|
|
|
Do I leave TCP/IP open on firewall?
|
Original Message
|
Name: Craig Maas
Date: June 28, 2004 at 03:18:54 Pacific
Subject: Do I leave TCP/IP open on firewall? OS: IE CPU/Ram: Intel Pentium 4, 512 ram
|
Comment: I'm a relative novice. I had some viruses. "Trojan Hunter" is as good as they say...it cracks open all files, and then AVG sort-of says, "now I see where the viruses are". So they all are gone. But on the (free) Sygate firewall, I now have, ...it does not say what to leave "open"... On a forum they have, some are mentioned for leaving open,...
my question is what about the TCP/IP ...should I allow it to communicate. (Sygate forum says leave open): • Kernel • LSA Shell • Generic Host Process • Application Layer Gateway Service (for XP) • NDIS User mode I/O Driver • Services and Controller app (for XP and 2000) • ipnat.sys But the Sygate program has a choice-list that includes, (out of order): • Kernel • LSA Shell • Generic Host Process • Application Layer Gateway Service (for XP) • NDIS User mode I/O Driver .....TCP/IP Services Application .....MS DTC console program I don't want to “free up” the last two, if that opens my computer to ...whatever the little “blocks”, the sygate is doing, on it's moving-graph. I got a bunch of T.Horses that surprised me ...sometime... as I was setting up the firewall, or before.... All seems well now, stayin' clean, and the internet works...without the “last two” on the list, checked (open). If someone knows, what Sygate assumes I should know about the last two ...???...thank you in advance.
Report Offensive Message For Removal
|
|
Response Number 2
|
Name: Thresher
Date: June 28, 2004 at 19:36:39 Pacific
|
Reply: (edit)In case you are interested here ae some very good IE/firewall tests: Jason’s Browser Security Test:
http://www.jasons-toolbox.com/BrowserSecurity/ Gibson tests: http://www.grc.com/default.htm on Gibson I used LeakTest, Dcombobulator, unplugnpray, ShieldsUp...a lot of good info on this site. Start-up lists: http://www.pacs-portal.co.uk/startup_content.php http://www.sysinfo.org/startuplist.php http://www.windowsstartup.com/ http://www.2-spyware.com/ http://www.liutilities.com/products/wintaskspro/processlibrary/ http://www.2-spyware.com/files.php
I use Sygate, just put it on normal, and add what you want to allow in the settings section. TCP/IP is a 'language' that allows for communication between two points (short version), so you need it. Whatis your OS? Xp, Me, 2k, Win 98? Are you updated all the way around? Windows, IE, AV, SpyBot, Adaware (every 3 days on those two) Outlook (settingls affect IE). Stay updated, it's a good security tool. Thresher
Report Offensive Follow Up For Removal
|
|
Response Number 3
|
Name: Craig Maas
Date: June 28, 2004 at 21:07:04 Pacific
|
Reply: (edit)OK, tonight I'll look into things you have suggested, (perhaps will have to ask a question, then). I was avoiding 'tests' a bit novice-like. Because I listened to you forum answer(s) before, I how have Trojan Hunter...and will buy it. You also recommended Sygate, which worked out really good, thanks, (I'll check-off the TCP/IP check box). I really appreciate it... glad your there helping people. I have a new computer (2 months) with XP, (and DSL). Last night I checked for MS updates...it said I needed none. I do download patches from the them when told to by websites. I updated AVG a couple days ago and will set the reminder to 3 days. I don't have Spybot, perhaps I will get, (why not). I will update Adware often, keeping the icon handy. So, I'll be more knowledgeable, ready, and updated.
Report Offensive Follow Up For Removal
|
Use following form to reply to current message:
|
|

|