Your post is a bit confusing at first,
but I think you are saying that you have a
WinPC on your WAN which you want to access your LAN.
I think you need to add a rule for that.
And, if you want to be able to Ping,
you need to add a separate rule for that.
It looks like there's no rule for it right now...
(Sorry, I don't know how to read ipfstat output yet,
I have only used the GUI so far...)
If this is not enough info, please let me know....
also, someone else may answer.