Question Which AV are you using and why did you choose this one ??

Please provide comments and solutions that are helpful to the author of this topic.
Nothing :p

41a021feb93da215f38ea2a1b69cdbfb.gif

I only have Osprey and Malwarebytes Browser
 
from my understanding windows exploit guard and asr rules can protect against a lot of the same types of mitigations but since hitmanpro.alert although have a lot of similar mitigations it does work differently wnd covers some stuff exploit guard doesn't have yet (probably adds checks in other areas in memory for example , and has extra behavior based post exploitation that some isn't necessarily present in windows ATP )
So I'm using it as an added defense after adding exploit guard mitigations from this template GitHub - neohiro/ExploitProtection: Windows Exploit Protection Settings (Ultimate) and I have manually added comodo to both hitmanpro.alert and exploit guard (although it shouldn't stop the type of bypasses used in Andy ful challenge but still will help against mainly memory based overflows)
Now how intrusive is your setup? How often do you have to reduce the defenses in order for a program to work? Have you experienced any instabilities or crashes?

I find that for an everyday joe and even for a person of interest the probability of infection is very low unless you browse warez/cracks/cheats/"free" programs.

As a result in the end you inconvenience yourself, introduce instabilities and wider threat space by employing multiple security solutions beyond your regular AV.

You are not as important as you think you are and your data doesn't matter

But that's just me and I don't matter.
 
  • Like
Reactions: Behold Eck