Welcome
Welcome to vistafirewallcontrol

You are currently viewing our boards as a guest, which gives you limited access to view most discussions and access our other features. By joining our free community, you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content, and access many other special features. In addition, registered members also see less advertisements. Registration is fast, simple, and absolutely free, so please, join our community today!

The latest Betas/Releases

Re: The latest Betas/Releases

Postby VistaFirewallControl » Thu May 11, 2017 6:59 pm

In spite of we were unable to reproduce the problem, reviewing the code there was a point to polish found.
Actually there can be circumstances preventing the log from resetting.
We will make required fixes and offer you 8.2.0.30 to try probably tomorrow.
Please stay tuned and terribly sorry for the inconvenience.
VistaFirewallControl
Site Admin
 
Posts: 1479
Joined: Fri Mar 27, 2009 11:25 am

Re: The latest Betas/Releases

Postby Alice Springs » Thu May 11, 2017 7:13 pm

I'm looking forward to trying 8.2.0.30!
Alice Springs
 
Posts: 43
Joined: Wed May 10, 2017 10:59 am

Re: The latest Betas/Releases

Postby VistaFirewallControl » Fri May 12, 2017 3:37 pm

8.2.0.30 Free
http://sphinx-soft.com/download/prerele ... -Setup.exe
Please try and keep us informed on the results.
VistaFirewallControl
Site Admin
 
Posts: 1479
Joined: Fri Mar 27, 2009 11:25 am

Re: The latest Betas/Releases

Postby Alice Springs » Fri May 12, 2017 4:07 pm

I have downloaded 8.2.0.30 Free and will try it as soon as I can.
Alice Springs
 
Posts: 43
Joined: Wed May 10, 2017 10:59 am

Re: The latest Betas/Releases

Postby Alice Springs » Fri May 12, 2017 4:43 pm

I uninstalled the release version and installed 8.2.0.30.

SUCCESS! A request by System was denied and was recorded in the log file. I reset the log file and the file was empty.

I have imported my previous settings. When there is something in the log file, I will reset it and let you know the results. I don't know how long it will take for something to be written to the log file, though.
Alice Springs
 
Posts: 43
Joined: Wed May 10, 2017 10:59 am

Re: The latest Betas/Releases

Postby Alice Springs » Fri May 12, 2017 4:59 pm

I should have thought of this earlier. Instead of waiting for something to be written to the log file, I restored the default settings, which, of course, caused something to be written to the log file almost immediately. I then imported my previous settings viewed the log file to make sure it wasn't empty and reset the log file.

The log file was reset.
Alice Springs
 
Posts: 43
Joined: Wed May 10, 2017 10:59 am

Re: The latest Betas/Releases

Postby VistaFirewallControl » Fri May 12, 2017 6:36 pm

Thank you for trying.
The problem may be expected resolved.
VistaFirewallControl
Site Admin
 
Posts: 1479
Joined: Fri Mar 27, 2009 11:25 am

Re: The latest Betas/Releases

Postby sp4096 » Thu May 18, 2017 4:00 am

Dear VFC, what do you think about this event?
2017:05:15|22:08:34|Allowed|1|IPv4 TCP 104.16.25.216:80(49841)|Windows host process (Rundll32)|LanOnly Outgoing|C:\windows\system32\rundll32.exe
it surprised me. I'm still on 8.2.25. The IP resolves to cloudflare something.
sp4096
 
Posts: 101
Joined: Tue Apr 26, 2016 2:57 am

Re: The latest Betas/Releases

Postby VistaFirewallControl » Thu May 18, 2017 8:04 am

Surprised as well.

LanOnly was not customized so setup default?
LanOnly's ZoneResult=Disable?

There are 2 hypothesis at the moment.
- Antivirus hook, AVs may redirect all the traffic via an AV service locally.
So LanOnly under AV may permit worldwide.
Do you have an AV installed?

- Windows "entropy" is above the acceptable limit.
Actually memory (till not ECC) is the only PC resource without a way to control consistency.
Memory may lose its consistency slowly (memtests could miss that, the tests are tests for defects, not for long term stability).
It's not a fantasy, there is a lot of known cases. The only remedy is reboot as the only way to refresh\reload the memory with the consistent data.
The events are grabbed from WindowsFilteringPlatform/WFP. The firewall does not generate the events itself, it just displays the events. Memory inconsistency may happen there.
So the "allowed" may be a false alarm.
Could you try to reboot.
VistaFirewallControl
Site Admin
 
Posts: 1479
Joined: Fri Mar 27, 2009 11:25 am

Re: The latest Betas/Releases

Postby sp4096 » Fri May 19, 2017 2:13 am

VistaFirewallControl wrote:Surprised as well.

LanOnly was not customized so setup default?
LanOnly's ZoneResult=Disable?

Default LanOnly rules. ZoneResult=Disable
VistaFirewallControl wrote:There are 2 hypothesis at the moment.
- Antivirus hook, AVs may redirect all the traffic via an AV service locally.
So LanOnly under AV may permit worldwide.
Do you have an AV installed?

No AV. Not true really - Defender. No local proxies of any kind that I'm aware of. And mind you, I've never seen this before, so this seems like a weird event.
I looked over windows event log - 10 or so seconds before windows pushed some bloatware my way called Lenovo Companion. And, as usual, lots of backgroud tasks. This windows10 is intolerable, just too much going on :(

VistaFirewallControl wrote:- Windows "entropy" is above the acceptable limit.
Actually memory (till not ECC) is the only PC resource without a way to control consistency.
Memory may lose its consistency slowly (memtests could miss that, the tests are tests for defects, not for long term stability).
It's not a fantasy, there is a lot of known cases. The only remedy is reboot as the only way to refresh\reload the memory with the consistent data.
The events are grabbed from WindowsFilteringPlatform/WFP. The firewall does not generate the events itself, it just displays the events. Memory inconsistency may happen there.
So the "allowed" may be a false alarm.
Could you try to reboot.

Interesting thought about memory confusion, but above my skills to debug. Yes, this outbound connection is logged by the WinFilteringPlatform as permitted in the Security log of event viewer.
Rebooting is no issue. And had I known that an invisible update occured I would've rebooted. But I saw the log too late to really be able to react to it.

Please explain entropy and what is ECC?

If it ever occurs again, I'll try to catch things better.
sp4096
 
Posts: 101
Joined: Tue Apr 26, 2016 2:57 am

PreviousNext

Return to What is VistaFirewallControl, features

Who is online

Users browsing this forum: No registered users and 1 guest

suspicion-preferred