For several months I have been testing a "minimalist" security set-up on a computer that I use a lot, but an infection would not be cataclysmic. Here is my set-up...
Imaging -- My minimalist set-up's central "fail-safe" is Imaging. I make a full image on Mondays. I make differentials of that full image on Wednesdays & Fridays. I put those images on a 2tb external USB Hard Drive (HD). I always disconnect from the internet when imaging or restoring. I retain images until my HD is nearly full, then I replace the oldest weekly MWF set with the newest MWF set.
OSArmor -- This free security app is explained HERE. By my estimate, it is ~95% set-it, forget-it. IMO OSArmor is a ruthless, bad tempered, cynical, kick-gluteus, malware-eating ogre. I loooove it!
EXE Radar -- This is an anti-executable app primarily based on whitelisting/blacklisting & some excellent pre-sets. I couldn't find a thread for it here at Bleeping & I am unsure about the policy re linking to external URLs, so search it out yourself if you're interested.
Malwarebytes Anti-Exploit (MBAE) -- MBAE prevents exploits that target browsers & other apps that are internet facing. Hitman.Alert is an option. I'm sure there are others. MBAE is part of Malwarebytes Antimalware (MBAM), I think, but I use MBAE as a stand-alone beta. The betas are frequently updated & (so far) are available for free via MBAM's forum.
Router -- I have an excellent router that incorporates an excellent firewall. Of course, the Windows firewall is working for me, as well.
Antivirus -- I do not run any real-time antivirus app. Instead, I do frequent on-demand, cloud-based scans using Herd Protect. I also upload each & every thing I download to Virus Total for scanning.
Concept -- Shortly after I belatedly discovered Imaging software, I asked myself WHY I should have an antivirus patrolling all the time? After all, if a malware becomes evident, all I need to do is restore a clean image and Poof! suddenly it's yesterday and I'm sailing on a calm sea with a following wind. As stated earlier, I have used this concept on my walk-about computer for several months. So far I have had no real nasties so my concept is either perfect, or untested, or I've just been lucky.
PLEASE -- Your comments and critiques of my odd concept will be greatly appreciated.
Grace & peace to all,
Edited by bellgamin, 20 July 2018 - 03:12 AM.