Gizmos Freeware Reviews  

Go Back   Gizmo's Freeware Forum > Debating Chamber > Security

Reply
 
Thread Tools Display Modes
Old 05. Dec 2010, 09:23 PM   #1 (permalink)
Senior Member
 
eyeb's Avatar
 
Join Date: Sep 2010
Location: Planet X
Posts: 487
Default Is active antivirus becoming the weaker link in security?

I feel like the traditional antivirus software is becoming the weak link in security setup. My setup is Avira antivirus, Sygate firewall, Sandboxie/Time Freeze, ComodoDNS and processhacker.

I rely on Avira to detect/stop viruses from running. If Avira doesn't catch a virus, I'll see some random process run from Process Hacker and know I have something questionable. At this point I can use my firewall to block access and use google/virustotal to look for possible virus. After this point, if I decide the file is risky, I can end it and delete the sandbox. After deletion, I don't have any more problems. If it occurred outside of sandboxie, I'd have installed it with Wondershare's Time freeze and a reboot takes care of it. Lastly I have a few back up images that I can use.

I've almost entirely given up on "cleaning" the virus because I find it quicker to just recover to a time before the infection. Any data that I'd have lost isn't too important or I'd have a backup of it lol. In total I don't lose much time from deleting a sandbox (few seconds) to a reboot (1-2 minutes) or using backup image (15-20 minutes). As opposed to doing a full system scan (5-10 minutes) as well as hunting around google to make sure it's all gone and seeing how other people cleaned it up.

Anyways while I still like Avira and won't give it up, I almost see no point in "needing" it. It's nice that it tells me something is a virus, but with software isolation/HIPS/backups to prevent system changes. I no longer care if I "have" a virus since it can no longer do much. Without access to the internet, it can only mess up the computer with no security/data leaks. With data backed up, I can recover from it quickly as well. The inactive virus file can just sit there till I do my weekly/monthly scans/cleanups and it'll be gone then.

Somewhat of a long post, but my point is does anyone else find themselves relying on other forms of technology to protect their computer instead of putting their AV at the front lines? I just feel like this is why linux was known to be "secure" but Windows can (or close to it) achieve that level of security without needing to "detect" anything.
eyeb is online now   Reply With Quote
Old 07. Dec 2010, 04:37 AM   #2 (permalink)
Senior Member
 
Av_Crazy's Avatar
 
Join Date: Mar 2010
Location: Mumbai
Posts: 488
Default

eyeb why use sygate still when other great firewalls are there to use ?
i know imaging is the best option nowadays but u can try tools like hitmanpro to scan on demand weekly instead of looking in processhacker to look for something out of the order
i mean for a noob like me seeing anything in processhacker will not make sense
__________________
My blog - http://attitudevivek.wordpress.com/
Av_Crazy is offline   Reply With Quote
Old 07. Dec 2010, 05:20 AM   #3 (permalink)
Senior Member
 
bo.elam's Avatar
 
Join Date: Nov 2009
Posts: 1,224
Default

Quote:
Originally Posted by Av_Crazy View Post
eyeb why use sygate still when other great firewalls are there to use ?
i know imaging is the best option nowadays but u can try tools like hitmanpro to scan on demand weekly instead of looking in processhacker to look for something out of the order
i mean for a noob like me seeing anything in processhacker will not make sense
I rarely use programs like that one but I know every process that runs
in my PC. When I open my task manager, I know right away whats in
there and what should be in there and I think you should do too. Its a
most, learn your processes, its not hard and its healthy. By the way, if
you were using Sandboxie, NOTHING out of order would show up in the
task manager. OK.

Bo
bo.elam is offline   Reply With Quote
Old 07. Dec 2010, 05:23 AM   #4 (permalink)
Senior Member
 
Av_Crazy's Avatar
 
Join Date: Mar 2010
Location: Mumbai
Posts: 488
Default

i know processes that run in my pc but still i feel secured when my tools come up clean
right now i am using ais's sandbox
i still have to learn a lot
i feel protected with applications but i think i will be able to feel secure with minimal applications once i have time to appreciate windows inbuilt protection
__________________
My blog - http://attitudevivek.wordpress.com/
Av_Crazy is offline   Reply With Quote
Old 07. Dec 2010, 05:40 AM   #5 (permalink)
Senior Member
 
bo.elam's Avatar
 
Join Date: Nov 2009
Posts: 1,224
Default

Quote:
Originally Posted by Av_Crazy View Post
i know processes that run in my pc but still i feel secured when my tools come up clean
right now i am using ais's sandbox
i still have to learn a lot
i feel protected with applications but i think i will be able to feel secure with minimal applications once i have time to appreciate windows inbuilt protection
We all have to learn a lot. I learn from you and everybody else that comes here
often. We all learn from each other.
I have not used AIS but the Sandbox should be OK. The concept of the Sandbox
is pretty much always the same, the difference has to do how is achieved. I like
Sandboxie a lot but other programs are just as solid. I think the key is, learning
how to use the Sandbox program, you choose, well.

Bo
bo.elam is offline   Reply With Quote
Old 07. Dec 2010, 05:45 AM   #6 (permalink)
Senior Member
 
Av_Crazy's Avatar
 
Join Date: Mar 2010
Location: Mumbai
Posts: 488
Default

i have tried to use sandboxie in the past but always didnt like it
maybe will try again in future
even i have learned a lot from everyone here...
i feel naked if im not using any security application coz i have alot of data to protect and im scared if infection comes in from anywhere and infects my other drives im screwed
__________________
My blog - http://attitudevivek.wordpress.com/
Av_Crazy is offline   Reply With Quote
Old 07. Dec 2010, 05:55 AM   #7 (permalink)
Senior Member
 
bo.elam's Avatar
 
Join Date: Nov 2009
Posts: 1,224
Default

Quote:
Originally Posted by Av_Crazy View Post
i have tried to use sandboxie in the past but always didnt like it
maybe will try again in future
even i have learned a lot from everyone here...
i feel naked if im not using any security application coz i have alot of data to protect and im scared if infection comes in from anywhere and infects my other drives im screwed
What is it that you did not like about SBIE? Sandboxie would protect your data
on a hardened sandbox. No doubt about it. Nothing will go out of your PC.
To me SBIE and NoScript are my pants and shirt.

Bo
bo.elam is offline   Reply With Quote
Old 07. Dec 2010, 06:10 AM   #8 (permalink)
Senior Member
 
Av_Crazy's Avatar
 
Join Date: Mar 2010
Location: Mumbai
Posts: 488
Default

ok i have installed sandboxie and uninstalled the virtualization feature of avast
i have 4 browsers on my pc
mozilla , chrome , opera and maxthon
i have chrome as my default browser
how do i make other browsers also run sandboxed when i click on dem ?
__________________
My blog - http://attitudevivek.wordpress.com/
Av_Crazy is offline   Reply With Quote
Old 07. Dec 2010, 06:16 AM   #9 (permalink)
Senior Member
 
bo.elam's Avatar
 
Join Date: Nov 2009
Posts: 1,224
Default

Quote:
Originally Posted by Av_Crazy View Post
ok i have installed sandboxie and uninstalled the virtualization feature of avast
i have 4 browsers on my pc
mozilla , chrome , opera and maxthon
i have chrome as my default browser
how do i make other browsers also run sandboxed when i click on dem ?
Right click on the browser icon in your desktop and click on "run sandboxed".

Bo
bo.elam is offline   Reply With Quote
Old 07. Dec 2010, 06:19 AM   #10 (permalink)
Senior Member
 
Av_Crazy's Avatar
 
Join Date: Mar 2010
Location: Mumbai
Posts: 488
Default

and il have to do that everytime ?
__________________
My blog - http://attitudevivek.wordpress.com/
Av_Crazy is offline   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off



All times are GMT +1. The time now is 10:09 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 PL2