Hey,
I am going to play around with that command you showed.
It sounds like you are using some interesting tools to dig into this and I am definitely interested in
doing a little bit more digging myself (sysinternals has some pretty awesome tools).
Currently we do not use AD as our means to manage users so unfortunately pushing out a GPO quickly will not be possible.
This is part of the reason why I would like to start using the Application Control Policy.
It isn't a huge deal right now as we have dealt with the few instances of messenger that we have found running, but it would be nice to get this application blocked to prevent future issues.
I have a case number with Sophos for my Application Request, am I able to submit additional information towards this ticket reference number?
Thank you,
Cheers
Hey,
I am going to play around with that command you showed.
It sounds like you are using some interesting tools to dig into this and I am definitely interested in
doing a little bit more digging myself (sysinternals has some pretty awesome tools).
Currently we do not use AD as our means to manage users so unfortunately pushing out a GPO quickly will not be possible.
This is part of the reason why I would like to start using the Application Control Policy.
It isn't a huge deal right now as we have dealt with the few instances of messenger that we have found running, but it would be nice to get this application blocked to prevent future issues.
I have a case number with Sophos for my Application Request, am I able to submit additional information towards this ticket reference number?
Thank you,
Cheers