New Update Defender Hardening Console Executable

@Trident Hello, I just noticed some duplicated Deep Firewall Control's rules, both in blocked, like the above screenshot, than in allowed. What could be the reason of that ?

Deep Firewall Scan rules (Allow).jpg
 
@Trident Hello, I just noticed some duplicated Deep Firewall Control's rules, both in blocked, like the above screenshot, than in allowed. What could be the reason of that ?

View attachment 296058
If they are pointing to the same path, they should be deduplicated when you relaunch the software.

If they are pointing to different files/paths then it would be the expected behaviour.
 
This is an excellent tool. I really appreciate how informative it is, especially when analyzing unfamiliar websites. The interface is visually appealing, and the graphics are well-designed. It provides detailed explanations about any suspicious characteristics it detects on a website, which makes it easy to understand potential risks. It also works very well alongside Windows Defender, making it a strong complementary security solution. When I tested it against spam emails, it successfully blocked nearly every malicious page I attempted to access. Overall, this tool shows great potential to become one of the leading web protection services available.
 
This is an excellent tool. I really appreciate how informative it is, especially when analyzing unfamiliar websites. The interface is visually appealing, and the graphics are well-designed. It provides detailed explanations about any suspicious characteristics it detects on a website, which makes it easy to understand potential risks. It also works very well alongside Windows Defender, making it a strong complementary security solution. When I tested it against spam emails, it successfully blocked nearly every malicious page I attempted to access. Overall, this tool shows great potential to become one of the leading web protection services available.
It will start blocking even more soon, as more features will be integrated.
 
Although some sites are not fully blocked, the following notification is displayed. This can be controlled in settings to which @nickstar1 doesn't have access yet.

It took insane number of optimisations to render these notifications in the sub-200 millisecond speed level.

View attachment 296059
Very much looking forward to future improvements.
 
You can download an early trial of Helios Web Marshall from here:

deploy.hea-p.com/executable/HeliosSetup.exe

Web Marshall has its own background service, you can choose to install only Web Marshall.

This is not the finalised product, but it is very close.

Download Protection logics need to be tweaked.

The extension will not work without the installed instance of Web Marshall.
Looks and runs great here (y)
I am looking forward to seeing the finished product.
 
fwiw -- I reconsidered putting the app & ext on my host win10 (I have to make an image) but will try it on win10_vm with MSD soon. I recall some weeks ago you mentioned it would be ready by 03 March, (iirc) is that still the timeline?
 
  • Like
Reactions: Trident
No, Deep Firewall Control isn't a firewall. After a Deep Firewall Control's scan it creates its own allow / block rules based on exe's reputation. If you are looking for a firewall I can suggest what currently I'm using: the 3rd party firewall Windows 11 Firewall Control (formerly Sphinx Software Windows 10 Firewall Control) https://malwaretips.com/threads/windows-10-firewall-control-sphinx-software-opinions.108168/post-1130015 and Binisoft / Malwarebytes Windows Firewall Control which is a enhanced GUI for managing the Windows Firewall New Update - Windows Firewall Control - Updates Thread
Both softwares are free of charge. If you have some questions about them you can post them on the dedicated thread. I'll reply there.

Deep Firewall Scan rules

View attachment 296051
According to this post, there may be a slight drawback regarding WFC 🤷‍♂️

 
fwiw -- I reconsidered putting the app & ext on my host win10 (I have to make an image) but will try it on win10_vm with MSD soon. I recall some weeks ago you mentioned it would be ready by 03 March, (iirc) is that still the timeline?
It could be a bit later because Talon initially wasn’t planned.
Now it’s planned and executed, it just needs to be integrated.

The rest is pretty much done.
 
  • Hundred Points
Reactions: simmerskool
According to this post, there may be a slight drawback regarding WFC 🤷‍♂️

There is no other way this could be executed.

WFP (Windows Filtering Platform) allows creation of rule either by file path or by PID.

Technically it could be done, but the software will have to re-examine all the running processes, get the PID of the one that is associated with Windows Update and block the rest.

It will have to be performed on every start.

Majority of the firewalls create rules by file path.
 
There is no other way this could be executed.

WFP (Windows Filtering Platform) allows creation of rule either by file path or by PID.

Technically it could be done, but the software will have to re-examine all the running processes, get the PID of the one that is associated with Windows Update and block the rest.

It will have to be performed on every start.

Majority of the firewalls create rules by file path.
No problem, it wasn't so much about your software, but about WFC in general. I remember at one time BD Firewall Alert Mode was alerting after every software update driving some members nuts with continual notifications. I personally ditched WFC in favor of letting Avast firewall handle things.

I got a little tired of the WFC "Allow this?" rule fatigue (even though it quiets down after awhile) :) So IMO, yours is wonderful, more of what I'd want to use :)
 
No problem, it wasn't so much about your software, but about WFC in general. I remember at one time BD Firewall Alert Mode was alerting after every software update driving some members nuts with continual notifications. I personally ditched WFC in favor of letting Avast firewall handle things.

I got a little tired of the WFC "Allow this?" rule fatigue (even though it quiets down after awhile) :) So IMO, yours is wonderful, more of what I'd want to use :)
Yeah, it was about this software.

The upcoming HEAT is very different.
 
New Update has now been pushed.

There are over 300 performance, security and stability fixes, plus UI enhancements.

1774616705657.png
1774617286854.png
1774617465334.png
1774618115835.png

1774618143395.png


Other changes:
-Junk cleanup now allows you to view the files and folders that will be cleaned
-Aggressive scan is now more aggressive and comes with a warning
-Network scan is way quicker and more reliable
-The entire scan flow UX has been redesigned from scratch
-The application startup times have been improved
-The settings that are locked behind tamper protection are now more accurately reflected
-Admin elevation is now required by default. Previously, a number of bugs occurred when the app was executed as non-admin, including scan crashes and inability to change Defender settings.
-Various bugs resolved in remediation and PUA removal

I've worked with all vendors to ensure that false positive detections on the software have been cleared. At one point there were over 25 detections on VT which delayed the release - this is to be expected with unsigned software that is rather new.

Shout out to Webroot who have been extremely professional in the process - Webroot took their time to apologize and write a response (their detection was PUA.Gen).
Several other companies also stood out with the way they handle false positives reported by developers (mainly those business-first vendors).

However, there are several companies like Kaspersky, Trend Micro, Eset, Avast and so on who did not produce detections in the first place.

Despite my communication with Ionut from Bitdefender, their Perflogger detection persists and causes several other solutions to keep detecting. Inout ensured me that the detections should be cleared with the next few updates, but this hasn't happened.

I've sent a follow up email to Bitdefender.

As always, please use the following links to download the official copy of this software:

Portable:

Installer/uninstaller
 
Last edited:
What's coming up in the next release:
-Real Time Firewall (under consideration). In this case the software name will change to Privacy + Hardening
-Logs

Helios Web Marshall and Talon have now been complete. I am waiting for the updated extension to be reviewed and published on Chrome Store. The updated extension is already on Mozilla store.

If you are using Firefox and you've previously downloaded Web Marshall, PM me for the update.

The product is officially launching in a few days.

1774619592726.png
1774619619801.png


Talon will be available as a standalone extension as well, for Linux users.
 
Last edited:
I tested all the scans and they were rather quick considering I've a lot of software and videogames on my system. I ran also a Deep Firewall Scan and I particularly like the colored icons which identify the rules by Categories (Communication, Gaming, Security etc.) I don't remember if they were already present in the previous version.
Nice work !

Total Care Scan.jpgTotal Care Scan results.pngNetwork scan results.pngAggressive Scan.pngAggressive Scan Results.pngDeep Firewall Scan result.png