Help - Search - Members - Calendar
Full Version: my antimalware arsenal
Gladiator Security Forum > SoftSphere Technologies Support Forums > DefenseWall HIPS
jjmonge
i am using DefenseWall Hips with SandBoxie and Spywall AntiSpyware with xp3 and D.E.P
for all programs.no antivirus or software firewall on.i hope i got a strong enough security.
what do you guys have for protection?any advises?thanks in advance
CogitoErgoSum
Hello jjmonge,

If you have not yet done so, please take a look at the following topic below.(*Note: Post#'s 3, 5, 7, 10, 18, 22, 25, 28 and 29 may be of interest to you).

http://gladiator-antivirus.com/forum/index...showtopic=71660

Hope this helps.


Peace & Gratitude,

CogitoErgoSum
jjmonge
QUOTE (CogitoErgoSum @ May 21 2008, 10:56 PM) *
Hello jjmonge,

If you have not yet done so, please take a look at the following topic below.(*Note: Post#'s 3, 5, 7, 10, 18, 22, 25, 28 and 29 may be of interest to you).

http://gladiator-antivirus.com/forum/index...showtopic=71660

Hope this helps.


Peace & Gratitude,

CogitoErgoSum


thank you CogitoErgoSum for the info it helps me alot.
now is my set not good or overkill?
what i do is that when i am online i use bothe DefenseWall which now is my favority
and along side with sandboxie second choice. i did not find any conflicts yet, so far so good.


jjmonge
QUOTE (jjmonge @ May 21 2008, 11:18 PM) *
QUOTE (CogitoErgoSum @ May 21 2008, 10:56 PM) *
Hello jjmonge,

If you have not yet done so, please take a look at the following topic below.(*Note: Post#'s 3, 5, 7, 10, 18, 22, 25, 28 and 29 may be of interest to you).

http://gladiator-antivirus.com/forum/index...showtopic=71660

Hope this helps.


Peace & Gratitude,

CogitoErgoSum


thank you CogitoErgoSum for the info it helps me alot.
now is my set not good or overkill?
and in the evening when my wife is at home i only run DefenseWall and disable SandBoxie and the other ones too.my wife finds sandboxie complicated so i got her a new toy(DefenseWall) yahoo!.gif
what i do is that when i am online i use bothe DefenseWall which now is my favority
and along side with sandboxie second choice. i did not find any conflicts yet, so far so good.

CogitoErgoSum
Hello jjmonge,

Although, I have not personally used the DefenseWall(DW) and SandBoxie(SB) combination, it appears that this set-up offers solid and strong protection without conflicts according to those who use it. Since you are already using DW which employs a policy restriction sandbox and SB which employs a virtual sandbox, I highly recommend that you seriously consider uninstalling SpyWall(SW) as it also employs a sandbox to minimize or eliminate potential conflicts. In short, running three sandboxes simultaneously is like waiting for a train wreck to happen which may result in less overall protection due to possible interference between security programs. Other than SW, you have a good set-up with both DW and SB. Lastly, if you are using a router with a NAT and SPI firewall you should be okay without a software firewall. On the other hand, if you are not using a hardware firewall, I highly recommend that you use the Windows firewall at the very least for basic inbound protection. Hope this helps.


Peace & Gratitude,

CogitoErgoSum
jjmonge
QUOTE (CogitoErgoSum @ May 22 2008, 12:21 AM) *
Hello jjmonge,

Although, I have not personally used the DefenseWall(DW) and SandBoxie(SB) combination, it appears that this set-up offers solid and strong protection without conflicts according to those who use it. Since you are already using DW which employs a policy restriction sandbox and SB which employs a virtual sandbox, I highly recommend that you seriously consider uninstalling SpyWall(SW) as it also employs a sandbox to minimize or eliminate potential conflicts. In short, running three sandboxes simultaneously is like waiting for a train wreck to happen which may result in less overall protection due to possible interference between security programs. Other than SW, you have a good set-up with both DW and SB. Lastly, if you are using a router with a NAT and SPI firewall you should be okay without a software firewall. On the other hand, if you are not using a hardware firewall, I highly recommend that you use the Windows firewall at the very least for basic inbound protection. Hope this helps.


Peace & Gratitude,
thanks i will listen to you and thanks for the wise advises.peace and gratitude. thumbsup.gif
CogitoErgoSum

jjmonge
QUOTE (jjmonge @ May 22 2008, 01:03 AM) *
QUOTE (CogitoErgoSum @ May 22 2008, 12:21 AM) *
Hello jjmonge,

Although, I have not personally used the DefenseWall(DW) and SandBoxie(SB) combination, it appears that this set-up offers solid and strong protection without conflicts according to those who use it. Since you are already using DW which employs a policy restriction sandbox and SB which employs a virtual sandbox, I highly recommend that you seriously consider uninstalling SpyWall(SW) as it also employs a sandbox to minimize or eliminate potential conflicts. In short, running three sandboxes simultaneously is like waiting for a train wreck to happen which may result in less overall protection due to possible interference between security programs. Other than SW, you have a good set-up with both DW and SB. Lastly, if you are using a router with a NAT and SPI firewall you should be okay without a software firewall. On the other hand, if you are not using a hardware firewall, I highly recommend that you use the Windows firewall at the very least for basic inbound protection. Hope this helps.


Peace & Gratitude,
thanks i will listen to you and thanks for the wise advises.peace and gratitude. thumbsup.gif
CogitoErgoSum



thanks i will listen to you and thanks for the wise advises.peace and gratitude.


CogitoErgoSum
Hello jjmonge,

You are very welcome. I am always happy to help out a fellow DW user.


Peace & Gratitude,

CogitoErgoSum
Kees1958
QUOTE (CogitoErgoSum @ May 21 2008, 11:21 PM) *
Hello jjmonge,

Although, I have not personally used the DefenseWall(DW) and SandBoxie(SB) combination, it appears that this set-up offers solid and strong protection without conflicts according to those who use it. Since you are already using DW which employs a policy restriction sandbox and SB which employs a virtual sandbox, I highly recommend that you seriously consider uninstalling SpyWall(SW) as it also employs a sandbox to minimize or eliminate potential conflicts. In short, running three sandboxes simultaneously is like waiting for a train wreck to happen which may result in less overall protection due to possible interference between security programs. Other than SW, you have a good set-up with both DW and SB. Lastly, if you are using a router with a NAT and SPI firewall you should be okay without a software firewall. On the other hand, if you are not using a hardware firewall, I highly recommend that you use the Windows firewall at the very least for basic inbound protection. Hope this helps.


Peace & Gratitude,

CogitoErgoSum



Sorry guys, but I have a clear opinion on using both a policy sandbox and an application based virtaulisation sandbox: useless, does not add any dimension to your protection:

In general:
Level 1 = Firewall
Level 2 = Policy based Threat gate mitigation like DefensWall (the best) or GeSWall

Reason why this is such a brilliant solution is that DefenseWall remembers the status of a downloaded file or program. You do not need to throw it away as in a virtual sandbox, because it remains chained to the strengthened limited user environment of DefenseWall. This is exactly the reason why virtual sandbox adds nothing, it only makes it more difficult to use Besides in 9 out 10 test DefenseWall proves to be stronger that SBIE, SfaSpace, GeSWall, Returnil etc, so that is a second reason not to bother.

Level 3 = an antivirus

In 99.99 of the situations this is easy and sufficient

My setup
Level 1: Default windows XP firewall
Level 2: DefenseWall
Level 3: ThreatFire (behavior blocker with AV check) with an extra rule for outbound protection

Looking at the scope of protection you notice that DW and TF will overlap. Point is that TF will take as many CPU cycles as an Antivurus. With the same system impact I now get an intelligent behavior blocker for free (on top of the AV check). Bonus of the bahavior blocker: when I allow a program to install (DW = run as trusted) I would like a second safety net, TF provides this (AV + Behavior blocker).
CogitoErgoSum
Hello Kees1958,

Your point is well taken and I share the same opinion about combining a policy restriction sandbox(DefenseWall) with a sandbox that employs file, folder and registry virtualization(SandBoxie). My original intention was to provide jjmonge with advice that worked with or around his existing security set-up. Otherwise, I would have recommended that he consider emulating any of the tried-and-true security set-ups that I have successfully used and deployed on both family and friends computers over the past year. These combinations include: DefenseWall + Windows Firewall, DefenseWall + Primary Response SafeConnect + Windows Firewall, DefenseWall + Norton AntiBot + Windows Firewall or DefenseWall + LinkScanner Pro + Windows Firewall. Possible food-for-thought alternatives to this list may include: DefenseWall + Mamutu + Windows FireWall, DefenseWall + Prevx 2.0 + Windows Firewall or DefenseWall + ThreatFire + Windows Firewall. Regardless of the set-up chosen I would emphasize the importance of browser and system hardening.


Peace & Gratitude,

CogitoErgoSum
jjmonge
QUOTE (CogitoErgoSum @ May 23 2008, 02:45 PM) *
Hello Kees1958,

Your point is well taken and I share the same opinion about combining a policy restriction sandbox(DefenseWall) with a sandbox that employs file, folder and registry virtualization(SandBoxie). My original intention was to provide jjmonge with advice that worked with or around his existing security set-up. Otherwise, I would have recommended that he consider emulating any of the tried-and-true security set-ups that I have successfully used and deployed on both family and friends computers over the past year. These combinations include: DefenseWall + Windows Firewall, DefenseWall + Primary Response SafeConnect + Windows Firewall, DefenseWall + Norton AntiBot + Windows Firewall or DefenseWall + LinkScanner Pro + Windows Firewall. Possible food-for-thought alternatives to this list may include: DefenseWall + Mamutu + Windows FireWall, DefenseWall + Prevx 2.0 + Windows Firewall or DefenseWall + ThreatFire + Windows Firewall. Regardless of the set-up chosen I would emphasize the importance of browser and system hardening.


Peace & Gratitude,

CogitoErgoSum


hi kees and cogito,maybe i was not to clear at the begining,this is the situation:
my wife hate SandBoxie:why she get confuse and i dont blame her
i like sandboxie.now
she loves DefenseWall why it is easy to use and strong ,now
to be fair with her i use sandboxie during the day time when she is working with defensewall off and
and when she comes from work in the evening defensewall is on and sandboxie off now
no more complains yourock.gif thank you Ilya for that.
now to be a litle extra protected i use layers like spywareblaster paid and spywall
with windows xp3 firewall on all the time and D.E.P on all programs.
so sandboxie and defensewall dont run at the same time,only part time.
note:i am becoming to fall in love with DefenseWall for the easy of use and still strong
plus customer support is terrific.thanks kees and cogito for the advises it helps me alot because i am
a novice. thumbsup.gif
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2010 Invision Power Services, Inc.