Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
David_Levine
Contributor

Anti-Ransomware and Behavioral Guard Settings Question

I am looking at the Anti-Ransomware and Behavioral Guard settings in our endpoint security policy, and noticed that there is an exclusion for C:\Windows\explorer.exe (process) along with a handful of certificate based exclusions for Symantec, TrendMicro, etc.

I don't come in here to mess with this policy setting, but I seem to recall that the certificate based exclusions are normal "out of the box" settings. I don't recall that an exclusion for the Explorer.exe process is a default though? Can anyone confirm if it is?

Thanks,

~D

0 Kudos
1 Reply
Roman_Zitzev
Employee Alumnus
Employee Alumnus

hi

 

explorer is exclude from Anti-Ransomware and Behavioral-Guard component.

if any additional help needed let know.

 

romanzit@checkpoitn.com 

 

ty

roman  

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Thu 05 Mar 2026 @ 12:00 PM (SGT)

    2026 Threat Landscape Briefing - APAC

    Thu 05 Mar 2026 @ 03:00 PM (CET)

    2026 Threat Landscape Briefing - EMEA

    Thu 05 Mar 2026 @ 11:00 AM (EST)

    Tips and Tricks 2026 #1: MCP Servers

    Thu 05 Mar 2026 @ 02:00 PM (EST)

    2026 Threat Landscape Briefing -AMER
    CheckMates Events