Solved Run limit files

s00

New member
Member
VIP
Local time
6:46 AM
Messages
220
Location
SISTAN
Following the path I run the test file limit
gpedit.msc/User Configuration /Administrative Template/System/Dont Run Specified Windows Application/enabled/show/test.exe/ok
It will not run the test file in Windows But by renaming test file, this limitation disappears.
How do I solve this problem?
Is it possible I replaced instead of the name, specify the file size?
 

My Computer

Computer Manufacturer/Model Number
dell 1558
OS
windows 7 home preminm x64
CPU
i7
Motherboard
dell
Memory
DDR3 4G
Graphics Card(s)
ATI HD 5470 1G
Monitor(s) Displays
15.6 LED
Hard Drives
Hitachi 500G
If you really want to prevent the program from being run I would log in as administrator and Take Ownership of the file. On access settings I would allow not even read access by anyone else.

Edit: also local policy isn't the greatest way to prevent a program being run. I used it to prevent IE from being run. But Windows Installer trumps my regular account so during install of a program up popped IE to my surprise.
 

My Computer

Computer Manufacturer/Model Number
HP Media Center
OS
Windows 7 32 bit
CPU
AMD 5200+ dual core
Memory
2 GB
Graphics Card(s)
NVidia GeForce 6150SE 128 MB
Monitor(s) Displays
CRT
Screen Resolution
1280x1024
Hard Drives
500 GB Sata internal :

SIIG USB 3.0 docking stations w/WD Caviar Black 6 Gb/s drives
Keyboard
PS/2
Mouse
PS/2 Wheel Mouse
Other Info
SIIG USB 3.0 PCIexpress card.
Suggestion

I'm not sure that it's possible to specify anything other than file names. Another way is to use some sort of application whitelisting that will automatically block untrusted/ unsigned files or else can be configured to prompt the user for action.
 

Attachments

  • Application Whitelisting.jpg
    Application Whitelisting.jpg
    32.1 KB · Views: 32

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
ASUS
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
AMD C-60 APU with Radeon(tm) HD Graphics
Motherboard
ASUSTeK COMPUTER INC. X501U
Memory
4.00 GB
Graphics Card(s)
AMD Radeon HD 6290 Graphics
Sound Card
(1) AMD High Definition Audio Device (2) Realtek High Defi
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
Hitachi HTS545050A7E380 SATA Disk Device
Antivirus
Comodo CIS & FW, SecureAplus App Whitelisting, Threatfire
Browser
Cyberfox 64bit, Opera 64bit, Airfox
Other Info
Spy-The-Spy, HitmanPro.Alert, Norton Connect Safe, MJRegWatcher, BitDefender TrafficLight, Voodoo Shield, Zemana AntiMalware
i installed Take_Ownership but But it's not applicable to all executable files

a1.jpg

a2.jpg
 

My Computer

Computer Manufacturer/Model Number
dell 1558
OS
windows 7 home preminm x64
CPU
i7
Motherboard
dell
Memory
DDR3 4G
Graphics Card(s)
ATI HD 5470 1G
Monitor(s) Displays
15.6 LED
Hard Drives
Hitachi 500G
Where to Run application whitelisting?????????
 

My Computer

Computer Manufacturer/Model Number
dell 1558
OS
windows 7 home preminm x64
CPU
i7
Motherboard
dell
Memory
DDR3 4G
Graphics Card(s)
ATI HD 5470 1G
Monitor(s) Displays
15.6 LED
Hard Drives
Hitachi 500G
i installed Take_Ownership but But it's not applicable to all executable files
What account are you running it from?
 

My Computer

Computer Manufacturer/Model Number
HP Media Center
OS
Windows 7 32 bit
CPU
AMD 5200+ dual core
Memory
2 GB
Graphics Card(s)
NVidia GeForce 6150SE 128 MB
Monitor(s) Displays
CRT
Screen Resolution
1280x1024
Hard Drives
500 GB Sata internal :

SIIG USB 3.0 docking stations w/WD Caviar Black 6 Gb/s drives
Keyboard
PS/2
Mouse
PS/2 Wheel Mouse
Other Info
SIIG USB 3.0 PCIexpress card.
Application Whitelisting

Where to Run application whitelisting?????????

It requires installation of software. You can get it here: https://secureaplus.secureage.com/Main/release.php

Choose NO Antivirus version.

SecureAPlus.jpg

It will take some time to build a database of files that already exist on your machine. When it's finished - any new digitally unsigned files will be untrusted by default. You will be prompted for action if an unsigned file attempts to run. To define a trust level for any existing file - right click on the file on choose a trust level.

SecureAPlus2.jpg

So go back to your test file and set it to Not Trusted. Then when that file or any unsigned executable files that are created in future attempt to run you will see a window like this:

SecureAPlus3.jpg

Then it's down to you if you let something dodgy launch!

To get an idea on how to use Application Whitelisting look here:

https://secureaplus.secureage.com/Main/faq.php

Scroll down to the Application Whitelisting FAQ's section.
 
Last edited:

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
ASUS
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
AMD C-60 APU with Radeon(tm) HD Graphics
Motherboard
ASUSTeK COMPUTER INC. X501U
Memory
4.00 GB
Graphics Card(s)
AMD Radeon HD 6290 Graphics
Sound Card
(1) AMD High Definition Audio Device (2) Realtek High Defi
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
Hitachi HTS545050A7E380 SATA Disk Device
Antivirus
Comodo CIS & FW, SecureAplus App Whitelisting, Threatfire
Browser
Cyberfox 64bit, Opera 64bit, Airfox
Other Info
Spy-The-Spy, HitmanPro.Alert, Norton Connect Safe, MJRegWatcher, BitDefender TrafficLight, Voodoo Shield, Zemana AntiMalware
administrator
 

My Computer

Computer Manufacturer/Model Number
dell 1558
OS
windows 7 home preminm x64
CPU
i7
Motherboard
dell
Memory
DDR3 4G
Graphics Card(s)
ATI HD 5470 1G
Monitor(s) Displays
15.6 LED
Hard Drives
Hitachi 500G
well Callender
i installed SecureAPlus and set test file to Not Trusted.
a1.png

a2.jpg

There are two problems:
1.if selecting yes File runs
2.i want Users not understand the File restricted
 

My Computer

Computer Manufacturer/Model Number
dell 1558
OS
windows 7 home preminm x64
CPU
i7
Motherboard
dell
Memory
DDR3 4G
Graphics Card(s)
ATI HD 5470 1G
Monitor(s) Displays
15.6 LED
Hard Drives
Hitachi 500G
Default action

There are two problems:
1.if selecting yes File runs
2.i want Users not understand the File restricted

Set default action to blocked.

faq_aw_4.png

 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
ASUS
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
AMD C-60 APU with Radeon(tm) HD Graphics
Motherboard
ASUSTeK COMPUTER INC. X501U
Memory
4.00 GB
Graphics Card(s)
AMD Radeon HD 6290 Graphics
Sound Card
(1) AMD High Definition Audio Device (2) Realtek High Defi
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
Hitachi HTS545050A7E380 SATA Disk Device
Antivirus
Comodo CIS & FW, SecureAplus App Whitelisting, Threatfire
Browser
Cyberfox 64bit, Opera 64bit, Airfox
Other Info
Spy-The-Spy, HitmanPro.Alert, Norton Connect Safe, MJRegWatcher, BitDefender TrafficLight, Voodoo Shield, Zemana AntiMalware
This option does not exist for me.
Capture.JPG
 

My Computer

Computer Manufacturer/Model Number
dell 1558
OS
windows 7 home preminm x64
CPU
i7
Motherboard
dell
Memory
DDR3 4G
Graphics Card(s)
ATI HD 5470 1G
Monitor(s) Displays
15.6 LED
Hard Drives
Hitachi 500G
Different version

This option does not exist for me.

Okay so I suggested installing the application whitelisting component but it would appear that it does't have that particular feature. I actually installed the AV version so maybe that's why it's different. If you don't wish to make use of it - I'd suggest uninstalling it.

I've done some research and it seems that what you need is a security application that can block the file based on it's MD5 hash. Usually you could create a rule using Software Restriction Policies but in Windows 7 Home Premium this isn't possible.

Your best bet is to ask for help with how to do this - possibly start a new post.

I did manage to find software that can block files using custom rules based on a file's MD5 hash but nothing that was free and that would work with most existing security software.

Another option might be to create Standard User accounts and use Parental Controls to specify the files that can launch.

More info here:

How to make a disallowed-by-default Software Restriction Policy
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
ASUS
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
AMD C-60 APU with Radeon(tm) HD Graphics
Motherboard
ASUSTeK COMPUTER INC. X501U
Memory
4.00 GB
Graphics Card(s)
AMD Radeon HD 6290 Graphics
Sound Card
(1) AMD High Definition Audio Device (2) Realtek High Defi
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
Hitachi HTS545050A7E380 SATA Disk Device
Antivirus
Comodo CIS & FW, SecureAplus App Whitelisting, Threatfire
Browser
Cyberfox 64bit, Opera 64bit, Airfox
Other Info
Spy-The-Spy, HitmanPro.Alert, Norton Connect Safe, MJRegWatcher, BitDefender TrafficLight, Voodoo Shield, Zemana AntiMalware
block the file based on it's MD5 hash.

I thought it would come to that. I think there may be a performance hit with that approach. Every exe will have the hash calculated. If it's a special setup without the myriad user programs running in the background then it may be acceptable.
 

My Computer

Computer Manufacturer/Model Number
HP Media Center
OS
Windows 7 32 bit
CPU
AMD 5200+ dual core
Memory
2 GB
Graphics Card(s)
NVidia GeForce 6150SE 128 MB
Monitor(s) Displays
CRT
Screen Resolution
1280x1024
Hard Drives
500 GB Sata internal :

SIIG USB 3.0 docking stations w/WD Caviar Black 6 Gb/s drives
Keyboard
PS/2
Mouse
PS/2 Wheel Mouse
Other Info
SIIG USB 3.0 PCIexpress card.

My Computer

Computer Manufacturer/Model Number
dell 1558
OS
windows 7 home preminm x64
CPU
i7
Motherboard
dell
Memory
DDR3 4G
Graphics Card(s)
ATI HD 5470 1G
Monitor(s) Displays
15.6 LED
Hard Drives
Hitachi 500G
You're most welcome. :)
 

My Computer

Computer Manufacturer/Model Number
HP Media Center
OS
Windows 7 32 bit
CPU
AMD 5200+ dual core
Memory
2 GB
Graphics Card(s)
NVidia GeForce 6150SE 128 MB
Monitor(s) Displays
CRT
Screen Resolution
1280x1024
Hard Drives
500 GB Sata internal :

SIIG USB 3.0 docking stations w/WD Caviar Black 6 Gb/s drives
Keyboard
PS/2
Mouse
PS/2 Wheel Mouse
Other Info
SIIG USB 3.0 PCIexpress card.
Back
Top