[bdfw] Error: Bdpriosendtoremote Failed With Error Code C0000225

Gorgotham
edited November 2012 in Firewall

I am a recent convert from another security solution. Going through the firewall logs, I see this: [bDFW] Error: BdprIoSendToRemote failed with error code c0000225


Over and over again. What is this? What does it mean? And before you ask, Christian, yes, it is set up according to firewall settings thread. Home/Office, OFF, and Generic.


I've searched the forums, and see others have had or having this same error. But none of them every respond to tell you if they have their firewall set up the way you want them to. Mine is :)


So, any idea what would cause this?


Also, this is BD IS 2013, version 1682. And Win 7 64bit.

Comments

  • Come on guys. There's hundreds of these entries in the log. Is this thing working? I'm starting to regret my purchase.

  • I went ahead and opened a support ticket since this isn't getting any attention. Thanks.

  • I went ahead and opened a support ticket since this isn't getting any attention. Thanks.


    Is this a normal amount of time for support to respond to a ticket? It's now been seven days since I've opened the ticket for this, and have not gotten a response. I've heard this company was "Great" for support. I'm not seeing it.


    I have Ticket ID:201211211031621 sitting and waiting.

  • Is this a normal amount of time for support to respond to a ticket? It's now been seven days since I've opened the ticket for this, and have not gotten a response. I've heard this company was "Great" for support. I'm not seeing it.


    I have Ticket ID:201211211031621 sitting and waiting.


    Where did you hear that?

  • I supposed I got suckered in from some reviews I read "Bitdefender has an excellent 24/7 support system with easy-to-access professional assistance and helpful resources." for one.


    There were a few others, but suffice to say, their support was touted as being very good.

  • I supposed I got suckered in from some reviews I read "Bitdefender has an excellent 24/7 support system with easy-to-access professional assistance and helpful resources." for one.


    There were a few others, but suffice to say, their support was touted as being very good.


    Sorry, just my attempt at a little humour. My firewall logs show pretty much the same thing, with a few more error codes. I've been aware of this for awhile now but didn't worry about it a great deal as everything seemed to be running smoothly. You've got me a little curious now too, so hopefully we'll get an explanation shortly.

  • Error remains after update to 1684 this morning. And still no reply to my ticket, going on day 8 now. This is getting comical. My last security solution would take at most two days, usually got an answer within a day.


    I still have some time to request a refund.

  • Support finally got back to me after I asked for a refund. They looked at my logs and determined that Superantispyware and Secunia were the culprits. Although SAS wasn't set for real time scanning and just used manually once in a while to double check things.


    Anyway, I've uninstalled both and will see what happens after a few days.

  • Support finally got back to me after I asked for a refund. They looked at my logs and determined that Superantispyware and Secunia were the culprits. Although SAS wasn't set for real time scanning and just used manually once in a while to double check things.


    Anyway, I've uninstalled both and will see what happens after a few days.


    Yes I had a problem with Secunia too. It stopped the sandbox feature from working. Rather disappointing because I like PSI. About a week ago I reinstalled it and so far the sandbox is working OK but I guess its generating all these firewall errors. Did they happen to mention how these errors are affecting the functioning of the firewall?

  • Gorgotham
    edited December 2012

    No. But I am going to assume the firewall was working as intended but Secunia/SAS were conflicting with with somehow. Below is the response from BD.


    We apologize for our late reply.


    After analyzing the information we received from you (for ticket id


    201211211031621) we concluded that there are other security solutions or applications installed on your system, which could conflict with BitDefender:


    - SUPERAntiSpyware


    - Secunia PSI


    Running multiple security solutions on the same PC may affect their proper functionality as they compete for access to the same system resources. Even if they are turned off, there are some active processes running in the background.


    We recommend you to uninstall or turn OFF other security solutions in order for BitDefender to work properly.


    ----------------------------------------------------------------------------------------------------------------------------------------


    This may be what the issue was, prior to uninstalling the above apps, this is what some of my log looked like, please note the time stamps:


    2012/11/30 14:24:46.063 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:24:46.063 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:39:40.080 [bDFW] Error: BdprIoSendToLocal failed with error code c000000d.


    2012/11/30 14:40:02.115 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:40:02.115 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:40:02.115 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:40:02.115 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:40:38.760 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:40:38.760 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:40:38.760 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:44:15.469 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:44:15.469 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:44:15.469 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:44:15.469 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    2012/11/30 14:44:15.469 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    Now, since uninstalling, this is what the log looks like after the re-boot:


    2012/11/30 20:19:42.850 [bDFNDISF] Register filter driver successfully .


    2012/11/30 20:19:42.850 [bDFNDISF] Driver attach success


    2012/11/30 20:19:42.882 [bDFW] Library init completed successfully.


    2012/11/30 20:19:42.882 [bDFW] Driver init completed successfully.


    2012/11/30 20:19:47.000 [bDFW] Ip FE80:0000:0000:0000:0000:0100:007F:FFFE added to device {a26fd4a7-afc6-40a4-b62d-cec41d4b3892}.


    2012/11/30 20:19:47.000 [bDFNDISF] Received address change notification: device="{a26fd4a7-afc6-40a4-b62d-cec41d4b3892}" address=FE80:0000:0000:0000:0000:0100:007F:FFFE added.


    2012/11/30 20:19:47.406 [bDFNDISF][DEVIO] New adapter binding: (#1, name = \DEVICE\{93FD2D45-9469-4B80-8298-9C5FAB86FAE9})


    2012/11/30 20:19:48.997 [bDFNDISF][DEVIO] New adapter binding: (#2, name = \DEVICE\NDISWANIPV6)


    2012/11/30 20:19:48.997 [bDFNDISF][DEVIO] New adapter binding: (#3, name = \DEVICE\NDISWANIP)


    2012/11/30 20:19:48.997 [bDFNDISF][DEVIO] New adapter binding: (#4, name = \DEVICE\NDISWANBH)


    2012/11/30 20:19:49.262 [bDFW] Ip FE80:0000:0000:0000:D845:2C8A:2E3A:DAE0 added to device {93fd2d45-9469-4b80-8298-9c5fab86fae9}.


    2012/11/30 20:19:49.262 [bDFNDISF] Received address change notification: device="{93fd2d45-9469-4b80-8298-9c5fab86fae9}" address=FE80:0000:0000:0000:D845:2C8A:2E3A:DAE0 added.


    2012/11/30 20:19:55.736 [bDFW] Ip 169.254.218.224 added to device {93fd2d45-9469-4b80-8298-9c5fab86fae9}.


    2012/11/30 20:19:55.736 [bDFNDISF] Received address change notification: device="{93fd2d45-9469-4b80-8298-9c5fab86fae9}" address=169.254.218.224 added.


    2012/11/30 20:20:04.488 [bDFWCORE] GetAddresses: Adapter name: {93FD2D45-9469-4B80-8298-9C5FAB86FAE9}


    2012/11/30 20:20:04.488 [bDFWCORE] GetAddresses: Adapter description: Realtek PCIe GBE Family Controller


    2012/11/30 20:20:04.488 [bDFWCORE] GetAddresses: Adapter friendly name: Local Area Connection


    2012/11/30 20:20:04.488 [bDFWCORE] GetAddresses: Medium type: 1


    2012/11/30 20:20:04.488 [bDFWCORE] GetAddresses: Address: FE80:0000:0000:0000:D845:2C8A:2E3A:DAE0. Mask: 64.


    2012/11/30 20:20:04.488 [bDFWCORE] GetAddresses: Address: 169.254.218.224. Mask: 112.


    2012/11/30 20:20:04.488 [bDFWCORE] GetAddresses: Dns Server 10.0.0.1


    2012/11/30 20:20:06.032 [bDFWCORE] Address manager initialised.


    2012/11/30 20:20:06.032 [NDISLIB] Filter enabled.


    2012/11/30 20:20:06.032 [bDFW] [DEVIO] Firewall enabled.


    2012/11/30 20:20:13.899 [bDFW] Ip 169.254.218.224 removed from device {93fd2d45-9469-4b80-8298-9c5fab86fae9}.


    2012/11/30 20:20:13.899 [bDFNDISF] Received address change notification: device="{93fd2d45-9469-4b80-8298-9c5fab86fae9}" address=169.254.218.224 removed.


    2012/11/30 20:20:13.899 [bDFWCORE] Addresses changed: IPv4: 1 IPv6: 0.


    2012/11/30 20:20:13.939 [bDFW] Ip 10.0.0.5 added to device {93fd2d45-9469-4b80-8298-9c5fab86fae9}.


    2012/11/30 20:20:13.939 [bDFNDISF] Received address change notification: device="{93fd2d45-9469-4b80-8298-9c5fab86fae9}" address=10.0.0.5 added.


    2012/11/30 20:20:13.949 [bDFWCORE] Addresses changed: IPv4: 1 IPv6: 0.


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Adapter name: {93FD2D45-9469-4B80-8298-9C5FAB86FAE9}


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Adapter description: Realtek PCIe GBE Family Controller


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Adapter friendly name: Local Area Connection


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Medium type: 1


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Address: FE80:0000:0000:0000:D845:2C8A:2E3A:DAE0. Mask: 64.


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Address: 10.0.0.5. Mask: 120.


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Dns Server 10.0.0.1


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: Gateway: 10.0.0.1


    2012/11/30 20:20:15.951 [bDFWCORE] GetAddresses: DHCPv4: 10.0.0.1


    2012/11/30 20:20:29.463 [bDFW] Ip FE80:0000:0000:0000:0000:5EFE:0A00:0005 added to device {3a90c408-ed10-471e-aab9-33f0e86c3502}.


    2012/11/30 20:20:29.463 [bDFNDISF] Received address change notification: device="{3a90c408-ed10-471e-aab9-33f0e86c3502}" address=FE80:0000:0000:0000:0000:5EFE:0A00:0005 added.


    2012/11/30 20:20:29.853 [bDFW] Ip FE80:0000:0000:0000:0000:0100:007F:FFFE removed from device {a26fd4a7-afc6-40a4-b62d-cec41d4b3892}.


    2012/11/30 20:20:29.853 [bDFNDISF] Received address change notification: device="{a26fd4a7-afc6-40a4-b62d-cec41d4b3892}" address=FE80:0000:0000:0000:0000:0100:007F:FFFE removed.


    2012/11/30 20:20:29.853 [bDFW] Ip FE80:0000:0000:0000:1CE2:150A:F5FF:FFFA added to device {a26fd4a7-afc6-40a4-b62d-cec41d4b3892}.


    2012/11/30 20:20:29.853 [bDFNDISF] Received address change notification: device="{a26fd4a7-afc6-40a4-b62d-cec41d4b3892}" address=FE80:0000:0000:0000:1CE2:150A:F5FF:FFFA added.


    2012/11/30 20:20:29.853 [bDFWCORE] Addresses changed: IPv4: 0 IPv6: 1.


    2012/11/30 20:20:30.226 [bDFW] Ip 2001:0000:9D38:953C:1CE2:150A:F5FF:FFFA added to device {a26fd4a7-afc6-40a4-b62d-cec41d4b3892}.


    2012/11/30 20:20:30.226 [bDFNDISF] Received address change notification: device="{a26fd4a7-afc6-40a4-b62d-cec41d4b3892}" address=2001:0000:9D38:953C:1CE2:150A:F5FF:FFFA added.


    2012/11/30 20:20:30.226 [bDFWCORE] Addresses changed: IPv4: 0 IPv6: 1.


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Adapter name: {93FD2D45-9469-4B80-8298-9C5FAB86FAE9}


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Adapter description: Realtek PCIe GBE Family Controller


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Adapter friendly name: Local Area Connection


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Medium type: 1


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Address: FE80:0000:0000:0000:D845:2C8A:2E3A:DAE0. Mask: 64.


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Address: 10.0.0.5. Mask: 120.


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Dns Server 10.0.0.1


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: Gateway: 10.0.0.1


    2012/11/30 20:20:32.241 [bDFWCORE] GetAddresses: DHCPv4: 10.0.0.1


    2012/11/30 20:20:57.066 [NDISLIB] Filter enabled.


    2012/11/30 20:20:57.066 [bDFW] [DEVIO] Firewall enabled.


    And there are no errors after this, just normal stuff. I'm happy so far :)

  • I spoke too soon.


    2012/12/01 08:04:31.711 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.

  • I spoke too soon.


    2012/12/01 08:04:31.711 [bDFW] Error: BdprIoSendToLocal failed with error code c0000225.


    Ya I uninstalled PSI last night but I'm still getting the error messages. Are you familiar with a program called 'Autoruns' from System Internals? Sometimes even after uninstalling a program there can be leftovers in the registry and this program will find them for you. Although it didn't help me this time it has in the past and its definately worth a try.

  • Already did that. I work in IT for a living :) I don't see anything that should cause the error, hence my opening a ticket. My last security suite never complained about SAS or Secunia, so I had ruled that out initially. And nothing I have running is doing anything funky.


    There isn't anything really running that should cause this that I can see.

  • Here we are, December 12th. Ticket opened November 21st. Issue is still not resolved. I've gotten a few replies to try different things, and after giving them what they asked for, they stopped responding. I've now been waiting since 12/6 since their last reply. This is a day shy of another week.


    I cannot believe that this issue is taking a month to resolve. I seriously feel ripped off here. No answers, no eluding to a solution, just requests for more logs without ever getting a response back.


    I want so much to love your product, but you are making it REALLY hard to do.

  • Here we are, December 12th. Ticket opened November 21st. Issue is still not resolved. I've gotten a few replies to try different things, and after giving them what they asked for, they stopped responding. I've now been waiting since 12/6 since their last reply. This is a day shy of another week.


    I cannot believe that this issue is taking a month to resolve. I seriously feel ripped off here. No answers, no eluding to a solution, just requests for more logs without ever getting a response back.


    I want so much to love your product, but you are making it REALLY hard to do.


    Best security software...Absolute worst support in the industry.

  • Here we are, December 12th. Ticket opened November 21st. Issue is still not resolved. I've gotten a few replies to try different things, and after giving them what they asked for, they stopped responding. I've now been waiting since 12/6 since their last reply. This is a day shy of another week.


    I cannot believe that this issue is taking a month to resolve. I seriously feel ripped off here. No answers, no eluding to a solution, just requests for more logs without ever getting a response back.


    I want so much to love your product, but you are making it REALLY hard to do.


    Hi...Any further response from BD on this issue?

  • Hi...Any further response from BD on this issue?


    There has been one more response, asking to set the log to verbose mode, have the error occur and send them that log. This, I did. I have not heard back from them in over a week, which seems par for the course so far.


    So, at this point, nothing new.

  • OK thanks. Could you let me know if they come up with anything interesting, Appreciate it.

  • OK thanks. Could you let me know if they come up with anything interesting, Appreciate it.


    Hi... Just a quick update. I decided to open a support ticket of my own on Dec. 30. On Jan.1 I got a request for logs and a screenshot, which I sent them. On Jan. 5, I received a response requesting I remove Malwarebytes (free edition) and run a repair which I did. As expected the problem remains with hundreds of firewall errors . I informed them and am awaiting a response. I,m sure that Malwarebytes was given the OK to run alongside BD.

  • .......... I informed them and am awaiting a response. I,m sure that Malwarebytes was given the OK to run alongside BD.


    Yes, you're right, the official response can be found here, using the free version: http://forum.bitdefender.com/index.php?s=&...st&p=151353

  • Ticket opened November 21st. It's January 14th. NO RESOLUTION!


    Last email response from Bitdefender was on Dec 18th.


    I won't be renewing and that's for sure.

  • Hello,


    If the software is working fine, you should ignore that message. It is only for the developers to help them debug any issues with network filtering that may appear.


    C0000225 means STATUS_NOT_FOUND. This error appears when BitDefender tries to pass intercepted traffic back on the network and the original connection was closed already (either the server or the client issued a reset meaning it is not interested in any remaining data). This can happen during normal usage but it is sometime exacerbated if other network filters are installed (that is why support tells you to uninstall other conflicting programs).

  • Gorgotham
    edited January 2013
    Hello,


    If the software is working fine, you should ignore that message. It is only for the developers to help them debug any issues with network filtering that may appear.


    C0000225 means STATUS_NOT_FOUND. This error appears when BitDefender tries to pass intercepted traffic back on the network and the original connection was closed already (either the server or the client issued a reset meaning it is not interested in any remaining data). This can happen during normal usage but it is sometime exacerbated if other network filters are installed (that is why support tells you to uninstall other conflicting programs).


    Thanks for the reply and explanation. Someone could have saved over a month of time and just said what you just did and I would have accepted that.

  • cberneanu
    edited January 2013
    Thanks for the reply and explanation. Someone could have saved over a month of time and just said what you just did and I would have accepted that.


    I'm sorry, but I don't usually have time to watch the forums. I answered as soon as I saw the topic.

  • werby3
    edited January 2013
    I'm sorry, but I don't usually have time to watch the forums. I answered as soon as I saw the topic.


    Hello,


    Is it better for you (BD support) to receive all users's problems via tickets, phone, chat, e-mails etc. than posting and answering here where one user's post (and official answer) can help many others ???


    Regards

  • columbo
    columbo
    edited January 2013
    Hello,


    Is it better for you (BD support) to receive all users's problems via tickets, phone, chat, e-mails etc. than posting and answering here where one user's post (and official answer) can help many others ???


    Regards


    Good point, as many times we as members use the solutions (and also the links) to help others here, on a widely seen and accessed format, this forum.

  • Good point, as many times we as members use the solutions (and also the links) to help others here, on a widely seen and accessed format, this forum.


    Dec 30/2012 Support ticket opened


    Jan 1/2013 Generic response from BD requesting support tool logs and a screen shot


    Jan 1/2013 requested items sent to BD


    Jan 5/2013 reply from BD requesting removal of Malwarebytes(free) and a repair of BD


    Jan 5/2013 I remove Malwarebytes and run a repair. Problem remains. Email sent to BD


    Jan 23/2013 Eighteen days since last response from BD.


    Conclusions:


    1.Official support forum offers no official support.


    2. Email support should be replaced by carrier pidgeons as messages would travel back and forth across the ocean much faster.


    3. Unless someone from another dept. happens to be browsing this forum on their lunch hour, you will never get an intelligent response from BD


    4. All support personnel work for the Business Division of BD as that must be where the money is.


    5. When my subscription runs out in 48 days I will seriously have to consider moving on.

  • Georgia
    Georgia ✭✭✭

    Hello all and thank you for your feedback!


    @ ozziebear :


    I found your Ticket ID: 201212301005187, which was automatically closed because you did not reply to our last mail - 02/18/2013. Remember that you can reopen a ticket at anytime by sending a reply.


    I will close this topic, but if you need assistance regarding any other issue please feel free to start a new topic.


    Thank you! :)

This discussion has been closed.