New Pornstar Interviews - [more]
Little Puck Interview

"I’m a woman of varied tastes. I can get off to a lot of different things. I enjoy switching it up."
All Forums > Tech Talk > Tech Talk Forum Page 45 > Fire walls x*%#@
Page 1 of 2 Last
AuthorPost
AztecGold11
Member


514 Posts
8/05
Posted - Nov 5 2005 : 1:50PM
I cannot tolerate a fire wall--get a zillion pop ups asking do I want to allow this--some of which I am afraid to say NO.
Tried McAfee, Zone Alarm, and others.

Is there a fire wall that is easy to use?

PL
Senior Member

God hates us all, you know it's true, God hates this place. - Slayer
1726 Posts
10/03
Posted - Nov 5 2005 : 5:11PM
They are all relatively easy to use, you just need to understand what it's asking. You should familiarize yourself with what programs you use need to and don't need to access the net.

I was once a persona who had no freaking idea what my FW was asking me so I taught myself. I can only suggest you do the same. Rolling on the net without will fuck up your computer FAST. Think I read somewhere a long while ago, a computer without a FW is compromised within 20 minutes of being on the net on a high speed connection.

In short. If you don't know what to answer the firewall with (a yes or no), chose NO. Every firewall can be reconfigured. So if you say NO and need to allow "IEXPLORER .exe" to access the net, then just take it out of the firewall rules and say YES when it pops back up, or just properly edit the rule itself.

I have had exp. with Norton's, McAfees (the worst by far in my book, both in FW and AV), Zone Alarm, Seagate and some others... I would suggest Norton as that's what I learned on and continue to use to this day. However some report they have problems with it... I never have.

Questions feel free to ask me. If you have Yahoo Messenger or ICQ, you can email me and we can swap contacts and if I'm online and you have questions you can ask away

AztecGold11
Member

514 Posts
8/05
Posted - Nov 5 2005 : 5:43PM
Thanks PL for the clarification.

I will try Nortons.

PL
Senior Member

God hates us all, you know it's true, God hates this place. - Slayer
1726 Posts
10/03
Posted - Nov 5 2005 : 7:50PM
No problem, that's what the forum is for. Help, right?

Feel free to email me if you have questions.

Drew Black
broken crankshaft

8009 Posts
9/99
Posted - Nov 6 2005 : 8:27AM
About two years ago a person couldn't finish a Windows 2000 install on a computer that was hooked up to an open (non-Firewalled) internet connection. Yes, the computer would be infected before you could even log into it for the first time.
 
willywilly
Member

Activated Member
662 Posts
2/05
Posted - Nov 6 2005 : 10:22AM
Just out of curiosity, what about being on the net with a non-high speed connection? i.e. dial-up.

Same risk?
Less risk? or no risk? why?


Thanks

AztecGold11
Member

514 Posts
8/05
Posted - Nov 6 2005 : 11:53AM
I just remembered that Service Pac 2 for Windows comes with a built in firewall--do I still need one?
PL
Senior Member

God hates us all, you know it's true, God hates this place. - Slayer
1726 Posts
10/03
Posted - Nov 6 2005 : 12:25PM
Dial-up is a little less at risk, but still at risk. Main thing about dial-up is it's slow, not what hackers are looking for.

Even on dial-up, I suggest a FW.

As for the built in FW... I'm a computer tech (changing jobs soon) and I see people day after day after day who rely on the M$ trash they THINK is a FW... Those people get infected with viruses VERY quickly and get hacked easily. The FW in XP is probably OK (at best) for a dial-up user. Even at that I wouldn't rely on it.

Drew Black
broken crankshaft

8009 Posts
9/99
Posted - Nov 6 2005 : 1:19PM
Same risk.

Most programs that scan for exploits do so based on IP addresses and TCP port numbers. These programs don't know whether the target is on dial-up or not. They're equal oppurtunity attackers.

AztecGold11
Member

514 Posts
8/05
Posted - Nov 6 2005 : 1:24PM
I just went to Amazon site and got confused. Norton has Personal Firewall (2006 version) AND Norton Internet Security (2006 version).

What is the difference? (Internet Security costs more than the Firewall.)

Robbie
Member

884 Posts
1/05
Posted - Nov 6 2005 : 2:00PM
Kind of related and I worry about it...I use AVG virus protection (cos its free!). Is this a bit similar, in that I should pay for anti-virus software, cos the free ones are no good? I know its only £15 a year, but I just hate paying for anti-virus protection, when I think I am getting it free.

Redish All-Star Supporter
Poetic Moderator

Long and Cursive road to the Ivory Pagoda in the province of Loraine
4076 Posts
12/03
Posted - Nov 6 2005 : 4:38PM
Norton internet Security includes their Firewall, Anti Virus, Anti Spam, and Parental controls.

If you have the others you can buy the Firewall by itself.

I used Zone Alarm for three years and have been happy so far.

@Robbie

The Anti-Virus you pay for includes more freatures than the free one. Norton, for instance, has an Auto-Protect feature that scans web pages as you load them to look for viruses before they make it to your computer at all. It has caught some trojans for me while surfing.

Its much easier to prevent infection than to clean it up afterwards.

Drew Black
broken crankshaft

8009 Posts
9/99
Posted - Nov 6 2005 : 4:55PM
I've always disliked Norton anti-anything software. McAffee is OK.

The Norton software makes so many changes to the sytem-level software configuration and drivers that many, many programs simply cannot function with Norton installed. My opinion, Norton sucks.

willywilly
Member

Activated Member
662 Posts
2/05
Posted - Nov 6 2005 : 5:09PM
Click here to read some positive comments about AVG from a couple years ago.

Here for some positive comments from last year, about four different free virus scanners, including AVG.

Here are some very recent comments from a couple weeks ago. This is a long article - 7 pages. After you read the intro, if you want to skip right to the part that mentions AVG, I found it here, on the third page .

I think that when looking for 'the best', it is like trying to hit a moving target - it is always changing. AVG seems to hang right in there as being pretty good though.

Robbie
Member

884 Posts
1/05
Posted - Nov 6 2005 : 5:14PM
Thanks willywilly!
 
Redish All-Star Supporter
Poetic Moderator

Long and Cursive road to the Ivory Pagoda in the province of Loraine
4076 Posts
12/03
Posted - Nov 6 2005 : 5:16PM
I have heard stories about Norton as well, but I have not had any problems running software or games.

<knocks on wood>

Robbie
Member

884 Posts
1/05
Posted - Nov 6 2005 : 5:28PM
I was gonna get (pay) for anti-virus software, but this is one of the reasons why! AVG might be shit, but a least I'm not paying for it - the big brands always seem to get criticised!


willywilly
Member

Activated Member
662 Posts
2/05
Posted - Nov 6 2005 : 5:29PM

PL and Drew - Thanks for replies re: dial-up.
I hobbied a fair amount some time ago. Before Win95 came out. Admittedly, I am not up to date anymore. That said, you can laugh if you want to, at this next question. :)

Back then, it was generally accepted that your computer could not be infected by a virus unless you executed the virus code on your machine. So, you had to be suckered into running the infected program. The .exe was usually named as if it was a game or some such. Therefore you were always safe if you didn't run unknown programs. Standard procedure was to scan them before executing.

The exception to the above was inserting an infected floppy in the drive and accessing it. Can't remember if you needed to execute code on the dirty floppy to get infected, or not. I just remember that there were other places on a floppy, not just files, that could harbor the infection.


Apparently the need to actually run an infected program is no longer true. From what you are saying, just being connected to the net makes one vulnerable.

Can you, without going too deep or wasting a lot of your time, give me the principle of how an infection can happen today?
Thanks.

Can you recommend any specific sites to read more about this on the net?
Thanks


Kperv
The Cuddler

*struck
(She slipped)

1818 Posts
1/04
Posted - Nov 6 2005 : 5:48PM
You either had to run an infected program off the floppy, or boot your machine with the floppy in the drive.
If the floppy had a boot-sector virus, your hard-drive would then be similarly blessed.
Windows programs and parts of Windows itself use something called COM to communicate with, and run code snippets inside each other. COM also works over the network (then it's called DCOM), and some viruses get in that way.
Also if you installed the IIS web server along with Windows 2000, that has some vulnerabilities.
Steve Gibson at grc.com seems to have an axe to grind with Microsoft, but his site is well worth checking out.
AztecGold11
Member

514 Posts
8/05
Posted - Nov 6 2005 : 6:33PM
This is great info everyone!
I have another ? -how do you know if you have a Trojan?
willywilly
Member

Activated Member
662 Posts
2/05
Posted - Nov 6 2005 : 7:02PM
I believe virus scanners are actually virus and trojan scanners.


Here is some interesting reading.

Here too .

List of AVG Free discussion forums . Some interesting things can be found here.


willywilly
Member

Activated Member
662 Posts
2/05
Posted - Nov 6 2005 : 7:09PM
That rings a bell. Makes sense too - booting from the floppy would would be the necessary thing to do it. Else it would be impossible to insert a floppy and scan it.
That sounds like a modern version of my old principle. The virus code still needs to be run on the victims machine, but now the Windows software downloads it and runs it all by itself, with no user needed to actually be dumb enough to execute it manually.

Is this close?

I'll do that.
Thanks

PL
Senior Member

God hates us all, you know it's true, God hates this place. - Slayer
1726 Posts
10/03
Posted - Nov 6 2005 : 8:09PM
You can also get viruses and trojans just visiting websites - thank MS for that one too.... However running a better browser helps prevent that. I suggest Mozilla Fire Fox - found here.

AVG is good, I have just stuck with Norton (Internet Security) as I get it from work for free

And I too have never had a problem with Norton. However, if your concerned about Norton, I would suggest Zone Alarm for your firewall and NOD32 for your AV. By far NOD32 is the best made. From their site:

And as different people have different opinions, I'm a HUGE anti-McAffee guy. I have seen it come through the place I work and have watched it fail against some very elementary viruses, as well as some nastier viruses like the W32.Netsky.
Who doesn't?

Edited by - PL on 11/6/2005 8:11:48 PM

Jeff @ IAFD All-Star Supporter
Webmaster IAFD.COM

931 Posts
6/00
Posted - Nov 6 2005 : 8:22PM
+1 Norton Sucks.

I've had good luck with the McAfee corporate products, but I don't like their consumer stuff so much since it tends to want to do the same type of stuff Norton does... th not nearly as bad.

As far as firewalls go, I'd point you to Steve Gibson's site for a good primer -- http://www.grc.com/securitynow.htm -- listen to or read Episode 3.

licker
Senior Member

Heretic, Iconoclast, Skeptic
1141 Posts
8/03
Posted - Nov 7 2005 : 6:34AM
It's close, but it is not all.

Websites can contain scripts that cause virus code to run on your computer - all you have to do is look at the web page.

Email can contain HTML code that installs a virus when you read the mail message.

Instant messengers such as MSN messenger can deliiver viruses when you receive a message. Often this virus will then send itself on to everyone on your friend list.

Applications such as Microsoft Word or Excel can host macro viruses which activate themselves when you look at the document they are hidden in.

Some email programs have a lot of hooks into other functions of your computer that leave it very vulnerable to virus attacks. I have heard that Microsoft Outlook is particularly famous for this.

I have not had any bad experiences with Norton. I use NAV, Zone Alarm and Spybot in conjunction with a NAT router. That has kept my computer virus-free for over 2 years. Before that, Norton antivirus alone kept it virus-free for another three years.

 
AztecGold11
Member

514 Posts
8/05
Posted - Nov 7 2005 : 8:47AM
I have Norton System Works 2005
Ad-Subtract (had to buy) I'm still getting pop-ups
Spybot Search & Destroy (I think it was free)

Now I need a Firewall
and anything else???


PL
Senior Member

God hates us all, you know it's true, God hates this place. - Slayer
1726 Posts
10/03
Posted - Nov 7 2005 : 10:00AM
You get pop-ups in IE or when your not even in a browser?
if in IE, I suggest Mozilla Firefox (again)

As for Sys Works, that won't help in the fight of ad/spyware.

Check out a program called " Ad-Aware" - it's free and should be used with Spybot.

Now from the sounds of things, I would format the HD and reinstall Windows with all the new goodies (some AV, a firewall, firefox, spybot and ad-aware).... I know a format and reinstall is a pain but it will clean you up so you can start without trying to fix an already messed up OS.

Funkola
Member

72 Posts
1/05
Posted - Nov 28 2005 : 9:16PM
IMHO, all Symantec s/w especially their firewall, are resource hogs. I've used Sygate's free personal firewall for over three years, and it has alerted me (i.e., unauthorized, outgoing TCP or UDP connection being established) when my system was infected with a Trojan.

FWIW, I've known several people who were hacked through unsecure UDP ports, which are the same ports utlizied for a lot of the online gaming

http://smb.sygate.com/products/spf_standard.htm

jamesn
Senior Member

Cambridge, MA
750 Posts
1/04
Posted - Nov 28 2005 : 9:24PM
set up your hardware firewall right, run kerio 2.15 or sygate as funkola suggested and you're chilling.
Funkola
Member

72 Posts
1/05
Posted - Dec 3 2005 : 2:15PM
From PC Mech newsletter dated 2 Dec 05:

"There's some discomforting news for Sygate and Kerio Firewall users this week. Apparently, Kerio has announced it will be discontinuing its free firewall on December 31st. This after Sygate (now owned by Symantec ) said they would be discontinuing their firewalls (both free and pro) on November 30th...this past Wednesday.

Now that the plug has been pulled on two major free firewalls, what's left? Well, if you're a fan of either Kerio or Sygate, I'd advise grabbing their free downloads ASAP. You should still be able to use them...they just will no longer be officially supported and developed by their respective companies. If you are familiar with older free Zone Alarm 4.5 a couple years ago, this is more or less the same situation--the software is still usable, but won't be updated or supported.

As for free available firewalls, there's still the newer free Zone Alarm, Jetco, and 8Signs. The only one I can really vouch for is Zone Alarm. You are, however, welcome to try the others to see how well they work."

PL
Senior Member

God hates us all, you know it's true, God hates this place. - Slayer
1726 Posts
10/03
Posted - Dec 3 2005 : 5:07PM
Another FW I have good luck with is Panda...

Seems like Symantec is the next Microsoft

kicker_f1
Member

USA
436 Posts
7/04
Posted - Dec 6 2005 : 12:42AM
Give ZoneAlarm firewall a try. I've been using it for many years. I tried Norton firewall for several months and didn't like it too much.
AztecGold11
Member

514 Posts
8/05
Posted - Dec 6 2005 : 10:34AM
Since I have the Norton Systemworks installed-I just bought Norton Personal Firewall.

Have not installed it yet.
(I figured since it was in the same family it would not cause problems.)

jamesn
Senior Member

Cambridge, MA
750 Posts
1/04
Posted - Dec 7 2005 : 9:36PM
funk-doc, i cried over that.

people---if you're using broadband--please rtfm with your router and set it up right security-wise--the reason to be using a software firewall is simply to see what's connecting from your computer, hardware's a better line of defense INTO your computer. it's a gross oversimplification, but you could almost use a port monitoring program to make sure you don't have stuff leaking from your trojan ports.

Hardware All-Star Supporter
All-Star Member

Your other left
14594 Posts
3/02
Posted - Dec 7 2005 : 9:47PM
That's because I am a GOD!!!!

Seriously, hardware vs. software really depends on your skill level and what you want to do on the Internet. If you plan on doing stuff that's likely to require allowing access to your computer, eg Internet gaming, then go with hardware. If you're computer savvy and avoid doing stuff that might allow bad stuff in through legit ports then ZoneAlarm is fine.

 
driven
Member

73 Posts
9/03
Posted - Dec 10 2005 : 11:50AM
AztecGold:

Please try Outpost Professional.

is a GREAT firewall. I've tried everything and LOVE this one. Little bit of a learning curve but once you figure it out you NEVER have to touch it. Has features where you can set where NO popups happen at all. Is called BLOCK MOST MODE. Anything you've given permission too is allowed access. Everything else is not. no pop ups. I can let you know what you need to allow so everything works good.

I too was firewall hating until I figured out outpost and started using it. now I never think about it anymore.

Funkola
Member

72 Posts
1/05
Posted - Dec 10 2005 : 10:11PM
Is NAT going to defend against a surreptitious program(s) residing on your machine establishing an outgoing TCP or UDP connection? BTW, best have Java disabled, nuff said other than I don't lose sleep over WEP/WPA vulnerabilities

Hardware All-Star Supporter
All-Star Member

Your other left
14594 Posts
3/02
Posted - Dec 10 2005 : 10:23PM
No, of course not. What of it?
licker
Senior Member

Heretic, Iconoclast, Skeptic
1141 Posts
8/03
Posted - Dec 12 2005 : 4:56AM
NAT is not a firewall.
Joey Starr
Senior Member

Still wanking after all these years.
8082 Posts
10/00
Posted - Dec 12 2005 : 5:17AM
Buy a Mac people!
Funkola
Member

72 Posts
1/05
Posted - Dec 30 2005 : 10:23PM
Who said it was
nietzsche
Deactivated User

5470 Posts
8/03
Posted - Dec 31 2005 : 11:34AM
I haven't had many problems with Norton since I've had it. If I were to change to another AV in the future, is it as difficult to uninstall as they say?
sarah_m3
Member

26 Posts
1/04
Posted - Jan 1 2006 : 7:29PM
My recommendation is to NOT install a software firewall. Like someone else posted, its a major pain having to acknowledge or deny every piece of internet traffic coming or going. Plus all the extra bloat that comes with some of these software packages -- no thanks.

The easiest solution is to just buy a hardware router. Even if you don't use wireless, its provides a shield that protects you from the nastiness. There are non-wireless routers out there, but they are sometimes more expensive than the wireless ones. Hackers will see the router, not the machines hooked up to it (at least not very easily). That is exactly what you want! Plus, you can buy them for under $40 nowadays.

Five steps to keeping your computer nice and clean:
1) Buy a router!
2) Use Firefox instead of Internet Explorer (will reduce spyware by a LOT)
3) Use a simple virus checker (I use basic McAfee since it comes free with my cable Internet Service. If you go with Norton, DONT get the "Internet Security" package. Again, tons of extra stuff you don't need. And its just not good software overall, you will run into problems, believe me. Just get Antivirus and save yourself money and some headaches).
4) Run a spyware checker periodically - I use Ad-Aware (www.lavasoftusa.com)
5) Do your Windows updates!!!

Edited by - sarah_m3 on 1/1/2006 7:32:28 PM

Edited by - sarah_m3 on 1/1/2006 7:34:52 PM

Hardware All-Star Supporter
All-Star Member

Your other left
14594 Posts
3/02
Posted - Jan 1 2006 : 8:46PM
You forgot an essential step - change the default password on the router.
de25ge
Member

yes I'm virilis
954 Posts
11/05
Posted - Jan 1 2006 : 9:14PM
What about using Windows with a restricted account for online surfing? And not as an Administrator...
sarah_m3
Member

26 Posts
1/04
Posted - Jan 1 2006 : 9:46PM
Won't make a difference really, that will just restrict software that can be installed by the user, or setting changes that can be made. Windows wasn't set up very well for that. Best to keep everyone as administrator. Well, thats my opinion anyway.
sarah_m3
Member

26 Posts
1/04
Posted - Jan 1 2006 : 9:48PM
Thats a good point. Also should change the SSID and set up a password so others can't get in.
de25ge
Member

yes I'm virilis
954 Posts
11/05
Posted - Jan 1 2006 : 10:01PM
I used Zone Alarm and was very satisfied, it carried me through the sasser times and prevented many software products to establish internet connections I didn't want.

The problem with windows in restricted mode is that many software development companies don't care for the programming standards so you have to regedit.

As for antivir software nothing beats Kaspersky...

Edited by - de25ge on 1/1/2006 10:01:59 PM

Hardware All-Star Supporter
All-Star Member

Your other left
14594 Posts
3/02
Posted - Jan 2 2006 : 1:07PM
If we're gong to get into the issue of wireless security then you're going to have to go a lot further than changing the SSID to protect your packets from being read off the street.
Kperv
The Cuddler

*struck
(She slipped)

1818 Posts
1/04
Posted - Jan 2 2006 : 1:59PM
+1
Consider setting up your system to use WPA-PSK with a nice long key, and enable AES encryption if at all possible.
Hardware All-Star Supporter
All-Star Member

Your other left
14594 Posts
3/02
Posted - Jan 2 2006 : 3:18PM
Thanks to The-Lurker-Formerly-Known-As-jamesn for pointing out sarah_m3's departure into uncharted waters.
Page 1 of 2 Last



Jump To: