Computing.Net > Forums > Security and Virus > Do I leave TCP/IP open on firewall?

Do I leave TCP/IP open on firewall?

Reply to Message Icon

Original Message
Name: Craig Maas
Date: June 28, 2004 at 03:18:54 Pacific
Subject: Do I leave TCP/IP open on firewall?
OS: IE
CPU/Ram: Intel Pentium 4, 512 ram
Comment:


I'm a relative novice. I had some viruses.
"Trojan Hunter" is as good as they say...it cracks open all files, and then AVG sort-of says, "now I see where the viruses are".
So they all are gone.
But on the (free) Sygate firewall, I now have, ...it does not say what to leave "open"...
On a forum they have, some are mentioned for leaving open,...

my question is what about the TCP/IP ...should I allow it to communicate.

(Sygate forum says leave open):
• Kernel
• LSA Shell
• Generic Host Process
• Application Layer Gateway Service (for XP)
• NDIS User mode I/O Driver
• Services and Controller app (for XP and 2000)
• ipnat.sys

But the Sygate program has a choice-list that includes, (out of order):
• Kernel
• LSA Shell
• Generic Host Process
• Application Layer Gateway Service (for XP)
• NDIS User mode I/O Driver
.....TCP/IP Services Application
.....MS DTC console program

I don't want to “free up” the last two, if that opens my computer to ...whatever the little “blocks”, the sygate is doing, on it's moving-graph.
I got a bunch of T.Horses that surprised me ...sometime... as I was setting up the firewall, or before....
All seems well now, stayin' clean, and the internet works...without the “last two” on the list, checked (open).
If someone knows, what Sygate assumes I should know about the last two ...???...thank you in advance.


Report Offensive Message For Removal


Response Number 1
Name: vipergg
Date: June 28, 2004 at 15:23:48 Pacific
Reply: (edit)

If you want to be able to do anything you need to have it open . :-)


Report Offensive Follow Up For Removal

Response Number 2
Name: Thresher
Date: June 28, 2004 at 19:36:39 Pacific
Reply: (edit)

In case you are interested here ae some very good IE/firewall tests:


Jason’s Browser Security Test:

http://www.jasons-toolbox.com/BrowserSecurity/

Gibson tests:

http://www.grc.com/default.htm

on Gibson I used LeakTest, Dcombobulator, unplugnpray, ShieldsUp...a lot of good info on this site.


Start-up lists:
http://www.pacs-portal.co.uk/startup_content.php
http://www.sysinfo.org/startuplist.php
http://www.windowsstartup.com/
http://www.2-spyware.com/
http://www.liutilities.com/products/wintaskspro/processlibrary/
http://www.2-spyware.com/files.php

I use Sygate, just put it on normal, and add what you want to allow in the settings section. TCP/IP is a 'language' that allows for communication between two points (short version), so you need it.

Whatis your OS? Xp, Me, 2k, Win 98? Are you updated all the way around? Windows, IE, AV, SpyBot, Adaware (every 3 days on those two) Outlook (settingls affect IE). Stay updated, it's a good security tool.

Thresher


Report Offensive Follow Up For Removal

Response Number 3
Name: Craig Maas
Date: June 28, 2004 at 21:07:04 Pacific
Reply: (edit)

OK, tonight I'll look into things you have suggested, (perhaps will have to ask a question, then). I was avoiding 'tests' a bit novice-like.

Because I listened to you forum answer(s) before, I how have Trojan Hunter...and will buy it.

You also recommended Sygate, which worked out really good, thanks,
(I'll check-off the TCP/IP check box).

I really appreciate it... glad your there helping people.
I have a new computer (2 months) with XP, (and DSL).

Last night I checked for MS updates...it said I needed none. I do download patches from the them when told to by websites. I updated AVG a couple days ago and will set the reminder to 3 days.

I don't have Spybot, perhaps I will get, (why not). I will update Adware often, keeping the icon handy.

So, I'll be more knowledgeable, ready, and updated.


Report Offensive Follow Up For Removal







Use following form to reply to current message:

   Name: From My Computing.Net Settings
 E-Mail: From My Computing.Net Settings

Subject: Do I leave TCP/IP open on firewall?

Comments:

 


  Homepage URL (*): 
Homepage Title (*): 
         Image URL: 
 
Data Recovery Software




Have you ever used OpenOffice?

Yes, as my main suite.
Yes, occationally.
Yes, but only once.
No, never.


View Results

Poll Finishes In 5 Days.
Discuss in The Lounge