Author Topic: Allowing avastsvc.exe through win7 firewall allows all blocked applications too  (Read 12408 times)

0 Members and 1 Guest are viewing this topic.

avaaaaaaaaast

  • Guest
I want all applications(except a few) blocked from connecting to internet.

Before avast was updated this was possible via win7 firewall since not every application connected via avastsvc.exe . But now after the avast update all applications that were blocked started connecting via avast.

Now I cannot block avast totally from connecting as that would block the allowed applications too.

Please release an update in avastsvc.exe that allows only a few said applications while blocking all others.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
But now after the avast update all applications that were blocked started connecting via avast.

avast! GUI -> Web Shield -> Expert Settings -> Main Settings
Enable: Scan traffic from well-known browser processes only
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
I want all applications(except a few) blocked from connecting to internet.
This is not possible yet. Maybe future versions of avast! 7 could have this feature.
The best things in life are free.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89029
  • No support PMs thanks
Sounds like the win7 firewall is pathetic as it can't handle localhost proxies, e.g. it can't detect what is the parent application passing through the proxy.

Most 3rd party firewalls are able to detect what application is using the web shield proxy and act on that and not allow it through the proxy.

Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

avaaaaaaaaast

  • Guest
Sounds like the win7 firewall is pathetic as it can't handle localhost proxies, e.g. it can't detect what is the parent application passing through the proxy.

Most 3rd party firewalls are able to detect what application is using the web shield proxy and act on that and not allow it through the proxy.



which firewall do you recommend that allows only a few applications via avast to connect while blocking all others? the firewall should be free for home personal use and should make the internet invisible to other applications.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Did you try the suggestion in Reply #1 yet..??
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

avaaaaaaaaast

  • Guest
But now after the avast update all applications that were blocked started connecting via avast.

avast! GUI -> Web Shield -> Expert Settings -> Main Settings
Enable: Scan traffic from well-known browser processes only

And one more thing. I want avast to stop scanning/interfering with ssl connections. Please explain how can i do that?

avaaaaaaaaast

  • Guest
Did you try the suggestion in Reply #1 yet..??

wow that was a fast reply. I will try and tell.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
I want avast to stop scanning/interfering with ssl connections.

Sorry, not sure what you mean..??
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

avaaaaaaaaast

  • Guest
Did you try the suggestion in Reply #1 yet..??

Yes i tried. I tested it with ping.exe . It can see the internet even though it is not allowed by a windows firewall outbound rule.

Hermite15

  • Guest
But now after the avast update all applications that were blocked started connecting via avast.

avast! GUI -> Web Shield -> Expert Settings -> Main Settings
Enable: Scan traffic from well-known browser processes only

+1 that's the answer ;)

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Did you try the suggestion in Reply #1 yet..??

Yes i tried. I tested it with ping.exe . It can see the internet even though it is not allowed by a windows firewall outbound rule.

Ping is usually allowed in any Windows FW. ;)

Some basic questions:
Which avast!..?? (Free/Pro/IS)
Which version..??
OS..?? (32/64 Bit - which SP)
Other security related software installed..??
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

avaaaaaaaaast

  • Guest
I want avast to stop scanning/interfering with ssl connections.

Sorry, not sure what you mean..??

what i mean is the problem with the https connections that stop working or work very slowly when avast intercepts them for scanning. Example is with a few online brokerage websites whose tickers/quotes disappear/freeze/delay when avast intercepts them while making an https connection.

These sites are mostly secure and trusted and mostly do not require scanning.
So i want that avast should stop scanning https connections that have a valid trusted certificate.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
These sites are mostly secure and trusted and mostly do not require scanning.
So i want that avast should stop scanning https connections that have a valid trusted certificate.

You can exclude them in the settings, if needed.
I may add that I've never had any slowdowns with any https connection(s).
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

avaaaaaaaaast

  • Guest
Did you try the suggestion in Reply #1 yet..??

Yes i tried. I tested it with ping.exe . It can see the internet even though it is not allowed by a windows firewall outbound rule.

Ping is usually allowed in any Windows FW. ;)

Some basic questions:
Which avast!..?? (Free/Pro/IS)
Which version..??
OS..?? (32/64 Bit - which SP)
Other security related software installed..??

no windows 7 firewall use to block pinging too since i had not created an outbound rule to allow it. that was before avast update.

Win 7 firewall is not that bad. Its very different from win xp firewall.With manually tweaked settings it gives essential security thats sufficient for home personal use.