Microsoft EMET security enhancement utility

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
Microsoft came out with a free utility called EMET. You can use it to control Windows security options, and to "harden" any programs you want to make more difficult to exploit.

EMET is currently at revision 2.0. It works on WinXP, Vista and Win7, and is available here:
http://www.microsoft.com/downloads/en/details.aspx?FamilyID=4a8a9171-5a11-4d58-aa34-95c855f69c39

I suggest this set of system options (WinXP will only have DEP available):


You can also protect any apps you want. Your "hit list" should include:
  1. your PDF software
  2. your Sun Java if you have Java
  3. every web browser on the system (64-bit Windows has two instances of iexplore.exe, by the way, one in Program Files and one in Program Files (x86))
  4. your office software apps (Word, Excel, PowerPoint, Publisher, etc or their OpenOffice counterparts)
  5. Your VoIP and IM programs
  6. your media players (QuickTime, VLC, WMP, RealPlayer, whatever)

This is how my app protection list looks at the moment:
 
Last edited:

warrax10

Junior Member
Sep 18, 2010
18
0
0
Wow thanks for this,

Couple of questions, I'll assume you are using it now:
1) What does "harden" mean? Is it adding another layer of permissions? Does is prevent scripts running or modifying of existing programs?

2) Does it run constantly in the background or does it just add another layer over the programs you select?

3) Once installed is it relatively hassle free?

Thanks again,
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
1) down this page a ways, they describe the mitigations in version 2.0. They're aimed at mitigating vulnerabilities in the code itself by applying modern mitigation techniques to stuff, whether it was compiled to work that way or not, basically.

2) As far as I'm aware, EMET just does its thing momentarily when launching a protected program, and then it's done. It doesn't have to run all the time.

3) Yeah, the main hassle I ran into was when I set DEP to "Always On" instead of "Application Opt-Out." I have a creaky old image-editing program that crashes if DEP is applied to it, so I'd allowed it an exception, but the "Always On" setting allows no exceptions. Other than that, it's been smooth sailing so far.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |