Block Windows to connect to Akamai Technologies. This rule is intended for privacy purposes. It can be removed if it causes connectivity problems with associated Microsoft services.
WFC - Microsoft Internet Data Center 213.199.160.0-213.199.191.255
Block Windows to connect to Microsoft Internet Data Center. This rule is intended for privacy purposes. It can be removed if it causes connectivity problems with associated Microsoft services.
WFC - Microsoft Limited 94.245.64.0-94.245.127.255
Block Windows to connect to Microsoft Limited. This rule is intended for privacy purposes. It can be removed if it causes connectivity problems with associated Microsoft services.
WFC - VeriSign Global Registry Services 199.7.48.0-199.7.63.255,199.16.80.0-199.16.95.255
Block Windows to connect to VeriSign Global Registry Services. This rule is intended for privacy purposes. It can be removed if it causes connectivity problems with associated Microsoft services.
Thank you very much for your willing to support our project. If the donation doesn't work you may try a normal payment to see if it works or maybe you can find a friend which can donate for you and we will update our database with your info. If you choose any of these two methods instead of the normal donation script from our website, make sure you send us an email about it to update our database. Anyway, try a normal payment to *********@binisoft.org. If this works, then send us an email and we will update our database and send you your account details. However, until you get registered, we can send you an activation code which can activate a copy of WFC on one of your computers. This activation code will work with your current Windows installation. If you will reinstall your operating system, this activation will no longer work. . Send us the Installation ID from the About section of the software and we will send you back the corresponding activation code.
>Windows Firewall Control v.4.4.0.0 > >Important: >1. Starting with this version, WFC is targeted to use .NET Framework 4.5. >It improves memory management and works faster with the newest .NET Framework 4.5.2 release. >The previous WFC releases were compiled to use .NET 4.0 which is outdated. > >Windows ファイアウォール コントロール v.4.4.0.0 > >重要。 >1. このバージョンから始まる WFC は、.NET Framework 4.5 を使用して対象とします。 >メモリ管理を改善し、最新の .NET Framework 4.5.2 リリースでより速く動作します。 >以前の WFC リリースは時代遅れである .NET 4.0 を使用するコンパイルされました。
√ Microsoft .NET Framework version 4.5 √ Compatible with all x86 and x64 versions of Windows 10, 8.1, 8, 7, Vista, Server 2008, 2012. √ Windows Firewall service is required to be enabled for Windows Firewall Control to run. √ DNS Client service is required to be enabled for the notifications to work properly.
場所 C:\Windows\system32\svchost.exe 名前 WFC - Microsoft Limited 方向 送信 接続 遮断 説明 Block Windows to connect to Microsoft Limited. This rule is intended for privacy purposes. It can be removed if it causes connectivity problems with associated Microsoft services.
- New: Added a new button in the View section to launch Connections Log from Rules Panel and vice versa. The keyboard shortcut Ctrl+Tab can be used to switch between these two windows too. If one is closed, Ctrl+Tab will launch the other one. - Improved: The list of custom authorized groups from the Security tab is now sorted alphabetically on saving. Unsorted inserted entries will be sorted on the next reopening of the Main Panel. - Fixed: Connections Log can be launched from the defined hotkey even if the program is locked with a password. - Fixed: Clear Log confirmation dialog appears in the center of the Rules Panel window instead of the Connections Log window.
What's new in version 5.4.0.0 (01.08.2018) - New: The notifications system is now available for free and the program does not require activation anymore.
- Fixed: After some Windows updates, the Connections Log may remain empty and the notifications might not be displayed anymore. The auditing settings will now be reapplied on each WFC startup to ensure the functionality. - Fixed: Search term is removed in Connections Log when the Refresh list is done.
- New: The user interface was updated to follow the Malwarebytes theme. - New: A new Dashboard tab was added which displays the state of Windows Firewall, the status of inbound and outbound connections and the connected Location. - New: Multi language support was added in the Options tab. All available translation files are extracted automatically to a subfolder named "lang". Switching the language of the user interface is now easier. - New: The user manual was migrated from .chm to an online .pdf file. It can be opened by using the new question mark buttons from the user interface and also by pressing the F1 key. - Improved: When changing the profile in WFC, if the inbound connections are allowed, which is a security risk, they will be set to be by default blocked. If they are already set to be blocked or all blocked (through WFwAS) then their status will be preserved. - Fixed: The profile reported in WFC might not be accurate on the first run if the outbound filtering has different values for different locations. - Fixed: Pressing on "Check this file" in Rules Panel or Connections Log when the program path is empty generates an exception in WFC log. - Fixed: The connected location displayed in WFC is displayed as 'VPN' instead of 'Public' when multiple network adapters are active. - Fixed: Checking for updates is made through http instead of https.
- Fixed: The installer can't continue if another security software is registered in Windows Security Center with firewall capabilities. - Fixed: In some cases, the connected location is reported Public instead of Private. - Fixed: The uninstall process does not always remove all files. - Fixed: The tabs width in Main Panel has a fixed width which prevents the tab name to be displayed completely. - Improved: If the PDF user manual is downloaded and placed in the same folder as wfc.exe, when launching the user manual the local file will be opened instead of the PDF file located on the web site.
- New: The notifications for svchost.exe include now the service name which generated the blocked connection under the Name. Creating a rule for svchost.exe from the notification dialog will always include the service in the newly created rule. - New: Connections Log has now a new column for the Service name which is used by svchost.exe. The lookup is made based on the ProcessID, therefore for older entries, the exact service name can't be detected. - Fixed: The width of some strings from Dashboard was extended to display properly when a different language is used. - Fixed: Rules properties are not updated in Rules Panel if they are open while changing the user interface language. - Fixed: Some group names are not displayed correctly in Rules Panel.
What's new in version 6.1.0.0 (04.01.2020) - New: Added keyboard shortcuts for the Notification Dialog. For more information please refer to the 'Keyboard shortcuts' section from the user manual . - New: Added 'Select All' context menu item for all text boxes. - Fixed: Due to the latest SSL improvements on the hosting server, the check for a new version does not work anymore. - Fixed: During install/update, after the UAC prompt, for 1-2 seconds is displayed the previous page instead of the progress page. - Fixed: The uninstaller does not work if the WFC service can not be initialized. - Fixed: In some rare cases, the uninstaller may hang during the uninstallation. - Fixed: Sorting by Time Generated column in Connections Log does not work.
CK's Technology News @CKsTechNews ・ Feb 11, 2019 You use WFC as firewall GUI for Windows? Well, bad news since @Malwarebytes took over it, they added Telemetry (without the option to disable it), just delete these three files to get rid of it:
mbcut(32).dlls are used to generate a unique machine id based on os architecture. These are the same in any Malwarebytes products. Newtonsoft.Json.dll is used to create the JSON data which is sent to Malwarebytes servers.
Windows UpdateもConnected User Experiences and Telemetryも どちらもWindows サービスのホスト プロセス (svchost.exe)なもんだから、 振り分けができないんだな 宛先アドレスも共通のものがあったりして、後者のみをブロックできない しかもsvchost.exeの通信は意図的に止めようとしないとFWをすり抜けちゃうみたい
- Improved: Remote addresses content is now expanding to fill the available space in Properties dialog so that more content can be displayed. - Fixed: Properties dialog is not displayed anymore if two or more Windows services have the same Display Name. - Fixed: The service name for svchost.exe notifications is detected only for the Windows services that are already running when WFC service starts. If a Windows service is started after, the notification will not detect the Windows service that triggered the notification. - Fixed: Unhandled exception is logged if certain files are missing from the installation folder. - Fixed: When editing a rule details in the Notification dialog, the rule name can be set as one or several empty spaces. - Fixed: Properties dialog can't apply changes to a rule if the path of the rule is not accessible or not found. This limitation was removed. Also the tooltip was updated since a rule with red text does not always mean the file is not found, it can also mean the file is not accessible (file located in a folder of another user account, encrypted location, etc). - Fixed: In Notification dialog the text (Yes, No, Not valid) under Signed property is not localized. - Removed: The x button from text boxes that is clearing their content.
- Improved: Detecting invalid rules is now made at service level instead of UI level, meaning that the rules defined for files that are not accessible are not detected anymore as invalid. - Fixed: Connections Log loading time increased after last update if Security log contains older entries for processes that are not running anymore.
- New: Added a new entry to Direction combo box in Connections Log. The user can see now both inbound and outbound entries in the same results list. - Improved: Updated the Time generated column in Connection Log to display the time zone. - Improved: Search in Connections Log and Rules Panel was extended to include the service column. - Improved: The x button from text boxes that is clearing their content is back. - Fixed: Learning Mode does not work anymore when language is not set to English. - Fixed: When multiple network adapters are found the Location displayed in Dashboard panel is Public instead of Private. - Fixed: When importing the user settings, restarting the application fails if it is executed only with standard privileges.
- New: The notification dialog displays now the count of blocked attempts for each program that is notified. - Improved: The keyboard shortcuts to switch between notifications were changed in notification dialog to Ctrl+Left and Ctrl+Right. - Fixed: Privilege escalation vulnerability was fixed in WFC service. - Fixed: Some group names are not displayed correctly in Rules Panel.
- New: Global hotkey for toggling between Low and Medium Filtering profiles. - Improved: Replaced some user actions confirmation dialogs with Windows notifications. In Windows 10 they will be displayed in the notifications area and on Windows 7 as tray icon balloon notifications. - Fixed: The ULRs used for the services from Tools tab were updated to use https instead of http.
- Improved: The logic of disabling unauthorized rules was changed to update the rule description instead of the rule name to avoid repeated rule creation as a result of different rule name. - Fixed: The programs executed from Tools tab can be used for privilege escalation. For standard user accounts, these tools will prompt the UAC dialog so that only administrators can launch them with full privileges. - Fixed: Creating new rules for files with empty file description creates new rules with an empty starting space. These rules can't be modified from WFwAS. - Fixed: Icon from profile switch notification is not the correct one.
- Improved: The logic of disabling unauthorized rules was changed to update the rule description instead of the rule name to avoid repeated rule creation as a result of different rule name. - Fixed: The programs executed from Tools tab can be used for privilege escalation. For standard user accounts, these tools will prompt the UAC dialog so that only administrators can launch them with full privileges. - Fixed: Creating new rules for files with empty file description creates new rules with an empty starting space. These rules can't be modified from WFwAS. - Fixed: Icon from profile switch notification is not the correct one.
- New: Redesigned the global hotkeys to support more combinations. - Fixed: WFC installer was updated against exe hijacking vulnerability. - Fixed: Moving a temporary rule to a different group name does not clear the outdated description.
- New: Added support to change the notifications mode from the system tray context menu and from CMD line. They are available only when Medium Filtering profile is the current selected profile. - New: Added support for negative search in Rules Panel and Connections Log. Use "!" in front of a search term to exclude it. - Fixed: Locking/unlocking the application does not work correctly on Windows 11.
- New: Added 3 new providers for WHOIS queries in Tools tab. - Improved: Removed file extension validation in Properties dialog to allow more rules to be created, especially for Windows Subsystem for Linux. - Fixed: Rules Panel hangs if a program path is a network path. - Fixed: The system tray context menu for notifications mode is not updated when changing the language.
- New: Added 3 new providers for WHOIS queries in Tools tab. - Improved: Removed file extension validation in Properties dialog to allow more rules to be created, especially for Windows Subsystem for Linux. - Fixed: Rules Panel hangs if a program path is a network path. - Fixed: The system tray context menu for notifications mode is not updated when changing the language.
- New: Added compatibility with Smart App Control from Windows 11. The process wfc.exe was renamed to wfcUI.exe. - Improved: Replaced WCF with GRPC for inter process communication. WFC requires now NET Framework 4.6.2 or a newer version. - Improved: Global hotkey which can toggle between Low and Medium profiles can now toggle between all profiles. - Improved: User settings are now applied per user account. Only the settings from Security tab are still global per machine. - Fixed: Main Panel opens multiple times if you press fast on the tray icon. - Fixed: Secure Boot is not enabling High Filtering profile if wfc.exe is not running. - Fixed: Installer does not work if there is a WCF related problem with .NET Framework installation. - Fixed: After a failed policy import, notifications are not displayed anymore and a program restart is required to re-enable them. - Fixed: Notification dialog becomes unresponsive if a program generates a lot of blocked connections. - Fixed: WFC service fails to start if EventLog service is unavailable. - Fixed: Shell Integration allows creating new firewall rules even if WFC is locked with a password.
- New: Added compatibility with Smart App Control from Windows 11. The process wfc.exe was renamed to wfcUI.exe. - Improved: Replaced WCF with GRPC for inter process communication. WFC requires now NET Framework 4.6.2 or a newer version. - Improved: Global hotkey which can toggle between Low and Medium profiles can now toggle between all profiles. - Improved: User settings are now applied per user account. Only the settings from Security tab are still global per machine. - Fixed: Main Panel opens multiple times if you press fast on the tray icon. - Fixed: Secure Boot is not enabling High Filtering profile if wfc.exe is not running. - Fixed: Installer does not work if there is a WCF related problem with .NET Framework installation. - Fixed: After a failed policy import, notifications are not displayed anymore and a program restart is required to re-enable them. - Fixed: Notification dialog becomes unresponsive if a program generates a lot of blocked connections. - Fixed: WFC service fails to start if EventLog service is unavailable. - Fixed: Shell Integration allows creating new firewall rules even if WFC is locked with a password.
625 :名無しさん@お腹いっぱい。:2023/10/18(水) 13:43:26.37 .net
今回は手動でアンインストールしないと入らなかった
626 :名無しさん@お腹いっぱい。:2023/10/18(水) 16:26:24.25 .net
送信の推奨設定でWFC - Core Networking - DNS (UDP-Out)ってあるでしょ そいつの複製を作ってUDPの所をTCPにしてみて 名前はCore Networking - DNS (TCP-Out)にでもすればいい。 それでsvchostのしつこい要求は出なくなると思うけど。
- Fixed: Global hotkey to toggle the filtering profile does not use the current profile on first use. - Fixed: Company logo is missing on top area. - Fixed: Some group names from Windows 11 are not properly recognized/displayed.
----------------------------------------------------------------------------------- What's new in version 6.9.5.0 (18.10.2023)
- Fixed: Global hotkeys can't be set properly without restarting the software. - Improved: Uninstall dialog will now resize to content so that it displays the entire content in all languages. - Removed: Unmaintained language files were removed from the software.
- Fixed: Global hotkey to toggle the filtering profile does not use the current profile on first use. - Fixed: Company logo is missing on top area. - Fixed: Some group names from Windows 11 are not properly recognized/displayed.
----------------------------------------------------------------------------------- What's new in version 6.9.5.0 (18.10.2023)
- Fixed: Global hotkeys can't be set properly without restarting the software. - Improved: Uninstall dialog will now resize to content so that it displays the entire content in all languages. - Removed: Unmaintained language files were removed from the software.
- Fixed: Can not delete invalid rules located under C:\$WINDOWS.~BT folder - Fixed: Adding multiple rules at once to the same group fails if the rules have no description set. - Fixed: Can not create a duplicate of a temporary rule. - Fixed: Notifications are disabled after WFC restart and must be re-enabled again. - Fixed: When unchecking the 'Blocked connections' in Connections Log, the notifications still appear as enabled when they are in fact disabled.
- Improved: Retrieving the group display names uses now shlwapi.dll. This fixes group names with dll names and resource ids. - Improved: Default option is now the third one in the uninstall dialog. This will leave the firewall rules untouched during uninstall. - Improved: The speed of importing a *.wpw file was improved by updating the internal cache mechanism. - Improved: The speed of deleting multiple rules at once was improved. - Fixed: Can't load language files which have a language code that is not 2 letters. - Fixed: Experimental feature that auto allows certain paths/file names does not work anymore. - Fixed: During uninstall restoring default/previous Windows Firewall rules fails if Secure Rules is enabled. - Fixed: Deleting multiple rules at once may fail if Secure Rules is enabled. - Fixed: Search functionality may result in a crash in Rules Panel and Connections Log. - Fixed: Revert profile timer is not updated unless the revert profile is unchecked and checked again. - Removed: Exporting/importing to/from *.wfw file (Windows Firewall format) was removed due to unreliable results. This still can be done from WFwAS, but not from WFC anymore. - New: Added translation for Serbian language.
- Improved: When exporting rules, the sorting order and filters are now preserved in the exported wpw file. On import you get back what was seen in Rules Panel at export time. - Improved: The import and the export of the firewall rules are fully async now. This improves the UI responsiveness during these actions. - Fixed: When duplicating multiple rules at once, they are created in the reversed order. - Fixed: Authorized groups list has a display issue where it displays also the internal group names. - Fixed: When creating a duplicate rule in Rules Panel the Please wait message remains displayed and Rules Panel needs to be closed and reopened. - Fixed: Secure Rules disables custom groups names in the latest version.
- Improved: The notification dialog was updated to be able to add a notification exception for the full path too. - Improved: Loading time was decreased for Rules Panel and Connections Log with a new cache mechanism for program icons. - Fixed: Rules Panel may crash if there are hundreds of firewall rules and the rules are scrolled up and down multiple times.
- Fixed: It is not possible to create a duplicate of the first rule in Rules Panel. - Fixed: Remote code execution vulnerability via gRPC named pipes. - Updated: Standard user accounts are allowed to perform elevated actions without requiring elevation authorization. Starting with this version, if wfcUI.exe is executed as a standard user account, it has only read access for the user interface. The software must be elevated before being able to perform any write actions (CVE-2023-36631). - Updated: Run button was disabled in the installer to avoid executing the software under an elevated account from a standard user account.
- Fixed: Create WFC recommended rules does not work in the latest installer. - Fixed: After installation 'Auto refresh on open' is set by default to true in Connections Log instead of false. - Improved: Added read only access to Rules Panel, Connections Log and Notifications for standard user accounts. - Improved: Run button will start WFC under the user account which started the installer instead of the elevated user account.
- Improved: Request elevation button will not restart wfcUI.exe anymore. Instead, it will remove the read-only state from the current non-elevated executing instance. - Improved: When a new rule is created by the experimental notification exception feature, Rules Panel will refresh if it is open.
- Fixed: When importing user settings the authorized groups list is not refreshed. - Fixed: The experimental feature which auto creates allow rules for certain paths generates duplicate rules if a blocking rule prevents certain connections. - Fixed: The tray icon does not offer any clue if the program runs in standard user mode or in elevated mode. - Fixed: Learning mode tray context menu item remains disabled even after elevated rights are granted. - New: Added a new WFC recommend rule for wwahost.exe which is required to reset a Windows PIN. Without this rule it is impossible to reset a Windows PIN.
- New: Added support for retrieving the friendly name for Name, Group, Description of Windows Store firewall rules. - Fixed: When importing user settings with proxy config, the tray app wfcUI.exe crashes on startup. - Fixed: It is not possible to remove the custom IP addresses/ranges from the High Filtering profile custom rules once they are set.
- New: Added detection of invalid Windows Store rules. If a package is not found on the machine the rule will appear with red text in Rules Panel. - Updated: The logic from previous version which detects the friendly name for Description property was reverted so that at least one column in Rules Panel contains the version of the package.
- Fixed: Certain Windows Store firewall rules may show as invalid in Rules Panel when they are still valid. - Improved: Notifications exceptions list is now sorted for uppercase entries first and then the others.
- Improved: The export functionality was revised so that it does not stop if a rule is invalid. The invalid rule will be skipped and the others will be exported. - Fixed: Exporting of the rules fails if one of the rules has the Description null. - Fixed: Sorting of notifications exceptions list does not always work.
- Fixed: After creating a temporary rule from the notification dialog which includes multiple programs blocked, you must close the notification dialog otherwise all new rules are temporary. - Fixed: Search functionality in Rules Panel does not include the Description property. - Improved: The algorithm for detecting invalid rules for Windows Store apps was updated to avoid false detections. - Improved: The error handling and logging was enhanced on certain parts of code.