Vadim Smirnov

Forum Replies Created

Viewing 15 posts - 826 through 840 (of 1,476 total)
  • Author
    Posts
  • in reply to: WinXP-SP3 freezes on reboot after winpkfilter runtime #6820
    Vadim Smirnov
    Keymaster

      Try installing NDIS IM variant of WinpkFilter driver. Most probably you have another NDIS hooking driver installed by third-party firewall of AV software, which does conflict with WinpkFilter.

      in reply to: [WinpkFilter] Failed to load helper driver VC2k5 #6821
      Vadim Smirnov
      Keymaster

        What operating system you are using?

        Vadim Smirnov
        Keymaster

          Sometimes reboot is required, sometimes not. That depends if network stack can reconfigure dynamically or not.

          in reply to: WinpkFilter and Windows 7 #6778
          Vadim Smirnov
          Keymaster

            New version of Local Monitor will be released in next couple of days.

            in reply to: How can I install WinpkFilter on Windows XP x64? #6817
            Vadim Smirnov
            Keymaster

              If you try to install WinpkFilter run-time on the fresh copy of Windows XP x64 under Administrator account you should not meet any problems. I don’t know what was the particular reason for the automatic installation to fail, may be lack of privilege to install the driver, may be previous version of WinpkFilter was installed before and was not completely removed before reinstall, may be something else.

              in reply to: WinpkFilter news/updates. #5509
              Vadim Smirnov
              Keymaster

                WinpkFilter 3.0.5 released:

                1) fixed compatibility issue with Kaspersky software
                2) added API for getting active WAN connections information
                3) added API for sending/receiving bulk of packets

                Important note:
                For Windows Vista and later versions of the Windows family of operating systems, kernel-mode software must have a digital signature to load on x64-based computer systems. WinpkFilter drivers are not signed and in order to test them on Vista x64 you should press F8 during system boot and choose Disable Driver Signature Enforcement option. For the commercial software you’d have to obtain Code Signing certificate from Verysign or another Certificate Authority authorized by Microsoft.

                If you are eligible for a free update, please send the following details to support@ntkernel.com to receive an update instruction:

                1. Your order ID.
                2. An approximate date of purchasing.

                in reply to: Admin Should Release new Version. #6815
                Vadim Smirnov
                Keymaster

                  WinpkFilter 3.0.5 will be placed for public after pre-release testing completion.

                  in reply to: Alert when a packet been captured. #6806
                  Vadim Smirnov
                  Keymaster

                    Yes it is possible and this is the right way to drop packets.

                    in reply to: Alert when a packet been captured. #6804
                    Vadim Smirnov
                    Keymaster

                      So far only the packets statistics (packets this filter was applied to) is accumulated for loaded filters. There is no special event to indicate that the filter was triggered.

                      in reply to: Alert when a packet been captured. #6802
                      Vadim Smirnov
                      Keymaster

                        Ahh, you mean packets passed without being indicated to user mode. Well, since this packets are supposed to be passed with minimal performance affect they have to no event to trigger.

                        in reply to: Admin Should Release new Version. #6812
                        Vadim Smirnov
                        Keymaster

                          hi,admin,you said will release a new version in april,but now, is nothing. please please to going fast

                          Hopefully this week πŸ™‚

                          in reply to: Alert when a packet been captured. #6800
                          Vadim Smirnov
                          Keymaster

                            It is possible to add a timestamp to packets if needed.

                            in reply to: INTERMEDIATE_BUFFER_WOW64 #6810
                            Vadim Smirnov
                            Keymaster

                              Если ΠΈΠ· Ring0 => ΠΈΠ· Π΄Ρ€Π°ΠΉΠ²Π΅Ρ€Π°
                              XP x64 => Π΄Ρ€Π°ΠΉΠ²Π΅Ρ€ 64 Π±ΠΈΡ‚Π½Ρ‹ΠΉ ΠΈ ndisrd 64 Π±ΠΈΡ‚Π½Ρ‹ΠΉ

                              ΠœΠ΅ΠΆΠ΄Ρƒ 64 Π±ΠΈΡ‚Π½Ρ‹ΠΌΠΈ Π΄Ρ€Π°ΠΉΠ²Π΅Ρ€Π°ΠΌΠΈ ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΠ΅ΠΌ ΠΎΠ±Ρ‹Ρ‡Π½Ρ‹ΠΉ INTERMEDIATE_BUFFER

                              INTERMEDIATE_BUFFER_WOW64 ΠΎΠΏΡ€Π΅Π΄Π΅Π»Π΅Π½Π°, Ρ‡Ρ‚ΠΎΠ±Ρ‹ ΠΈΠ· 32 Π±ΠΈΡ‚Π½ΠΎΠ³ΠΎ прилоТСния ΠΏΠ΅Ρ€Π΅Π΄Π°Ρ‚ΡŒ Π΄Π°Π½Π½Ρ‹Π΅ Π² 64 Π±ΠΈΡ‚Π½Ρ‹ΠΉ Π΄Ρ€Π°ΠΉΠ²Π΅Ρ€, ΠΏΡ€ΠΈ этом Π½Π΅ мСняя ΠΊΠΎΠ΄Π° 32 Π±ΠΈΡ‚Π½ΠΎΠ³ΠΎ прилоТСния. Бинарная структура INTERMEDIATE_BUFFER собранная 32 Π±ΠΈΡ‚Π½Ρ‹ΠΌ компилятором отличаСтся ΠΎΡ‚ INTERMEDIATE_BUFFER собранной 64 Π±ΠΈΡ‚Π½Ρ‹ΠΌ. Но бинарная структура INTERMEDIATE_BUFFER_WOW64 собранной 32 Π±ΠΈΡ‚Π½Ρ‹ΠΌ компилятором совпадаСт с Π±ΠΈΠ½Π°Ρ€Π½ΠΎΠΉ структурой INTERMEDIATE_BUFFER собранной 64 Π±ΠΈΡ‚Π½Ρ‹ΠΌ. Π’Π΅ΠΏΠ΅Ρ€ΡŒ понятно???

                              in reply to: Alert when a packet been captured. #6798
                              Vadim Smirnov
                              Keymaster

                                Event set to driver through SetPacketEvent API is signaled immediately on packet send/receive event.

                                Vadim Smirnov
                                Keymaster

                                  КкиС-Ρ‚ΠΎ ΠΏΡ€ΠΎΠ±Π»Π΅ΠΌΡ‹ Π² вашСм ΠΊΠΎΠ΄Π΅, Π½ΠΈΠΊΠ°ΠΊΠΈΡ… Π½Π°Π»ΠΎΠΆΠ΅Π½ΠΈΠΉ ΠΈ Π·Π°Ρ‚ΠΈΡ€Π°Π½ΠΈΠΉ Π±Ρ‹Ρ‚ΡŒ Π½Π΅ ΠΌΠΎΠΆΠ΅Ρ‚, ΠΏΠ°ΠΌΡΡ‚ΡŒ ΠΏΠΎΠ΄ ΠΏΠ°ΠΊΠ΅Ρ‚Ρ‹ ΠΈΠ΄Π΅Ρ‚ фиксированными Π±ΡƒΡ„Π΅Ρ€Π°ΠΌΠΈ, Π΄Π°ΠΆΠ΅ Ссли ΠΏΠ°ΠΊΠ΅Ρ‚ 14 Π±Π°ΠΉΡ‚, Ρ‚ΠΎ всС Ρ€Π°Π²Π½ΠΎ ΠΏΠΎΠ΄ Π½Π΅Π³ΠΎ Π²Ρ‹Π΄Π΅Π»Π΅Π½ΠΎ 1514.

                                Viewing 15 posts - 826 through 840 (of 1,476 total)