Community


Agent.exe won't run if Cryptolocker Prevention policies are in place

Links used in this discussion
Angus Scott-Fleming, User (Posts: 11)
Jun 12, 2015 7:12:01 pm EDT
Support level: Free or trial
In order to prevent Cryptolocker-type malware infections, many people now use the Cryptolocker Prevention Kit.  However, when that is in place, agent.exe won't run.  Checking the event viewer on one such system shows why:
  • Access to C:\Users\XXXX\AppData\Local\Temp\7ZipSfx.000\rfusclient.exe has been restricted by your Administrator by location with policy rule {2beced12-8122-4cf4-ac63-12d945ef3b54} placed on path C:\Users\XXXX\AppData\Local\Temp\7z*\*.exe.
Can agent be set up to run from a different folder?
Conrad Sallian, Support (Posts: 3074)
Jun 13, 2015 5:08:55 pm EDT
Angus,

Thank you for valuable information. I'll forward this to our developers for investigation and see if we can do anything about it.
Conrad Sallian, Support (Posts: 3074)
Jun 14, 2015 3:06:26 pm EDT
Angus,

Could that be that the administrator set this policy exactly because they don't want various "agents" to  run? If so, perhaps it's not a technical issue but rather an "administrative" one.

* Website time zone: America/New_York (UTC -5)