Is it possible to block network access by PID instead of process name?

Page 2 of 2 FirstFirst 12

  1. Posts : 471
    W7 Professional x64
       #11

    Sorry. I got distracted by our conversation and lost track of the original goal here. xP

    As far as I'm aware, there isn't such a way. I"ll do some digging, but I can't think of any commands that would allow such a thing.
      My Computer


  2. Posts : 126
    Windows 7 Ultimate 64-bit
    Thread Starter
       #12

    What prevents a virus from masquerading as svchost.exe? Windows runs so many of them I'd probably not even notice. Throw in the possibility of it being unblockable and you'd have a real mess!
      My Computer


  3. Posts : 471
    W7 Professional x64
       #13

    I think it's hard coded into the OS what can be run in svchost, but I really don't know the answer to that one.
      My Computer


  4. Posts : 126
    Windows 7 Ultimate 64-bit
    Thread Starter
       #14

    I wasn't talking about injecting .dll into scvhost, I meant like putting a file called scvhost.exe in a random directory to avoid the system32 folder permissions. It would blend into the list of processes and only be noticeable if you hit "Open File Location"
      My Computer


  5. Posts : 471
    W7 Professional x64
       #15

    True, I suppose that's possible, but with it not having been done, I'd guess there's a reason hackers haven't. That, however, is beyond my knowledge as far as interior functionality of the OS goes.
      My Computer


  6. Posts : 142
    Windows 7 Home Premium 64-bit SP1 Build 7601
       #16

    I just wanted to throw my 2 cents out there. I noticed in a earlier post, someone mentioned a program that can show what IP addresses are accessing your computer, there is a program called PeerBlock. PeerBlock is a program that is used to stop communication with IP Addresses but it can also show you what IP Address are "allowed" to access you computer under the "settings" tap. Hope this helps.
      My Computer


  7. Posts : 126
    Windows 7 Ultimate 64-bit
    Thread Starter
       #17

    Thanks, I think Comodo does basically the same thing but it was tedious to block new IP ranges. That other program sounds easier to use, so I'll check it out.
      My Computer


 
Page 2 of 2 FirstFirst 12

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 03:43.
Find Us