|
Posted by Dan on October 27, 2006, 8:33 pm
If you were Registered and logged in, you could reply and use other advanced thread options Duane-Thanks for the in-depth response! I'll check out the links etc. I'm
not only concerned about blocking "malware", I also wonder why the hell
something like windows explorer has to "call home" when I'm looking for a
file on my hdd! And what the heck are all those "svchost.exe's" that keep
connecting? In addition to SECURITY, I also want some PRIVACY (I only trust
M$ slightly more than the malware goons ;-) and to keep unnecessary
background crap to a minimum!
Thanks again,
Dan
>
>
>> Is there any way to get IS 2007 to just DO WHAT I TELL IT, or do I have
>> to remove the damned thing?
>>
>
> "Firewall processing" or "Application Control" by another name, you should
> disable it if you can as it's worthless. It can easily be circumvented and
> defeated by malware or mis-configured. So, why be bothered with such
> things in a solution.
>
> You can use the tools in the link to look around for yourself, if you have
> an NT based O/S such as XP..
>
> long
>
>
http://www.windowsecurity.com/articles/Hidden_Backdoors_Trojan_Horses_and_Rootkit_Tools_in_a_Windows_Environment.html
>
> short
>
> http://tinyurl.com/klw1
>
> You can Active Ports. You can put a short-cut for AP in the Start-up
> folder and watch for dubious connections, along with using AP on a router
> basis. You can use Process Explorer to look at running processes and what
> is running with the process, the hidden processes.
>
>
http://pcworld.com/downloads/file/fid,23780-order,1-page,1-c,alldownloads/description.html
>
> If the machine has a direct connection to the modem, then harden the O/S
> to attack, like disable Client for MS Networks and MS File and Print
> Sharing off of the NIC or dial-up connection, as the machine has no
> business being in a networking situation on the Internet, along with other
> things you can do to the O/S.
>
> http://labmice.techtarget.com/articles/winxpsecuritychecklist.htm
>
> You can practice safehex.
>
> http://www.claymania.com/safe-hex.html
>
> I disabled "Firewall processing" or "Application Control" by another name
> long ago on the personal FW/packet filter running on this laptop that has
> s direct connection to the Internet.
>
> I look for myself as to what's happening or running on the machine, as
> "Firewall processing" or "Application Control" is worthless..
>
> Duane :)
>
>
>
|