AppLocker and SRP and user writable folders (inside Windows and Program files)

Discussion in 'other software & services' started by erim, Mar 14, 2013.

    Some folders, like C:\Windows\tracing are writable for the standard user.
    So the suggestion is to deny those when making Applocker or SRP rules.

    However, I tried to copy and run something as a standard user from C:\Windows\tracing and I couldn't. I could copy the file in there, but not run it.
    I wasn't blocked by AppLocker, it just said I don't have permission.

    So, is there any point in blocking those folders? Can you actually run stuff from any of those as a standard user?
