simplewall
simplewall copied to clipboard
svchost containment
Checklist
- [X] I have used the search function to see if someone else has already submitted the same feature request.
- [X] I will describe the problem with as much detail as possible.
- [X] This issue only contains a request for one single feature, not multiple (related) features.
App version
3.8.2
Problem you are trying to solve
I want to contain and control svchost.exe.
Suggested solution
This was posted some time ago, but it appears no one has come up with a solution for it:
"Containing svchost" https://github.com/henrypp/simplewall/issues/516
Now, like others, I am blocking svchost.exe and allowing when needed which is kind of OK, but it is getting really annoying, yet not annoying enough to wholesale allow svchost.exe.
There has to be a solution to this. Like, if svchost.exe is started by "example program" allow svchost.exe for "some amount of time". Or, always allow it if started by some app you know and trust. But I cannot create a rule that works like this.
It almost seems like svchost was designed this way to annoy people to the point that they just allow it, which basically grants access to anything, anytime, to do whatever it wants.
If there is not a solution for this with SW, maybe someone found some other way? I can't find any decent options. It would be great if I could do this with SW. If I am missing something, let me know.
Thanks!
Screenshots / Drawings / Technical details
No response