Solved blocked by group policy

arp

New member
Local time
1:06 AM
Messages
7
hi

not sure if that is the correct section, sorry if it isn't.

when i try to run a specific exe i get the following error:
f_ju03crlm_f86984f.png


anyone ever seen this message before? i don't know if that is relevant, but the exe i am trying to run is located on an older partition that was made under win XP. but i already changed owner and full permissions on the whole partition to myself in win7. how do i solve this problem?

the output of gpresult /z

Code:
Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0
Copyright (C) Microsoft Corp. 1981-2001
 
Created On 20.04.2010 at 12:11:08
 
 
 
RSOP data for wx\kon on WX : Logging Mode
--------------------------------------------------
 
OS Configuration: Standalone Workstation
OS Version: 6.1.7600
Site Name: N/A
Roaming Profile: N/A
Local Profile: C:\Users\kon
Connected over a slow link?: No
 
 
USER SETTINGS
--------------
 
Last time Group Policy was applied: 20.04.2010 at 11:54:10
Group Policy was applied from: N/A
Group Policy slow link threshold: 500 kbps
Domain Name: wx
Domain Type: <Local Computer>
 
Applied Group Policy Objects
-----------------------------
Local Group Policy
 
The user is a part of the following security groups
---------------------------------------------------
None
Everyone
BUILTIN\Administrators
BUILTIN\Users
NT AUTHORITY\INTERACTIVE
CONSOLE LOGON
NT AUTHORITY\Authenticated Users
This Organization
LOCAL
NTLM Authentication
High Mandatory Level
 
The user has the following security privileges
----------------------------------------------
 
 
Resultant Set Of Policies for User
-----------------------------------
 
Software Installations
----------------------
N/A
 
Logon Scripts
-------------
N/A
 
Logoff Scripts
--------------
N/A
 
Public Key Policies
-------------------
N/A
 
Administrative Templates
------------------------
GPO: Local Group Policy
KeyName: Software\Policies\Microsoft\Windows\AppCompat\DisablePCA
Value: 1, 0, 0, 0
State: Enabled
 
Folder Redirection
------------------
N/A
 
Internet Explorer Browser User Interface
----------------------------------------
N/A
 
Internet Explorer Connection
----------------------------
N/A
 
Internet Explorer URLs
----------------------
N/A
 
Internet Explorer Security
--------------------------
N/A
 
Internet Explorer Programs
--------------------------
N/A
 
Last edited by a moderator:

My Computer

OS
windows 7
Do you get the error when you click on "Run as administrator"?

Try changing the security policy. Go to gpedit.msc-computer configuration-windows settings-security settings-local policies-security options.Change "User Account Control: Behavior of the elevation prompt for standard users:" to "prompt for credentials". This will result in blocked programs prompting for elevation. When it does, enter your admin password.

If you are part of a domain, then it may ahve to do with network security policy, for which you'll need to contact your network admin (as the error message says).
 

My Computer

Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
yes, i am running the program as admin.

not part of a domain as seen in gpresult:
Domain Type: Local Computer

i am beginning to think it has nothing to do with group policies at all and the error might be misleading, but i don't know what to do next.
 

My Computer

OS
windows 7

My Computer

Computer Manufacturer/Model Number
Too many to describe...
OS
Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
i took ownership of all files but unfortunately i still get the same error.
 

My Computer

OS
windows 7
Hello Arp, and welcome to Seven Forums.

It sounds like the program may have been blocked using AppLocker. Double check in the AppLocker rules to see if one was created to block that program.

Hope this helps,
Shawn
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self built custom
OS
64-bit Windows 11 Pro for Workstations
CPU
Intel i7-8700K OC'd to 5 GHz
Motherboard
ASUS ROG Maximus XI Formula Z390
Memory
64 GB (4x16GB) G.SKILL TridentZ RGB DDR4 3600 MHz
Graphics Card(s)
ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
Sound Card
Integrated
Monitor(s) Displays
2 x Samsung Odyssey G7 27"
Screen Resolution
2560x1440
Hard Drives
1TB Samsung 990 PRO M.2,
4TB Samsung 990 PRO PRO M.2,
TerraMaster F8 SSD Plus NAS
PSU
Seasonic Prime Titanium 850W
Case
Thermaltake Core P3
Cooling
Corsair Hydro H115i
Keyboard
Logitech wireless K800
Mouse
Logitech MX Master 4
Internet Speed
2 Gb/s Download and 100 Mb/s Upload
Antivirus
Malwarebyte Anti-Malware Premium
Browser
Google Chrome
Other Info
Logitech Z625 speaker system,
Logitech BRIO 4K Pro webcam,
HP Color LaserJet Pro MFP M477fdn,
APC SMART-UPS RT 1000 XL - SURT1000XLI,
Galaxy S23 Plus phone
hello Shawn, thanks for the reply.

there were no items listed in the rulesets, i also added the exe that causes this error in a allowed rule, but the same error appears.
 

My Computer

OS
windows 7
hi

not sure if that is the correct section, sorry if it isn't.

when i try to run a specific exe i get the following error:
f_ju03crlm_f86984f.png


anyone ever seen this message before? i don't know if that is relevant, but the exe i am trying to run is located on an older partition that was made under win XP. but i already changed owner and full permissions on the whole partition to myself in win7. how do i solve this problem?

the output of gpresult /z

Code:
Microsoft (R) Windows (R) Operating System Group Policy Result tool v2.0
Copyright (C) Microsoft Corp. 1981-2001
 
Created On 20.04.2010 at 12:11:08
 
 
 
RSOP data for wx\kon on WX : Logging Mode
--------------------------------------------------
 
OS Configuration: Standalone Workstation
OS Version: 6.1.7600
Site Name: N/A
Roaming Profile: N/A
Local Profile: C:\Users\kon
Connected over a slow link?: No
 
 
USER SETTINGS
--------------
 
Last time Group Policy was applied: 20.04.2010 at 11:54:10
Group Policy was applied from: N/A
Group Policy slow link threshold: 500 kbps
Domain Name: wx
Domain Type: <Local Computer>
 
Applied Group Policy Objects
-----------------------------
Local Group Policy
 
The user is a part of the following security groups
---------------------------------------------------
None
Everyone
BUILTIN\Administrators
BUILTIN\Users
NT AUTHORITY\INTERACTIVE
CONSOLE LOGON
NT AUTHORITY\Authenticated Users
This Organization
LOCAL
NTLM Authentication
High Mandatory Level
 
The user has the following security privileges
----------------------------------------------
 
 
Resultant Set Of Policies for User
-----------------------------------
 
Software Installations
----------------------
N/A
 
Logon Scripts
-------------
N/A
 
Logoff Scripts
--------------
N/A
 
Public Key Policies
-------------------
N/A
 
Administrative Templates
------------------------
GPO: Local Group Policy
KeyName: Software\Policies\Microsoft\Windows\AppCompat\DisablePCA
Value: 1, 0, 0, 0
State: Enabled
 
Folder Redirection
------------------
N/A
 
Internet Explorer Browser User Interface
----------------------------------------
N/A
 
Internet Explorer Connection
----------------------------
N/A
 
Internet Explorer URLs
----------------------
N/A
 
Internet Explorer Security
--------------------------
N/A
 
Internet Explorer Programs
--------------------------
N/A

And you are a member of what workgroup? The administrator of the workgroup is? The name of the program is?
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite S875D-S7239 laptop
OS
MS Windows 7 Ultimate SP1 64-bit
CPU
AMD A10-4600M
Motherboard
AMD Pumori (Socket FT1)
Memory
6.00 GB Dual-Channel DDR3 @ 798MHz (11-11-12-28)
Graphics Card(s)
AMD Radeon HD 7660G
Sound Card
High Definition Audio Device
Monitor(s) Displays
Generic PnP Monitor (1600x900@60Hz)
Screen Resolution
1600x900@60Hz
Hard Drives
SSD 119GB Corsair CSSD-V128GB2 ATA Device
Keyboard
Standard PS/2 Keyboard
Mouse
HP Wireless Optical Mobile Mouse Model FHA-3410
Internet Speed
What the local pub, local coffee shop offers.
Other Info
Optical Drive:MATSHITA BD-CMB UJ160B ATA Device


Also have an Asus ha1002xp netbook with Win 7 Ultimate installed.
my workgroup is called WORKGROUP and the user "kon" (me) is admin. the program is justcause2.exe
 

My Computer

OS
windows 7
hello Shawn, thanks for the reply.

there were no items listed in the rulesets, i also added the exe that causes this error in a allowed rule, but the same error appears.

If it's not AppLocker then do you have Software Restriction Policy enabled. Here's a bat file(code) I use to disable it on the fly wihtout entering Local Security to turn it off. I also use one to turn it back on, it's just easier this way. All it does is set it back to the default level of allowed. Run it and then try running your app. I have shortcuts to each bat file on my start menu for quick access

Code:
REG ADD HKLM\SOFTWARE\Policies\Microsoft\Windows\Safer\CodeIdentifiers\ /v DefaultLevel /t REG_DWORD /d 0x00040000 /f
 
Last edited:

My Computer

Computer Manufacturer/Model Number
Averatec 6130HS-20
OS
Windows 7 Professional 32-bit (6.1, Build 7600)
CPU
Intel(R) Pentium(R) 4 3.00 GHz HT
Memory
2.0 GB
Graphics Card(s)
ATI Mobility Radeon 9600 64MB
Sound Card
Realtek AC'97 Audio
Screen Resolution
1280 x 800
Hard Drives
Seagate 96023A 60GB 7200RPM -
Seagate FreeAgentDesktop 250GB
Cooling
20 Inch Box Fan
Mouse
Targus PAWM10 Wireless Optical Laptop Mouse
it seems like that fixed it Greg, many thanks!
 

My Computer

OS
windows 7
it seems like that fixed it Greg, many thanks!
Keep in mind that SRP is more than a decent layer of security. Don't forget to turn it back on in Local Security. I can give you the bat file code for turning it back on if you need it.
 

My Computer

Computer Manufacturer/Model Number
Averatec 6130HS-20
OS
Windows 7 Professional 32-bit (6.1, Build 7600)
CPU
Intel(R) Pentium(R) 4 3.00 GHz HT
Memory
2.0 GB
Graphics Card(s)
ATI Mobility Radeon 9600 64MB
Sound Card
Realtek AC'97 Audio
Screen Resolution
1280 x 800
Hard Drives
Seagate 96023A 60GB 7200RPM -
Seagate FreeAgentDesktop 250GB
Cooling
20 Inch Box Fan
Mouse
Targus PAWM10 Wireless Optical Laptop Mouse
i just set it to 0 instead of 0x40000, right?
 

My Computer

OS
windows 7
i just set it to 0 instead of 0x40000, right?
That is correct, my friend. It's hard to beat too, especially if it's set as you have found out to cover all users including Admin's.
 

My Computer

Computer Manufacturer/Model Number
Averatec 6130HS-20
OS
Windows 7 Professional 32-bit (6.1, Build 7600)
CPU
Intel(R) Pentium(R) 4 3.00 GHz HT
Memory
2.0 GB
Graphics Card(s)
ATI Mobility Radeon 9600 64MB
Sound Card
Realtek AC'97 Audio
Screen Resolution
1280 x 800
Hard Drives
Seagate 96023A 60GB 7200RPM -
Seagate FreeAgentDesktop 250GB
Cooling
20 Inch Box Fan
Mouse
Targus PAWM10 Wireless Optical Laptop Mouse
To re enable the group policy if i change the bat file to 0 instead of 0x40000 it block all programs running on the computer :mad: How to set it back to default. Can't open anything or go to system restore. :devil:
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Microsoft Windows 7 Ultimate 64-bit
CPU
Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz
Motherboard
ASRock Z68 Extreme4 Gen3
Memory
8 GIGS
Graphics Card(s)
AMD Radeon HD 6900 Series
Antivirus
Norton
Browser
Chrome

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self built custom
OS
64-bit Windows 11 Pro for Workstations
CPU
Intel i7-8700K OC'd to 5 GHz
Motherboard
ASUS ROG Maximus XI Formula Z390
Memory
64 GB (4x16GB) G.SKILL TridentZ RGB DDR4 3600 MHz
Graphics Card(s)
ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
Sound Card
Integrated
Monitor(s) Displays
2 x Samsung Odyssey G7 27"
Screen Resolution
2560x1440
Hard Drives
1TB Samsung 990 PRO M.2,
4TB Samsung 990 PRO PRO M.2,
TerraMaster F8 SSD Plus NAS
PSU
Seasonic Prime Titanium 850W
Case
Thermaltake Core P3
Cooling
Corsair Hydro H115i
Keyboard
Logitech wireless K800
Mouse
Logitech MX Master 4
Internet Speed
2 Gb/s Download and 100 Mb/s Upload
Antivirus
Malwarebyte Anti-Malware Premium
Browser
Google Chrome
Other Info
Logitech Z625 speaker system,
Logitech BRIO 4K Pro webcam,
HP Color LaserJet Pro MFP M477fdn,
APC SMART-UPS RT 1000 XL - SURT1000XLI,
Galaxy S23 Plus phone
Additional Solution

I know this is an old thread, but perhaps others will come across it as I did and benefit from by discovery.

Thanks Greg S for the registry script. That didn't directly solve my concerns, BUT, a subfolder of that key HKLM\SOFTWARE\Policies\Microsoft\Windows\Safer\CodeIdentifiers\ was a folder with the value of '0'. A subfolder of the '0' folder was 'Paths'. Within the Paths folder was a list of identifiers. Each of the identifiers had a path associated with it. Each of these paths listed were restricted from running.

I exported the 'paths' folder, then deleted and rebooted. Now the applications that were showing 'Blocked by Group Policy' are launching and running properly.

Hope this helps anyone coming across this older thread :D
 

My Computer

Computer type
PC/Desktop
OS
7-32 bit
PCIData, thanks that did help.

Btw, in your and my case it was cryptolocker preventer... that added all those path statements.. and annoyingly blocks 7zip files.

it is sometimes applocker in group policy instead, and sometimes the reg solution above. if it is 7z.exe files, check PCIdatas solution first, or run the cryptoprevent and deimmunize.

(and just for more info and maybe search results, i am on windows 10 btw)
 

My Computer

Computer type
PC/Desktop
OS
South Carolina
Back
Top