Security imuade's Security Configuration 2020

Last updated
Nov 14, 2020
How it's used?
For home and private use
Operating system
Windows 10
Log-in security
Security updates
Allow security updates and latest features
User Access Control
Notify me only when programs try to make changes to my computer
Real-time security
  1. CleanBrowsing DNS (Security Filter)
  2. Hard_Configurator + FirewallHardening
  3. Windows Defender
Firewall security
Microsoft Defender Firewall
About custom security
Hard_Configurator:
  • "Windows_10_Recommended_Enhanced" profile
FirewallHardening:
  • "LOLBins" and "Recommended" rules
Periodic malware scanners
  1. AdwCleaner
  2. HitmanPro
Malware sample testing
I do not participate in malware testing
Browser(s) and extensions
  • Chromium portable (updated by chrlauncher) with the following extensions:
    • Blocksi Web Filter
    • Close & Clean
    • Dark New Tab
    • uBlock origin
    • WebRTC Control
    • WebRTC Protect
Maintenance tools
  • Portable softwares:
    • Dism++
    • DriverStore Explorer
    • HiBit uninstaller
    • LibreOffice
    • MPC-BE
    • Nomacs
    • PDF SAM
    • Sumatra PDF
    • SUMo
    • Thunderbird
File and Photo backup
Aomei Backupper Standard
System recovery
Aomei Backupper Standard
Risk factors
    • Browsing to popular websites
    • Logging into my bank account
    • Streaming audio/video content from shady sites
Computer specs
MSI Cubi Intel Core i3-5005U
12Gb RAM
128Gb SSD

imuade

Level 12
Thread author
Verified
Top Poster
Well-known
Jul 29, 2018
566
Hi all and Happy New Year :) This is my new configuration :)

After reading some negative reviews about Webroot (no offense meant), I decided to try it to see how it goes and I have to say it has anything I (and I'd like to stress about "I") want in an Antivirus:
  • fully cloud (no need to download signatures)
  • very light on system resources (30Mb of Private Bytes, 7Mb of Working set when idle)
  • great web protection
I coupled it with my old love Comodo Firewall and I can't see any drawback :)

Let's see how long I'll keep it ;)
 

imuade

Level 12
Thread author
Verified
Top Poster
Well-known
Jul 29, 2018
566
Update 26/01/2020
Replaced Comodo Firewall with SpyShelter Free
No problem with Comodo Firewall, I just thought to give SpyShelter Free a try :) So far, so good, a bit chatty at first (normal for a HIPS) but now it's fine.
Actually, Comodo Firewall did give me some troubles during the uninstallation process, but everything was fine after using their official uninstaller
 

imuade

Level 12
Thread author
Verified
Top Poster
Well-known
Jul 29, 2018
566
That would the only reason i would use WRSA instead of WD, but i'm still very annoyed by WRSA constant writing on WRdata folder , especially on a SSD...
I was worried about that too, but in my PC that folder has always been around 20-40Mb and when WRSA updated to the last version, the size reduced to 20Mb.
Just for a comparison, CCAV wrote much more data on the HD
 

imuade

Level 12
Thread author
Verified
Top Poster
Well-known
Jul 29, 2018
566
do a test, install a low reputation program, run it, WRSA will start journaling it non-stop.
Yeah, you are right.
Like that, it would be better to open the settings and manually trust that program :)

EDIT
I think WRSA's concept is similar to Comodo's.
Comodo:
Good=allow
Bad=block & quarantine
Unknown=sandbox

WRSA
Good=allow
Bad=block & quarantine
Unknown=monitor, journal & get ready to revert actions

If you set heuristics to "warn when any new program executes that is not specifically whitelisted", any unknown will generate an alert, then the user can choose to either block or allow.
Like this there won't be any monitoring and the size of WRdata folder shouldn't increase too much

EDIT 2
If you get a warning because an unknown program wanna run and you choose "allow always", WRSA will add that program to the "block/allow file" list and set it under "monitor"
 
Last edited:

imuade

Level 12
Thread author
Verified
Top Poster
Well-known
Jul 29, 2018
566
Uninstall webroot, it is next to useless.
Well, thanks for your comment, but I don't agree :)
The web protection is very good, it catches every phishtank entry before smartscreen for example.
Plus, it's very light.
And if you set heuristics to "warn when any new program executes that is not specifically whitelisted", I think the protection is also very good :)
@omidomi could you please test WRSA with that setting? I'd really like to see how it performs :)
 

omidomi

Level 71
Verified
Honorary Member
Top Poster
Malware Hunter
Well-known
Apr 5, 2014
6,008
Well, thanks for your comment, but I don't agree :)
The web protection is very good, it catches every phishtank entry before smartscreen for example.
Plus, it's very light.
And if you set heuristics to "warn when any new program executes that is not specifically whitelisted", I think the protection is also very good :)
@omidomi could you please test WRSA with that setting? I'd really like to see how it performs :)
Hi friend , I think about it & may be do this :)
 

imuade

Level 12
Thread author
Verified
Top Poster
Well-known
Jul 29, 2018
566
Update 29/02/2020
Just some side changes after a boring week listening to how Covid-19 is spreading on Italy...
  1. Added SumatraPDF as PDF reader (faster than Edge or Chrome)
  2. Replaced XnViewMP with FocusOn Image Viewer FocusOn Image Viewer (very lightweight and fast)
  3. Replaced Microsoft Edge (Chromium-based) with Google Chrome for better compatibility with WRSA Identity Guard (Chrome is automatically detected and added to protected list while Edge has to be added manually)
  4. Added some privacy-oriented extensions (clean sheet on browserleaks.com):
  • Close & Clean
  • Trace - Online Tracking Protection
  • WebRTC Control
  • WebRTC Protect
Immagine.jpg
 
Last edited:

Sampei Nihira

Level 6
Verified
Well-known
Dec 26, 2019
287
Update 29/02/2020
Just some side changes after a boring week listening to how Covid-19 is spreading on Italy...
Added SumatraPDF as PDF reader (faster than Edge or Chrome)
Replaced XnViewMP with FocusOn Image Viewer FocusOn Image Viewer (very lightweight and fast)
Replaced Microsoft Edge (Chromium-based) with Google Chrome for better compatibility with WRSA Identity Guard (Chrome is automatically detected and added to protected list while Edge has to be added manually)
Added some privacy-oriented extensions (cleen sheet on browserleaks.com):
  • Close & Clean
  • Trace - Online Tracking Protection
  • WebRTC Control
  • WebRTC Protect
View attachment 234112

Do various tests over time with Trace because it may have unexpected behavior.
 

imuade

Level 12
Thread author
Verified
Top Poster
Well-known
Jul 29, 2018
566
Update 28/03/2020
Things are getting slightly better in Italy concerning the Covid-19. We still work at home, but the rate of infected people is lowering... let's keep our fingers crossed 🤞

Replaced WRSA with FortiClient
After the good reviews here:
I decided to give FortiClient another try and I have to say it performs very well on my PC.
Later I'll post a User Review about it
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top