Solved Are These Supposed To Be Blocked?

Discussion in 'All Software Support' started by sodapop554, Jul 9, 2012.


Thread Status:
Not open for further replies.
  1. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    Because of all what had been going on lately with my ZA Free Firewall, while I was scrolling through the list of its 90 secured programs I noticed something strange. There are two programs that have their trust level set to "Super" yet all incoming & outgoing options are set to be blocked.

    "smss.exe" located in C:\Windows\System32\smss.exe file size 110 KB &...



    "Windows Start-up Application" Located in C:\Windows\System32\wininit.exe version: 6.1.7600.16385 (win7_rtm.090713-1255) & it's file size is 126 KB.

    If these programs are legit & at the super trusted level then why are the: Outbound Trusted, Outbound Internet, Inbound Trusted & Inbound Internet levels set to "Deny"?
  2. Crush Administrator & Security Team Leader

    Manager
    PCHF Staff
    Message Count:
    39,825
    Likes Received:
    3,641
    My System
    Loading...
    sodapop554 likes this.
  3. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    I haven't gotten any popup messages for those programs to be allowed to access the net since I installed this latest, newest version of ZA. To be honest the only one's that have shown up at all were for the R.S client. So far for everything else it seems it's assumed it was safe & not really asked me. Should I set them to be allowed to access the internet or what?
  4. Google Advertisement

  5. Crush Administrator & Security Team Leader

    Manager
    PCHF Staff
    Message Count:
    39,825
    Likes Received:
    3,641
    My System
    Loading...
    If its not causing an issue, leave it be
    sodapop554 likes this.
  6. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    Alright, I can't remember for sure if these programs have ever asked for internet usage with prior ZA versions. I think they may have & I allowed it although again I'm not 100% sure ::notsure::. Should these programs ever need to access the internet at all?
  7. Crush Administrator & Security Team Leader

    Manager
    PCHF Staff
    Message Count:
    39,825
    Likes Received:
    3,641
    My System
    Loading...
    Not that I am aware
    sodapop554 likes this.
  8. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    Alright well I've gotta idea then & you tell me if I should bother with it. I can set all the options for these two to "Ask" so if they do attempt to access the internet it will let me know. Since then if it turns out they're not supposed to be needing the internet yet they ask for access then it could be assumed that I'm infected. Although that in itself would be a bit hard for me to believe with all the precautions I've taken.
  9. Crush Administrator & Security Team Leader

    Manager
    PCHF Staff
    Message Count:
    39,825
    Likes Received:
    3,641
    My System
    Loading...
    Asking for permissions is not a surefire way to say you are infected or not, but that logic seems somewhat sound
    sodapop554 likes this.
  10. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    True that's why I need to find out 1st whether or not either of those 2 programs ever require internet access. Do you think anyone else on these forums might know?

    So yeah if I can find out for sure that neither of them ever have to access the internet then if they ever do ask once I set it to ask from there I could assume that they're infected.
  11. Wolfeymole Elite PCHF Werewolf

    I've Donated!
    Tech Member
    Message Count:
    20,467
    Likes Received:
    1,287
    My System
    Loading...
    Just as an aside Soda, have you made sure that ZA has turned the Win 7 Firewall off?
    sodapop554 likes this.
  12. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    Yup!
  13. Crush Administrator & Security Team Leader

    Manager
    PCHF Staff
    Message Count:
    39,825
    Likes Received:
    3,641
    My System
    Loading...
    Like I said above sodapop, they shouldn't ever require internet access
    sodapop554 likes this.
  14. Wolfeymole Elite PCHF Werewolf

    I've Donated!
    Tech Member
    Message Count:
    20,467
    Likes Received:
    1,287
    My System
    Loading...
    The thing is Sodapop is that you're running round like a headless chicken trying to configure ZA with all its little foibles and nuances and asking all manner of questions.

    Don't you think this is more hard work than it's worth?

    Crush, along with the rest of the Security Team live, eat and breathe malware aspects and answers so you can rest assured that when they tell you something works, in this instance, the win 7 firewall, it will.

    In fact the win 7 firewall is so discreet that you'll probably get paranoid thinking..."Is it doing anything?".

    Trust me it does.
    sodapop554 and Crush like this.
  15. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    Alright well if you're sure then I'll set it to Ask for both of them & see what happens over the next week.

    *IMPORTANT EDIT: It should be noted that while I was changing it's access options to "Ask" each time it gave me a warning saying that this was a "System" process & was I sure that I wanted to change it. I'm not sure what this exactly meant although I guess I'll find out soon enough ::notsure::.
  16. sodapop554 Elite Member

    Elite
    Message Count:
    701
    Likes Received:
    7
    My System
    Loading...
    You're right it's just being that it's got it blocked makes me wonder why. I probably should just leave it alone although I'll sleep better if I set it to "Ask" & find out for sure. Then as I told crush if it never does ask for access then I'll know for 100% that it was just me being paranoid again. I guess you could say the more times I'm able to prove my paranoia wrong, the closer I get to overcoming it completely. You're all also probably right about the Win 7 Firewall too, it's just I've used ZA for so long it's become a habit. I do at times have to trust the Win 7 one though, for instance when I'm updating or re-installing my ZA I must have my Win 7 Firewall enabled instead.

Are These Supposed To Be Blocked?

Thread Status:
Not open for further replies.