@@ -204,7 +204,7 @@ function Version081Updates
204204 $GuidComponent = $PlatformVersion.Split (" .-" )
205205 $GuidComponent = $GuidComponent [2 ] + $GuidComponent [3 ]
206206 Write-Progress - Activity " Applying version 0.8.1 updates - creating new rules" - PercentComplete " 1"
207- [void ](New-NetFirewallRule - GPOSession $GpoSession - Name " {725a67e5-68cd-4217-a159-48c$GuidComponent }" - DisplayName " Antimalware Service Executable $PlatformVersion (TCP-Out)" - Group " ProxyServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $ProxyServers - Protocol " TCP" - RemotePort $ProxyServerPorts - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MsMpEng.exe" - ErrorAction SilentlyContinue - ErrorVariable " Version081Updates" )
207+ [void ](New-NetFirewallRule - GPOSession $GpoSession - Name " {725a67e5-68cd-4217-a159-48c$GuidComponent }" - DisplayName " Antimalware Service Executable $PlatformVersion (TCP-Out)" - Group " OutboundProxyServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $ProxyServers - Protocol " TCP" - RemotePort $ProxyServerPorts - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MsMpEng.exe" - ErrorAction SilentlyContinue - ErrorVariable " Version081Updates" )
208208 if ($Version081Updates.Exception.Message -like " Cannot create a file when that file already exists.*" )
209209 {
210210 Write-Progress - Activity " Applying version 0.8.1 updates - creating new rules" - Completed
@@ -213,11 +213,11 @@ function Version081Updates
213213 else
214214 {
215215 Write-Progress - Activity " Applying version 0.8.1 updates - creating new rules" - PercentComplete " 50"
216- New-NetFirewallRule - GPOSession $GpoSession - Name " {e92e00fa-918f-4e62-bd3e-a91$GuidComponent }" - DisplayName " Antimalware Service Executable $PlatformVersion (TCP-Out)" - Direction " Outbound" - Protocol " TCP" - RemotePort " 80" , " 443" - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MsMpEng.exe"
217- New-NetFirewallRule - GPOSession $GpoSession - Name " {fabd86d5-92b1-4a15-b733-233$GuidComponent }" - DisplayName " Network Realtime Inspection Service $PlatformVersion (TCP-Out)" - Group " ProxyServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $ProxyServers - Protocol " TCP" - RemotePort $ProxyServerPorts - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \NisSrv.exe"
218- New-NetFirewallRule - GPOSession $GpoSession - Name " {4b36d08c-cf11-41e2-8d9d-803$GuidComponent }" - DisplayName " Microsoft Malware Protection Command Line Utility $PlatformVersion (TCP-Out)" - Group " ProxyServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $ProxyServers - Protocol " TCP" - RemotePort $ProxyServerPorts - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MpCmdRun.exe"
219- New-NetFirewallRule - GPOSession $GpoSession - Name " {bd20eef3-283e-4fa1-ab43-471$GuidComponent }" - DisplayName " Microsoft Malware Protection Command Line Utility $PlatformVersion (TCP-Out)" - Direction " Outbound" - Protocol " TCP" - RemotePort " 443" - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MpCmdRun.exe"
220- New-NetFirewallRule - GPOSession $GpoSession - Name " {65c13740-9290-4caf-bd37-ac0$GuidComponent }" - DisplayName " Microsoft Malware Protection Command Line Utility $PlatformVersion (TCP-Out)" - Group " Wpad_PacFileServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $WPAD_PACFileServers - Protocol " TCP" - RemotePort " 80" - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MpCmdRun.exe"
216+ [ void ]( New-NetFirewallRule - GPOSession $GpoSession - Name " {e92e00fa-918f-4e62-bd3e-a91$GuidComponent }" - DisplayName " Antimalware Service Executable $PlatformVersion (TCP-Out)" - Direction " Outbound" - Protocol " TCP" - RemotePort " 80" , " 443" - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MsMpEng.exe" )
217+ [ void ]( New-NetFirewallRule - GPOSession $GpoSession - Name " {fabd86d5-92b1-4a15-b733-233$GuidComponent }" - DisplayName " Network Realtime Inspection Service $PlatformVersion (TCP-Out)" - Group " OutboundProxyServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $ProxyServers - Protocol " TCP" - RemotePort $ProxyServerPorts - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \NisSrv.exe" )
218+ [ void ]( New-NetFirewallRule - GPOSession $GpoSession - Name " {4b36d08c-cf11-41e2-8d9d-803$GuidComponent }" - DisplayName " Microsoft Malware Protection Command Line Utility $PlatformVersion (TCP-Out)" - Group " OutboundProxyServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $ProxyServers - Protocol " TCP" - RemotePort $ProxyServerPorts - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MpCmdRun.exe" )
219+ [ void ]( New-NetFirewallRule - GPOSession $GpoSession - Name " {bd20eef3-283e-4fa1-ab43-471$GuidComponent }" - DisplayName " Microsoft Malware Protection Command Line Utility $PlatformVersion (TCP-Out)" - Direction " Outbound" - Protocol " TCP" - RemotePort " 443" - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MpCmdRun.exe" )
220+ [ void ]( New-NetFirewallRule - GPOSession $GpoSession - Name " {65c13740-9290-4caf-bd37-ac0$GuidComponent }" - DisplayName " Microsoft Malware Protection Command Line Utility $PlatformVersion (TCP-Out)" - Group " OutboundWpad_PacFileServers " - Profile " Domain" - Direction " Outbound" - RemoteAddress $WPAD_PACFileServers - Protocol " TCP" - RemotePort " 80" - Program " %ALLUSERSPROFILE%\Microsoft\Windows Defender\Platform\$PlatformVersion \MpCmdRun.exe" )
221221 Write-Progress - Activity " Applying version 0.8.1 updates - creating new rules" - Completed
222222 Write-Output " `n`n Version 0.8.1 update to create new rules has completed"
223223 }
0 commit comments