Advice Request We could be heroes . . .sniper vs shotgun

Please provide comments and solutions that are helpful to the author of this topic.

Windows_Security

Level 24
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Well-known
Mar 13, 2016
1,298
LS,

What the heck is case (kees in Dutch) posting? Well this post is a tribute to two MalwareTips heroes, one is a sniper (@Andy Ful ) the other one a shotgun (@Prorootect). When combining their advices security really becomes a non-issue.

Let me first start with the sniper: @Andy Ful
His excellent utilities allow me to add a defeault deny to my Windows 10 home version (Asus Transformer) while utilizing all Windows Defender features (exploit and ransomware protection) to the max. Andy feel free to post a link to your excellent freeware utilities, you deserve the attention and spotlight.

This post is really about the shotgum: Mr @Prorootect posting many threads about chrome and firefox extensions to raise the privacy and security level in your browser.

Maybe you get dizzled by all his suggestions. Let me post what settings I use two of Mr @Prorootect favourite extensions to increase security and privacy.

Chrome (chromium stable in my case) extension Poicy Control. Simply set it to block some high level domains by blocking third party stuff.

upload_2018-2-17_18-23-51.png


Now add this line to exclude the third party block for the high level domains you usually visit, in my case: https://*.com, https://*.net, https://*.inf, https://*.org, https://*.nl ,adding this as whitelist for scripts, subdocuments (frames and ifs,rames), XM:LHttpRequest and Websocket. Change https://*.nl (Netherlands) for your high level domain country code (e.g. US for United States, UK for United Kingdon, GE for Germany).

upload_2018-2-17_18-26-14.png



Next install Script Safe and enable (copy text to import)
annoyances|true
annoyancesmode|relaxed
antisocial|true
applet|true
audio|false
audioblock|true
battery|true
blackList|[]
bluetooth|true
browserplugins|true
canvas|random
canvasfont|true
classicoptions|false
clientrects|false
clipboard|false
cookies|true
dataurl|false
domainsort|true
embed|true
enable|true
fpAudio|[]
fpBattery|[]
fpBluetooth|[]
fpBrowserPlugins|[]
fpCanvas|[]
fpCanvasFont|[]
fpClientRectangles|[]
fpClipboard|[]
fpDevice|[]
fpGamepad|[]
fpWebGL|[]
fpWebVR|[]
frame|true
gamepad|true
hashallow|true
hashchecking|true
iframe|true
image|false
keyboard|false
keydelta|40
lastSync|0
linktarget|off
locale|en_US
mode|allow
noscript|false
object|true
optionslist|false
paranoia|false
preservesamedomain|true
rating|true
referrer|true
referrerspoof|off
referrerspoofdenywhitelisted|false
refresh|true
script|true
showcontext|true
sync|true
syncenable|false
syncfromnotify|true
syncnotify|true
timezone|false
uaspoofallow|false
updatenotify|true
useragent|[""]
useragentinterval|off
useragentintervalmins|5
useragentspoof|off
useragentspoof_os|off
utm|false
video|false
webbugs|true
webgl|true
webrtc|default_public_interface_only
webrtcdevice|true
webvr|true
whiteList|["*.googlevideo.com"]
xml|true

Now when you do risky surfing, change ALLOW to BLOCK (for third party block) and you are good to go.

upload_2018-2-17_18-32-40.png


Using these two extensions will increase protection and privacy without a lot of hassle of websites not working anymore.
 
Last edited:

Prorootect

Level 69
Verified
Nov 5, 2011
5,855
OK., thank you Windows_Security - Kees... my initial shotgun approach has recently evolved into a sniper approach: at first I have got a lot of bullets (extensions, software...) - but with time, it seems to me, that I'm aiming pretty much at safe big targets that I propose left and right... for the biggest profit for all.

ScriptSafe
, Policy Control and Redirect Control (or Skip Redirect on Chrome), this no-brainer trio of must have great defenders are among the most cited recently, sure - but don't forget ContentBlockHelper, Script Blocker For Chrome, Alert Control and BehindTheOverlay especially, it's up to you to make your choice.
Latest bullet is called: Privacy Defense!
And thank you very much for your propositions above!
 
Last edited:

Andy Ful

From Hard_Configurator Tools
Verified
Honorary Member
Top Poster
Developer
Well-known
Dec 23, 2014
8,129
Thanks for the kind words. I am glad that those utilities were useful to you.(y)
Here are two shots from the "sniper": :)
.
Hard_Configurator (GitHub - AndyFul/Hard_Configurator: GUI to Manage Software Restriction Policies and harden Windows Home OS):
Hard_Configurator/Hard_Configurator_setup(x64)_beta_3.1.0.0.exe at master · AndyFul/Hard_Configurator · GitHub
Hard_Configurator/Hard_Configurator_setup(x86)_beta_3.1.0.0.exe at master · AndyFul/Hard_Configurator · GitHub
.
ConfigureDefender (GitHub - AndyFul/ConfigureDefender: Utility for configuring Windows 10 built-in Defender antivirus settings.):
ConfigureDefender/ConfigureDefender_1.0.0.1.zip at master · AndyFul/ConfigureDefender · GitHub
.
The executables with (x64) are for 64-bit Windows versions.
Making the initial setup by Hard_Configurator and adjusting it to the needs of the concrete user is not the work for a newbie. :notworthy:
If someone will have a questions/problems, please post to the below MalwareTips threads:
Hard_Configurator - Windows Hardening Configurator
ConfigureDefender utility for Windows 10
 
Last edited:

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top