As a temporary work around, I changed Defense+, Computer Security Policy for
%windir%\system32\rundll32.exe
to use a Custom Policy which has all Access Rights set to Allow except Run an Executable which is set to Ask. That seems to have fixed it, but is this the right way to fix it?
No, that’s very dangerous for the security.
Don’t do it.
I recommend you.
1.Delete rundll32.exe from Computer Security Policy.
2.Make D+ setting to ‘Training mode’
3.run control panel Apps.
4.if anything fine for you, change mode to ‘Safe mode’
If you don’t use ‘training mode’, you will see tons of D+ pop-ups.
But if you don’t care, you can just delete old rule and then you can make them allowed.