Create a Custom Detection Script for Privacy Eraser (PowerShell)

Microsoft Endpoint Manager Configuration Manager (MEMCM / SCCM) and Microsoft Intune use Detection Rules to determine the presence of Applications & Win32 Apps. The detection rules ensure that application installations only begin to run if the application is not already installed on the device. This article will serve as an informative guide and give you a clear understanding of how to create an updated custom detection script for each new version of Privacy Eraser using PowerShell.

How to Create a Custom Detection Script for Privacy Eraser

Privacy Eraser (File Detection Method)

## Check for Privacy Eraser (File Detection Method)
$PrivacyEraserExe = (Get-ChildItem -Path "C:\Program Files\Cybertron\Privacy Eraser\PrivacyEraser.exe","C:\Program Files (x86)\Cybertron\Privacy Eraser\PrivacyEraser.exe" -ErrorAction SilentlyContinue)
$PrivacyEraserExe.FullName
$PrivacyEraserPath = $($PrivacyEraserExe.FullName).Replace("C:\Program Files\","").Replace("C:\Program Files (x86)\","")
$FileVersion = (Get-Item -Path "$($PrivacyEraserExe.FullName)" -ErrorAction SilentlyContinue).VersionInfo.FileVersion

## Create Text File with Privacy Eraser File Detection Method
$FilePath = "C:\Windows\Temp\Privacy_Eraser_Detection_Method.txt"
New-Item -Path "$FilePath" -Force
Set-Content -Path "$FilePath" -Value "If([String](Get-Item -Path `"`$Env:ProgramFiles\$PrivacyEraserPath`",`"`${Env:ProgramFiles(x86)}\$PrivacyEraserPath`" -ErrorAction SilentlyContinue).VersionInfo.FileVersion -ge `"$FileVersion`"){"
Add-Content -Path "$FilePath" -Value "Write-Host `"Installed`""
Add-Content -Path "$FilePath" -Value "Exit 0"
Add-Content -Path "$FilePath" -Value "}"
Add-Content -Path "$FilePath" -Value "else {"
Add-Content -Path "$FilePath" -Value "Exit 1"
Add-Content -Path "$FilePath" -Value "}"
Invoke-Item $FilePath
  • Click Run Script (F5)
  • A text file will open with the Privacy Eraser Detection Method script required to detect the current version of Privacy Eraser that is installed on the device you are running the script from.

Example:

If([String](Get-Item -Path "$Env:ProgramFiles\Cybertron\Privacy Eraser\PrivacyEraser.exe","${Env:ProgramFiles(x86)}\Cybertron\Privacy Eraser\PrivacyEraser.exe" -ErrorAction SilentlyContinue).VersionInfo.FileVersion -ge "5.27.0.4298"){
Write-Host "Installed"
Exit 0
}
else {
Exit 1
}

Privacy Eraser (Registry Detection Method)

## Check for Privacy Eraser (Registry Detection Method)
$PrivacyEraser = Get-ChildItem -Path "HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall","HKLM:\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall" | Get-ItemProperty | Where-Object {$_.DisplayName -match 'Privacy Eraser' } | Select-Object -Property DisplayName, DisplayVersion, PSChildName
$PrivacyEraser.DisplayVersion
$PrivacyEraser.PSChildName

## Create Text File with Privacy Eraser Registry Detection Method
$FilePath = "C:\Windows\Temp\Privacy_Eraser_Detection_Method.txt"
New-Item -Path "$FilePath" -Force
Set-Content -Path "$FilePath" -Value "If([Version](Get-ItemPropertyValue -Path 'HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\$($PrivacyEraser.PSChildName)','HKLM:\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\$($PrivacyEraser.PSChildName)' -Name DisplayVersion -ea SilentlyContinue) -ge '$($PrivacyEraser.DisplayVersion)') {"
Add-Content -Path "$FilePath" -Value "Write-Host `"Installed`""
Add-Content -Path "$FilePath" -Value "Exit 0"
Add-Content -Path "$FilePath" -Value "}"
Add-Content -Path "$FilePath" -Value "else {"
Add-Content -Path "$FilePath" -Value "Exit 1"
Add-Content -Path "$FilePath" -Value "}"
Invoke-Item $FilePath
  • Click Run Script (F5)
  • A text file will open with the Privacy Eraser Detection Method script required to detect the current version of Privacy Eraser that is installed on the device you are running the script from.

Example:

If([Version](Get-ItemPropertyValue -Path 'HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{CB5AC03C-B8AD-980F-998E-51969A6DFC9F}_is1','HKLM:\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{CB5AC03C-B8AD-980F-998E-51969A6DFC9F}_is1' -Name DisplayVersion -ea SilentlyContinue) -ge '5.27.0.4298') {
Write-Host "Installed"
Exit 0
}
else {
Exit 1
}

Always make sure to test everything in a development environment prior to implementing anything into production. The information in this article is provided “As Is” without warranty of any kind.