I have Norton 360 running on Windows 11, today I had a phishing popup on Firefox browser, so I closed the browser and ran Norton full scan, it found nothing. I then downloaded the free MB trial and ran Malwarebytes, it found these two issues,
-Scan Details-
Registry Value: 2
PUM.Optional.DisableMRT, HKLM\SOFTWARE\WOW6432NODE\POLICIES\MICROSOFT\MRT|DONTREPORTINFECTIONINFORMATION, No Action By User, 7617, 676881, 1.0.83661, , ame, , ,
PUM.Optional.DisableMRT, HKLM\SOFTWARE\POLICIES\MICROSOFT\MRT|DONTREPORTINFECTIONINFORMATION, No Action By User, 7617, 676881, 1.0.83661, , ame, , ,
My question: Does Norton 360 set these windows settings to OFF since Norton is now handling detections?
Just curious why or how these Registry settings got set to OFF?
UPDATE: This appears to be a Windows Security setting, specifically the Reputation-based protection. This setting says it:
Protects your device from malicious or potentially unwanted apps. Turn on or off.
However in many cases it blocks apps the are OK and very useful especially as MS seems to be more leaning towards the S mode premise with future updates.
Just my opinion.
Thanks I think a recommended setting in O&O Shutup was maybe doing this.
In O&OShutup I took off these settings
Under Local Machine tab
I unchecked->Disable App access to Diagnostic Info.
Under Current User Tab
I unchecked->Disable App access to Diagnostic Info.
--
Then in registry editor at,
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Policies\Microsoft\MRT
I cleared (deleted) the entry->DontReportInfectionInformation
Leaving only the Default REQ_SZ Value not set.
Also checked at,
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\MRT
But it was already set only to Default
Then I ran another MBam scan and got zero issues no PUPs No PUMs.
To make sure I need to reset O&O Shutup to disable app access to Diagnostic Info and then reboot. I'll try to get back on this
EDIT ADD But even after a reboot none of the aforesaid . .\MRT entry->DontReportInfectionInformation setting appeared again in Registry. So I really don't know what or how they got set prior. Maybe by delaying an update?
In case I now have learned how to Add an exclusion as per,
My question: Does Norton 360 set these windows settings to OFF since Norton is now handling detections?
fwiw ~ my HKLM\SOFTWARE\WOW6432NODE\POLICIES\MICROSOFT\MRT on W10 + Norton 360 is (Default) (value not set)
A software restriction policy was set to Disable the Microsoft once per month On Demand anti malware scanner known as MRT ( Malicious Software Removal Tool ) .
MBAM is flagging the Potentially Unwanted Modification ( PUM ). One should allow the once per month release and subsequent scan by the MRT.