POLALA.COM
welcome to my space
X
Welcome to:polala.com
Web Design | Video Games | RVs | Religion | Management | Supplements and Vitamins | Software | Basketball | Related articles
Search:  
NAVIGATION - HOME

Windows Updates and Mcafee Update

Published by: cfz 2009-01-09
  • I'm having a hard, very hard time getting 2 applications to connect and hoping someone out there knows how to do this. I've come over from using ZA, and love Outpost but can't get my Windows Updates or Mcafee Update of DAT Files. I currently am @ the default of RULES WIZARD. The first time (I've tried numerous times) Mcafee tried to connect it ask me ALLOW ONCE/ALLOW APPLICATION/BLOCK/CREATE RULE/ i hit ALLOW APPLICATION. Every time thereafter it will not allow to download the updates.... IE, KAZAA, YAHOO all work and will start but now Microsoft Updates or Mcafee. I've tried ALLOW MOST, then the downloads work, but @ DSLREPORTS.com it showed some firewall vulnerabilites in their tweak test. No vulnerabilities in RULES WIZARD mode, just know d/l updates which I need. Can anyone help, what category should I stay in ALLOW MOST/RULES WIZARD or how do I configure? THANKS in advance for any help.


  • Outpost Pop Up Window showed this:
    PROMPTIFNEWER=UPGRADE:4.1.30termsvrl.mcafee
    Actual EXE Filename showed this
    NetaDownloadEngineMupdate.EXE


    lets go for 5 pages. LOL.:rolleyes:


  • There is not a delete button. See the picture attached to this post. If you open the Outpost GUI, you can go to Options -> Configuration and select ALL McAfee related entries and then click the 'REMOVE' button. See pic.


  • By Trusted, do you mean that the executable for McAfee is under the Trusted Application section of your Outpost Application rule list?

    See the attached pic. As an example, I have put my PKZIP rule under trusted for illustration.


  • yragha,

    In the rule you made you specified a remote host. In my rule there was not one. If you have a chance try the same rule with no remote host specified.
    Allow DNS Resolving PROMPTIFNEWER=UPGRADE:4.1.30 ns1.houston.rr.com DNS Outbound UDP
    Even though DNS should be taken care of globally. Try adding the following rule as well.

    Where specified protocol is UDP
    and Where the direction is Outbound
    and Where the host is ns1.houston.rr.com
    and Where the remote port is DNS
    Allow it


  • Hi yragha,

    Welcome to the forums. :)

    First question, are you using DEFAULT (nothing disabled) Active Content Rules for that plugin?

    First suggestion, when these programs attempt to update, select 'Create Rule Using Preset'. My guess is that the 'Download Manager' preset will already be listed in the box, just choose that one and press 'OK'.
    Free Download McAfee SuperDAT Update 5484 - SuperDAT utility allows you ::
    Download McAfee SuperDAT Update 5484 - SuperDAT utility allows you to upgrade your scanning engine File. AVG Anti-Virus Updates. Ad-aware Reference File
    http://www.scanwith.com/download/McAfee_SuperDAT_Update.htm
    HOME
    MIT IS&T: Windows Automatic Update Service (WAUS)::
    of updates to those available through Microsofts Windows Update (or Automatic Update) Service. many of us use McAfee Virus Scan which contains such
    http://web.mit.edu/ist/topics/windows/updates
    HOME

    I will be here almost all night so we can work this issue NOW. :)


  • ACTIVE CONTENT is enabled.
    I put it back (from ALLOW MOST) to RULE WIZARD and went with Download Manager when the Popup window came up.... timed out again. If I drop down to ALLOW MOST or ALLOW ONCE it goes through, no other instances.


  • Hi yragha,

    I still have two options left, at least one we can try tonight if you still have the time. Also, MegaHertz presented a perfectly valid option that we can try if that does not work. I will show you how. In fact, we can combine the suggestion from MegaHertz this final suggestion of mine.

    Have the time yragha???

    1. Delete the rule and create an HTTP rule for McAfee manually.

    2. I can find out how my friend has it set up.


  • Hi root,

    I recognized that what you were using was the shotgun technique. :p But, what about the value of finding the "root" cause??? :D
  • McAfee SuperDAT Update 5443 - FREE Download McAfee SuperDAT Update ::
    McAfee SuperDAT Update 5443 Free Download - McAfee SuperDAT Update will update your Windows Defender Latest Definition Updates 1.49.938.0 - 2008-23-12
    http://www.soft82.com/version/download/windows/mcafee-superdat-update-5443
    HOME


  • root,

    Thanks for getting him going. But, what was the problem? Based on these changes, it is unclear what specific action was responsible for the fix and it almost makes it seem like a bug in the Trusted IP list. I think it was manually adding the rule that did it. I will give my reasons below.

    Originally posted by root
    My first thought is to delete all instances of McAfee in the partially allowed rules. Nothing it the trusted applications.
    Now click add and browse to the McAfee update executable and select it.

    We tried that but it did not do us any good.

    Originally posted by root
    Make a rule to allow TCP out.
    Make a rule to allow UDP out.
    Period. No addresses. No ports.
    Go to the global rules and make sure block unknown protocols is not checked.
    Your ICMP settings shoul be 0,3,11 allowed in and 8 allowed out. Period.

    We basically tried this. Since these applications that have internet update normally use HTTP which is included in the Download Manager Preset, I had yragha use that preset. The next step would have been to manually create a rule for the McAfee update utility without a remote host. With most applications that do internet update, it would be pretty much standard procedure not to not include the remote host. Manual creation of a rule has been a standard suggestion to remedy problems with Norton AV because of the long executable filename.

    I am unsure about TCP and UDP full access. In fact, it is a mystery to me why this worked since yragha stated that he already tried placing the application in the trusted zone. It would be intersting to understand if an Unknown Protocol was involved or not. I understand the ICMP, which are basically default settings.

    Originally posted by root
    Don't know. :confused:

    Me too.

    Here is my guess:

    1. Creating the rule using preset did not work.

    2. Creating an HTTP rule using Other did not work.

    3. Putting the applicaiton in the Trusted List did not work.

    4. I believe that the TCP/UDP allow all method was not responsible since the Trusted Application list did not work.

    5. The ICMP settings were default so they probably were not responsible.

    6. Active Content is an unlikely cause. I considered this one but thought that this would only affect web page based updating like for Windows Update. This was also tried as recommended by another user.

    7. Might have been Unknown Protocol but doubtful since the error log that yragha produced listed HTTP as the protocol.

    8. I strongly suspect manually adding the rule was the thing that fixed the problem. I suspect this for two reasons. Manually adding applications that have long filenames has helped in the past and according to yragha's logs, the filename was long. And lastly, manually adding the file was part of the list of changes that root outlined, after which, it worked.

    Sorry if this is repetative for you yragha and some of you others who have followed this thread. This was a long one and I just wanted some sort of idea about which specific action fixed this problem for the sake of future users experiencing similar issues.


  • Bad timing David :D The forum at PC911 (http://www.pcnineoneone.com/cgi-bin/dcforum/dcboard.cgi?az=list&forum=computer&conf=conf1) is closing today or tomorrow. They're going to shift it over to another site - Jason Levine of Script Sentry fame is taking it on. No telling how it will all wash out, but the users are pretty loyal, so there's hope.


  • Yes sir ... except in when I clicke on Blocked as I stated it shows all the information but under REASON it says Learning Mode??

    Thing that get me is MCAFEE is under my TRUSTED or ALLOW but always the update engine times out.


    I've just tried almost all the apps. I have
    VCD Easy (connected using ALLOW this appl.)
    Musicmatch Jukebox
    Blubster
    all of these connect.


  • Hi root,

    yragha went to bed before we had a chance to give that a try. My last two options were:

    1. Manually add the executable and rules for McAfee.

    2. Get the rule from a friend who uses Outpost and McAfee.

    And, I was offline from Saturday afternoon to about noon today and was unable to pursue those options. Actually, Dmut gave me one other option besides those two that I wanted to try last. At any rate, I am pretty convinced that the action of manually adding the executable was the solution, at least in this situation. It was a good call. I was just a little confused about some of the other changes. The main thing is that it is working for yragha and we have one more happy Outpost user. :)


  • if you do by chance read this -- I've tried creating this rule with still no luck ....

    where the protocol is TCP
    and where the direction is OUTBOUND
    and where the host is termsvrl.mcafee.com
    and where the remote port is HTTP
    ALLOW IT


    It still won't work



    How do I create that IRC rule?


  • Well said!


  • Hi,

    Did you try the five steps for deleting references to the McAfee application in Outpost and retrying Download Manager? If that does not work, I have a couple of more ideas.


  • Yeah, what fixed it?


  • I'm assuming (I know that's dangerous:D) that it was Mega's rule.
    Chris


  • Yes that is correct.


  • I try that ... thanks.


    the rule I created I thought should go thru (see above post) I don't understand why it's not taking in RULES WIZARD.


  • OK. This might be a tough one.

    1. Open the Outpost GUI.

    2. From the menu, go to Options -> Application

    3. Find the entry or entries for McAfee.

    4. Highlight (click once) each of them (one at a time) and select 'Remove' until all of the entries are gone.

    5. Retry McAfee update and follow the same instruction as I stated above to select the Download Manager Preset.

    Also, a couple of questions:

    Which OS are you using: 95, 98, 98SE, NT, 2000, XP?

    What kind of service: dial-up, DSL, Cable, Satellite?

    We will concentrate on McAfee first and then move on to the Windows Update and the other vulnerability issues that you mentioned.


  • still no go ....
    it's getting pretty late and I'm getting aggravated ... if you think of anything else pass it on ... I'm open to anything . hey b/4 I forget ... thanks for all the help ...not many people would help someone for 2 hrs or so. thanks again.

    gary
    houston, tx


  • Hi yragha,
    You meant thanks Megahertz, right?
    I didn't see a Root post in this thread.:confused:
    Chris


  • Dang it David you type too fast!


  • What fixed it?


  • I'm a little confused by this thread because Active Content hasn't been mentioned. So if you haven't disabled it, do so by right clicking the tray icon and Options>Plugins, double click Active Content and uncheck the enable box. Shut down and restart Outpost to be sure it takes. Try Mcafee and see what happens - if it works, then you can add Mcafee to the site list in AC, and if it still doesn't, you've at least ruled it out.

    If it still doesn't, try the opposite approach of what you've been doing. Be online. Open the main OP window, Tools, Clear all logs. Go to Allowed and watch it while you run the Mcafee update from Allow Most (I think you said it works here.) The idea is you would now see everything that's being allowed when you connect, so can figure out what specific rules to make.


  • ROOT IM over @ Broadbandreports.com with some details for a solution


    OPTIONS/APPLICATION/CREATE NEW/search for MCAFEE (neta download engine) exe. in windows
    create rule #1 PROTOCOL is Tcp, DIRECTION is Outbound.
    create rule #2 PROTOCOL is Udp, DIRECTION is Outbound.


  • I should have stated NEXT to block separeted by the dividing line it shows under REASON is where it showed the Learning etc.
    Windows ME & Roadrunner. It's weird IE and other app. work, just not Mcafee and Microsoft xcept if I go to ALLOW MOST. Thanks again.


  • When I was in the Navy, I was an electronics technician, and worked on all kinds of Radar, Radio, and ECM equipment. That was back in the days of :eek: vacuum tubes! Oh my God!!!!
    Anyway, after the Navy spent thousands of dollars training us to troubleshoot and fix the gear, out favorite approach was always the shotgun technique. Start changing tubes until the problem went away.
    Worked then, works today. :D


  • Glad its working!!! Have a good night yragha.


  • After rereading things several times. I remembered a similar problem that i had with my mIRC script's autoupdate feature. I tried using the browser preset and the DL Manager preset ant the stupid thing would never work. Always timed out. Trusted app was not an option for obvious reasons. Through trial and error I finally found a rule (see screenshot) that works everytime.


  • OK, here is the next step in my opinion:

    1. Right click on the Outpost icon in the system tray and select 'Exit and Shutdown Outpost'.

    2. Open Windows Explorer and find the directory where you installed Outpost. By default the directory is:
    C:Program FilesAgnitumOutpost Firewall 1.0

    3. Delete the file named 'configuration.cfg'.

    4. Reboot your PC.

    5. I think that Outpost will still start automatically after you reboot. If it does not, start the firewall manually from the Windows Start Menu.

    6. You should get an error about a missing 'configuration.cfg' file. This is nothing to worry about. Just selet 'Yes' or 'OK' and a fresh one will be created for you.

    7. Run the McAfee Update and as quickly as possible, select the Download Manager Preset for the update utility.

    If that does not work, let me know. I still have a couple of ideas yet to try. NOTE: Unfortunately, you will have to set up the rules for your other applications again. Give it a try and let me know. :)

    One more thing. I have asked a couple of others to help, so we may get some different ideas here.

    Also, I will let you know that my final two ideas are:

    1. Create the rule manually. I will give you instructions for this after you try this idea.

    2. The last straw. :DI happen to know someone who also uses McAfee and Outpost and I will get the rules from him tomorrow and post them for you. :)


  • Hi David,

    I guess I should compare forum help to something to put it in perspective. So imagine you were in the room with yragha - how long would it take you to solve the problem? See what I mean? I'm not complaining - the reason I'm not here much, along with not being networked or having XP until just recently, is that I spend so much time in another help forum.

    What I mean by "update.exe" is whatever the exe is that's requesting access - in this case an update module, so it's just a generic term because I didn't know what it actually was.

    It's still not clear to me if whatever it was (the actual exe - I can't remember the name now) was in the popup or not. At first I thought not, but maybe yragha missed it. It's always in the title bar of that popup, but when I asked him to check allowed log when using Allow Most (where it would connect,) it didn't seem to be there either. I attached the popup for Agnitum Update as an example - AUPDRUN.EXE is right there in the title bar where the actual exe always is in my experience.

    So that's my reasoning on how OP failed to create the rule - it couldn't identify the "update.exe."


  • Thanks for explaing that Root. We didn't know you were in involved at another website ( how could we?)
    Anyway it seems you solved it.:):)
    Chris


  • Hi gang. I got his PM over at DSL and here is what I suggested.

    My first thought is to delete all instances of McAfee in the partially allowed rules. Nothing it the trusted applications.
    Now click add and browse to the McAfee update executable and select it.
    Make a rule to allow TCP out.
    Make a rule to allow UDP out.
    Period. No addresses. No ports.
    Go to the global rules and make sure block unknown protocols is not checked.
    Your ICMP settings shoul be 0,3,11 allowed in and 8 allowed out. Period.
    If you have Outpost Pro, save. If not shut it down and restart it after a reboot.

    I am curious if unchecking block unknown protocols helped. Also I'm thinking that McAfee may be using a redirector at times for the download. Don't know. :confused:
    He emailed me back and I asked him to get a checkup over at PC Flank.
    Several of you suggested things that should have worked
    Go figger. :D


  • David,

    I'm a regular at a computer help site and I see this all the time. This being inexperienced users giving confusing feedback, while more experienced people over-complicate it looking for arcane setup issues or whatever :)

    A careful reading (maybe not so careful, I missed the Active Content reference before) tells me that yragha never explicitly stated that he was making a rule for the "update.exe." That's my guess for why root's suggestion worked. When I asked yragha to use the allowed log, I didn't see what the exe was really - on mine it's always there (I don't know what the heck that "PROMPTIFNEWER=UPGRADE:4.1.30" thing is, but that's what OP wanted to make a rule for.) But that's where I was intending to go with it - find the exe, make a rule and you're done. It always works, and it did here.


  • Does this help any?

    The box that pops up all the time has this info. in it.
    **Mcafee Download Engine (Updating DAT Files)
    --shows this in Pop Up window
    Create Rule FOR PROMTIFNEWER=UPGRADE 4.1.3
    Outgoing Connection with
    Remote service HTTP (TCP:80)
    Remote address: termsvrl.mcafee.com
    Outpost firewall should
    allow all activities
    stop all activities
    Create rules using present Download Manager


  • nope. Mcafee still won't go thru. I did as you explained to disable active content only thing in that category (referers what not check either way).


  • clear log, ALLOW MOST showed this:

    Allow All Activity PROMPTIFNEWER=UPGRADE:4.1.30 termsvrl.mcafee.com HTTP Outbound TCP

    Allow DNS Resolving PROMPTIFNEWER=UPGRADE:4.1.30 ns1.houston.rr.com DNS Outbound UDP


    Hope this info. helps.


  • Yes ... the selection of DELETE was not availabe, only options were:
    --filter by time
    --copy log text
    --columns


    I've just tried UNDER RULES WIZARD more applications
    SONGSPY connects using ALLOW THIS APP.
    Outlook connects
    Windows Media Player

    but unfortunately not Mcafee Download engine nor Microsoft Automatic Updater. hmm.


  • another bit of info. ALTHOUGH I didn't select block, under Blocked it shows this:
    Learning Mode PROMPTIFNEWER=UPGRADE:4.1.30termsvrl.mcafee.com HTTPOutbound TCParning Mode


  • What I was trying to get to, but didn't really want to spend so many words, is:

    1. Everyone is an inexperienced user with a new piece of software.

    2. The "update.exe" is the important thing that was missing - root's advice on rules is a good failsafe approach, but I hardly ever make them like that - you could add the remote host and all and it would still work because now you've got the right exe.

    3. Either OP has a bug, or McAfee is just so weird that no one could really anticipate it. Although the exe is usually in the popup (in place of that nonsense that was there) I assumed that it would be in allowed for sure, and it wasn't, which just shows you how odd the McAfee update mechanism is I think.

    So it's simple really. McAfee wouldn't connect because it was fooling OP into creating a rule for the wrong thing, which I've never heard of, and would seem something to investigate by those who do such things. Now you've pointed it at the right thing manually, and it works. And it only took three pages to do it, which is the nature of forum help unfortunately. Although maybe not so unfortunately in at least one sense ... the awe it inspires for the people who consistently give so much of their time to help others, asking no compensation or reward. I still can't figure that one out :)


  • Hi sig,

    I have to admit that I am going to mark this thread for re-reading. I am not sure what you are talking about when you say update.exe or exactly how the automated rule creation for Outpost failed. By the way, the forum style support is OK. I like to think of it as "support in slow motion". :D It is not like a phone call where ideas can be exchanged quickly, but the forum does seem to get the job done. Thanks for the additional input. I appreciate it. Have a good day. :)


  • I apologize I'm new at this coming over from Zone Alarm ... I was on the opening screen that shows
    Connections
    Allowed
    Blocked
    Ads
    Content
    DNS cache
    Active content
    Attact detention

    I'm at the screen you posted and deleted the MCAFEE application (STILL in RULES WIZARD) no go, won't connect using Download Manager preset.


  • Hi sig,

    Thanks for the update. :D I understand what you were talking about now. Out of curiousity, which help forum do you help out with. It should be OK to post it here. I keep a list of helpful forums that I find on the internet and am interested in adding it to my list. Thanks again sig. :)


  • Hi MegaHertz, :D

    yragha, sorry to get a bit off topic. MegaHertz, believe it or not, Danil asked me how fast I type when he made the Mod Offer to me. I learned in high school and I have to admit, it has proved to be a very valuable skill. If I ever lose my job as an engineer, %@%$ this economy, I will get a job as an administrative assistant. :D


  • PROBLEM fixed. Thanks ROOT.


  • I wish I could say what was going on. To the best of my knowlege, in the past, manually adding a file instead of letting Outpost add it has fixed some problems. So I just had him try that, and since you had already done something similar, I added the other stuff just to see if it would work.
    All I can say is sometimes you get lucky. ;)


  • We could also try adding the mcafee server (termsvrl.mcafee.com) to trusted zone if he is using pro. One other idea after you have created the preset switch to block most mode and run the update, block most mode seems to squish the learning mode bug.


  • I am an "inexperienced user" with only 2 years of computer knowledge and appreciate all your help. The one thing "saying" that ROOT gave me that finally took was to open the actual executable. I went to search for inside my entire Mcafee folder being "MCAFEE NETA DOWNLOAD ENGINE.EXE. Before as was the case when I supplied the long string of info. to yall, it was also showing "learning mode" beside the application string. The PROMPT: upgrade to 4.13 etc etc (was the TITLE the acutal OP pop-up window supplied) and so I was trying to create a rule for that instead of opening the exe. file and entering that into the rule. Also... I was entering all the rules info. host/remote/protocol and so on (I believe their is 6 categories) where as ROOT specifically stated create two rules TCP-Outbound and UDP-Outbound and nothing else PERIOD. So, that's it. Thanks for all the help.

    Gary


  • Same items mentioned in the 'Blocked' log?

    The logs are your key to figuring out what is going on in Outpost. While you are at it, is there anything listed in the Attack Detection log?

    Don't worry, I came from Zone Alarm too. It takes a little time, but when you get the hang of Outpost, you will have control over your internet connection that Zone Alarm users only dream of. :)

    Give me a few minutes. I will be right back. :)





  • Where's The Advantage In Windows Genuine Advantage?
    Stocks Bounce After S&P Joins Bear Market
    You are looking at:polala.com's Windows Updates and Mcafee Update, click polala.com to home
  • fedex planes avoiding storms in memphis
  • chasing story on our local station
  • doppler measurement of tornado wind speeds
  • tornado damage survey collin grayson counties texas
  • yesterday radar image request
  • public sevwx chatrooms 33
  • tornado f2 childress county tx
  • second home on the plains
  • death ridge please explain
  • amazing torando documentary on tonight 33
  • gr2 analyst edition
  • may 11 major tornado event in lubbock texas 33 33
  • inland hurricane near grr

  • localized tornado warnings 33
  • outflow boundaries
  • large hail and chasing
  • how to access old chase reports
  • tornado treats today
  • smoke from mexico in lousiana 33 33
  • chasing storms on 05 09 06
  • where do you go to check the ensembles
  • reno nws site enhancements
  • how to chase a storm the movie
  • my 2006 summer outlook
  • what do you do during long down periods
  • mcvs
  • dust devil seriously injures north dakota girl
  • #If you have any other info about this subject , Please add it free.#
    Your name:
    E-mail:
    Telphone:

    Your comments:


    If you have any other info about Windows Updates and Mcafee Update , Please add it free.
     Homepage | Add to favorites | Contact us | Exchange links | LOGIN | Site map | 
    Copyright© 2008 polala.com        Site made:CFZ