Solved

Exclusions - User folders

  • 21 December 2016
  • 2 replies
  • 447 views

I need to be able to exclude folders that are  C:users<username>AppData etc.  How can I accomplish this? End point protection is what we are using...
 
icon

Best answer by coscooper 21 December 2016, 22:49

View original

2 replies

Userlevel 7
Hello @ and welcome to our Community.
 
Have you tried creating an override for the specific folders?

Example: C:UsersBobAppDatalocalMicrosoftInternet Explorer
More info from our Admin Guide: https://live.webrootanywhere.com/content/806/Applying-overrides-from-the-Overrides-tab

Do keep in mind if it is generic it is probably not going to be respected since AppData is a known location for threats to target.
 
(Also keep in mind I'm by no means an Endpoint expert but this is what I'm gathering)
Userlevel 6
Badge +26
@ - Use the dynamic directory structure, %AllUsersProfile% heapptooverride  - You have to declare a sub-directory after the initial %AllUsersProfile% - and this will tell the agent to override the PE (portable executable) that resides and launches from a user profile dir. Not ideal or recommended, but this will help with all profile dirs.
 
Here's a basic example using the Whitelist configuration wizard on the GSM.
 


 
Hope That Helps

Reply