Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
August 21, 2008, 10:38:33 AM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
184916
Posts
21469
Topics
52063
Members
Latest Member:
torgny61
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Desktop Security Products
Comodo Firewall
Bug Reports
New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X32)
« previous
next »
Pages:
[
1
]
2
3
Author
Topic: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X32) (Read 3383 times)
voxer
Comodo Member
Offline
Posts: 32
New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X32)
«
on:
February 23, 2008, 10:29:57 AM »
Hi,
Ive got annoying problem with my Defense+ module of CFP. I got one stubborn program called Foxit Reader that every rule im trying to teach D+ is not working. My D+ module is running at Paranoid Mode (like always). Ive noticed this change since ive upgraded my CFP (i use automatic update). Whats more, i had a rule for this program in previous version of CFP and it was working perfectly normal. Every time im trying to open some PDF file the D+ module shows me pop up's with the same 3 questionns:
1. Access the screen directly
2. Access the keyboard directly
3. Access the Service Control Manager
and every time im checking the checkbox to remember my answer.
When im trying to open PDF file from internet through the Firefox i also get one more question: firefox execute Foxit Reader. I also check the checkbox but everytime it happens again. And at Firefox rule everytime im creating new rule through the pop-up. A new rule is beeing added to run executable: Foxit reader. So i got many same rules.
What ive tried to do? Ive tried:
-switching to train mode (only change was the popup didnt apper but after switching back to paranoid mode the pop-up still appears)
-using trusted application policy - no change, still pop-up
-adding rule manually by specifying the running process and location
-changing rules manually
What ive changed at Advanced options? Ive changed:
-added some new predefined security policies
-checked to trust the applications digitally signed by Trusted software vendors
-block all the unkown requests when application is closed
My observations? Ive observed:
-at previous version the rule for Foxit reader that was created automatically was something like that:
"C:\Program Files\blablalba"
and current version is:
"C:\PROGRA~1\blablabla"
The defense+ module appers to ignore the rule for this program at all.
One more thing (dont know if this is connected to this problem). Despite i was at Paranoid Mode (only existing rules are appliable) at start of system ive noticed the Defense+ was creating new rule (Paranoid mode cannot create new rules. Is this due to "Trust the applications digitally signed by trusted software vendors" option checked?)
«
Last Edit: April 21, 2008, 04:21:28 PM by voxer
»
Logged
fOrTy_7
Guest
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #1 on:
February 23, 2008, 12:28:28 PM »
This is a known issue and was discussed
here
. CFP 3.0.18.309 is supposted to fix this issue and it did for most people having this problem, including me. I suggest you to make a 'clean installation' and don't import any settings from previous version.
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #2 on:
February 23, 2008, 03:46:03 PM »
I've made a clean install and the problem still occures. The diffrence is that the last time the rule somehow was remembered for explorer.exe executing foxit, now pop-up appears even when using the windows explorator.
AQQ.exe is also started by windows with 8.3 path (C:\PROGRA~1\AQQ\AQQ.exe) and i'm not having any problems with it. It's still all about foxit reader.
I haven't imported any previous settings. And i don't know what more should i search for.
UPDATE:
I've found that similar thing happens to MS Word Viewer.
«
Last Edit: February 23, 2008, 07:23:23 PM by voxer
»
Logged
fOrTy_7
Guest
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #3 on:
February 24, 2008, 04:40:42 AM »
It seems like the 8.3 bug wasn't completely solved. You should give more details about your system so that the developers could look into this issue.
Quote
1. CPU (32 bit or 64 bit)
2. Operating System information (including Service Pack Version)
3. Actively-running security and utility applications
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #4 on:
February 24, 2008, 11:07:01 AM »
1. CPU (32 bit or 64 bit)
Pentium D 820 (EM64T)
2. Operating System information (including Service Pack Version)
Microsoft Windows XP SP2 PL, x86-32
3. Actively-running security and utility applications
Avira Antivir
4. Specific symptoms of the bug, and steps you can take to reproduce it (step by step).
Defense+ doesn't remember the rules.
1. Open PDF by Foxit Reader or DOC by Word Viewer.
2. That is all
5. Specific steps you have taken to try to resolve it.
I'have tried all the combinations of adding a new rule and\or deleting old rule. No change.
6. Brief description of your Defense+ and Firewall+ mode (Custom, Train with safe) plus mention if you modified any setting in ADVANCED section of D+ and F+
Defense+ mode: "Paranoid mode"
Changes made at ADVANCED section:
- added new predefined security policies
- chekced option: "Block all the unknown requests if application is closed"
Firewall mode: "Custom policy mode"
- added new predefined security policies
7. If you pc reboots or you have a BSOD post in BSODs: Please add your minidump files here
My computer doesn't reboot or BSOD so N/A
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #5 on:
April 19, 2008, 02:44:58 PM »
I'm interested if there is any progress in solving this bug. I still experience it with those two programs (Foxit Reader and MS Word Viewer). The only new observation is that this problem doesn't occur while the D+ module is at "Clean PC" mode (trouble still comes up with "Training" mode on). Don't force me to install Adobre Reader
P.S.
I am using version 3.0.22.349 freshly installed.
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #6 on:
April 19, 2008, 05:55:48 PM »
OK every time I write a post I usually try to work out a solution. I found the rules used by D+ module at register and i tried to change some things. I am totally unsure if it was it but that worked for me. Here what I have tried to do and what helped:
Tried:
-delete both entries about foxit (with C:\progra~1 and with c:\program files...). Not helped
-done the same at D+. Not helped.
-changed the short form(with tilde) to normal form. Not helped
I think this helped:
-found entry with long form (no tildes)
-changed everything to short form(every catalogue/file that was longer than 8.3)
(C:\Program files\Foxit Reader\Foxit Reader.exe to C:\Progra~1\Foxitr~\Foxitr~1.exe)
-changed back to long form
Of course every time u want to change something at rules at register you have to turn off firewall (otherwise it will write back the old rules).
I am sure something there had to help because as i said i had a fresh install of Comodo (not update) and this problem still occurred.
P.S.
Ive deleted all rules from D+ module about Foxit (through D+ rules manager). Restarted the firewall (BTW firewall crashed and I've send some info to you
) and tried again the Foxit. Everything works fine now. This is bizarre.
Hope the bug will not come up again.
EDIT: Today after restart problem came up again
«
Last Edit: April 20, 2008, 03:07:51 AM by voxer
»
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #7 on:
April 20, 2008, 04:13:11 AM »
OK this is the most bizarre i found about Comodo. Before my fun with register D+ module always added rule for C:\PROGRA~1\Foxit Reader\Foxit Reader.exe. Now it always adds C:\Program Files\Foxit Reader\Foxit Reader.exe and guess what? Everything works fine. BUT. Before my fun with register i also added rule for Foxit manually (by Add->Select->Running Processes/Browse and it also added C:\Program Files\Foxit Reader\Foxit Reader.exe but somehow it didn't work. I don't know why. It's your part of the job guys. I have done my part
P.S. I have not forgotten about NOT using Clean PC mode. I am at Paranoid (my favourite one
) mode
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.18, Win XP SP2, X
«
Reply #8 on:
April 21, 2008, 04:20:07 PM »
OK I don't get any regularity in it. Bug is back again and again a rule for C:\Progra~1\Foxit Reader\Foxit Reader.exe is added to service Foxit reader (despite existence of earlier automatically added working for some time full name rule).
EDIT: Despite I block Foxit every time it pops me up it works normally (opens PDF and can use screen display, keyboard, disk etc). Will try to play with register again :/
«
Last Edit: April 21, 2008, 04:24:20 PM by voxer
»
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X
«
Reply #9 on:
April 22, 2008, 07:14:56 AM »
The trick with changing C:\PROGRA~1\Foxit Reader\Foxit Reader.exe to C:\Program Files\Foxit Reader\Foxit Reader.exe at register with temporarily switched off firewall worked for me again.
Logged
Josh123
Guest
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X
«
Reply #10 on:
April 22, 2008, 07:18:48 AM »
You got Defense+ in paranoid mode?
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X
«
Reply #11 on:
April 22, 2008, 07:20:04 AM »
Yes
EDIT:
BUG is back again. I give up.
«
Last Edit: April 22, 2008, 07:27:54 AM by voxer
»
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X
«
Reply #12 on:
April 24, 2008, 05:03:25 PM »
Well I have uninstalled comodo same as here were told:
https://forums.comodo.com/help_for_v3/comprehensive_instructions_for_completely_removing_comodo_firewall_pro_3_info-t17220.0.html
and installed it again. Foxit works but Free Download Manager does not. What's more even firewall rules does not work for this program. I have to confirm every question each time (i didn't mention this previously because I haven't been using FDM then).
Logged
voxer
Comodo Member
Offline
Posts: 32
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X
«
Reply #13 on:
May 02, 2008, 11:50:20 AM »
Any progress? Did you reproduced the problem at developer's lab or it doesn't occur to you?
Logged
ailef
Computer Security Testing Group
Comodo's Hero
Offline
Posts: 449
Re: New rule of Defense+ for Foxit Reader doesnt work (CFP 3.0.22, Win XP SP2, X32)
«
Reply #14 on:
May 05, 2008, 08:48:50 AM »
be carefull with foxit reader 2.2, a vulnerability was found. here is the article that talks about it :
http://www.arcabit.com/infobase.html?show=description&id=1709
there's a new version foxit 2.3, i don't know if the issue is fixed.
Logged
xp pro sp3 & vista ultimate sp1 (both 32bits) - comodo 3.0.25.378 - kav 8.0.0.357 - superadblocker 4.6.0.1000
Tags:
CFP 3.0.18 BUG
Defense+
rules
CFP 3.0.22 BUG
Firewall
CFP 3.0.24 BUG
3.0.25 BUG
Pages:
[
1
]
2
3
« previous
next »
Jump to:
Please select a destination:
-----------------------------
** New to the Comodo Forum? Start Here! **
-----------------------------
=> New Member Information
-----------------------------
Want to help Comodo?
-----------------------------
=> Help Spread the Word - Official Comodo banners and logos
=> How can you help Comodo? (Please we do need you!)
===> Help spread the word! (Please read and help)
===> Comodo website issues for submitting website problems only
=> Please tell us your views and Vote here!
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Which Product do you want Comodo to develop next?
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Desktop Security Products
-----------------------------
=> Comodo Firewall
===> Feedback/Comments/Announcements/News
===> Leak Testing/Attacks/Vulnerability Research
===> Help for v3
===> Help for v2
===> Frequently Asked Questions (FAQ) for Comodo firewall
===> Comodo Firewall Translations
===> Bug Reports
=> Comodo Anti-Viruspyware (CAVS)
===> Help for Comodo AntiVirus
===> FAQ for Comodo Anti-ViruSpyware
===> Feedback/Comments/Announcements/News about CAVS
===> Virus/Malware Removal Assistance
=> Comodo BOClean Anti-Malware
===> Announcements
===> Comodo BOClean Anti-Malware FAQ
=> Comodo DiskShield
=> Comodo Disk Encryption
=> Comodo Secure Email (CSE) Product
===> CSE Beta Corner
===> Frequently Asked Questions (FAQ)
===> Feedback/Comments/Announcements/News about CSE
===> Bug Reports
===> Help for Comodo SecureEmail
=> Comodo Memory Firewall(Buffer Overflow Protection)
===> Help
===> Frequently Asked Questions (Comodo Memory Firewall)
===> Feedback/Comments/Announcements/News
=> Comodo TrustConnect - Securing the Wireless world!
=> Comodo SafeSurf and (Comodo's own toolbar)
=> Backup
===> FAQ for Comodo Backup
===> Help
=> Verification Engine (allows you to verify what you see on the Internet)
=> Comodo Vulnerability Analyzer
=> AntiSpam
=> i-Vault
=> Launch Pad
=> Trusttoolbar
-----------------------------
Desktop Utilities
-----------------------------
=> Comodo Registry Cleaner
-----------------------------
Enterprise Security
-----------------------------
=> Comodo Endpoint Security Manager
-----------------------------
Compliance
-----------------------------
=> PCI DSS Compliance
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> Computer Firewalls
=> Anti Virus/Malware Products/Other Security products
=> Free Virus/Spyware/Trojan/Malware Removal by Comodo Experts
=> HIPS (Host Intrusion Prevention Systems)
=> Anti Phishing solutions
=> Digital Certificates, Encryption and Digital Signing
=> General Security Questions and Comments (not product related)
-----------------------------
Free Services for End Users
-----------------------------
=> UserTrust - First Independent Website Rating - Empowering our users!
=> User Anywhere (Remote Access product)
=> Comodo Meet (Web Conferencing Product)
=> Hacker Guardian
=> Trustfax (free Trial) (online faxing)
-----------------------------
Free Products
-----------------------------
=> Link to Free Comodo Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Nederlands / Dutch
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> По-русски / Russian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> tiếng Việt / Vietnamese
-----------------------------
Digital Certificates
-----------------------------
=> Code Signing Certificate
=> Content Verification Certificate
=> Email Certificate
=> SSL Certificate
-----------------------------
Web Server Products
-----------------------------
=> Two Factor Authentication for Web Applications
=> Trustlogo
-----------------------------
Infrastructure Products
-----------------------------
=> ZTL
=> Trustix Enterprise Firewall
-----------------------------
Other
-----------------------------
=> Forum Policy Violation Board
Page created in 0.164 seconds with 20 queries.
Powered by SMF 1.1.5
|
SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by
7dana.com