I have found many solutions for disabling a single HID device via
Device Manager, but I would like to investigate how to disable ALL HID
devices from functioning.
Here is my issue: I am running a Kiosk type system running Windows XP
(or perhaps XP embedded) - One USB port will be populated on the
hardware and brought out externally. Due to security concerns, I
cannot have a USB device plugged in that is a HID device and allow
control to an external (malicious) user.
However, I would like to keep the ability to toss in a USB flash drive
for application updates.
Does anyone know how this can be accomplished?
------
My first approach was to disable, remove, or neuter the hidusb.sys
file in the system32/drivers directory - but Windows XP has a magic
wand every time I remove or modify that file, it restores it to its
original state. Any idea what process or tool is doing this automatic
restore?
thanks for all the help,
-t
|