So, you think you are secure and don't need precautions

Page 6 of 7 FirstFirst ... 4567 LastLast

  1. Posts : 76
    Windows 7 RTM
       #51

    UrbanBounca said:
    ]I stand corrected, however, I still don't trust IE. Out of the box, IE may be more secure, but is IE still more secure than a Firefox browser with access to the addon database?
    That I can't comment on, due to lack of experience. I certainly respect the hesitation to trust IE, given their track record, but it's important to realize IE8 is a completely different product than IE6 or IE7.
      My Computer


  2. Posts : 1,113
    windows 7 professional & ultimate 64bit laptops
       #52

    Tews said:
    pacinitaly said:

    can you please post your lines of defense
    I use a Dlink router with WPA2 encryption..Malwarebytes Anti-Malware, NIS2010, UAC on default settings, Sandboxie, Standard User Account... All are updated daily/weekly and run on a daily schedule... I also use Acronis True Image Home 2010 to make incremental backups to an off site drive.... I know that some may think this is overkill, but forewarned is forearmed...
    awesome.
    what are the programs I highlighted in red?
      My Computer


  3. jav
    Posts : 713
    Windows 7 Ultimate x86 SP1
       #53

    UrbanBounca said:

    I stand corrected, however, I still don't trust IE. Out of the box, IE may be more secure, but is IE still more secure than a Firefox browser with access to the addon database?
    It's hard subject,
    As Both of them can be hardened and secured with additional things.

    As you said firefox with addons.

    But Internet Exlorer 8 can be hardened aswell by GPO (Group Policy)

    And Internet explorer's advantage out of box are:
    cross site scripting protection
    good phising philter
    Smart filter which checks website or downloads.


    But browser comparison difficult topic.
    I personally use Google Chrome. Advantages:
    Speed
    Simplicity
    Internal sandbox

    And just because I like it
      My Computer


  4. Posts : 11,840
    64-bit Windows 8.1 Pro
       #54

    Tews said:
    pacinitaly said:

    can you please post your lines of defense
    I use a Dlink router with WPA2 encryption..Malwarebytes Anti-Malware, NIS2010, UAC on default settings, Sandboxie, Standard User Account... All are updated daily/weekly and run on a daily schedule... I also use Acronis True Image Home 2010 to make incremental backups to an off site drive.... I know that some may think this is overkill, but forewarned is forearmed...

    pacinitaly said:
    awesome...what are the programs highlighted in red?
    Norton Internet Security 2010 ( just testing this one at the present time...it may or may not stay ) Sandboxie runs your browser in an isolated environment separate from your OS/System....
      My Computer


  5. Posts : 76
    Windows 7 RTM
       #55

    Tews said:
    Norton Internet Security 2010 ( just testing this one at the present time...it may or may not stay ) Sandboxie runs your browser in an isolated environment separate from your OS/System....
    If you're going to browse the web without A/V, Sandboxie is a fantastic line of defense, provided you set it up to empty the sandbox each time you close the browser. Heck, I recommend it even if you do have A/V!
      My Computer


  6. Posts : 11,840
    64-bit Windows 8.1 Pro
       #56

    This is true, if its not set up correctly you may as well not have it at all...
      My Computer


  7. Posts : 1,113
    windows 7 professional & ultimate 64bit laptops
       #57

    pacinitaly said:
    awesome...what are the programs highlighted in red?
    Norton Internet Security 2010 ( just testing this one at the present time...it may or may not stay ) Sandboxie runs your browser in an isolated environment separate from your OS/System....[/QUOTE]


    thanks so much, I'm reviewing sandboxie!!!!

    Sandboxie - Video Reviews
      My Computer


  8. Posts : 1,289
       #58

    ultraplanet said:
    Dogz said:
    I read about a report in Maximum PC that out of 10 viruses 8 ran WITH UAC enabled so you do need antivirus.
    Can you provide a link to the report?
    He was talking about this article: SophosLabs Sets Out to Prove Windows 7 Has Some Vulnerabilities | Maximum PC

    I haven't used an AV in three years and still have not been infected, Vista's and 7's additions to the group and local security policy's made it possible for you to null the attack surface of Windows down to your preferences.

    Firefox will be my primary browser while they keep nightly-builds as it helps stop drive-by-download exploits, nightly builds help make it near impossible for anyone to find/exploit a flaw and figure out a way to infect your machine before a new build is released all while without you knowing about it.

    If UAC had a configuration wizard (like everything else ) that allowed us to specify our own execution level for an application and instead hash checked the program and the dll's it loaded against the preferences we set if indeed we set one for that program, it would then have some real teeth against a huge range of infections or attacks. Vista and Windows 7 include CardSpace in Control Panel and its a secure digitial 'wallet' thats more than capable of acting like a while-list for UAC but has yet been utilized

    The current implementation of only checking the executable for a requestedExecutionLevel flag set by the developer and willy-nilly allowing dlls to load into an elevated application and execute code is unacceptable, this is a known limitation since Vista RC1 and I have yet to hear a reason why it hasn't been fixed in two OS releases.
      My Computer


  9. Posts : 5,807
    Windows 7 Home Premium x64 - Mac OS X 10.6.4 x64
       #59

    I have read the entire thread and I agree with posts from both sides...

    Urbanbounca I agree with you on the need for common sense on the internet. It does wonders for protection against viruses and other malicious software.

    ...BUT pparks and our resident MVPs on Consumer Security (Jacee and Corrine) are also correct. I was sitting here trying to remember this good quote I found but I couldn't so I will blankly put it out there: No one is perfect...if we were, tech sites like SF, tech support in general, hell nothing in the world would go wrong or need to be fixed. I understand that your common sense has fared you well...mine has just the same BUT I also realize that my abilities are not perfect and at any time something might "sneak in"

    With this in mind I always run a low resource, very low maintenance anti-virus such as avast or MSE. They are non obtrusive, extremely low resources (especially Avast), and I always forget about them in the end. With that in mind...I have no reason NOT to run them as they are my fall back guys...

    Anti-virus doesn't have to be your shields: for me Common Sense 99%...anti-virus 1%
      My Computer


  10. jav
    Posts : 713
    Windows 7 Ultimate x86 SP1
       #60

    dmex said:

    I haven't used an AV in three years and still have not been infected, Vista's and 7's additions to the group and local security policy's made it possible for you to null the attack surface of Windows down to your preferences.

    Firefox will be my primary browser while they keep nightly-builds as it helps stop drive-by-download exploits, nightly builds help make it near impossible for anyone to find/exploit a flaw and figure out a way to infect your machine before a new build is released all while without you knowing about it.

    If UAC had a configuration wizard (like everything else ) that allowed us to specify our own execution level for an application and instead hash checked the program and the dll's it loaded against the preferences we set if indeed we set one for that program, it would then have some real teeth against a huge range of infections or attacks. Vista and Windows 7 include CardSpace in Control Panel and its a secure digitial 'wallet' thats more than capable of acting like a while-list for UAC but has yet been utilized

    The current implementation of only checking the executable for a requestedExecutionLevel flag set by the developer and willy-nilly allowing dlls to load into an elevated application and execute code is unacceptable, this is a known limitation since Vista RC1 and I have yet to hear a reason why it hasn't been fixed in two OS releases.
    Why you are worried about Drive-by-download exploits if you use group and local security policies.
    They can be configured to deal with Drive-by-downloads. And with the help of SRP it can be denied to execute even if downloaded somehow.

    About your next statement.

    Maybe AppLocker?
    Enforcing rules too all files including DLLs.

    I do agree with you that with AppLocker or SRP added with group and local security policies, there is not much need for resident real-time AV.
    Just on demand scanner to scan downloads.
      My Computer


 
Page 6 of 7 FirstFirst ... 4567 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 14:48.
Find Us