Best Free Firewall Protection

  • Thread starter Thread starter greccogirl
  • Start date Start date
G

greccogirl

Hi all;

I'm sick to death of all the spyware and junk on my computer. What is
the best free firewall to stop this stuff?

Thanks.
 
greccogirl said:
Hi all;

I'm sick to death of all the spyware and junk on my computer. What is
the best free firewall to stop this stuff?

Thanks.

I can recommend Sygate Firewall. It's free and relatively simple to set
up, yet does some pretty good protecting. Go to www.sygate.com.

Wes Martin...
 
dn. 20 09 (sobota), Wesley C. Martin napisal(a)
I can recommend Sygate Firewall. It's free and relatively simple to set
up, yet does some pretty good protecting. Go to www.sygate.com.

Sygate is good... If you have enough memory and cpu...
 
greccogirl said:
Hi all;

I'm sick to death of all the spyware and junk on my computer. What is
the best free firewall to stop this stuff?

Thanks.

Most spyware is not going to be stopped by a firewall.

You get the spyware (usually) by installing some program or little goodie
that contains it, like Kazaa or Google toolbar. Another way to pick up
adware and spyware is to be using Internet Explorer with Install On Demand
enabled.

The firewall can stop the spyware from calling home.

I use Kerio (www.kerio.com) but also in conjunction with a good AV program
(I use AVG) and regular running of Ad-Aware and Spybot-Search & Destroy.
 
Paul said:
Installed on my kids P133 with 32MB ram with no problems.

Well on my old 300 Mhz Petium II, the Sygate firewall runs a lot slower than
other free firewalls like Kerio.
I ended up switching... I cannot afford to run resource hungry applucations
on my old PII..

Rob
 
On Sun, 21 Sep 2003 10:10:29 -0400, Rob wrote...
Well on my old 300 Mhz Petium II, the Sygate firewall runs a lot slower than
other free firewalls like Kerio.

Maybe it also depends on what other apps you have running at the same
time.
 
Well on my old 300 Mhz Petium II, the Sygate firewall runs a lot slower than
other free firewalls like Kerio.
I ended up switching... I cannot afford to run resource hungry applucations
on my old PII..

For single PC users, one of the advantages of using Win 9x/ME is that
no firewall is required. I have a web page devoted to closing all
ports:

http://home.epix.net/~artnpeg/internet.html

I've been running Win 98 with DSL service on all day for years now,
and more recently, Win ME. No problems at all.

I don't waste resources on realtime av scanning either. I'm as cheap
with resources as I am with money :)


Art
http://www.epix.net/~artnpeg
 
For single PC users, one of the advantages of using Win 9x/ME is that
no firewall is required. I have a web page devoted to closing all
ports:

http://home.epix.net/~artnpeg/internet.html

I've been running Win 98 with DSL service on all day for years now,
and more recently, Win ME. No problems at all.

I don't waste resources on realtime av scanning either. I'm as cheap
with resources as I am with money :)


Art
http://www.epix.net/~artnpeg


I've come across a few windows exploits which were defeated
by a firewall before they were eventually patched.

As are many spyware apps and probably some trojans etc.

(I've removed a few supposed freeware apps after my
firewall has caught them sending out data.)


Here is a current example - a demo IE exploit
(or any other app that supports WebBrowser control >=5.5)

Warning clicking this link from a vulnerable app downloads
mal-ware.exe to the desktop and runs it.

It will however produce an outgoing firewall alert for
MSHTA.exe.


http://www.malware.com/greymagic.html

No doubt like me you already have this issue covered,
but many windows 98 users won't.
 
I've come across a few windows exploits which were defeated
by a firewall before they were eventually patched.

As are many spyware apps and probably some trojans etc.

(I've removed a few supposed freeware apps after my
firewall has caught them sending out data.)


Here is a current example - a demo IE exploit
(or any other app that supports WebBrowser control >=5.5)

Warning clicking this link from a vulnerable app downloads
mal-ware.exe to the desktop and runs it.

It will however produce an outgoing firewall alert for
MSHTA.exe.


http://www.malware.com/greymagic.html

No doubt like me you already have this issue covered,
but many windows 98 users won't.

But it's basically a wrong headed approach. You should address browser
vulnerabilities and exploits in the first place. Eradicating IE and
using Mozilla or one of its cousins is the way to address these
issues. Similarly, OE should be replaced with sane apps designed with
security in mind such as Pegasus and Free Agent.

The freeware firewalls leak like a sieve and cannot be depended on to
alert you to malicious apps trying to call out. The idea is to not let
malicious code to run in the first place since it can do as it wishes
and disable your software "protection". And I know it can be done in
practice since I've been doing it for years.

Firewalls shouldn't be depended on to protect you from malformed
packets and DOS attacks either. Win 98 and ME with all critical OS
patches pass the Exploits tests at PC Flank just fine. Back when I was
testing the freeware firewalls, I found that unpatched Win 98 was
vulnerable but Kerio in particular didn't mask the problem in the OS.
So again, it's an issue of addressing the basic problems rather than
hoping to mask them with additional software which might add it's own
new set of vulnerabilities.

In my view, only after you've done the "hardening" I've mentioned
might you consider adding additional software "protection". I like to
keep Sygate on hand since I like its traffic log. But I rarely use it
any more. No need for it. I do keep AdAware and Spybot up to date just
in case, but they never find anything either. Neither do my three DOS
antivirus scanners.


Art
http://www.epix.net/~artnpeg
 
I have ad-aware but I have to run it everyday, and there are more and
more spywares there.
 
Back
Top