12
返回列表 发新帖
楼主: 伯夷叔齐
收起左侧

今天装了V3,马上又换回V2,ZA太失败!!

[复制链接]
comicosmos
发表于 2007-10-29 22:50:09 | 显示全部楼层
原帖由 baerzake 于 2007-10-29 15:12 发表

我开了QQ测试8000依然是隐藏的。

145948

加信任再试试怎样
我是怕了,没时间玩虚拟机,正式版comodo再试试。
broodblade
发表于 2007-10-29 22:50:59 | 显示全部楼层
晕死了,还讨论P2P和GHOST对电脑的损害啊?。。。。我GHOSTB不知道多少次了也没见出过问题。再说即使除了问题再去买个硬盘不就搞定
e_roamer
发表于 2007-10-30 12:50:33 | 显示全部楼层
ZA太失败?那是楼主自己没有设置好
淡定如秋
发表于 2007-10-30 19:56:18 | 显示全部楼层
好象za要设置才能隐藏端口的。
pippo0423
发表于 2007-10-31 07:53:22 | 显示全部楼层
ZA默认全隐蔽的...程序SVCHOST连接0.0.0.0:135时候注意别通过就行...ZA过PC FLACK的端口测试还是小CASE
薄荷
发表于 2007-10-31 09:58:18 | 显示全部楼层
原帖由 伯夷叔齐 于 2007-10-29 02:50 发表
此外说点题外话,ZA7同时也显示我的113端口大开,但V2就没有此困绕,V3也是隐藏。。。。。哎。。。。ZA呀ZA。。。。。

113端口ZA是"适应性隐藏".如果楼主是在SHIELDS UP做的端口检查,不知道有没有看它的说明.如果不是在那里做的检查,那么看看以下内容:
Adaptive IDENT Stealthing Experimentation

The IDENT protocol's port 113 is quite problematical and tricky to stealth. If the user's port 113 is completely stealthed, connections to some remote Internet servers such as eMail, Internet Relay Chat (IRC), and others, may be delayed or denied altogether. For this reason, many NAT routers and personal firewalls do not attempt to stealth port 113, they settle for leaving it closed. One of the first things that caught my eye about the ZoneAlarm personal firewall was that it was clever about handling port 113: It "adaptively stealthed" the port.

To understand the following discussion, you should familiarize yourself with the details of the IDENT protocol and port 113. Please read port 113's Port Authority database page before proceeding.

Even after many years, the (free) ZoneAlarm personal firewall from Zone Labs is the only personal firewall to "adaptively" stealth port 113. Unlike any other firewall or NAT router (any of which could also do the same) this allows port 113 to be stealthed to any passing Internet scanners or probes, but "unstealthed" for any valid IDENT connection attempts originating from remote servers with which the user's computer is attempting to connect. (Since this could easily be done by any personal firewall or even NAT routers, I am hopeful that this feature might yet appear in other products.)

"Adaptive Stealthing" means that when a TCP SYN packet arrives to request a connection to your machine's port 113, ZoneAlarm checks, on the fly, to see whether your machine currently has any sort of "relationship" with the remote machine (such as a pending outgoing connection attempt). If so, the remote machine is considered to be "friendly" and its IDENT request packet is allowed to pass through ZoneAlarm's firewall. But if the IDENT originating machine is not known to ZoneAlarm as a "friendly" machine, the connection requesting packet is dropped and discarded, rendering port 113 stealth to all unknown port scanners. It's very slick.
在SHIELDS UP检查ZA 113端口的方法:
IDENT, ZoneAlarm, and ShieldsUP!

Even though your computer's web browser already has a relationship with the web server at GRC, our tests originate from a different "foreign" IP address. ZoneAlarm therefore drops incoming packets to port 113 from this different probing IP address and ZoneAlarm users see that port 113 is stealthed to passing Internet scans.

To demonstrate how ZoneAlarm (and perhaps someday other firewalls or NAT routers) selectively "unstealth" port 113 — but only for known "friendly" machines — we simply initiate a connection from your web browser to the ShieldsUP! scanning IP. Even though the connection attempt will ultimately fail (since there's no web server at the probing address), ZoneAlarm will note the outgoing attempt and will unstealth port 113 for subsequent probes.

Step One: Verify that our scan currently show port 113 stealthed. (You may wish to use one of the other remote port tests which will be faster than an entire 1056-port grid scan.)

Step Two: Open a secondary web browser window to initiate a connection to the probing IP. (Users of Microsoft Internet Explorer can press Ctrl-N to "clone" their current browser window.)

Step Three: In the secondary web browser window, click this URL or enter this address:

  1. http://4.79.142.206
复制代码


This second connection attempt will ultimately fail, but ZoneAlarm will notice the effort, which is all that's necessary.

Step Four: Finally, refresh the port probe window or repeat the scan to check your system's current port status. You should find that port 113 is no longer "stealth" to the probing IP address because you are attempting to connect to it and it has been determined to be "friendly".

Step Five: If you're curious, stop and close the secondary web browser window and periodically refresh your port probe window to see how long the "friendly" status persists before Zone Alarm returns the probing IP to unknown status and port 113 to full stealth.
如果不要ZA的这种适应性隐藏,那么在专家规则里写条阻止规则就可以了...

[ 本帖最后由 薄荷 于 2007-10-31 10:01 编辑 ]
薄荷
发表于 2007-10-31 10:30:37 | 显示全部楼层
PS:默认在ShieldsUP!检查113端口,ZA也应该是显示隐藏性的,除非之前对ShieldsUP!的服务器做出连接尝试,所以对ZA的测试结果很奇怪(当然我去测试过的ZA都不是版本7).....
fsr717af
发表于 2007-10-31 13:38:08 | 显示全部楼层
原帖由 remcn 于 2007-10-29 08:29 发表


见过牛的,没见过你这么牛的。

据中国传统《素女经》《房中术》等等经典专著所言,设 “玩的”爽的程度 + “被玩的”爽的程度 = 100 ,则 “玩的”爽的程序约等于 20;
据现代科技研究证实,♂跟♀ ...



这都哪跟哪了啊   举例子  举的太远了
ZA应该没那么失败吧 要设置的吧
还是等V3正式版吧
GoAhead
发表于 2007-10-31 18:51:04 | 显示全部楼层
偶还是坚持等待V3正式版,呵呵~~~~~~~~~~~~
阿群99
发表于 2007-11-28 09:21:10 | 显示全部楼层
我用COOMDO跟楼主一样的感觉!简单就好!
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-4-30 20:16 , Processed in 0.101524 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表