Advanced Plus Security LDoggs Security Setup

Last updated
Aug 21, 2018
Windows Edition
Pro
Security updates
Allow security updates
User Access Control
Always notify
Real-time security
Comodo Firewall & Netcraft
Firewall security
Periodic malware scanners
CCE w/ Killswitch, Zemana Antimalware, Norton Power Eraser & Emsisoft Emergency Kit
Malware sample testing
I do not participate in malware testing
Browser(s) and extensions
Browser: Opera (latest version) (default browser)
Extensions: Nano Blocker & Defender, SingleClick Cleaner, Cookie Autodelete, Random User-Agent, Privacy Possum, CSS Exfil Protection, Auto History Wipe, Netcraft, Script Defender & i don't care about cookies.

Browser: Comodo Ice Dragon
Extensions: Scriptsafe, uBlock Origin, ClearURLs, Behind The Overlay, Netcraft, Cookie Autodelete, Random User-Agent, Trace, Decentraleyes & CanvasBlocker

Browser: Firefox Quantum (not on current system)
Extensions: NoScript, Decentraleyes, Cookie Auto Delete, Trace, uBlock Origin, IDN Safe, CSS Exfil Protection, ClearURLs, Skip Redirect, Smart Referer, Malwarebytes, BehindTheOverlay, Ghostery, Keyboard Privacy, CanvasBlocker, Netcraft & Random User Agent
Maintenance tools
O&OShutup 10, Defraggler, RevoUninstaller, SysHardener 1.5 (Evjl Rain settings) for additional system security and lockdown, procexp, Windscribe VPN Free 15GB plan, VLC Media Player, OpenOffice, 7zip, Virtual DJ Pro, CDBurnerXP, AOMEI Backupper Standard, Bleachbit, PrivaZer & Wise Care 365
File and Photo backup
AOMEI Backupper Standard
System recovery
AOMEI Backupper Standard

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
Update: 3/08/18

Removed software:
- Mozilla FF Quantum (will leave in config section encase I wish to reinstall in the future)
- Unchecky (may have been compromised)
- VoodooShield (having to disabled it whenever I wish to install, update, change anything on here)
- Multiloginapp (was testing)
- ProtonVPN (was testing)

Added software:
- Immunet (testing to see if this works well)

~LDogg
 
D

Deleted member 178

in your opinion what software out there offer a very light config, but also covers most attack vectors on a system?

CFW + Immunet
Tinywall + OSArmor + Browser Extensions

CFW on it's on (not too confident with it alone)
Immunet (Clam AV off) + Forticlient (Web only) + Tinywall.
CFW + Second opinion scanners + web extensions
CFW + OSArmor
OSArmor + Zonealarm Firewall.
 
  • Like
Reactions: harlan4096

Moonhorse

Level 38
Verified
Top Poster
Content Creator
Well-known
May 29, 2018
2,728
CFW + Immunet
Tinywall + OSArmor + Browser Extensions

CFW on it's on (not too confident with it alone)
Immunet (Clam AV off) + Forticlient (Web only) + Tinywall.
CFW + Second opinion scanners + web extensions
CFW + OSArmor
OSArmor + Zonealarm Firewall.
cf + cs is made for average users, thats why hips isnt on
@Evjl's Rain said only hips on paranoid would work, would you run it as paranoid @Umbra if you wanted to go cf on its own

Or just scan frequently with on-demand scanners ( will do it anyways)
Anyway im incomplete user so i wouldnt trust only using cf, so i rather have av
 

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
Testing with Immunet for a bit! @Evjl's Rain what's your settings for this software btw?

~LDogg
 

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
@Moonhorse this is the amount it takes up within Task Manager:

im & cf.png


~LDogg
 

Moonhorse

Level 38
Verified
Top Poster
Content Creator
Well-known
May 29, 2018
2,728
@Moonhorse this is the amount it takes up within Task Manager:

View attachment 194333

~LDogg
Yeah CCAV is around 50mb total, so its like half more looked up from task manager

Have you enabled scan packed files? Or just keep immunet there as on-demand scanner. Since i have no idea about system impact immunet+ cf vs CCAV

I could disable real time scanning from ccav, since auto-sandbox is on block mode and signatures are still updated in real time..:rolleyes:
 

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
Yeah CCAV is around 50mb total, so its like half more looked up from task manager

Have you enabled scan packed files? Or just keep immunet there as on-demand scanner. Since i have no idea about system impact immunet+ cf vs CCAV

I could disable real time scanning from ccav, since auto-sandbox is on block mode and signatures are still updated in real time..:rolleyes:
Just enabled the Packed & Achive Scans in settings. Seeing how it'll do now. Seems very very light!!

~LDogg
 

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
Updated settings & extensions for currant config 4/08/18.

Comodo Firewall:
- Auto Containment (Enabled)
- HIPS (Safe Mode)
- Virusscope (Enabled)
- Website filtering disabled (Forticlient is only web filter i need)

Scriptsafe for Comodo Ice Dragon & Opera (my own settings in tests):
- Browser Plugin, Battery, Device Enumeration, Gamepad, WebVR, Canvas Font Fingerprint protections blocked.
- WebGL is blocked in about:config settings for Ice Dragon, the rest are unblocked due to site breakage in tests

Forticlient:
- Only web filter, default settings
Will be keeping Netcraft, due to personal testing blocked all Phishing sites

Immunet (my own settings in tests):
- ClamAV off
- Blocking Mode off (too heavy, also creates a lot of False Positives for software & installation of software when testing)
- Scanning Archived Files on (scans through .rar .zip files)
- Scanning Packed Files on (scans through obfuscated files)

Malwarebytes Browser Extension (CID & Opera)
- Adblocking only function turned off

@Evjl's Rain @Moonhorse @HarborFront hope you like my new config. :D

~LDogg
 

Moonhorse

Level 38
Verified
Top Poster
Content Creator
Well-known
May 29, 2018
2,728
Only features ice dragon has comodo secure dns ( asks during installation) you wont benefit from it since youre using Quad9
The only feature you have is siteinspector, i bet you dont use it at all since it wont have any kind of real-time protection feature

Could aswell go back to firefox quantum, for more frequently updates

Something i wanted to ask is do you have comodo internet security essentials installed, wich is bundled with comodo firewall installer

Do you have both; comodo and windows firewalls enabled? I do. Now im just wondering myself do i benefit anything from Syshardener windows firewall settings along with cf
 

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
It also has Comodo Online Security (extension), & HTTPS Enforcement from Comodo too. Both of which I have disabled. I think Comodo Ice Dragon seems to be a bit more stable compared to Quantum so far. Which is why I uninstalled it during my tests.

Forgetting WFW, Syshardener goes further. You would definitely benefit from Syahardener + CFW.

I'm having a trial with Forticlient + Immunet currently. For now I think they both serve me no purpose. I need to have a config where I am 100% i like and to my means xD Talk about being fussy I know.

~LDogg

~LDogg
 
  • Like
Reactions: Moonhorse

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
Since you had VDS + cf , you could give a go for Heilig Defense RansomOff
Since its signature-less and cf has signatures they could work well together?
I could. But I think basic uBlock filter lists may do a better job. Then I'd have installed 3 software over taking off Unchecky (maybe compromised) + VDS.

I'll take a look though. I believe CFW + Malwarebytes + Forticlient should more then well deal with Ransomware. Even then I'm thinking about taking off Immunet + Forticlient.

Thanks for the suggestion, I'll have a look, may test it and have a think about. Appreciate it.

~LDogg
 
  • Like
Reactions: Moonhorse

Moonhorse

Level 38
Verified
Top Poster
Content Creator
Well-known
May 29, 2018
2,728
I guess immunet + forticlient are bit of useless for you anyways, you would be fine with cf

I can bloat my system with maximium protection or just go with lightest setup, at last it doesnt make huge difference to my daily browsing habits + gaming performance. I will only notice difference when i open up task manager/ killswitch to see whats happening.

Same with the browser extensions, i could be fine with nanoblocker + bitwarden only. But having netcraft/ malwarebytes doesnt affect into browser performance at all, just extra protection so i rather have them than be without

For me this is just endless cycle where i swap my setup to another, its like hobby. I think av-testing would be next step, wich makes it bit more exciting
 
  • Like
Reactions: ZeroDay

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
I guess immunet + forticlient are bit of useless for you anyways, you would be fine with cf

I can bloat my system with maximium protection or just go with lightest setup, at last it doesnt make huge difference to my daily browsing habits + gaming performance. I will only notice difference when i open up task manager/ killswitch to see whats happening.

Same with the browser extensions, i could be fine with nanoblocker + bitwarden only. But having netcraft/ malwarebytes doesnt affect into browser performance at all, just extra protection so i rather have them than be without

For me this is just endless cycle where i swap my setup to another, its like hobby. I think av-testing would be next step, wich makes it bit more exciting
I'd want something else alongside CFW. As I'm only use some default settings anyway. :p

~LDogg
 
  • Like
Reactions: Moonhorse

Moonhorse

Level 38
Verified
Top Poster
Content Creator
Well-known
May 29, 2018
2,728
Some cloud av with cf would be nice, kaspersky perhaps when it becomes available for you. Then you could ditch some extensions maybe

Or cf + andys configure defender

Well theres alot alternatives but well see
 

LDogg

Level 33
Thread author
Verified
Top Poster
Well-known
May 4, 2018
2,261
Some cloud av with cf would be nice, kaspersky perhaps when it becomes available for you. Then you could ditch some extensions maybe

Or cf + andys configure defender

Well theres alot alternatives but well see
There is. I feel as if I do not need Forticlient at all, as I'm using Netcraft & Malwarebytes.

~LDogg
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top