Winpooch - 'FOSS' Firewall (400kb)


Recommended Posts

ok I will keep this guide simple, because I believe once i show you how easy it is to use you can do whatever you want :)

This guide will show you how to block everything from connecting to or listening to the internet except firefox (or whathaveyou).

Winpooch is FOSS (Free and Open Source Software), it weighs in at about 400kb, and it doesnt need to be installed - just extract the zipped binary.

Download Winpooch

http://winpooch.free.fr/home/index.php

http://sourceforge.net/projects/winpooch/

Instructions:

  • Start Winpooch and delete the existing Net:Connect and Net:Listen rules except those that have the Address (Param 1) set as 127.0.0.1 because thats your computer and you need that (i think). :) If you followed that correctly the window should now appear as shown below:

winpooch03zl.png

  • Create a new rule by clicking on the '+' button on the bottom right. Set the fields as show below then hit ok. Repeat this step but this time for 'Reason' choose 'Net:Listen'.

winpooch37hd.png

  • If you read and followed these instructions Winpooch should now look like this:

winpooch13qt.png

  • This last step is to add Firefox as an exception so it may connect to the internet. Click the '+' on the top to Add Program. So in this case navigate to firefox.exe and then hit ok. To keep things simple were just going to select "Don't hook this program". This tells Winpooch to just ignore that program. Alternatively you can create rules and specify what addresses (ip's) and ports (80, 443, etc) it may connect to, and have winpooch keep logs of the ips and ports it uses.. You may also want to do the same (unhook) for explorer.exe, otherwise explorer.exe will hang when it starts.

winpooch12wo.png

  • Now when a unpermitted file trys to access the internet...

winpooch59cp.png

Thats all there is too it! :D

Edited by DigeratiPrime
Link to comment
https://www.neowin.net/forum/topic/436364-winpooch-foss-firewall-400kb/
Share on other sites

that has nothing to do with xpsp2, its probably just explorer.exe trying to start. I noticed a hang when i restarted explorer.exe, after about 5 seconds i got a popup I choose 'NewFilter'

Program: C:\WINDOWS\explorer.exe
Reason: Reg::SetValue

Param1: 
Type: String
Value: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders

Param2:
Type: String
Value: Common Startup

Reaction: Accept
Verbosity: Silent

Also you can add a program in Winpooch and tell it 'Don't hook this program'

Edited by DigeratiPrime

Sorry for all my posting, but thanks to the fix you provided I managed to get it to work.

Heres my final review ;)

The size of the program is amazing, i'm really pleased that I didn't have to download a 30 meg file for a firewall. Under 2 meg is fantastic and dialup users will be downloading this one for sure.

The setup of the program is easy.

Once setup, do the unhook the explorer process as your computer will get into loads of trouble and basically stop working. This is because the explorer exe can't start and that's why you wont be able to access the start bar etc.

I have to say once i've got it to work i'm very satisfied with it. Theres no problems when it's running and does a grand job, the simply interface is nice.

Best of all, it's Opensource! :D

download the zipped binary, theres nothing to install. everything is saved inside the one folder. it runs as a process, in the future they might have a version that installs it as a service.

BTW if you are in the habit of reformating your pc often, i would suggest you consider looking at Acronis True Image. ;)

  • 3 weeks later...

does this firewall ask for exceptions when a program is trying to connect to the internet?

say for instance i run Warcraft III will it ask if it may allow W3 connection to the internet?

Yea it acts as a normal firewall, but just a little different. I am using it, and it works great for me!

Beats anything bloaty :cool:

How bout some of that NODpooch32 :D :D

  • 2 weeks later...

right, for torrents i tell winpooch to accept all addresses and ports for connect and listen. because i trust that program. Likewise you could also tell it to just unhook that process and it will ignore it completely.

for firefox i have mine set to allow firefox to connect on any port or ip, but its not allowed to listen.

if a program not in the list try's to connect say explorer.exe pretending to be internet explorer, winpooch pops up instantly and i tell it to reject and internet explorer thinks theres no connection. you can also kill that process :devil:

of course you can also adjust the verbosity or logging. I use 'silent' for torrents/firefox because i dont want a list of every port and ip ive connected to, the logs will just get enormous or roll over very quickly.

just try it its a zipped binary and it doesnt install any services, drivers or rootkits. if you are really paranoid you can download the source! ;)

How do you tell it to accept all addresses and ports? The rules are just net connect in, out, read or write, etc..

Also I think me screw up. I deleted everything but the ones with the IP 127.0.0.1 (so in the screenshots minus everything without that IP). Also when I add programs to the list how do I configure it so it auto accepts it? What's the undefined rule too?

So what would be the diffrence between using this guide and just using "default" config?

the default config allows all processes to connect and listen to the internet. this guide reverses that! see the first post.

How do you tell it to accept all addresses and ports? The rules are just net connect in, out, read or write, etc..

Also I think me screw up. I deleted everything but the ones with the IP 127.0.0.1 (so in the screenshots minus everything without that IP). Also when I add programs to the list how do I configure it so it auto accepts it? What's the undefined rule too?

look again at step 2

winpooch37hd.png

It's a nice little program, but I would not recommend to use it as a firewall:

It locks your ports, but it does'nt hide them -> Shields Up! (select Proceed button and select All Service Ports).

It does'nt prevent most programs from accessing the internet -> Firewall leak tester.

Edited by Herby
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Kdenlive 26.04.2 by Razvan Serea Kdenlive is an acronym for KDE Non-Linear Video Editor. It works on GNU/Linux, Windows and BSD. Through the MLT framework, Kdenlive integrates many plugin effects for video and sound processing or creation. Furthermore Kdenlive brings a powerful titling tool, a DVD authoring (menus) solution, and can then be used as a complete studio for video creation. Kdenlive supports all of the formats supported by FFmpeg or libav (such as QuickTime, AVI, WMV, MPEG, and Flash Video, among others), and also supports 4:3 and 16:9 aspect ratios for both PAL, NTSC and various HD standards, including HDV and AVCHD. Video can also be exported to DV devices, or written to a DVD with chapters and a simple menu. Video editing features: Multi-track editing with a timeline and supports an unlimited number of video and audio tracks. A built-in title editor and tools to create, move, crop and delete video clips, audio clips, text clips and image clips. Ability to add custom effects and transitions. A wide range of effects and transitions. Audio signal processing capabilities include normalization, phase and pitch shifting, limiting, volume adjustment, reverb and equalization filters as well as others. Visual effects include options for masking, blue-screen, distortions, rotations, colour tools, blurring, obscuring and others. Configurable keyboard shortcuts and interface layouts. Rendering is done using a separate non-blocking process so it can be stopped, paused and restarted. Kdenlive also provides a script called the Kdenlive Builder Wizard (KBW) that compiles the latest developer version of the software and its main dependencies from source, to allow users to try to test new features and report problems on the bug tracker. Project files are stored in XML format. An archiving feature allows exporting a project among all assets into a single folder or compressed archive. Built-in audio mixer Kdenlive 26.04.2 changelog: Remove not needed actions from render info, fix rough size calculation for rendering. Fix clip sometimes not inserted in timeline when moving vertically in bin drag. Fix transcoding from clip properties. Cleanup render profile audio quality. Use percent based value for audio quality, and adjust the range accordingly per codec. Fixes bug #520750 Enforce even numbers for render width/height. Fixes bug #520737 Fix nightly flatpak - disable rnnoise until implemented. Fix missing initialization. Edit mediacapture.cpp. Fix document unnecessarily marked as modified on opening, triggering a backup request. Fix incorrect detection of missing and remote clips causing unwanted backups. Fixes issue #2194 Fix tests. Fix tmp files copied to wrong location when setting project folder. Fixes bug #467740 Fix color clips not selected on creation. Use QFileInfo instead of QUrl/QDir to try fixing Windows shared drives. Fixes bug #451413 Fix timeline preview incorrectly invalidated when a track with effect duration changed. Fixes bug #514541 Fix missing var. Display paths in native format in render widget. Fixes bug #520428 Simple splash: fix pressing return always triggered the same button. Minor update to simple splash. Fix unwanted clips added to timeline and cleanup. Fixes issue #2190 Minor layout improvements to welcome screen, add Quit and Open shortcuts. Fix broken welcome dialog layout in tiling compositors. (craft) Limit the number of CPU cores used during a Windows build with mingw as some .cpp files are memory intensive to build. (kde-ci) Limit the number of CPU cores used during a build as some .cpp files are memory intensive to build. (kde-ci) Cleanup old entries. Another fix for animation crash. Fix uninitialized function - crash on create animation. Another attempt to fix MacOS permissions. MacOS: fix bundle release version. Fix MacOS plist path. Fix MacOS build. Explicitely link against Qt::Core. Download: Kdenlive 26.04.2 | 128.0 MB (Open Source) Download: Standalone Executable View: Kdenlive Home page Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • Here's how to watch the Xbox Games Showcase today and what to expect by Pulasthi Ariyasinghe The June games showcase week has been a packed one, with everything from major presentations like Sony and Summer Game Fest to indie-focused reveals coming in almost every day. Now, it's almost time for another big one, with Microsoft bringing its Xbox Games Showcase back later today. This is a double feature too, with a Gears of War E-Day deep dive also being attached to it. For anyone wanting to tune in online, the 2026 Xbox Games Showcase is kicking off at 10 AM PT | 1 PM ET | 6 PM BST | 7 PM CEST later today, June 7. The event will be available to watch on the official Xbox YouTube (4K 60FPS), Twitch, Facebook, Steam, Amazon Live, and other portals. Separate livestreams for American Sign Language and Audio Description will also be available. "This year marks 25 years of XBOX, and this Showcase is poised to be a true celebration, offering world premieres, new gameplay, fresh updates, and more for a swathe of projects we cannot wait to share," said Microsoft about this presentation. With a new CEO behind it that is pulling off some interesting moves, Xbox may have some surprises to reveal today. New looks at first-party games like Halo Campaign Evolved from Halo studios, Fable from Playground Games, InXile Entertainment's Clockwork Revolution, Mojang's Minecraft Dungeons II, and Call of Duty: Modern Warfare 4 from Infinity Ward are to be expected here. We may finally get to see the new Blade from Arcane Studios in action and a new Persona game from Atlus at the showcase too. Surprise announcements may also arrive from other Microsoft-owned studios like Bethesda, MachineGames, Ninja Theory, Obsidian, Rare, World's Edge, or Blizzard. Considering how every new release nowadays is staying away from November and December to avoid Grand Theft Auto VI's release, any launch dates Microsoft announces will probably skip those months as well. Once the Xbox Games Showcase ends, Microsoft will immediately kick off the Gears of War: E-Day Direct. This deep dive into the upcoming prequel from The Coalition should attach gameplay footage and perhaps a release window to the highly anticipated project.
    • People in the '50s and '60s had the same attitude, and we're still here over a half century later.
    • So after some fiddling I was able to get it to run at a pretty stable 30FPS. I'm slightly surprised about how much fiddling I had to do to get there though given what I thought was reasonable hardware: Processors: 16 × AMD Ryzen 7 7840HS w/ Radeon 780M Graphics Memory: 16 GiB of RAM Graphics Processor 1: AMD Radeon 780M Graphics Graphics Processor 2: AMD Radeon RX 7700S I think I could do it better if I use Linux rather than Windows, Windows RAM usage is stupid without stripping the system down. But once I got it working in a reasonable state, it was so awesome! I felt like a new Bond! If anyone has any advice to get things going a bit smoother FPS-wise, I'd appreciate it.
    • Something is rotten in the state of Denmark Australia
  • Recent Achievements

    • Dedicated
      Mark Spruce earned a badge
      Dedicated
    • Collaborator
      conkir earned a badge
      Collaborator
    • Rising Star
      olavinto went up a rank
      Rising Star
    • One Month Later
      lamborghiniv10 earned a badge
      One Month Later
    • Week One Done
      lamborghiniv10 earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      482
    2. 2
      PsYcHoKiLLa
      256
    3. 3
      Steven P.
      74
    4. 4
      +Edouard
      70
    5. 5
      FloatingFatMan
      69
  • Tell a friend

    Love Neowin? Tell a friend!