New Update Windows Firewall Control

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324
What's new in version 6.9.9.2 (21.01.2024)

- Fixed: It is not possible to create a duplicate of the first rule in Rules Panel.
- Fixed: Remote code execution vulnerability via gRPC named pipes.
- Updated: Standard user accounts are allowed to perform elevated actions without requiring elevation authorization. Starting with this version, if wfcUI.exe is executed as a standard user account, it has only read access for the user interface. The software must be elevated before being able to perform any write actions (CVE-2023-36631).
- Updated: Run button was disabled in the installer to avoid executing the software under
an elevated account from a standard user account.
Source: https://binisoft.org/changelog.txt


Download location: https://binisoft.org/download/wfc6setup.exe
SHA1: 531a77a85ac8e169ca757e46de3bcd51fc965da5
SHA256: d1e659dc2a8e6a11280cf4f34a19f053a72039661f8479d5032457f92829ca5d
 
Last edited:

TairikuOkami

Level 36
Verified
Top Poster
Content Creator
Well-known
May 13, 2017
2,518
Anyway, no issue at my end.
It removed my notifications exceptions (I use experimental wildcard), but it seems to be random (not everyone is affected).

capture_01212024_185544.jpg
 

simmerskool

Level 31
Verified
Top Poster
Well-known
Apr 16, 2017
2,076
Came through as automatic update. The Run Button after update install isn't clickable as described in changelog though I am using an admin account.

Anyway, no issue at my end.
mine was set to automatic update, but had not yet updated although running overnight, but when I clicked check for update, 6.9.9.2 was found and updated, also run button did not work here and I rebooted and WFC started ok, then elevated to admin. Doubt I have (had) any exclusions to notifications... fwiw. updated installation seems aok here, medium profile.
 

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324
Just to inform, for users with SUA (Standard User Account), the developer explained further details there on Wilders Security Forums:
You can't without elevating first the software privileges. A standard user account should not receive any notification since there is nothing to do with them. If it has no privileges to create a rule, why sending notifications? Since the standard user account can't set the notifications mode to disabled, it will be spammed by useless notifications.

For administrator accounts this new version did not change. For standard user accounts, you must first elevate the privileges. Unfortunately, this can be done only manually. There is no workaround to make this automatic since this will defeat the purpose of it.

You can send a thank you note to the guy who reported CVE-2023-36631 for these "improvements" I had to do.
 

TairikuOkami

Level 36
Verified
Top Poster
Content Creator
Well-known
May 13, 2017
2,518
Just to inform, for users with SUA (Standard User Account), the developer explained further details there on Wilders Security Forums:
Pretty much every security product works this way, running as admin or even system and to prevent the user from changing settings, it can be locked with a password. Pretty lame CVE.
 

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324

Windows Firewall Control 6.9.9.3​

What's new in version 6.9.9.3 (28.01.2024)

- Fixed: Create WFC recommended rules does not work in the latest installer.
- Fixed: After installation 'Auto refresh on open' is set by default to true in Connections Log instead of false.
- Improved: Added read only access to Rules Panel, Connections Log and Notifications for standard user accounts.
- Improved: Run button will start WFC under the user account which started the installer instead of the elevated user account.
Source: https://binisoft.org/changelog.txt

Download: https://binisoft.org/download/wfc6setup.exe
SHA256: 563756eb0b904d66cee3077145a331fb75f426755cbfd11b34ac32f0f644300e
SHA512: c276c75600907d47dc23fab408c71ef80985d6d17a90bb38b98dcbe5a12bab316d98d6f39e840a52f62073e670c16f5bcf9a1a4eeb69ce2664d31e5e10f4a156
 

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324

Windows Firewall Control 6.9.9.4​

What's new in version 6.9.9.4 (10.02.2024)

- Improved: Request elevation button will not restart wfcUI.exe anymore. Instead, it will remove the read-only state from the current non-elevated executing instance.
- Improved: When a new rule is created by the experimental notification exception feature, Rules Panel will refresh if it is open.
Source: https://binisoft.org/changelog.txt

 

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324

Windows Firewall Control 6.9.9.6​

What's new in version 6.9.9.6 (03.03.2024)

- Fixed: When importing user settings the authorized groups list is not refreshed.
- Fixed: The experimental feature which auto creates allow rules for certain paths generates duplicate rules if a blocking rule prevents certain connections.
- Fixed: The tray icon does not offer any clue if the program runs in standard user mode or in elevated mode.
- Fixed: Learning mode tray context menu item remains disabled even after elevated rights are granted.
- New: Added a new WFC recommend rule for wwahost.exe which is required to reset a Windows PIN. Without this rule it is impossible to reset a Windows PIN.
Source: https://binisoft.org/changelog.txt

Download location: https://binisoft.org/download/wfc6setup.exe
SHA256: accb7d4ccd9e6c5c1988c1bfe8015b2e459e52b3f8a965bd086a4746000524e6
 
Last edited:

simmerskool

Level 31
Verified
Top Poster
Well-known
Apr 16, 2017
2,076
Updated successfully. I had to Restore Windows Firewall Control Recommended Rules to get the new wwahost.exe rule to allow resetting windows pin.
yikes more things I do not know: what's "the new wwahost.exe rule?" I just updated and did not notice anything amiss.
 

ErzCrz

Level 21
Verified
Top Poster
Well-known
Aug 19, 2019
1,028
yikes more things I do not know: what's "the new wwahost.exe rule?" I just updated and did not notice anything amiss.
Just a simple allow outgoing TCP to port 443. See below.

The rule description reads: WWAHost is similar to svchost, but for Windows Store applications. This is required to reset a Windows PIN.


1709521457892.png
 

ErzCrz

Level 21
Verified
Top Poster
Well-known
Aug 19, 2019
1,028
In between testing configurations out, I did a fresh install of WFC though this time deleted all the windows default rules and kept WFC Recommended. Found this the best route with WFC as although you'll see a handful of extra prompts. it's less automatically allowed rules that's in default windows firewall rules.
 

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324

Windows Firewall Control 6.9.9.7​

What's new in version 6.9.9.7 (11.04.2024)
  • New: Added support for retrieving the friendly name for Name, Group, Description of Windows Store firewall rules.
  • Fixed: When importing user settings with proxy config, the tray app wfcUI.exe crashes on startup.
  • Fixed: It is not possible to remove the custom IP addresses/ranges from the High Filtering profile custom rules once they are set.
Source: https://binisoft.org/changelog.txt

Download: https://binisoft.org/download/wfc6setup.exe
SHA256: e753f8b104068990a6847e80568385b37d4870b5cf803ba8adffa62bcb1ebf95
SHA512: 7b357e64bfda9263974ba3c2c581c0ecd64601afc6231fbb96af19f599ae5587f2713e0675f89cf71ac6ed15799fb769a4e09883735644e9ad31ee946f679855
 

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324

Windows Firewall Control 6.9.9.8​

What's new in version 6.9.9.8 (16.04.2024)
  • New: Added detection of invalid Windows Store rules. If a package is not found on the machine the rule will appear with red text in Rules Panel.
  • Updated: The logic from previous version which detects the friendly name for Description property was reverted so that at least one column in Rules Panel contains the version of the package.
Source: https://binisoft.org/changelog.txt

Download: https://binisoft.org/download/wfc6setup.exe
SHA256: b037a4416a5fee614d43e0abb138b60b8f9f4762d9da3f32a38a2c2dc0eb382f
SHA512: ca555cce31c23029626c97c648fe5aac01cec2339dab225924dc33a4cb0f12c046ba2923b723cc643d4b7e8a05976c9d17030fd0e95f995197220cd90e5afd39
 

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,324

Windows Firewall Control 6.9.9.9​

What's new in version 6.9.9.9 (18.04.2024)
  • Fixed: Certain Windows Store firewall rules may show as invalid in Rules Panel when they are still valid.
  • Improved: Notifications exceptions list is now sorted for uppercase entries first and then the others.
Source: https://binisoft.org/changelog.txt

Download location: https://binisoft.org/download/wfc6setup.exe
SHA256: 1fb0168f191aed283022a4c6614f8f2ab2e3db087ae315c9083760638e8e530f
SHA512: 22c81ac0e6f1aacb5a2e5dda38e3667481a9da25d0f174130b7f4a51eb53650c2f851f8af21ee9ac3a5927658d3054dad733e4156f1e8ae31a94ce73577976a7
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top