snipped-for-privacy@address.com (Joe Samangitak) wrote in news: snipped-for-privacy@posting.google.com:
Obviously, none of it makes a difference and it is all trash that has given you a false sense of security, especially that stealh crap. ;-)
Well, that's going to happen when a machine is compromised by a malware program designed to do it, since it's going to look for those things and take them down leaving the machine wide open to attack.
Well as long as you're running a host based FW that's running on the machine with the O/S, there is always going to be a chance that a personal FW/host based FW solution is going to be taken down. Secondly, malware detection programs are always going to be a dime short and a dollar late in the protection and can be easily be circumvented and defeated by malware as you can see, although I do run AD-Aware once in a blue Moon on the machines on as maintenance and a good AV.
Maybe, you should look into getting a standalone appliance such as a NAT router or a low-end FW appliance and implement it in the protection. Most NT routers are not FW(s) and cannot stop outbound traffic but are good enough in the home protection as long as one is not doing high risk things like port forwarding. Some do supplement a NAT router with PFW solution running on the machine for outbound protection. On the other hand, a low- end FW appliance that can stop inbound or outbound by port, protocol and IP and a few other things that a true FW does, one doesn't need all the bells and whistle trash running on the machine. One really doesn't need them with a good NAT router either.
Some say to *harden* the NT based O/S like XP to attack, which is not a bad thing. Also, some say to not run as Admin on the Internet and that again is not a bad thing, but let's face it how many actually do it. But the reality for me is that I do run with Admin rights and have done a couple of things in *hardening* area and that's about it.
The one thing I have done is not use IE as much as I use to and use Firefox. But to be honest, I still use IE at a good rate for convince. However, Firefox is my default browser that will start when clicking on links in emails or other such things that contain links. There is much less of a chance of being attacked that way using Firefox instead of IE.
I leave the machines up 24/7 365 both Windows and Linux machines because of the FW appliance I have sitting in front of the machines protecting the network. I would never do such a thing with a host based FW running on the machine and a direct connection with the machine on the Internet with a broadband connection.
The bottom line is that the buck stops with you in the protection and it really doesn't matter what is running on the machine or setting in front of the machine as malware can circumvent and defeat ALL OF IT if given the right conditions once you CLICK on something, which is not much on a Windows based O/S. If you do the right things in using your common sense like not clicking on unknown links and things of that nature, it will go a long way in the protection.
Duane :)