I updated Firewall to ver 3.5.53896.424 a couple of days ago. Firewall only, Defender is disabled. I use Sunbelt VIPRE as my HIPS.
Since the update, when I run a VIPRE scan which includes checking active processes, vipre spends about 45 minutes analysing all the function calls in cfp.exe. Such as
kernel32.dll!LoadLibraryExW[cfp.exe!0x0060FB50] GetProcAddress[ GetModuleHandleA[
Does the new cfp.exe contain some sort of protection feature which tries to hide itself from other processes?