Hi,
No matter what if the access list if applied to the interface,it will be first thing Pix will lookinto.
Access list is matched first and the translation rule.So when the packet comes into the pix interface and we have access list applied to that interface,pix will first check if the traffic is permitted or denied ,If its denied then it will drop it and if permitted then it will check for the translation rule.
Important : access list is not checked for the return traffic ,pix looks into other things like translation,connection entry,sequence numbers etc. for the return traffic.
Check if the access list is applied properly on the interface
Hope this helps.
Tanveer