At-Risk WinXPert's Desktop 2018

WinXPert

Level 25
Thread author
Verified
Honorary Member
Top Poster
Malware Hunter
Well-known
Jan 9, 2013
1,457
This is an old rig (Pre-Windows 7, yup no driver support for 7) I use daily at work for creating documents, editing images and videos, surfing and gaming. Sometime I use it to play with malware samples that came from customers' USB drive or samples from local FB forums.

Here are the lists of installed programs
  • 7-Zip 18.00
  • Adobe Photoshop CS6
  • Animated Screensaver Maker
  • Auslogics Disk Defrag
  • CCleaner
  • CHK File Recovery 1.082
  • COMODO Firewall
  • CryptoPrevent Foolish IT LLC
  • DeepBurner v1.9.0.228
  • EPSON Scan
  • Everything 1.4.1.877 (x86)
  • File Shredder 2.5
  • FormatFactory 3.9.0.1
  • Foxit Reader
  • Free Download Manager
  • Google Chrome
  • Lets PHOTO Express
  • Microsoft .NET Framework 4.6.2
  • Microsoft Office Professional Plus 2010
  • Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
  • Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210
  • Mp3 Merger V1.0
  • Picasa 3
  • PotPlayer
  • Puffin Browser version 7.2.1.913
  • Sandboxie 5.22 (32-bit)
  • Shadow Defender
  • System Explorer 7.0.0
  • TeraCopy version 3.26
  • Unlocker 1.9.2
  • VLC media player
  • WinArchiver Virtual Drive
  • XnView Shell Extension 3.5.1
  • YTD Video Downloader 5.9.2
  • ZipTip v0.0.1.4
 
Last edited:

harlan4096

Moderator
Verified
Staff Member
Malware Hunter
Well-known
Apr 28, 2015
8,635
@WinXPert: to have UAC disabled usually leads me to tag a config as Risky, but since You are using Comodo + CS's settings, also no System Image BackUp solution, finally tagged as Caution, please consider to pair Comodo FireWall with some free anti-virus: KFA or Avast Free...

Thanks for sharing :)
 

WinXPert

Level 25
Thread author
Verified
Honorary Member
Top Poster
Malware Hunter
Well-known
Jan 9, 2013
1,457
I have problems with Shadow Defender starting slow so I switched back to Time Freeze

Here are the rest of my settings:
  • Cryptoprevent set at Maximum Protection (Good enough to stop malwares that resides in AppData, Temp, ProgramData, etc folders
  • RunBlock with customized blocking of programs I don't use or that might cause vulnerability issues including filenames (static) of known malware
    • Powershell
    • WScript/CScript
    • Internet Explorer
    • Filenames used by wcry/wcry2, brontok and other local worms
  • No Java. Javascript disabled (Browsers)
  • Autorun of external media is disabled
  • Startup trimmed to a bare minimum
  • AppBlocker in case I want to test if some apps starts with Windows but are not reported by Autoruns
  • Plus other blocking with Group Policies
This is the normal setting (6 days a week). System is frozen when I test new softwares. During my day-off when other workmate use the PC, I set UAC to default and Windows boots frozen.
 

WinXPert

Level 25
Thread author
Verified
Honorary Member
Top Poster
Malware Hunter
Well-known
Jan 9, 2013
1,457
Uninstalled (2/15/2018)
  • PotPlayer
  • Puffin Browser version
  • COMODO Firewall
Added
  • Windscribe
  • EaseUS Partition Master 12.8
  • 360 Total Security
  • HTTPS Everywhere (Chrome)

Need Backups:

System: Macrium Reflect
Data: Rollback Rx Home

I have an image backup with DriveImageXML.
Data backup? No need, I only have 2 docs of sales and repair services. Overkill to do a full backup.
Videos? I just burn them to DVDs.

Why UAC disabled?

Add ZAM Free.

Add HTTPS Everywhere.

Follow suggestions about backups.

Thanks for sharing.

UAC is disabled because I can't drag and drop when using Photoshop. Already have HTTPS Everywhere before reading your comment. ZAM :p
 

WinXPert

Level 25
Thread author
Verified
Honorary Member
Top Poster
Malware Hunter
Well-known
Jan 9, 2013
1,457
UAC: Default
360 Total Security: Disabled

Added
  • NoVirusThanks OSArmor v1.3 (Custom Settings)
  • NVT SysHardener
  • Process Lasso 9.0.0.426 (High Performance)
  • Chrome Extensions
    • 360 Internet Protection 2.1.31
    • Volume Booster 0.1.2
  • Emsisoft Emergency Kit (On-demand Scanner)
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top