I don't think there is anything that Lansweeper scans that can really help here.
The only way to do something here would be with a deployment. Create a deployment package that runs a command which checks if there are shadow copies, if that succeeds then run the command to restrict access to the contents of %windir%\system32\config.
It will take some time to test and make sure the check works. Unfortunately, I can't dedicate time to it now so I hope this helped.