On Tue, 3 Oct 2006, K. F. wrote:

Does this line mean something to anyone? Is it possibly Webroot Spysweeper keeping IE from being hijacked?

--- Spybot - Search & Destroy version: 1.4 (build: 20050523)
Microsoft.Windows.Explorer: User settings (Registry change, nothing done)
 
HKEY_USERS\S-1-5-21-3549250942-1880345977-2350048663-1006\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoLogOff!=W=0

The following was posted in the Spybot forum:

 -----------------------------
<http://forums.spybot.info/archive/index.php/t-1519.html>

2006-01-11, 14:19
hi LoneLurker,

the entry

"HKEY_USERS\.DEFAULT\Software\Microsoft\...\Policies\Explorer\NoLogOff!=W=0"

means that Spybot checked if the data for NoLogOff is not equal to 0. That means it will alert if it is anything else than 0, typically a valid value would be 1. If the data you have are set to 0 , it is fine.

The reason for this flagging even if the data is 0 , could be that the datatype may be different (note the detection on this is looking for Reg_DWord).

After Testing I found out what was really meant by the description of this Regsitry Value. If the value is set to 1 , only logging off for the current user is not possible, shutting down and rebooting is still available.

--> will be removed from detection
 -----------------------------

--
               ----------------------------------------
The WIN-HOME mailing list is powered by L-Soft's renowned
LISTSERV(R) list management software. For more information, go to:
http://www.lsoft.com/LISTSERV-powered.html

Reply via email to