18.9.24.4 Set 'Default Protections for Popular Software winzip32.exe' to 'Enabled'

Information

This setting determines if recommended EMET mitigations are applied to the following popular software:

- 7-Zip
- Adobe Photoshop
- Foxit Reader
- Google Chrome
- Google Talk
- iTunes
- Microsoft Live Writer
- Microsoft Lync Communicator
- Microsoft Photo Gallery
- Microsoft SkyDrive
- mIRC
- Mozilla Firefox
- Mozilla Thunderbird
- Opera
- Pidgin
- QuickTime Player
- RealPlayer
- Safari
- Skype
- VideoLAN VLC
- Winamp
- Windows Live Mail
- Windows Media Player
- WinRAR
- WinZip

The recommended state for this setting is: 'Enabled'.

Rationale:
Applying EMET mitigations to popular software packages will help reduce the reliability of exploits that target them.

Solution

To establish the recommended configuration via GP, set the following UI path to 'Enabled':


Computer Configuration\Policies\Administrative Templates\Windows Components\EMET\Default Protections for Popular Software

Note: This Group Policy path does not exist by default. An additional Group Policy template ('EMET.admx/adml') is required - it is included with Microsoft Enhanced Mitigation Experience Toolkit (EMET).

Impact:
EMET mitigations will be applied to the listed popular software that is installed on the computer.

See Also

https://workbench.cisecurity.org/files/1937