using binisoft windows firewall control..

do these allowed and inbound/outbound connections look ok?

my question is especially about blocking -which i've read is myself.. but if it's too myself then why not just block that too? i notice programs like itunes for windows does that..

I've blocked all svchost.exe except from my ipaddress to my router addresss only.. it can use any port though..

-top picture
is recently allowed outbound..

Click image for larger version

bottom picture is recently allowed inbound..
Click image for larger version