Forum Home
Press F1
 
Thread ID: 106232 2010-01-01 00:07:00 Software firewall vs Router firewall. Colpol (444) Press F1
Post ID Timestamp Content User
844657 2010-01-02 20:16:00 Then we're back to here aren't we:
pressf1.pcworld.co.nz

The point I'm making is that NAT will stop things coming *in*, so if you trust your system (As Speedy and myself do) then there's little / no need for a software firewall, because anything that wants to come *in* must first have the connection initiated by an internal application going *out* :)

Besides, semi-decent malware is able to kill off A/V and Firewalls anyways :p See here for example: www.techspot.com
Chilling_Silence (9)
844658 2010-01-02 22:06:00 Besides, semi-decent malware is able to kill off A/V and Firewalls anyways :p See here for example: www.techspot.com

No wonder it disabled his Antivirus since he has NAV, and firewall since he has Windows Firewall. Both are pretty terrible.

If he was running Comodo with Defense+ he would have had a popup telling him the trojan was trying to execute and with an option to block it

This is a great example of why an updated antivirus is not that great anymore, and why HIPS and whitelisting is much more effective.
Agent_24 (57)
844659 2010-01-02 23:46:00 No wonder it disabled his Antivirus since he has NAV, and firewall since he has Windows Firewall. Both are pretty terrible.

If he was running Comodo with Defense+ he would have had a popup telling him the trojan was trying to execute and with an option to block it

This is a great example of why an updated antivirus is not that great anymore, and why HIPS and whitelisting is much more effective.
I agree, HIPS + firewall very important.

The only other thing to do is to use a virtual machine for dodgy browsing.If it gets hosed you can transfer any files off and restore its state. I think hak5 has an ep on this topic-infecting VMs to see changes in processes/folders
pkm (13527)
844660 2010-01-03 00:43:00 It's hard enough getting consumers to purchase a semi-decent router (They expect that the free ones are top of the line), let alone anything like what you're talking about.

In theory, nice. In reality...
Chilling_Silence (9)
844661 2010-01-03 01:58:00 What? Are you saying they expect their router should include HIPS? But this is not possible, with something like Comodo's Defense+ it must be software. Agent_24 (57)
844662 2010-01-03 04:20:00 Its worth mentioning the OS effects this topic.

The Vista firewall is better than the near worthless XP firewall, and the Win7 firewall is substantially better again.

The Win 7 firewall is very configurable, does profiles and logging etc, monitors inbound and outbound. It probably out performs some 3rd party solutions, so in combination with decent AV this is actually pretty good.

If you have Win 7 and a Router firewall, a 3rd party firewall is nearly certainly a waste of time and money for general users including those that P2P etc.
Battleneter2 (9361)
844663 2010-01-03 04:23:00 I agree with that. But firewalls will still not stop malware, and neither do Antivirus programs when the malware has just been released and the signatures have not been updated.

Which is why, a whitelist\HIPS etc is really the only effective way against new and unknown threats
Agent_24 (57)
844664 2010-01-03 04:28:00 Well who really cares. If you want a firewall, install it. If you dont, dont. Its your prob, if you get infected, for not installing one Speedy Gonzales (78)
844665 2010-01-03 04:33:00 Who cares? I certainly do.

I do not want the chance of a virus infiltrating my system, and causing me headaches and doubts over my computer's security wondering if I had fully removed the virus or not.
Agent_24 (57)
844666 2010-01-03 04:34:00 Well so be it. Install it. Not everyone feels like installing one. Or needs to Speedy Gonzales (78)
1 2 3