The firewall has blocked x intrusions so far [Resolved]

Hi!

So, my Comodo Internet security firewall says it’s blocked x intrusions so far.

Is this really hacking attempts, or just some arguably dangereus connections? If so, is it nothing to worry about if the number is great?

BTW: does this number reset ever? or does it just keep getting bigger?

Greets, EZ

Welcome ‘iZver’. :slight_smile:
It depends on what the intrusion attempts are. Can you provide a screen shot of your firewall logs?

The number will reset on your PC’s next reboot or by simply closing CIS down and restarting it.
But all logs will be saved even after reboot here: ‘Firewall’ > ‘View Firewall Events’ > ‘More…’ > ‘All the times’

:slight_smile:

Acctually I was hacked, and than reallized I need to step up my defenses a bit.
Go comodo! ;D

But if you can tell if intrusions were attempted from my log, I’d be really happy!

BTW: I renamed my htm log into fw.txt so I could have uploaded it.

Just rename it to *.htm and you can open it. Thank you for your help!

[attachment deleted by admin]

Nothing in your logs looks like a real attack on your PC.

I see you’re using UTorrent. You can use this guide to help you configure it correctly.

Also, make sure you have Firefox.exe set to “Web Browser” in your firewall policy. (Firewall > Advanced > Network Security Policy).

msnmsgr.exe can be set to “Outgoing Only”.

Now, for the ‘‘Windows Operating System’’ logs, I need to know: are you behind a hardware-firewalled router and what is you Stealth Ports wizard set to (Firewall >Stealth port Wizard).

:slight_smile:

Yeah, I used the guide, after exporting the log.
One thing is funny thoe:
I followed the first post in the guide, but my firewall still blocks utorrent’s connections. :S

Firefox is as a web browser

Is it important to set MSN to outgoing only? Can this prevent IP sniffing?

I have the last option: Block all incoming connections. Stelth ports to everyone.
Does this affect utorrent?

Thanks for your help! Cheers,
EZ

What do you have it set to now?
Outgoing only will allow all outgoing connections (your requests) from MSN but block incoming ones that want to connect to your PC using MSN. I have a majority of my apps set to this, including AOL instant messenger.

not sure about IP sniffing though. I guess it depends on who you are talking to on MSN. :-
[/quote]

If you use UTorrent frequently, the second option will suit your needs better:

[quote]
Alert me to incoming connections - stealth my ports on a per-case basis
You will see a firewall alert every time there is a request for an incoming connection. The alert will ask your permission on whether or not you wish the connection to proceed. This can be useful for applications such as Peer to Peer networking and Remote desktop applications that require port visibility in order to connect to your machine.

Alert me to incoming connections - stealth my ports on a per-case basis You will see a firewall alert every time there is a request for an incoming connection. The alert will ask your permission on whether or not you wish the connection to proceed. This can be useful for applications such as Peer to Peer networking and Remote desktop applications that require port visibility in order to connect to your machine.

Uh, oh!

So this is funny. As soon I set to this option, the utorrent port checker said it is OK. But isn’t this feature, just like block all, only that it asks you for exeption?

Well, utorrent works. You said I should use it, so it’s most probably secure. I am happy with that :smiley:

What do you have it set to now?

http://img155.imageshack.us/img155/7404/93792406.jpg

With “Alert me to incoming connections - stealth my ports on a per-case basis”, instead of blocking all outside requests by default, (which could conflict with P2Ps like UTorrent for example), CIS will instead, alert you every time there is a request for an incoming connection (e.g. from UTorrent) because applications like these sometimes require port visibility in order to connect to your machine.

Also, that MSN rule is fine as well. :slight_smile:

Okey!

Thanks a lot for your help. I know there are others who need help way more than I do, so I’ll stop bothering you. :wink:

Cheers, iZver

No, please. Any questions, just ask. :wink:

I’ll mark this as resolved.
PM an online moderator if you need it reopened.