I have a script that I use to run SBSD on my machines.
I use a default configuration.ini file to setup pre-defined settings.
Lately, I have been having a problem with false positives for these two entries:
then.....Code:Microsoft.WindowsSecurityCenter.FirewallDisabled: Settings (Registry change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\windowsfirewall\domainprofile\enablefirewall!=dword:1 Microsoft.WindowsSecurityCenter.FirewallDisabled: Settings (Registry change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\windowsfirewall\standardprofile\enablefirewall!=dword:1
These errors also occur for windows updatesCode:Microsoft.WindowsSecurityCenter.FirewallDisabled: Settings (Registry change, fixed) HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\windowsfirewall\domainprofile\enablefirewall!=dword:1 Microsoft.WindowsSecurityCenter.FirewallDisabled: Settings (Registry change, fixed) HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\windowsfirewall\standardprofile\enablefirewall!=dword:1
I want to leave the firewall disabled and when I manually change it, spybot picks it up and fixes it.
Has anyone modified the default config file to eliminate these false positives?
(and yes, in my case they are false positives)
EDIT: this also happens with security updates.
I want to have spybot ignore everything gaving to do with windows security center.Code:Windows Security Center.UpdateDisableNotify: Settings (Registry change, fixed) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify!=dword:0


Reply With Quote
