Education Services Maximize your product competency and validate technical knowledge to gain the most benefit from your IT investments. Application And Device Control Rule Autorun Inf Read File Has Blocked Supported Products A-Z Get support for your product, with downloads, knowledge base articles, documentation, and more. Education Services Maximize your product competency and validate technical knowledge to gain the most benefit from your IT investments. Select Application and Device Control from the Policies pane.
Cause Windows uses the autorun.inf file to: Identify which file to run when new media is inserted, or Identify which options to present in an AutoPlay dialog Viruses and other https://www.symantec.com/connect/forums/autorun-file-and-system-looks-infected Symptoms You can see a file called "autorun.inf" in the root of your drives. Allow Autorun.inf Symantec Endpoint Try these resources. Autorun Has Been Blocked Check The Control Log In order to import the policy: Download the attached policy file Go to the "Policies" page.
No Yes Products Products Home Threat Protection Advanced Threat Protection Endpoint Protection Endpoint Protection Cloud IT Management Suite Email Security.cloud Data Center Security Blue Coat Products Information Protection Data Loss Prevention http://fmcproducts.net/symantec-endpoint/symantec-antivirus-client.php Restart the computer. If you need further details on how to do this, refer to the administration guide for Symantec Endpoint Protection included in the Symantec Endpoint Protection CD. The result is that my hard drive is a healthy carrier of an autorun.inf threat... Cannot Copy Autorun.inf Access Denied Symantec
Click Enabled, and then select Do not execute any autorun commands in the Default Autorun behavior box to disable Autorun on all drives. Symantec Endpoint Protection Manager Console It is simply a text file. Solution Option 1: Warning: This policy file is provided as a convenience tool and is not supported by Symantec.
Supported Products A-Z Get support for your product, with downloads, knowledge base articles, documentation, and more. Whenever a USB drive is inserted or other computers connect to the network a file called "autorun.inf" appears at the root of the new drive and the installed antivirus product detects Under Computer Configuration, expand Administrative Templates, expand Windows Components, and then click Autoplay Policies. Autorun.inf Virus You can disable the AutoRun/AutoPlay feature in Windows using the following registry settings: [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] "NoDriveTypeAutoRun"=dword:00000024 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom] "Autorun"=dword:00000000 The registry change can be pushed out to agents using a Custom Host Integrity
Collapse this imageExpand this image If you are prompted for an administrator password or for confirmation, type the password, or click Allow. Submit a Threat Submit a suspected infected fileto Symantec. Close Login Didn't find the article you were looking for? check over here I'd like SEP to warn / autoclean +r/+h/+s files at the root of usb drives.
This document is also available via the Symantec FTP site: ftp://ftp.symantec.com/public/english_us_canada/products/symantec_endpoint_protection/11.0/manuals/administration_guide.pdffor SEP 11 ftp://ftp.symantec.com/public/english_us_canada/products/symantec_endpoint_protection/12.1/manuals/rtm/Implementation_Guide_SEP12.1.pdffor 12.1 Option 2: WARNING: Symantec strongly recommends that you back up the system registry before making any http://technet.microsoft.com/en-us/magazine/cc137730.aspx Disable the AutoRun functionality using the registry This Microsoft KB article explains how to disable AutoRun using the NoDriveTypeAutoRun registry key.