diff --git "a/HMGC PFF.txt" "b/HMGC PFF.txt" new file mode 100644--- /dev/null +++ "b/HMGC PFF.txt" @@ -0,0 +1,3540 @@ +HMGC PFF + + +//========================================================================= +// PRCSFLGS.DAT +// +// This file allows control of how DG Control Flags are applied +// to processes when they run or are found to be running. +// +// Current Process Flags Definition +// (Version 7.7) +// +// +// +// Control Flag Name Parameter Value +// ------------------------ --------- ----------- +// MPO_INVISIBLE IN 1 +// MPO_IMMORTAL IM 2 +// MPO_SKIPPED SK 4 +// MPO_CD_BURNER CD 8 +// MPO_TRUSTED TR 16 +// MPO_SYSTEM SY 32 +// MPO_AGENT AG 64 +// MPO_BYPASS BY 128 +// MPO_NO_INJECT NI 256 +// MPO_SUBCLASS SB 512 +// MPO_TRUSTED_FILEOPEN TF 1024 +// MPO_WINDOW_STEALTH_SAFE WS 2048 +// MPO_UBER_STEALTH US 4096 +// MPO_EXPLORER EX 8192 +// MPO_MULTI_DOC MD 16384 +// MPO_MULTI_WIN MW 32768 +// MPO_NO_PROMPTING NP 65536 +// MPO_BACKUP BK 131072 +// MPO_NO_APP_LOGGING NA 262144 +// MPO_ARCHIVING AR 524288 +// MPO_NO_CLASSIFICATION NC 1048576 +// MPO_NO_DOC_PROPERTIES ND 2097152 +// MPO_SCANNER SC 4194304 +// MPO_RENAME_UNSAFE RU 8388608 +// MPO_NO_TAG_PROPAGATION TP 16777216 +// MPO_AGENT_3RD_PARTY A3 33554432 +// MPO_ALLOW_ACI_SVC_ACCESS AI 67108864 +// MPO_NO_VAULTING NV 134217728 +// MPO_SCREEN_CAPTURING SR 268435456 +// MPO_FILE_PATH_LOCK FP 536870912 + +// MPO_NO_NETWORK_OPS NN 2147483648 +// MPO_NO_REPARSE NR 4294967296 +// MPO_PROPAGATE_FLAGS PR 8589934592 +// MPO_NO_CDBURN NB 17179869184 +// MPO_NLNOTES NL 34359738368 +// MPO_BACKUP_INTENT_HONORED BI 68719476736 // no reparse for a create marked FILE_OPEN_FOR_BACKUP_INTENT +// MPO_ALLOW_SCREEN_CAPTURE AS 137438953472 +// MPO_CLASSIFICATION_ON_CLOSE CC 274877906944 +// MPO_NO_ENCRYPTION NE 549755813888 +// MPO_SHARING_SENSITIVE SH 1099511627776 +// MPO_NO_CLOSED_FILE_HISTORY NH 2199023255552 // don't maintain closed file history for this process +// MPO_DISABLE_WND_PROC_HOOK WP 4398046511104 // No subclassing - We will not hook the window procedure +// MPO_RESERVE_VM VM 8796093022208 +// MPO_NO_USER_AUTHORIZATION NU 17592186044416 +// MPO_NO_SAM_PROTECTION NS 35184372088832 +// MPO_CLASSIFICATION_STREAM_SAFE CSS 70368744177664 +// MPO_SYSTEM_KEY_ADMIN KE 140737488355328 +// MPO_STOP_PROPAGATED_FLAGS NPR 281474976710656 +// MPO_NO_REPARSE_PATH RP 562949953421312 // DirCtrl.dat "SECTION AFE PROCESS NO REPARSE FILES:" has to be set to specify no_reparce files +// MPO_NO_ON_THE_FLY_CLASSIFICATION NF 1125899906842624 +// MPO_ENABLE_ASYNC_WRITESTREAM AW 2251799813685248 +// MPO_TRUSTED_WHILE_NO_EGRESS TN 4503599627370496 +// MPO_NO_FILTERING NFLT 9007199254740992 +// MPO_NO_PROCESS_EVENT NPROC 18014398509481984 // DG 7.0 : Do not send process refernce events for this process. +// MPO_CLASSIFY_ON_OVERWRITE CO 36028797018963968 // Output file to classify is saved with OVERWRITE_IF. +// MPO_NO_RESET NRST 576460752303423488 // On update of process flags keep original process flags for running processes. +// MPO_DETECT_USER_COPY DC 1152921504606846976 // Detect user copies in the kernel. + +// Note: The old flag "EH" or MPO_ENUMERATE_DIR_HEADERS = 1073741824 is not used anymore + +// You can a line to this file for each process you need special handling for. +// Simply specify the parameters you want after the process image name. +// +// Example: +// notepad.exe, TR+SK+IM //<--MPO_TRUSTED | MPO_SKIPPED | MPO_IMMORTAL +// winword.exe, NC+ND //<--MPO_NO_CLASSIFICATION | MPO_NO_DOC_PROPERTIES +// +// You may also use the numeric sum by adding together the appropriate values +// +// Example: +// notepad.exe,22 // <-MPO_TRUSTED | MPO_SKIPPED | MPO_IMMORTAL +// notepad.exe,3145728 // <-MPO_NO_CLASSIFICATION | MPO_NO_DOC_PROPERTIES +// +// +// Image names are limited to 15 characters. +// +// 4.0 and 5.0 prcsflgs.dat entries may include 2 optional qualifiers, +// fileVersion and companyname, separated by commas. +// The fileVersion qualifier may be used with or without companyname. +// +// fileVersion may be included as a nn.nn.nn.nn string, +// where nn represents a decimal number, whose value must be less than +// 65,536 (ie a USHORT). +// +// companyname may be included as a string of characters as appears in +// the version properties displayed for companyname. +// +// Entries without either will return flags to any process, with +// matching image name, but whose version/companyname does not match any +// entries having version/companyname data. +// +// Example: +// +// winword.exe, WS+SB, 11.0.6502.0, Microsoft Corporation +// dbgview.exe, 0256, 4.32.0.0 +// +// Whitespace is generally ignored. +// +// Here is a VERY common one +// some_app.exe, NI+SK+NC+ND +// +// equivalent to... +// some_app.exe, 3145988 +// +// +// Here is a another VERY common one +// some_app.exe, NI+SK+NC+ND+TR +// +// equivalent to... +// some_app.exe, 3146004 +// +// You may also use an MD5 if running a V6.1 or better DGAGENT: +// +// notepad.exe, MD5=5E28284F9B5F9097640D58A73D38AD4C, NI +// +// You can include version info with MD5 entries as well: +// +// notepad.exe, MD5=5E28284F9B5F9097640D58A73D38AD4C, NI, 5.1.2600.5512, Microsoft Corporation +// +// +// NOTE: older agents will ignore lines with MD5= in the line as this is +// invalid for them. +// +//=========================================================================== + +//===================================================================================================== +// START OF ENTRIES TAKEN FROM PROCESSFLAGS.C +// Note: Entries overridden later in this file are commented with *overridden*. +//===================================================================================================== +pdboot.exe,SK+NI+NC+ND+NA+RU+NV +smss.exe,SK+NI+NC+ND+NA+RU+NV +msdtc.exe,SK+NI+NC+ND+NA+NV +// *overridden* mdm.exe,SK+NI+NC+ND+NA+NV +// *overridden* sqlservr.exe,NI+NC+ND+NA+NV +csrss.exe,SK+NI+NC+ND+NA+NV +termsrv.exe,SK+NI+NC+ND+NA+NV +lsass.exe,SK+NI+NC+ND+NA+NV +LsaIso.exe,SK+NI+NC+ND+NA+NV+NPR +psxss.exe,SK+NI+NC+ND+NA+NV +alescan.exe,SK+NI+NC+ND+NA+NV +// *overridden* aupdate.exe,SK+NI+NC+ND+NA+NV +ccalert.exe,SK+NI+NC+ND+NA+NV +// *overridden* ccevtmgr.exe,SK+NI+NC+ND+NA+NV +ccimscan.exe,SK+NI+NC+ND+NA +// *overridden* cclgview.exe,SK+NI+NC+ND+NA +ccprod.exe,SK+NI+NC+ND+NA +ccpwdsvc.exe,SK+NI+NC+ND+NA+NV +ccpxysvc.exe,SK+NI+NC+ND+NA+NV +ccregvfy.exe,SK+NI+NC+ND+NA +ccscan.exe,SK+NI+NC+ND+NA+NV +// *overridden* ccsetmgr.exe,SK+NI+NC+ND+NA +ccshtdwn.exe,SK+NI+NC+ND+NA +// *overridden* defwatch.exe,SK+NI+NC+ND+NA +frameworkservic,SK+NI+NC+ND+NA +iralrshl.exe,SK+NI+NC+ND+NA +// *overridden* luawrap.exe,SK+NI+NC+ND+NA +lucomserver.exe,SK+NI+NC+ND+NA+NV +// *overridden* luinit.exe,SK+NI+NC+ND+NA +mcagent.exe,SK+NI+NC+ND+NA+NV +mcappins.exe,SK+NI+NC+ND+NA+NV +mcconsol.exe,SK+NI+NC+ND+NA+NV +mcdash.exe,SK+NI+NC+ND+NA+NV +mcinfo.exe,SK+NI+NC+ND+NA+NV +mcmnhdlr.exe,SK+NI+NC+ND+NA+NV +mcscript.exe,SK+NI+NC+ND+NA+NV +// *overridden* mcscript_inuse.,SK+NI+NC+ND+NA+NV +// *overridden* mcshield.exe,SK+NI+NC+ND+NA+NV +mcupdate.exe,SK+NI+NC+ND+NA+NV +mcupdmgr.exe,SK+NI+NC+ND+NA+NV +mcupdui.exe,SK+NI+NC+ND+NA+NV +//This is McAfee VirusScan E-mail Scan Module, if e-Mail scan is enable and Outlook Express is used to send e-Mails, +//then this process is the one which is actually sends messages. If this process is skipped, then no SEND_MAIL events are processed +//{ L"mcvsescn.exe", SK+NI+NC+ND+NA+NV +mcvsftsn.exe,SK+NI+NC+ND+NA+NV +mcvsmap.exe,SK+NI+NC+ND+NA+NV +mcvsrte.exe,SK+NI+NC+ND+NA+NV +mcvsshld.exe,SK+NI+NC+ND+NA+NV +mghtml.exe,SK+NI+NC+ND+NA+NV +// *overridden* naprdmgr.exe,SK+NI+NC+ND+NA +navapsvc.exe,SK+NI+NC+ND+NA+NV +navapw32.exe,SK+NI+NC+ND+NA+NV +navstub.exe,SK+NI+NC+ND+NA+NV +navw32.exe,SK+NI+NC+ND+NA+NV +navwnt.exe,SK+NI+NC+ND+NA +nis.exe,SK+NI+NC+ND+NA +nisum.exe,SK+NI+NC+ND+NA +nmain.exe,SK+NI+NC+ND+NA +ntrmv.exe,SK+NI+NC+ND+NA +ntrtscan.exe,SK+NI+NC+ND+NA+NV +ofcdog.exe,SK+NI+NC+ND+NA +patch.exe,SK+NI+NC+ND+NA +pccbrows.exe,SK+NI+NC+ND+NA +pccguide.exe,SK+NI+NC+ND+NA +pcclient.exe,SK+NI+NC+ND+NA +pccmain.exe,SK+NI+NC+ND+NA +pccnt.exe,SK+NI+NC+ND+NA +pccntmon.exe,SK+NI+NC+ND+NA +pccntupd.exe,SK+NI+NC+ND+NA +pccpfw.exe,SK+NI+NC+ND+NA +pcctool.exe,SK+NI+NC+ND+NA +pmntsrv.exe,SK+NI+NC+ND+NA +pmoagent.exe,SK+NI+NC+ND+NA +// *overridden* rtvscan.exe,SK+NI+NC+ND+NA+NV +// *overridden* savroam.exe,SK+NI+NC+ND+NA+NV +scan32.exe,SK+NI+NC+ND+NA+NV +scncfg32.exe,SK+NI+NC+ND+NA+NV +sevinst.exe,SK+NI+NC+ND+NA +shcfg32.exe,SK+NI+NC+ND+NA +symant~1.exe,SK+NI+NC+ND+NA+NV +symmoni.exe,SK+NI+NC+ND+NA+NV +symtdirg.exe,SK+NI+NC+ND+NA+NV +taskhost.exe,SK+NI+NC+ND+NA+NV +tmlisten.exe,SK+NI+NC+ND+NA+NV +tmproxy.exe,SK+NI+NC+ND+NA+NV +tmupdito.exe,SK+NI+NC+ND+NA+NV +tra.exe,SK+NI+NC+ND+NA+NV +tsc.exe,SK+NI+NC+ND+NA+NV +upgrade.exe,SK+NI+NC+ND+NA+NV +// *overridden* vpc32.exe,SK+NI+NC+ND+NA+NV +// *overridden* vpdn_lu.exe,SK+NI+NC+ND+NA+NV +// *overridden* vptray.exe,SK+NI+NC+ND+NA+NV +vsmon.exe,SK+NI+NC+ND+NA+NV +// *overridden* vstskmgr.exe,SK+NI+NC+ND+NA+NV +xpupg.exe,SK+NI+NC+ND+NA +zapro.exe,SK+NI+NC+ND+NA+NV +zonealarm.exe,SK+NI+NC+ND+NA+NV +msvcmon.exe,SK+NI+NC+ND+NA +msvsmon.exe,SK+NI+NC+ND+NA +userinit.exe,SK+NI+NC+ND+NA+PR +explorer.exe,TF+EX+NV+NU+NPR +ie4uinit.exe,SK+NI+NC+ND+NA+PR+NPR + +// fix for bug #3897 (mshta.exe will not start if injected) +mshta.exe,NI+NC+ND+NA + +dfssvc.exe,SK+NI+NC+ND+NA+NV +llssrv.exe,SK+NI+NC+ND+NA+NV + +// Following are VISTA processes, seen at logon, and "potentially" causing VISTA to error out logon +// and to generate nasty grams complaining about system tampering +autochk.exe,SK+NI+NC+ND+NA+NV +wininit.exe,SK+NI+NC+ND+NA+NV +lsm.exe,SK+NI+NC+ND+NA+NV +logonui.exe,SK+NI+NC+ND+NA+NV +slsvc.exe,SK+NI+NC+ND+NA+NV +taskeng.exe,SK+NI+NC+ND+NA+NV +dwm.exe,SK+NI+NC+ND+NA+NV +searchindexer.e,SK+NI+NC+ND+NA+NV + +// remote registry service ( fix for bug #3932 ) +regsvc.exe,SK+NI+NC+ND + +java.exe,NI +javaw.exe,NI + +// Known CD BURN processes +nero.exe,CD +creator7.exe,CD +creator6.exe,CD +creator8.exe,CD +drgtodisc.exe,CD + +// [start] ----------------------------------------- +// CITRIX processes +// we don't care about citrix processes +//-------------------------------------------------- +cdmsvc.exe,SK+NI+NA+NV +ssonsvr.exe,SK+NI+NA+NV +// don't propagate flags from parent so CITRIX shared apps will be injected properly +// otherwise, they will be marked as SKIPPED! +wfshell.exe,NPR+SK+NI+NC+ND+NA+NV + +// adding a series of flags based on an email from Support about Citrix processes +// not including wfshell since it conflicts with the previous coment. +// All other processes include PR as per the field. This may cause DG to be blind to some processes. +AuthManSvr.exe,NI+SK+NC+ND+TR+PR +BNDevice.exe,NI+SK+NC+ND+TR+PR +CdfSvc.exe,NI+SK+NC+ND+TR+PR +CitrixCseEngin,NI+SK+NC+ND+TR+PR +concentr.exe,NI+SK+NC+ND+TR+PR +CpSvc.exe,NI+SK+NC+ND+TR+PR +CtxSvcHost.exe,NI+SK+NC+ND+TR+PR +encsvc.exe,NI+SK+NC+ND+TR+PR +HCAService.exe,NI+SK+NC+ND+TR+PR +IMAAdvanceSrv.,NI+SK+NC+ND+TR+PR +ImaSrv.exe,NI+SK+NC+ND+TR+PR +mfcom.exe,NI+SK+NC+ND+TR+PR +RadeHlprSvc.ex,NI+SK+NC+ND+TR+PR +RadeObj.exe,NI+SK+NC+ND+TR+PR +RadeSvc.exe,NI+SK+NC+ND+TR+PR +Receiver.exe,NI+SK+NC+ND+TR+PR +SelfServicePlu,NI+SK+NC+ND+TR+PR +SemsService.ex,NI+SK+NC+ND+TR+PR +StatusTray.exe,NI+SK+NC+ND+TR+PR +UserProfileMan,NI+SK+NC+ND+TR+PR +VDARedirector.,NI+SK+NC+ND+TR+PR +wfcrun32.exe,NI+SK+NC+ND+TR+PR +XTE.exe,NI+SK+NC+ND+TR+PR +// also adding the recommended Documented flags for performance, when they do not conflict with the previous ones +vmacthlp.exe,SK+TR+NI+NC+ND +fbserver.exe,SK+TR+NI+NC+ND +rscorsvc.exe,SK+TR+NI+NC+ND +stSchedEx.exe,SK+TR+NI+NC+ND +ctxactivesync.e,SK+TR+NI+NC+ND +ctxxmlss.exe,SK+TR+NI+NC+ND +SmaService.exe,SK+TR+NI+NC+ND + + +// [end] ------------------------------------------- + +// [start] ----------------------------------------- +// KENSINGTON MOUSE WORKS +kmw_run.exe,SK+NI+NC+ND+NA+NV +kmw_show.exe,SK+NI+NC+ND+NA+NV +// [end] ------------------------------------------- + +// Windows VISTA and Windows 7 Processes +audiodg.exe,SK+NI+NC+ND+NA+NV+PR+NPR+NPROC +ui0detect.exe,SK+NI+NC+ND+NA+NV +mfpmp.exe,SK+NI+NC+ND+NA+NV+NPR + +// ACI / Autonomy / Attivio +kvoop.exe,SK+NI+NC+ND+NA+NV+A3 +agentstore.exe,SK+NI+NC+ND+NA+NV+A3 +autonomydish.ex,SK+NI+NC+ND+NA+NV+A3 +dginspect.exe,SK+NI+NC+ND+NA+NV+A3 +aieadvte.exe,SK+NI+NC+ND+NA+NV+A3 + + +tmfilter.sys,SK +tmxpflt.sys,SK +teefer2.sys,SK + +// The SRV driver handles SMB requests - and the oplock on the file is usually taken (atleast for W2K3 SP2) +// This means that the tagging method of signalling the agent process to open and tag the file cannot work +// since it will hang/deadlock. The thread in IRP_MJ_CREATE will timeout in 5 seconds, but the classification +// will still fail. By marking the thread NO CLASSIFICATION, classification (on-the-fly) will not occur +// and therefore no deadlock (but no classification either). +//{ L"srv.sys", MPO_NO_CLASSIFICATION + +snagiteditor.ex,SR +snagit32.exe,SR +snagpriv.exe,SR + +// DG-DDNA +ddna3.exe,SK+TR+TF+NI+NC+ND+NA+NV+A3+NPR + +//===================================================================================================== +// END OF ENTRIES TAKEN FROM PROCESSFLAGS.C +//===================================================================================================== + +//------------------------------------------- +// Verdasys Digital Guardian Agent Applications +//------------------------------------------- +dgupdate.exe,NI+SK+BY+AG+NC+ND+NA+NV+NE +dgupdate2.exe,NI+SK+BY+AG+NC+ND+NA+NV+NE +// dgET is used to tell the agent to retrieve settings, and cannt be injected +dgET.exe, NI+SK+NC+ND+TR +ScannerMonitor.,SK +DGStat.exe,SK +//Bug #12841 - Dgkill does not work in stealth mode +DgKillExe.exe,4 +terminator.exe,4 +// uninstall using dgagentsetup.exe +roleBES:dgagentsetup.ex,SK+NI +// DGProfiler install +DGProfilerInsta,NI+SK+TR +DGJournal.exe,NI+SK+AG+NC+ND+NA+NV+NE +dgextract.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// AppV application and its children +//------------------------------------------- +sfttray.exe,RP+PR + +//--------------------------------------------------------- +// Universal Apps :aka MetroApps - Excluded for AFE +//--------------------------------------------------------- +wwahost.exe,NR+PR +runtimebroker.exe,NR+PR +wshost.exe,NR+PR +sihost.exe,RP+PR + + + +//------------------------------------------- +// Broadcom MoCA applications +//------------------------------------------- +oc8800_emulatio,NI+SK+NC+ND+TR +moca_simulator.,NI+SK+NC+ND+TR +motek.exe,NI+SK+NC+ND+TR +calc_iq.exe,NI+SK+NC+ND+TR +calc_snr.exe,NI+SK+NC+ND+TR +gen_reg_batch.e,NI+SK+NC+ND+TR +gen_reg_batch_p,NI+SK+NC+ND+TR +show_packet.exe,NI+SK+NC+ND+TR +show_slicer.exe,NI+SK+NC+ND+TR +start_moca.exe,NI+SK+NC+ND+TR +avhdl.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Clearcase 7 +//------------------------------------------- + +abe.exe,NI+SK+NC+ND+TR +act_null_cs.exe,NI+SK+NC+ND+TR +admin_server.ex,NI+SK+NC+ND+TR +albd_server.exe,NI+SK+NC+ND+TR +bdtm.exe,NI+SK+NC+ND+TR +ccdoctor.exe,NI+SK+NC+ND+TR +ccfs_server.exe,NI+SK+NC+ND+TR +CCImportWizard.,NI+SK+NC+ND+TR +ccjbinstall.exe,NI+SK+NC+ND+TR +ccperl.exe,NI+SK+NC+ND+TR +Clearaas.exe,NI+SK+NC+ND+TR +clearapplywizar,NI+SK+NC+ND+TR +clearaudit.exe,NI+SK+NC+ND+TR +clearcomptree.e,NI+SK+NC+ND+TR +cleardescribe.e,NI+SK+NC+ND+TR +cleardiff.exe,NI+SK+NC+ND+TR +cleardiffbl.exe,NI+SK+NC+ND+TR +cleardiffmrg.ex,NI+SK+NC+ND+TR +cleardlg.exe,NI+SK+NC+ND+TR +clearexplorer.e,NI+SK+NC+ND+TR +clearexport_cca,NI+SK+NC+ND+TR +clearexport_cvs,NI+SK+NC+ND+TR +clearexport_ffi,NI+SK+NC+ND+TR +clearexport_pvc,NI+SK+NC+ND+TR +clearexport_rcs,NI+SK+NC+ND+TR +clearexport_ssa,NI+SK+NC+ND+TR +clearfindco.exe,NI+SK+NC+ND+TR +clearfsimport.e,NI+SK+NC+ND+TR +clearhistory.ex,NI+SK+NC+ND+TR +clearhomebase.e,NI+SK+NC+ND+TR +clearimport.exe,NI+SK+NC+ND+TR +clearlicense.ex,NI+SK+NC+ND+TR +clearlstype.exe,NI+SK+NC+ND+TR +clearmake.exe,NI+SK+NC+ND+TR +clearmenuadmin.,NI+SK+NC+ND+TR +clearmrgman.exe,NI+SK+NC+ND+TR +clearprojexp.ex,NI+SK+NC+ND+TR +clearprojtool.e,NI+SK+NC+ND+TR +clearprompt.exe,NI+SK+NC+ND+TR +cleartool.exe,NI+SK+NC+ND+TR +clearviewtool.e,NI+SK+NC+ND+TR +clearviewupdate,NI+SK+NC+ND+TR +clearvobtool.ex,NI+SK+NC+ND+TR +clearvtree.exe,NI+SK+NC+ND+TR +cqconfig.exe,NI+SK+NC+ND+TR +cqquery.exe,NI+SK+NC+ND+TR +cqtrigger_coci.,NI+SK+NC+ND+TR +cqtrigger_unco.,NI+SK+NC+ND+TR +credmap_server.,NI+SK+NC+ND+TR +crmregister.exe,NI+SK+NC+ND+TR +db_dumper.exe,NI+SK+NC+ND+TR +db_loader.exe,NI+SK+NC+ND+TR +db_server.exe,NI+SK+NC+ND+TR +hostid.exe,NI+SK+NC+ND+TR +htmlmgr.exe,NI+SK+NC+ND+TR +imsglog.exe,NI+SK+NC+ND+TR +lockmgr.exe,NI+SK+NC+ND+TR +msitedlg.exe,NI+SK+NC+ND+TR+NE+PR +multitool.exe,NI+SK+NC+ND+TR +mvfscache.exe,NI+SK+NC+ND+TR +mvfslog.exe,NI+SK+NC+ND+TR +mvfsstat.exe,NI+SK+NC+ND+TR +mvfsstorage.exe,NI+SK+NC+ND+TR +mvfstest.exe,NI+SK+NC+ND+TR +mvfstime.exe,NI+SK+NC+ND+TR +mvfsversion.exe,NI+SK+NC+ND+TR +notify.exe,NI+SK+NC+ND+TR +omake.exe,NI+SK+NC+ND+TR +pbimport.exe,NI+SK+NC+ND+TR +pblpopulate.exe,NI+SK+NC+ND+TR +promote_server.,NI+SK+NC+ND+TR +rccbuild.exe,NI+SK+NC+ND+TR +rccMKSecure.exe,NI+SK+NC+ND+TR +rccTSOServer.ex,NI+SK+NC+ND+TR +regsync.exe,NI+SK+NC+ND+TR +rgy_backup.exe,NI+SK+NC+ND+TR +rgy_check.exe,NI+SK+NC+ND+TR +rgy_passwd.exe,NI+SK+NC+ND+TR +rgy_switchover.,NI+SK+NC+ND+TR +scrubber.exe,NI+SK+NC+ND+TR +squidtool.exe,NI+SK+NC+ND+TR +tfdmgr.exe,NI+SK+NC+ND+TR +vdmaudit.exe,NI+SK+NC+ND+TR +view_dumper_10.,NI+SK+NC+ND+TR +view_scrubber.e,NI+SK+NC+ND+TR +view_server.exe,NI+SK+NC+ND+TR +vobrpc_server.e,NI+SK+NC+ND+TR +vob_scrubber.ex,NI+SK+NC+ND+TR +vob_server.exe,NI+SK+NC+ND+TR +wordconfig.exe,NI+SK+NC+ND+TR +worddiffmrg.exe,NI+SK+NC+ND+TR +xdemgr.exe,NI+SK+NC+ND+TR +xmldiffmrg.exe,NI+SK+NC+ND+TR +xtoolsmgr.exe,NI+SK+NC+ND+TR +zmgr.exe,NI+SK+NC+ND+TR +ztfdmgr.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// BMAPI Exclusions +//------------------------------------------- + +MSDEV.EXE,NI+SK+NC+ND+TR +TestApp.EXE,NI+SK+NC+ND+TR + +//------------------------------------------- +// Richmond QA Team +//------------------------------------------- + +RFS.EXE,NI+SK+NC+ND+TR +RTPBLASTER.EXE,NI+SK+NC+ND+TR +CAPTURELOG.EXE,NI+SK+NC+ND+TR +RFSSERVER.EXE,NI+SK+NC+ND+TR +TEE.EXE,NI+SK+NC+ND+TR +PUMPKIN.EXE,NI+SK+NC+ND+TR +WISH83.EXE,NI+SK+NC+ND+TR +rpcsh.exe,NI+SK+NC+ND+TR +CTHELPER.EXE,NI+SK+NC+ND+TR +PUTTYCYG.EXE,NI+SK+NC+ND+TR + +//------------------------------------------- +// Dual core fix +//------------------------------------------- +NTKRNLPA.EXE,NI+SK+NC+ND+TR +NTKRNLPL.EXE,NI+SK+NC+ND+TR + +//------------------------------------------- +// Trust X1 +//------------------------------------------- + +X1.exe,NI+SK+NC+ND+TR +X1Service.exe,NI+SK+NC+ND+TR +X1Systray.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// ati video +//------------------------------------------- + +1xconfig.exe,NI+SK+NC+ND+TR +amm2iw32.exe,NI+SK+NC+ND+TR +ati2evxx.exe,NI+SK+NC+ND+TR +ati2mdxx.exe,NI+SK+NC+ND+TR +ati2sgag.exe,NI+SK+NC+ND+TR +atiprbxx.exe,NI+SK+NC+ND+TR +atiptaxx.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Broadcom Wireless Tool +//------------------------------------------- + +bcmwltry.exe,NI+SK+NC+ND+TR +caft.exe,NI+SK+NC+ND+TR +caftf.exe,NI+SK+NC+ND+TR +cam.exe,NI+SK+NC+ND+TR +camclose.exe,NI+SK+NC+ND+TR +cvtres.exe,NI+SK+NC+ND+TR +disrv.exe,NI+SK+NC+ND+TR +entvutil.exe,NI+SK+NC+ND+TR +filepathsrv.exe,NI+SK+NC+ND+TR +hkcmd.exe,NI+SK+NC+ND+TR +iagwnt.exe,NI+SK+NC+ND+TR +ig40wnt.exe,NI+SK+NC+ND+TR +inovw32.exe,NI+SK+NC+ND+TR +launchephd.exe,NI+SK+NC+ND+TR +naprdmgr.exe,NI+SK+NC+ND+TR +nwtray.exe,NI+SK+NC+ND+TR +pcgprot.exe,NI+SK+NC+ND+TR +sdcmd.exe,NI+SK+NC+ND+TR +sdjexec.exe,NI+SK+NC+ND+TR +sdserv.exe,NI+SK+NC+ND+TR +swmspwnt.exe,NI+SK+NC+ND+TR +sxplog32.exe,NI+SK+NC+ND+TR +tbmon.exe,NI+SK+NC+ND+TR +triggag.exe,NI+SK+NC+ND+TR +umclisvc.exe,NI+SK+NC+ND+TR +umcstub.exe,NI+SK+NC+ND+TR +umdifw32.exe,NI+SK+NC+ND+TR +updaterui.exe,NI+SK+NC+ND+TR +usermodule.exe,NI+SK+NC+ND+TR +vstskmgr.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Viewstore directory apps +//------------------------------------------- + +cccredmgr.exe,NI+SK+NC+ND+TR +cqintsvr11.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// BT Test Tool exes +//------------------------------------------- + +drwho.exe,NI+SK+NC+ND+TR +btcputil.exe,NI+SK+NC+ND+TR +sbc_decoder.exe,NI+SK+NC+ND+TR +bluetoothdecode,NI+SK+NC+ND+TR +cfamaker applic,NI+SK+NC+ND+TR +csrusbdevicesup,NI+SK+NC+ND+TR +framedecoderdev,NI+SK+NC+ND+TR +liveimportdevel,NI+SK+NC+ND+TR +advancedusb.exe,NI+SK+NC+ND+TR +bluetrim.exe,NI+SK+NC+ND+TR +btcpds.exe,NI+SK+NC+ND+TR +btusbds.exe,NI+SK+NC+ND+TR +dsaggregator.ex,NI+SK+NC+ND+TR +exitmessage.exe,NI+SK+NC+ND+TR +fts.exe,NI+SK+NC+ND+TR +ftsautoserver.e,NI+SK+NC+ND+TR +hsu.exe,NI+SK+NC+ND+TR +liveimport.exe,NI+SK+NC+ND+TR +mth2cpp.exe,NI+SK+NC+ND+TR +multiunitlicens,NI+SK+NC+ND+TR +snupy.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Java exes +// +// javaw.exe has special flags for Screen CI +// +// These have been removed and should not be +// in the default file we ship. +// +// java.exe,NI+SK+NC+ND+TR +// javaw.exe,NI+SK+NC+ND+TR+SB+MD+MW +//------------------------------------------- + +javacpl.exe,NI+SK+NC+ND+TR +javaws.exe,NI+SK+NC+ND+TR +jucheck.exe,NI+SK+NC+ND+TR +jusched.exe,NI+SK+NC+ND+TR +keytool.exe,NI+SK+NC+ND+TR +kinit.exe,NI+SK+NC+ND+TR +klist.exe,NI+SK+NC+ND+TR +ktab.exe,NI+SK+NC+ND+TR +orbd.exe,NI+SK+NC+ND+TR +pack200.exe,NI+SK+NC+ND+TR +policytool.exe,NI+SK+NC+ND+TR +rmid.exe,NI+SK+NC+ND+TR +rmiregistry.exe,NI+SK+NC+ND+TR +servertool.exe,NI+SK+NC+ND+TR +tnameserv.exe,NI+SK+NC+ND+TR +unpack200.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Other build exes +//------------------------------------------- + +arcd.exe,NI+SK+NC+ND+TR +FLEXidCleanUtil,NI+SK+NC+ND+TR +FLEXidInstaller,NI+SK+NC+ND+TR +lmborrow.exe,NI+SK+NC+ND+TR +lmdiag.exe,NI+SK+NC+ND+TR +lmdown.exe,NI+SK+NC+ND+TR +lmgrd.exe,NI+SK+NC+ND+TR +lmhostid.exe,NI+SK+NC+ND+TR +lmpath.exe,NI+SK+NC+ND+TR +lmremove.exe,NI+SK+NC+ND+TR +lmreread.exe,NI+SK+NC+ND+TR +lmstat.exe,NI+SK+NC+ND+TR +lmswitchr.exe,NI+SK+NC+ND+TR +lmtools.exe,NI+SK+NC+ND+TR +lmver.exe,NI+SK+NC+ND+TR +mqxc_icon.exe,NI+SK+NC+ND+TR +mide.exe,NI+SK+NC+ND+TR +dot.exe,NI+SK+NC+ND+TR +mwprof.exe,NI+SK+NC+ND+TR +neato.exe,NI+SK+NC+ND+TR +Profiler.exe,NI+SK+NC+ND+TR +mwfind.exe,NI+SK+NC+ND+TR +xilinx_readback,NI+SK+NC+ND+TR +bplist.exe,NI+SK+NC+ND+TR +bpmerge.exe,NI+SK+NC+ND+TR +cld.exe,NI+SK+NC+ND+TR +detectapp.exe,NI+SK+NC+ND+TR +elf2bin.exe,NI+SK+NC+ND+TR +elf2hex.exe,NI+SK+NC+ND+TR +findhelp.exe,NI+SK+NC+ND+TR +gpio.exe,NI+SK+NC+ND+TR +inlvc.exe,NI+SK+NC+ND+TR +ldvc.exe,NI+SK+NC+ND+TR +LogParser.exe,NI+SK+NC+ND+TR +nmvc.exe,NI+SK+NC+ND+TR +pif.exe,NI+SK+NC+ND+TR +profvc.exe,NI+SK+NC+ND+TR +scvc.exe,NI+SK+NC+ND+TR +sizevc.exe,NI+SK+NC+ND+TR +stripvc.exe,NI+SK+NC+ND+TR +wgnuplot.exe,NI+SK+NC+ND+TR +tevi_vc.exe,NI+SK+NC+ND+TR +hcvc.exe,NI+SK+NC+ND+TR +hcvc1.exe,NI+SK+NC+ND+TR +hcvc2.exe,NI+SK+NC+ND+TR +asvc.exe,NI+SK+NC+ND+TR +arvc.exe,NI+SK+NC+ND+TR +echo.exe,NI+SK+NC+ND+TR +mkdir.exe,NI+SK+NC+ND+TR +find.exe,NI+SK+NC+ND+TR +comm.exe,NI+SK+NC+ND+TR +sort.exe,NI+SK+NC+ND+TR +tr.exe,NI+SK+NC+ND+TR +sed.exe,NI+SK+NC+ND+TR +filter.exe,NI+SK+NC+ND+TR +sizevlls.exe,NI+SK+NC+ND+TR +elfdumpvc.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Cisco VPN Client +//------------------------------------------- + +cvpnd.exe,NI+SK+NC+ND+TR +//vpngui.exe,NI+SK+NC+ND+TR +// add PR +vpngui.exe,SK+TR+NI+NC+ND+PR +vpnagent.exe,NI+SK+NC+ND+TR +vpnui.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// iPod Stuff +//------------------------------------------- + +iPodService.exe,NI+SK+NC+ND+TR +iTunesHelper.ex,NI+SK+NC+ND+TR +AppleMobileDevi,NI+SK+NC+ND+TR + +//------------------------------------------- +// Dell Applications +//------------------------------------------- + +quickset.exe,NI+SK+NC+ND+TR +WLTRAY.EXE,NI+SK+NC+ND+TR +WLTRYSVC.EXE,NI+SK+NC+ND+TR +ApntEx.exe,NI+SK+NC+ND+TR +Apoint.exe,NI+SK+NC+ND+TR +hidfind.exe,NI+SK+NC+ND+TR +nvsvc32.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Windows Services +//------------------------------------------- + +spoolsv.exe,NI+SK+NC+ND+TR+NA+NV +alg.exe,NI+SK+NC+ND+TR +Communicator.ex,NI+SK+NC+ND+TR +MDM.EXE,NI+SK+NC+ND+TR +scardsvr.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Windows Defender +//------------------------------------------- +msmpeng.exe,NI+SK+NC+ND+TR+NA+NV+RP+NR+PR +mpfilter.sys,SK +SecHealthUI.exe,NI+SK+NC+ND+TR+NA+NV+NR+PR +SecurityHealthService.exe,NI+SK+NC+ND+TR+NA+NV+NR+PR +SgrmBroker.exe,NI+SK+NC+ND+TR+NA+NV+NR+PR +NisSrv.exe,NI+SK+NC+ND+TR+NA+NV+NR+PR +MsSense.exe,NI+SK+NC+ND+TR+NA+NV+NR+PR +// no need to send - noisy process +sppsvc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC + +//------------------------------------------- +// Symantec Antivirus 10 exes +//------------------------------------------- + +alunotify.exe,NI+SK+NC+ND+TR +aluschedulersvc,NI+SK+NC+ND+TR +aupdate.exe,NI+SK+NC+ND+TR+NE+PR +lsetup.exe,NI+SK+NC+ND+TR+NE+PR +luall.exe,NI+SK+NC+ND+TR +lucallbackproxy,NI+SK+NC+ND+TR +lucomserver_3_0,NI+SK+NC+ND+TR +luinit.exe,NI+SK+NC+ND+TR +symantecrootins,NI+SK+NC+ND+TR +DefWatch.exe,NI+SK+NC+ND+TR +DoScan.exe,NI+SK+NC+ND+TR +DWHWizrd.exe,NI+SK+NC+ND+TR +LDVPREG.exe,NI+SK+NC+ND+TR +LuaWrap.exe,NI+SK+NC+ND+TR +nlnhook.exe,NI+SK+NC+ND+TR +Rtvscan.exe,NI+SK+NC+ND+TR+NR +SavRoam.exe,NI+SK+NC+ND+TR +VPC32.exe,NI+SK+NC+ND+TR +VPDN_LU.exe,NI+SK+NC+ND+TR +VPTray.exe,NI+SK+NC+ND+TR +ccApp.exe,NI+SK+NC+ND+TR +ccEvtMgr.exe,NI+SK+NC+ND+TR +ccSetMgr.exe,NI+SK+NC+ND+TR +SPBBCSvc.exe,NI+SK+NC+ND+TR +SMC.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Additional Symantec Endpoint Protection 11 Programs: +//------------------------------------------- + +Checksum.exe,NI+SK+NC+ND+TR +ControlAP.exe,NI+SK+NC+ND+TR +dot1xtray.exe,NI+SK+NC+ND+TR +PatchWrap.exe,NI+SK+NC+ND+TR +RtvStart.exe,NI+SK+NC+ND+TR +SavUI.exe,NI+SK+NC+ND+TR +SescLU.exe,NI+SK+NC+ND+TR +SmcGui.exe,NI+SK+NC+ND+TR +smcinst.exe,NI+SK+NC+ND+TR +SNAC.EXE,NI+SK+NC+ND+TR +SymCorpUI.exe,NI+SK+NC+ND+TR +WSCSAvNotifier.,NI+SK+NC+ND+TR +LUCheck.exe,NI+SK+NC+ND+TR +LuComServer_3_3,NI+SK+NC+ND+TR +LuConfig.EXE,NI+SK+NC+ND+TR +NotifyHA.exe,NI+SK+NC+ND+TR +// SEP12 has issues during upgrade +ccSvcHst.exe,RP+PR+NI+SK+TR+NC+ND +ccLgView.exe,NI+SK+NC+ND+TR + + +//------------------------------------------- +// Cygwin +//------------------------------------------- + +cygwin.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// UK Video Tools +//------------------------------------------- + +dispman2_obj.ex,NI+SK+NC+ND+TR + +//------------------------------------------- +// ZSP Tools +//------------------------------------------- + +sdcpp.exe,NI+SK+NC+ND+TR +sdar.exe,NI+SK+NC+ND+TR +sdas.exe,NI+SK+NC+ND+TR +sdbug400.exe,NI+SK+NC+ND+TR +sdcc.exe,NI+SK+NC+ND+TR +sdcc1.exe,NI+SK+NC+ND+TR +sdelfread.exe,NI+SK+NC+ND+TR +sdld.exe,NI+SK+NC+ND+TR +sdnm.exe,NI+SK+NC+ND+TR +sdobjcopy.exe,NI+SK+NC+ND+TR +sdobjdump.exe,NI+SK+NC+ND+TR +sdopt.exe,NI+SK+NC+ND+TR +sdranlib.exe,NI+SK+NC+ND+TR +sdsize.exe,NI+SK+NC+ND+TR +sdstrings.exe,NI+SK+NC+ND+TR +sdstrip.exe,NI+SK+NC+ND+TR +zisim400.exe,NI+SK+NC+ND+TR +zsim400.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Altiris processes +//------------------------------------------- + +ACLIENT.EXE,NI+SK+NC+ND+TR +AClntUsr.EXE,NI+SK+NC+ND+TR +AeXAgentActivat,NI+SK+NC+ND+TR +AeXAgentDesktop,NI+SK+NC+ND+TR +AeXAgentUIHost.,NI+SK+NC+ND+TR +AeXAgentUtil.ex,NI+SK+NC+ND+TR +AeXNSAgent.exe,NI+SK+NC+ND+TR +AeXNSInvCollect,NI+SK+NC+ND+TR +AeXSWDAppInv.ex,NI+SK+NC+ND+TR +AeXSWDSolnAgent,NI+SK+NC+ND+TR +AeXSWDUsr.exe,NI+SK+NC+ND+TR +AeXSWDUsrUIWin.,NI+SK+NC+ND+TR +SWRAgentUtils.e,NI+SK+NC+ND+TR +UnInstallSynchA,NI+SK+NC+ND+TR +AeXPatchUtil.ex,NI+SK+NC+ND+TR +AeXAuditPls.exe,NI+SK+NC+ND+TR +AeXCustInv.exe,NI+SK+NC+ND+TR +AeXExchPls.exe,NI+SK+NC+ND+TR +AeXInvSoln.exe,NI+SK+NC+ND+TR +AeXMachInv.exe,NI+SK+NC+ND+TR +AeXRunControl.e,NI+SK+NC+ND+TR +AeXSNPlus.exe,NI+SK+NC+ND+TR +SNData.exe,NI+SK+NC+ND+TR +SNData2.exe,NI+SK+NC+ND+TR +mechelenvpn.exe,NI+SK+NC+ND+TR +ClientUtil32.ex,NI+SK+NC+ND+TR +trustedsites.ex,NI+SK+NC+ND+TR +qchain.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Clearcase +//------------------------------------------- + +ratlperl.exe,NI+SK+NC+ND+TR +clearview.exe,NI+SK+NC+ND+TR +cchelper.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Broadcom standard build processes +//------------------------------------------- + +hausmake.exe,NI+SK+NC+ND+TR +make.exe,NI+SK+NC+ND+TR +gmake.exe,NI+SK+NC+ND+TR +mips-elf-gcc.ex,NI+SK+NC+ND+TR +cc1.exe,NI+SK+NC+ND+TR +cpp0.exe,NI+SK+NC+ND+TR +cygpath.exe,NI+SK+NC+ND+TR + + +grep.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Lotus Notes +//------------------------------------------- +nlnotes.exe,NL +amovie.exe,NI+SK+NC+ND+TR +ldapsearch.exe,NI+SK+NC+ND+TR +memcheck.exe,NI+SK+NC+ND+TR +nadminp.exe,NI+SK+NC+ND+TR +nca.exe,NI+SK+NC+ND+TR +nchronos.exe,NI+SK+NC+ND+TR +ncollect.exe,NI+SK+NC+ND+TR +ncompact.exe,NI+SK+NC+ND+TR +nconvert.exe,NI+SK+NC+ND+TR +ndctest.exe,NI+SK+NC+ND+TR +ndefault.exe,NI+SK+NC+ND+TR +ndyncfg.exe,NI+SK+NC+ND+TR +nevent.exe,NI+SK+NC+ND+TR +nfileret.exe,NI+SK+NC+ND+TR +nfixup.exe,NI+SK+NC+ND+TR +nlogasio.exe,NI+SK+NC+ND+TR +nminder.exe,NI+SK+NC+ND+TR +nnotesmm.exe,NI+SK+NC+ND+TR +npop3.exe,NI+SK+NC+ND+TR +nsd.exe,NI+SK+NC+ND+TR +nsenddiag.exe,NI+SK+NC+ND+TR +ntrends.exe,NI+SK+NC+ND+TR +nupdall.exe,NI+SK+NC+ND+TR +nupdate.exe,NI+SK+NC+ND+TR +nxpcdmn.exe,NI+SK+NC+ND+TR +qnc.exe,NI+SK+NC+ND+TR +rtfcnvt.exe,NI+SK+NC+ND+TR +sminstal.exe,NI+SK+NC+ND+TR +smupdate.exe,NI+SK+NC+ND+TR +stconnagent30.e,NI+SK+NC+ND+TR + +//------------------------------------------- +// #12048 +// Ntaskldr.exe is the Notes Task Loader. +// Ntaskldr.exe is a single process that runs +// on Windows operating systems, and carries +// out the various tasks by spawning threads +// instead of loading individual processes. +//------------------------------------------- +ntaskldr.exe,NI+SK+NC+ND+TR + +// Below this line is DG Default Process Flags File +// +//------------------------------------------- +// #10349 +//------------------------------------------- +fixccs.exe,276 + +//------------------------------------------- +// #14642 +//------------------------------------------- +//dkservice.exe,276 //Diskeeper is in Defrag Tools Section now + +//------------------------------------------- +// #9909 +// Mark CA eTrust real time scanner as +// TRUSTED, SKIPPED and NO_INJECT +//------------------------------------------- +inort.exe,3146004 + + +// VMWare +vmwareservice.e,NI+SK+NC+ND+TR +vmwaretray.exe,NI+SK+NC+ND+TR +vmwareuser.exe,NI+SK+NC+ND+TR +vmnat,SK+TR+NI+NC+ND +vmnetdhcp,SK+TR+NI+NC+ND +VMware-authd,SK+TR+NI+NC+ND +VMware-hostd,SK+TR+NI+NC+ND +VMware-tray,SK+TR+NI+NC+ND +VMware-usbarbitrator64,SK+TR+NI+NC+ND +vmtoolsd,SK+TR+NI+NC+ND +VGAuthService,SK+TR+NI+NC+ND +vmacthlp,SK+TR+NI+NC+ND + +//Microsoft Windows Script Host +wscript.exe,NC+ND + +//------------------------------------------- +// MS OFFICE Apps +// have Window Subclassing ON +// are Window Stealth SAFE +// iexplore include multi window and multi doc +//------------------------------------------- +iexplore.exe,MW+MD+WS+SB +winword.exe,SB+WS+FP +excel.exe,SB+WS+FP +infopath.exe,SB+WS+FP +msaccess.exe,SB+WS+FP +mspub.exe,SB+WS+FP +mstore.exe,SB+WS+FP +ois.exe,SB+WS+FP + +// DWNG+DWSP added in 7.6.3 because with Outlook COM tracking +// WinInet and WinSocket tracking is not needed +outlook.exe,SB+WS+AS+DWNG+DWSP + +powerpnt.exe,SB+WS+FP +winproj.exe,SB+WS+FP +visio.exe,SB+WS+FP +notepad.exe,2560 +wordpad.exe,2560 +officeclicktoru,NI+SK+NC+ND+TR + +//----------------------------------- +// Hitachi Asset Management Software +//----------------------------------- +dmpwinst.exe, NI+SK+NC+ND+TR +dmpstmgr.exe, NI+SK+NC+ND+TR +dmpserv.exe, NI+SK+NC+ND+TR +dmprtry.exe, NI+SK+NC+ND+TR +dmpreged.exe, NI+SK+NC+ND+TR +dmpwtcp.exe, NI+SK+NC+ND+TR +dmpapchk.exe, NI+SK+NC+ND+TR +dmpbkdel.exe, NI+SK+NC+ND+TR +dmpbklst.exe, NI+SK+NC+ND+TR +dmpclint.exe, NI+SK+NC+ND+TR +dmpdelic.exe, NI+SK+NC+ND+TR +dmpdlg.exe, NI+SK+NC+ND+TR +dmpexect.exe, NI+SK+NC+ND+TR +dmpiddef.exe, NI+SK+NC+ND+TR +dmpiddel.exe, NI+SK+NC+ND+TR +dmpicron.exe, NI+SK+NC+ND+TR +dmpidex.exe, NI+SK+NC+ND+TR +dmpidreg.exe, NI+SK+NC+ND+TR +dmpinvui.exe, NI+SK+NC+ND+TR +dmpjbsts.exe, NI+SK+NC+ND+TR +dmplgetc.exe, NI+SK+NC+ND+TR +dmprcvry.exe, NI+SK+NC+ND+TR +dmpinit.exe, NI+SK+NC+ND+TR +dmpinv.exe, NI+SK+NC+ND+TR +dmpishld.exe, NI+SK+NC+ND+TR +dmplogmg.exe, NI+SK+NC+ND+TR +dmpmkgrp.exe, NI+SK+NC+ND+TR +dmpmsg.exe, NI+SK+NC+ND+TR +dmpmsgbx.exe, NI+SK+NC+ND+TR +dmppcom.exe, NI+SK+NC+ND+TR +dmprcchk.exe, NI+SK+NC+ND+TR +dmpsvchg.exe, NI+SK+NC+ND+TR +dmpsspnd.exe, NI+SK+NC+ND+TR +dmpsndst.exe, NI+SK+NC+ND+TR +dmpshutd.exe, NI+SK+NC+ND+TR +dmpstart.exe, NI+SK+NC+ND+TR +dmpstop.exe, NI+SK+NC+ND+TR +dmpsetvr.exe, NI+SK+NC+ND+TR +dmpsetup.exe, NI+SK+NC+ND+TR +dmpsvsnd.exe, NI+SK+NC+ND+TR +dmpsyset.exe, NI+SK+NC+ND+TR +dmpsysmv.exe, NI+SK+NC+ND+TR +dmpuinv.exe, NI+SK+NC+ND+TR +dmpusers.exe, NI+SK+NC+ND+TR +dmpusts.exe, NI+SK+NC+ND+TR +dmpwwset.exe, NI+SK+NC+ND+TR +dmrcagnt.exe, NI+SK+NC+ND+TR +dmrcasrv.exe, NI+SK+NC+ND+TR +dmrcctrn.exe, NI+SK+NC+ND+TR +dmrcexit.exe, NI+SK+NC+ND+TR +dmrcinfo.exe, NI+SK+NC+ND+TR +dmrcrreq.exe, NI+SK+NC+ND+TR +dmsysinf.exe, NI+SK+NC+ND+TR +dmpupdt.exe, NI+SK+NC+ND+TR +dmpsts.exe, NI+SK+NC+ND+TR +dmexe32.exe, NI+SK+NC+ND+TR + +//-------------------------------------------------------------- +// SiteTrust Related Executables +//-------------------------------------------------------------- +stbrwsr.exe, NI+SK+NC+ND+TR +stdecomm.exe, NI+SK+NC+ND+TR +stservice.exe, NI+SK+NC+ND+TR +stupdateservice, NI+SK+NC+ND+TR + + +//ntaskldr.exe,3145988 +//nlnotes.exe,TP + +//------------------------------------------- +// Not Injecting for all YRIDD demo processes. +//------------------------------------------- +LOFEmulationSer, NI+SK+NC+ND+TR +LOFModelServer.,NI+SK+NC+ND+TR +LOFService.exe, NI+SK+NC+ND+TR +LPTServer.exe, NI+SK+NC+ND+TR +LegacySystem.ex,NI+SK+NC+ND+TR + +//------------------------------------------------ +// Not injecting Remediation for system processes +//------------------------------------------------ +inetinfo.exe, ND+NC+NA +aspnet_wp.exe,3407872 + +//csrss.exe,262144 <-- Handled in ProcessFlags +//lsass.exe,262144 <-- Also skipped and non-inject, Handled in base list above +services.exe,NI+SK+NC+ND+TR+NA+NV+NE +mpnotify.exe,NI+SK+NC+ND+TR+NA +// svchost is set to No Encrypt because some Out-of Proc COM objects will +// it and we make mistakes and encrypt the wrong things. +svchost.exe,NE+NI+NC+ND+NA+NV +taskmgr.exe,3407872 +winlogon.exe,NI+NC+ND+NE +WZQKPick.exe,3407872 + + +//================================================ +// SKIPPED + NON-INJECT LIST +//================================================ +ctfmon.exe,NI+SK+NC+ND+TR +stsystra.exe,NI+SK+NC+ND+TR +regsrvc.exe,NI+SK+NC+ND+TR +ifrmewrk.exe,NI+SK+NC+ND+TR +apdproxy.exe,NI+SK+NC+ND+TR +wdfmgr.exe,NI+SK+NC+ND+TR +cli.exe,NI+SK+NC+ND+TR +s24evmon.exe,NI+SK+NC+ND+TR +pdvdserv.exe,NI+SK+NC+ND+TR +winmgmt.exe, SK+NI+NC+ND+TR+NA+NV +reader_sl.exe,NI+SK+NC+ND+TR +sm1bg.exe,NI+SK+NC+ND+TR +sm56hlpr.exe,NI+SK+NC+ND+TR +zcfgsvc.exe,NI+SK+NC+ND+TR +googledesktop.e,NI+SK+NC+ND+TR +GoogleQuickSear,NI+SK+NC+ND+TR +GoogleToolbarMa,NI+SK+NC+ND+TR +GoogleToolbarNo,NI+SK+NC+ND+TR +GoogleToolbarUs,NI+SK+NC+ND+TR +GoogleUpdaterSe,NI+SK+NC+ND+TR +SearchWithGoogl,NI+SK+NC+ND+TR +staged_GoogleTo,NI+SK+NC+ND+TR +GoogleUpdate.ex,NI+SK+NC+ND+TR+PR +googledrivesync.exe,SK+NI +GoogleDriveFS.exe,SK+NI + +onedrive.exe,SK+NI + +//================================================= +// Installation/Update Packages +//================================================= + +//-------------------------------------------------------------- +// Agent Installer Related Executables: +//-------------------------------------------------------------- +dgagentsetup.ex, NI+SK+NC+ND+TR+NE+PR +dgagentinstalle, NI+SK+NC+ND+TR+NE+PR +wuauclt.exe,NI+SK+NC+ND+TR+NE+PR +WindowsXP-KB936,NI+SK+NC+ND+TR+NE+PR +msiexec.exe,NI+SK+NC+ND+TR+NE+PR +hp_53_enu.exe,NI+SK+NC+ND+TR+NE+PR +update.exe,NI+SK+NC+ND+TR+NE+PR +grpconv.exe,NI+SK+NC+ND+TR+NE+PR +msoobe.exe,NI+SK+NC+ND+TR+NE+PR +smbinst.exe,NI+SK+NC+ND+TR+NE+PR +spiisupd.exe,NI+SK+NC+ND+TR+NE+PR +spnpinst.exe,NI+SK+NC+ND+TR+NE+PR +spupdsvc.exe,NI+SK+NC+ND+TR+NE+PR +uploadm.exe,NI+SK+NC+ND+TR+NE+PR +tiworker.exe,NI+SK+NC+ND+TR+NE+PR + +//================================================= +// TOUCHPAD +//================================================= +syntplpr.exe,NI+SK+NC+ND+TR +syntpenh.exe,NI+SK+NC+ND+TR + +//============================================ +// ROXIO SERVICES +// (Do not exclude Drag To Disk!) +//============================================ +roxwatchtray.ex,NI+SK+NC+ND+TR +roxmediadb.exe,NI+SK+NC+ND+TR +roxwatch.exe,NI+SK+NC+ND+TR +roxliveshare.ex,NI+SK+NC+ND+TR +roxupnpserver.e,NI+SK+NC+ND+TR + +//------------------------------------------- +// Other build exes +//------------------------------------------- +shell.exe,NI+SK+NC+ND+TR +rm.exe,NI+SK+NC+ND+TR +cat.exe,NI+SK+NC+ND+TR +makedirs.exe,NI+SK+NC+ND+TR + + + +//------------------------------------------- +// Typical Developer Tools +//------------------------------------------- +sh.exe,NI+SK+NC+ND+TR +cp.exe,NI+SK+NC+ND+TR +guidgen.exe,NI+SK+NC+ND+TR +uuidgen.exe,NI+SK+NC+ND+TR +oleview.exe,NI+SK+NC+ND+TR +mapsym.exe,NI+SK+NC+ND+TR +cl.exe,NI+SK+NC+ND+TR +lib.exe,NI+SK+NC+ND+TR +link.exe,NI+SK+NC+ND+TR +bscmake.exe,NI+SK+NC+ND+TR +sproxy.exe,NI+SK+NC+ND+TR +windbg.exe,NI+SK+NC+ND+TR +h2inc.exe,NI+SK+NC+ND+TR +ml.exe,NI+SK+NC+ND+TR +rc.exe,NI+SK+NC+ND+TR +dumpbin.exe,NI+SK+NC+ND+TR +drwtsn32.exe,NI+SK+ND+NC +dbgview.exe,NI+SK+ND+NC+NA + +//======================================= +// DRIVER STUDIO +//======================================= +dsconfig.exe,NI+SK+NC+ND+TR +genrebld.exe,NI+SK+NC+ND+TR +wizapp.exe,NI+SK+NC+ND+TR +drivererrorlook,NI+SK+NC+ND+TR +dstrayapp.exe,NI+SK+NC+ND+TR +dsrsvc.exe,NI+SK+NC+ND+TR +nmsym.exe,NI+SK+NC+ND+TR +siremote.exe,NI+SK+NC+ND+TR +nmfilterconfig.,NI+SK+NC+ND+TR +icepack.exe,NI+SK+NC+ND+TR +kd2sysxlat.exe,NI+SK+NC+ND+TR +loader32.exe,NI+SK+NC+ND+TR +sicrashutil.exe,NI+SK+NC+ND+TR +startsi.exe,NI+SK+NC+ND+TR +ds.exe,NI+SK+NC+ND+TR +dsspawn.exe,NI+SK+NC+ND+TR +dsnotifysub.exe,NI+SK+NC+ND+TR +symrtrvr.exe,NI+SK+NC+ND+TR +dldr.exe,NI+SK+NC+ND+TR +wldr.exe,NI+SK+NC+ND+TR +msym.exe,NI+SK+NC+ND+TR +dsrebootem.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// HP noisy driver +//------------------------------------------- +hpbpro.exe,NI+SK+NC+ND+TR + +// Network Associates +// Common Framework +mcscript_inuse.,NI+SK+NC+ND+TR + +// VirusScan +mcshield.exe,NI+SK+NC+ND+TR +shstat.exe,NI+SK+NC+ND+TR + + +// DG 3.0 MR3 default +photoshop.exe,NI +dreamweaver.exe,NI +photoshp.exe, NI + +//------------------------------------------- +// #11511 +// Mark Provencia Client (BlackIce) as +// TRUSTED, SKIPPED and NO_INJECT +//------------------------------------------- +blackd.exe,3146004 +rapapp.exe,3146004 +vpatch.exe,3146004 +blackice.exe,3146004 +RapUISvc.exe,3146004 + + +//=========================================== +// Hang Fix from Dante +//=========================================== +crypserv.exe,3146004 +wlkeeper.exe,3146004 +oscmutilityserv,3146004 +rssensor.exe,3146004 +sddtaflt.exe,3146004 +miftoivf.exe,3146004 +sxpstub.exe,3146004 +amagent.exe,3146004 +triggusr.exe,3146004 +recovery.exe,3146004 +umcinst.exe,3146004 + +//======================================================== +// Hang issue and system event log error issue from Sri +//======================================================== +//Nero group - we need to verify this does not cause any side effect in CD burning +InCDsrv.exe,3146004 +InCD.exe,3146004 +NMBgMonitor.exe,3146004 + +//Windows live search group - probably due to Windows Live Toolbar +WindowsSearch.e,260 +WindowsSearchIn,260 + +//sql server group - These can come part of VS2005 install +sqlbrowser.exe,3146004 +sqlwriter.exe,3146004 +sqlservr.exe,3146004 +sqlagent.exe,3146004 +SQLAGENT90.EXE,3146004 +//SQL Server Reporting Services process (ReportingServicesService.exe) +ReportingServic,SK+TR+NI+NC+ND + +//Archiving utilities + +winzip32.exe,524288 +winzip64.exe,524288 +winrar.exe,524288 +compact.exe,524288 +7z.exe,524288 +7zg.exe,524288 +7zfm.exe,524288 +stuffit.exe,524288 +WebAuthBroker.exe,NI + +//Symantec +EvtEng.exe,NI+SK+NC+ND+TR + + + +//Lenovo Logger +logmon.exe,NI+SK+NC+ND+TR + +//Lenovo Rescue and Recovery +netwk.exe,NI+SK+NC+ND+TR + +// pgp +pgptray.exe, 3145728 +pgpsdkserv.exe, 3145728 + +//============================================ +// Windows XP Native CD Burn with AFE. Bug# 18990 +// Make imapi.exe (XP CD Burning service) +// go directly to NTFS, bypassing AFE +//============================================ +imapi.exe,NR + +//============================================ +//Hondata FlashPro Manager +//Hondata K-Series ECU Editor +//Install and Exes +// +//DGAGENT-6752 +//============================================ +driverins.exe,NI+SK+NC+ND+TR+PR +TeamViewerQS_en,NI+SK+NC+ND+TR+PR +FlashProManager,SK+TR+NI+NC+ND+PR +KManagerV4-2-5.,SK+TR+NI+NC+ND+PR +FlashProManager,SK+TR+NI+NC+ND+PR +KManager.exe,SK+TR+NI+NC+ND+PR + +//============================================ +// Defrag Tools. Bug# 14811 TT24292 +// SK+NI+TR+NC+ND = 3146004 +//============================================ +// Ashampoo_MagicalDefrag +aDefragCtrl.exe,NR+SK+NI+TR+NC+ND +aDefragService.,NR+SK+NI+TR+NC+ND + +// Auslogics Disk Defrag +diskdefrag.exe,NR+SK+NI+TR+NC+ND + +// BuzzSaw +Buzzsaw-S.exe,NR+SK+NI+TR+NC+ND +BuzzSawService.,NR+SK+NI+TR+NC+ND + +// DefragMentor +DEFRAGME.EXE,NR+SK+NI+TR+NC+ND + +// DisKeeper +Diskeeper.exe,NR+SK+NI+TR+NC+ND +DkService.exe,NR+SK+NI+TR+NC+ND +DfrgNTFS1.exe,NR+SK+NI+TR+NC+ND + +// Windows Defrag +DfrgNTFS.exe,BI+SK+NI+TR+NC+ND +DfrgFat.exe,BI+SK+NI+TR+NC+ND + +// DiskTrik Ultimate Defrag +UDefrag.exe,NR+SK+NI+TR+NC+ND + +// hsDefragSaver +hsDefragSaver.e,NR+SK+NI+TR+NC+ND +hsDefragSvc.exe,NR+SK+NI+TR+NC+ND + +// IOBit SmartDefrag.exe +IObit SmartDefr,NR+SK+NI+TR+NC+ND + +// JKDefrag +JkDefrag.exe,NR+SK+NI+TR+NC+ND +JkDefragCmd.exe,NR+SK+NI+TR+NC+ND + +// MindSoft Utilities +defrag.exe,NR+SK+NI+TR+NC+ND +defragl.exe,NR+SK+NI+TR+NC+ND + +// mstDefrag +mstDefrag.exe,NR+SK+NI+TR+NC+ND +mstDfrgS.exe,NR+SK+NI+TR+NC+ND + +// OODefrag +oodcmd.exe,NR+SK+NI+TR+NC+ND +oodcnt.exe,NR+SK+NI+TR+NC+ND + +// PageDefrag +pagedfrg.exe,NR+SK+NI+TR+NC+ND + +// Paragon Total Defrag +launcher.exe,NR+SK+NI+TR+NC+ND + +// PerfectDisk +PDAgent.exe,NR+SK+NI+TR+NC+ND +PDCmd.exe,NR+SK+NI+TR+NC+ND +PDEngine.exe,NR+SK+NI+TR+NC+ND +PerfectDisk.exe,NR+SK+NI+TR+NC+ND + +// PowerDefrag +PDBot.exe,NR+SK+NI+TR+NC+ND +PDefrag.exe,NR+SK+NI+TR+NC+ND + +// Power Defragmenter GUI +Contig.exe,NR+SK+NI+TR+NC+ND +Power Defragmen,NR+SK+NI+TR+NC+ND + +// Rapid File Defragmentor +RapidFD.exe,NR+SK+NI+TR+NC+ND +RapidFD_aux.exe,NR+SK+NI+TR+NC+ND + +// SpeedItUp +SpeedItUp.exe,NR+SK+NI+TR+NC+ND + +// UltraDefrag +defrag_native.e,NR+SK+NI+TR+NC+ND +dfrg.exe,NR+SK+NI+TR+NC+ND + +// Vopt +Vopt.exe,NR+SK+NI+TR+NC+ND +VoptAux.exe,NR+SK+NI+TR+NC+ND + +// WinContig +WinContig.exe,NR+SK+NI+TR+NC+ND + +//windows indexing service +cidaemon.exe,SK+NI+NC+ND + +//BES computer role +//default process flags: SK+NI+NC+ND +roleBES:winlogon.exe, +roleBES:alg.exe, +roleBES:wfshell.exe, +roleBES:javaw.exe, +roleBES:inetinfo.exe, +roleBES:aspnet_wp.exe, +roleBES:taskmgr.exe, + +// pgp +roleBES:pgptray.exe, +roleBES:pgpsdkserv.exe, + +// MS OFFICE Apps +roleBES:iexplore.exe, +roleBES:winword.exe, +roleBES:excel.exe, +roleBES:infopath.exe, +roleBES:msaccess.exe, +roleBES:mspub.exe, +roleBES:mstore.exe, +roleBES:ois.exe, +roleBES:outlook.exe, +roleBES:powerpnt.exe, +roleBES:winproj.exe, + +roleBES:notepad.exe, +roleBES:wordpad.exe, + +//BlackBerry server mail agent (domino) +roleBES:nbes.exe,NP + +//BlackBerry server mail agent (exchange) +roleBES:BlackberryAgent,NP +bmds.exe,SK+TR+NI+NC+ND + +//EAS computer role +//All process will be assigned default process flags: SK+NI+NC+ND +//All process listge here with the prefix RoleEAS: will be cleaned from any flags +roleEAS:winlogon.exe, +roleEAS:alg.exe, +roleEAS:wfshell.exe, +roleEAS:javaw.exe, +roleEAS:inetinfo.exe, +roleEAS:aspnet_wp.exe, +roleEAS:dllhost.exe,NPR +roleEAS:taskmgr.exe, + +// pgp +roleEAS:pgptray.exe, +roleEAS:pgpsdkserv.exe, + +// MS OFFICE Apps +roleEAS:iexplore.exe, +roleEAS:winword.exe, +roleEAS:excel.exe, +roleEAS:infopath.exe, +roleEAS:msaccess.exe, +roleEAS:mspub.exe, +roleEAS:mstore.exe, +roleEAS:ois.exe, +roleEAS:outlook.exe, +roleEAS:powerpnt.exe, +roleEAS:winproj.exe, + +roleEAS:notepad.exe, +roleEAS:wordpad.exe, + +//EAS server - IIS - will have only one flag +roleEAS:w3wp.exe,NP + +// documentum processes +dcathmgr.exe, NI+SK+NC+ND +dccomponentinst, NI+SK+NC+ND +dccomponentlaun, NI+SK+NC+ND +dcevtsrv.exe, NI+SK+NC+ND +dcprogresssenti, NI+SK+NC+ND + +//-- [START] CLIENT:284 -- +// Hang transferring MSG file, RN #080410-000006 +// Sophos process Flags +SavService.exe,SK+NI+TR+ND+NC +SavAdminService,SK+NI+TR+ND+NC +SAVOnAccessCont,SK+NI+NC+ND + +// Sophos\Sophos Anti-Virus +spa.exe,SK+TR+NI+NH+NC+ND+PR +Sophosavagent.e,SK+TR+NI+NH+NC+ND+PR +Sophoslogwrite.,SK+TR+NI+NH+NC+ND+PR +Sophosbootask.e,SK+TR+NI+NH+NC+ND+PR +sdugui.exe,SK+TR+NI+NH+NC+ND+PR + +//Sophos\Encyption +sgnsafemodeserv,SK+TR+NI+NH+NC+ND+PR +sgnauthservicen,SK+TR+NI+NH+NC+ND+PR +befcsvcn.exe,SK+TR+NI+NH+NC+ND+PR +bedevctl.exe,SK+TR+NI+NH+NC+ND+PR +sgn_masterservi,SK+TR+NI+NH+NC+ND+PR + +// performance issues on W2K +Lafservice.exe,SK+NI+TR+ND+NC +Radexecd.exe,SK+NI+TR+ND+NC +Radsched.exe,SK+NI+TR+ND+NC +Radstgms.exe,SK+NI+TR+ND+NC +Sbmgrnt.exe,SK+NI+TR+ND+NC +Mstask.exe,SK+NI+TR+ND+NC +Uphclean.exe,SK+NI+TR+ND+NC +Application Lau,SK+NI+TR+ND+NC +Cfd.exe,SK+NI+TR+ND+NC +generic.exe,SK+NI+TR+ND+NC +asa.exe,SK+NI+TR+ND+NC +epmworker.exe,SK+NI+TR+ND+NC +gemone~1.scr,SK+NI+TR+ND+NC +//-- [END] CLIENT:284 + +//-- [START] CLIENT:223 -- +ipagent.exe,NI+SK+NC+ND+TR +iclarity.exe,NI+SK+NC+ND+TR +loginw32.exe,NI+SK+NC+ND+TR +nbnmsrvc.exe,NI+SK+NC+ND+TR +nicrlstn.exe,NI+SK+NC+ND+TR + +// Stealth MXP +accessconsole.e,NI+SK+NC+ND+TR +accesspresenter,NI+SK+NC+ND+TR +accesstray.exe,NI+SK+NC+ND+TR +accessunlock.ex,NI+SK+NC+ND+TR +accessversion.e,NI+SK+NC+ND+TR +accessstatus.ex,NI+SK+NC+ND+TR +mxpconfig.exe,NI+SK+NC+ND+TR +mxpconnector.ex,NI+SK+NC+ND+TR +ssdconsole.exe,NI+SK+NC+ND+TR +statusdialog.ex,NI+SK+NC+ND+TR +unlockdialog.ex,NI+SK+NC+ND+TR +//-- [END] CLIENT:223 + +Agrsmmsg.exe,SK+TR+NI+NC+ND +ATWTUSB.EXE,SK+TR+NI+NC+ND +BESClient.exe,SK+TR+NI+NC+ND +BESClientUI.exe,SK+TR+NI+NC+ND +btwdins.exe,SK+TR+NI+NC+ND +dkAutoReg.exe,SK+TR+NI+NC+ND +Dkcktkn.exe,SK+TR+NI+NC+ND +Dklog.exe,SK+TR+NI+NC+ND +dkMonitor.exe,SK+TR+NI+NC+ND +Dkvcm.exe,SK+TR+NI+NC+ND +Eabservr.exe,SK+TR+NI+NC+ND +HP Wireless Ass,SK+TR+NI+NC+ND +HPQTOA~1.EXE,SK+TR+NI+NC+ND +hpqwmiex.exe,SK+TR+NI+NC+ND +IAAnotif.exe,SK+TR+NI+NC+ND +IAANTMon.exe,SK+TR+NI+NC+ND +NeoterisSetupSe,SK+TR+NI+NC+ND +Ntmulti.exe,SK+TR+NI+NC+ND +NwmCli.exe,SK+TR+NI+NC+ND +NwmSvc.exe,SK+TR+NI+NC+ND +//PDAgent.exe,SK+TR+NI+NC+ND <-- Already handled generically +QLBCTRL.exe,SK+TR+NI+NC+ND +//SavRoam.exe,SK+TR+NI+NC+ND <-- Already handled above +//Scardsvr.exe,SK+TR+NI+NC+ND <-- Already handled under Windows srvcs +SDPin.exe,SK+TR+NI+NC+ND +SMAgent.exe,SK+TR+NI+NC+ND +SMax4.exe,SK+TR+NI+NC+ND +SMax4PNP.exe,SK+TR+NI+NC+ND +//Smc.exe,SK+TR+NI+NC+ND <-- Already handled under Symantec Anti-Virus +//Smcgui.exe,SK+TR+NI+NC+ND <-- Already handled under Symantec Anti-Virus +SMSWUagent.exe,SK+TR+NI+NC+ND +//SNAC.exe,SK+TR+NI+NC+ND <-- Already handled under Symantec End-Point Protection +//SPBBCSvc.exe,SK+TR+NI+NC+ND <-- Already handled under Symantec Anti-Virus 10 +Tfswctrl.exe,SK+TR+NI+NC+ND +//Uphclean.exe,SK+TR+NI+NC+ND <-- Already handled generically (2K performance) +VentC.exe,SK+TR+NI+NC+ND +VPN Services.ex,SK+TR+NI+NC+ND + + +avconf.exe,NN+NC+ND+NA +testpartner.exe,SK+TR+NI+NC+ND +testpa~1.exe,SK+NI+TR+NC+ND + +//-- Redgate.Profiler.IISProfileHost.exe (ANT) +redgate.profile,NA + +//-- cisvc.exe (Indexing service) +cisvc.exe,NA + +// Client - ? +collector.exe,SK+TR+NI+NC+ND +cwsloginsvc.exe,SK+TR+NI+NC+ND +issch.exe,SK+TR+NI+NC+ND +issvc.exe,SK+TR+NI+NC+ND +ldiscn32.exe,SK+TR+NI+NC+ND +ldlcserv.exe,SK+TR+NI+NC+ND +localsch.exe,SK+TR+NI+NC+ND +modalwin.exe,SK+BK +niagnt32.exe,SK+BK +niaiserv.exe,SK+BK +niinst32.exe,SK+BK +pcs_agnt.exe,SK+TR+NI+NC+ND +pds.exe,SK+TR+NI+NC+ND +rcgui.exe,SK+TR+NI+NC+ND +residentagent.e,SK+TR+NI+NC+ND +screenagent.exe,SK+TR+NI+NC+ND +sdclientmonitor,SK+TR+NI+NC+ND +sndsrvc.exe,SK+TR+NI+NC+ND +softmon.exe,SK+TR+NI+NC+ND +suss.exe,SK+TR+NI+NC+ND +tmcsvc.exe,SK+TR+NI+NC+ND +trcboot.exe,SK+TR+NI+NC+ND +a180ag.exe,SK+TR+NI+NC+ND +a180cm.exe,SK+TR+NI+NC+ND +a180wd.exe,SK+TR+NI+NC+ND + +//rotatelogs.exe may takes a longtime after installation of the agent. so skip it +rotatelogs.exe,SK+TR+NI+NC+ND + +// TSMSIhlp.EXE is a Tech Smith help utility used by Wise installers. +// There can be a conflict between the agent and this program which results in +// a failure for the application to shut down in an orderly fashion. As a result, +// the uninstallation calling it will also fail to complete correctly. +TSMSIhlp.EXE,NI+SK+NC+ND+TR + + +// The first to use processFlags to better control dgapiHookMask for a particular process + +qvp32.exe,DPG+DSBG + +// bug #21337 Agile Downloads - Classification and Encryption does not work +agilecm.exe,CC + +// defect 23353 + +fltmc.exe,SK+TR+NI+NC+ND + +searchfilterhos,SK+TR+NI+NC+ND +searchprotocolh,SK+TR+NI+NC+ND+PR+NPR+NPROC + +// add procmon to the list, otherwise, procmon is crashing with too little memory since 5.3. +procmon.exe,SK+TR+NI+NC+ND +procmon64.exe,SK+TR+NI+NC+ND + +// TT#22036 - To prevent BlackBerry Desktop Manager from hanging when launched. +desktopmgr.exe,NI + +// TT#20028 - This change allows Bloomberg PriceLink and a DG Agent to operate on the same computer. +wintrv.exe,SK+TR+NI+NC+ND +plinksvc.exe,SK+TR+NI+NC+ND +plnotify.exe,SK+TR+NI+NC+ND +plpkt14.exe,SK+TR+NI+NC+ND + +//TT#19400 - This change allows you to use the Iron Key secure USB key successfully. +ironkey.exe,SK+NB+TR+NI+NC+ND+CD + +// Role Low No inject +// +roleLowNI:alg.exe,NI+SK+NC+ND+TR+NE +roleLowNI:explorer.exe,TF+EX+NV+NU+NPR+NC+ND +roleLowNI:cmd.exe,NC+ND +roleLowNI:inetinfo.exe, +roleLowNI:aspnet_wp.exe, +roleLowNI:dllhost.exe,NPR +roleLowNI:taskmgr.exe, +roleLowNI:winrar.exe,NC+ND +roleLowNI:winzip32.exe,NC+ND + +// pgp +roleLowNI:pgptray.exe, +roleLowNI:pgpsdkserv.exe, + +// MS OFFICE Apps +//roleLowNI:iexplore.exe, +//roleLowNI:winword.exe,SB+NC+ND +//roleLowNI:excel.exe,SB+NC+ND +//roleLowNI:infopath.exe, +//roleLowNI:msaccess.exe,SB+NC+ND +//roleLowNI:mspub.exe, +//roleLowNI:mstore.exe, +//roleLowNI:ois.exe, +//roleLowNI:outlook.exe, +//roleLowNI:powerpnt.exe,SB+NC+ND +//roleLowNI:winproj.exe, + +//roleLowNI:notepad.exe, +//roleLowNI:wordpad.exe, +//roleLowNI:calc.exe, + +// Role Low +// +roleLow:alg.exe,NI+SK+NC+ND+TR+NE +roleLow:explorer.exe,TF+EX+NV+NU+NPR+NC+ND +roleLow:cmd.exe,NC+ND +roleLow:inetinfo.exe, +roleLow:aspnet_wp.exe, +roleLow:dllhost.exe,NPR +roleLow:taskmgr.exe, +roleLow:winrar.exe,NC+ND +roleLow:winzip32.exe,NC+ND + +// pgp +roleLow:pgptray.exe, +roleLow:pgpsdkserv.exe, + +// MS OFFICE Apps +//roleLow:iexplore.exe, +//roleLow:winword.exe,SB+NC+ND +//roleLow:excel.exe,SB+NC+ND +//roleLow:infopath.exe, +//roleLow:msaccess.exe,SB+NC+ND +//roleLow:mspub.exe, +//roleLow:mstore.exe, +//roleLow:ois.exe, +//roleLow:outlook.exe, +//roleLow:powerpnt.exe,SB+NC+ND +//roleLow:winproj.exe, + +//roleLow:notepad.exe, +//roleLow:wordpad.exe, +//roleLow:calc.exe, + +// NOD32 Anti Virus +// Company: ESET +// File Version: 4.2.40.0 +ekrn.exe,NI+SK+NC+ND+TR +egui.exe,NI+SK+NC+ND+TR + +// adding SK so activation can pass on Windows 8 +trustedinstall,BK+PR+SK,,Microsoft Corporation + + + +// adding for automation +testautomationc,NPR + + +// Dropbox.exe configured for best ACI performance. +dropbox.exe,NV+NN+CSS+NF +DbxSvc.exe,TR+NC+ND+TP+NV+NN+CSS+NF+TN +DropboxUpdate.exe,TR+NC+ND+TP+NV+NN+CSS+NF+TN + +dgdecrypt.exe,CSS + +// Allow roaming profiles to propagate DG stream +userenv.dll,CSS + +// Allow FireFox installer 24esr to work on Win8.0+ +firefox setup*,NI+PR +firefox.exe,NPR +// On Windows 10 firefox (UPX packed) installer change its name +firefox insta*,NI+PR + +//------------------------------------------- +// Malwarebytes +//------------------------------------------- +mbamservice.exe,NI+SK+NC+ND+TR +mbam.exe,NI+SK+NC+ND+TR +mbamscheduler.exe,NI+SK+NC+ND+TR +mbae.exe,NI+SK+NC+ND+TR +mbamgui.exe,NI+SK+NC+ND+TR +mbae64.exe,NI+SK+NC+ND+TR +mbae-svc.exe,NI+SK+NC+ND+TR +sccomm.exe,NI+SK+NC+ND+TR + +//------------------------------------------- +// Malwarebytes Endpoint Agent +//------------------------------------------- +mbcloudea.exe,NI+SK+NC+ND+TR+NPR+PR +mbamwsc.exe,NI+SK+NC+ND+TR+NPR+PR +endpoint agent tray.exe,NI+SK+NC+ND+TR+NPR+PR + +// Quick hash app +QuickHash-v*,NI+SK+NC+ND+TR +QuickHash-Windows-x86.exe,NI +QuickHash-Windows-x64.exe,NI + +// HashMyFiles +HashMyFiles.exe,NI + +// Adobe APPs +Illustrator_Set-Up.exe,NI +InDesign_Set-Up.exe,NI +Photoshop_Set-Up.exe,NI + +// Spotify is an interactive music and media player +spotify.exe,NI+SK+NC+ND+TR + +// 64-bit total commander, see DGAGENT-6741/DGAGENT-490 +TOTALCMD64.EXE,SB + +// Chrome.exe +chrome.exe,NR+NPR + +//---------------------------------------- +// Windows 10 +//---------------------------------------- +// License checker +ClipUp.exe,NI+SK+NC+ND+TR +// Cortana +SearchUI.exe,NI+SK+NC+ND+TR + +//Facebook.exe: multiple issues +Facebook.exe,NI +Flipboard.exe,NI + +//add a series of flags on several applications: Kaspersky, Bromium, Cisco VPN, Bitlocker, various development apps +Cm_km.sys,SK+NI+NC+ND+NA+RU+NV +klif.sys,SK+NI+NC+ND+NA+RU+NV +klflt.sys,SK+NI+NC+ND+NA+RU+NV +kl1.sys,SK+NI+NC+ND+NA+RU+NV +klfde.sys,SK+NI+NC+ND+NA+RU+NV +klvfs.sys,SK+NI+NC+ND+NA+RU+NV +dump_klfdedmp.sys,SK+NI+NC+ND+NA+RU+NV +klnagent.exe,SK+NI+NC+ND+NA+RU+NV +vapm.exe,SK+NI+NC+ND+NA+RU+NV +avp.exe,SK+NI+NC+ND+NA+RU+NV +klfdedmp.sys,SK+NI+NC+ND+NA+RU+NV +klfltdev.sys,SK+NI+NC+ND+NA+RU+NV +klim6.sys,SK+NI+NC+ND+NA+RU+NV +kltdi.sys,SK+NI+NC+ND+NA+RU+NV +kneps.sys,SK+NI+NC+ND+NA+RU+NV +// bitlocker +bdeunlock.exe,NI+SK+NC+ND+TR+NE+PR +bdeunlockwizard,NI+SK+NC+ND+TR+NE+PR +bdeUISrv.exe,NI+SK+NC+ND+TR+NE+PR +ccmexec.exe,SK+TR+NI+NC+ND+PR +microsoft.confi,SK+TR+NI+NC+ND+PR + +vpnagent-exe,SK+TR+NI+NC+ND +vpnui.exe,SK+TR+NI+NC+ND +msseces.exe,SK+TR+NI+NC+ND +ccleaner.exe,SK+TR+NI+NC+ND +ccleaner64.exe,SK+TR+NI+NC+ND +atmgr.exe,SK+TR+NI+NC+ND +vpxclient.exe,SK+TR+NI+NC+ND +// we want to capture from mstsc.exe +//mstsc.exe,SK+TR+NI+NC+ND +rdcman.exe,SK+TR+NI+NC+ND +citrixonlinelau,SK+TR+NI+NC+ND +synergy.exe,SK+TR+NI+NC+ND +synergyc.exe,SK+TR+NI+NC+ND +synergyd.exe,SK+TR+NI+NC+ND +desktopSearchOu,SK+TR+NI+NC+ND +copernic.deskto,SK+TR+NI+NC+ND +vmware.exe,SK+TR+NI+NC+ND +devenv.com,TN+AW+PR +LangResGen.exe,TN+AW+PR +// I assume devenv.exe is what is meant, not devev.exe +devenv.exe,TN+AW+PR+AS +msbuild.exe,TN+AW+PR +acrord32.exe,RP+PR+DWNG +jre*,NI +GoToMeeting.exe,SK+TR+NI+NC+ND+PR +gotomeeting la,SK+TR+NI+NC+ND+PR +gotowebinar la,SK+TR+NI+NC+ND+PR +G2minstaller.ex,SK+TR+NI+NC+ND+PR +G2minsthigh.exe,SK+TR+NI+NC+ND+PR +G2mtranscoder.e,SK+TR+NI+NC+ND+PR +G2mupdate.exe,SK+TR+NI+NC+ND+PR +G2muninstall.ex,SK+TR+NI+NC+ND+PR +SkypeSetup.exe,SK+TR+NI+NC+ND+PR +webexconnect.ex,SK+TR+NI+NC+ND+PR +dg agent manag,SK+PR +securecrt.exe,NI+PR +MCSagent.exe,SK+TR+NI+NC+ND +Mcsclient.exe,SK+TR+NI+NC+ND +Mcsheartbeat.ex,SK+TR+NI+NC+ND +Health.exe,SK+TR+NI+NC+ND +Sntpservice.exe,SK+TR+NI+NC+ND +Ssp.exe,SK+TR+NI+NC+ND +Swc_service.exe,SK+TR+NI+NC+ND +Swi_service.exe,SK+TR+NI+NC+ND +Swi_update64.ex,SK+TR+NI+NC+ND +GetLogs.exe,SK+TR+NI+NC+ND +ALMon.exe,SK+TR+NI+NC+ND +ALsvc.exe,SK+TR+NI+NC+ND +ALUpdate.exe,SK+TR+NI+NC+ND +AutoUpdateAgent,SK+TR+NI+NC+ND +ClientMRInit.ex,SK+TR+NI+NC+ND +EMLibUpdateAgen,SK+TR+NI+NC+ND +ManagementAgent,SK+TR+NI+NC+ND +RouterNT.exe,SK+TR+NI+NC+ND +BackgroundScanC,SK+TR+NI+NC+ND +sav32cli.exe,SK+TR+NI+NC+ND +SAVCleanupServi,SK+TR+NI+NC+ND +SavMain.exe,SK+TR+NI+NC+ND +SavProgress.exe,SK+TR+NI+NC+ND +sdcdevcon.exe,SK+TR+NI+NC+ND +sdcservice.exe,SK+TR+NI+NC+ND +op_viewer.exe,SK+TR+NI+NC+ND +SCFManager.exe,SK+TR+NI+NC+ND +SCFService.exe,SK+TR+NI+NC+ND +SCFTray.exe,SK+TR+NI+NC+ND +configuresav.ex,SK+TR+NI+NC+ND +instmsia.exe,SK+TR+NI+NC+ND +instmsiw.exe,SK+TR+NI+NC+ND +native.exe,SK+TR+NI+NC+ND +sdcdevconia64.e,SK+TR+NI+NC+ND +sdcdevconx64.ex,SK+TR+NI+NC+ND +sophosboottasks,SK+TR+NI+NC+ND +aosuimanager.ex,SK+NI+NC+ND+NA+NV +build.exe,SK+NI+NC+ND+NA+NV +clndiag.exe,SK+NI+NC+ND+NA+NV +cntaosmgr.exe,SK+NI+NC+ND+NA+NV +cntaosuninstall,SK+NI+NC+ND+NA+NV +instreg.exe,SK+NI+NC+ND+NA+NV +ipxfer.exe,SK+NI+NC+ND+NA+NV +logserver.exe,SK+NI+NC+ND+NA+NV +ncfg.exe,SK+NI+NC+ND+NA+NV +ofcpfwsvc.exe,SK+NI+NC+ND+NA+NV +officescantouch,SK+NI+NC+ND+NA+NV +tdiins.exe,SK+NI+NC+ND+NA+NV +tmasutility.exe,SK+NI+NC+ND+NA+NV +tmbmsrv.exe,SK+NI+NC+ND+NA+NV +tmextins.exe,SK+NI+NC+ND+NA+NV +tmfphcex.exe,SK+NI+NC+ND+NA+NV +tmlwfins.exe,SK+NI+NC+ND+NA+NV +tmntupgd.exe,SK+NI+NC+ND+NA+NV +tmopextins.exe,SK+NI+NC+ND+NA+NV +tmpfw.exe,SK+NI+NC+ND+NA+NV +tmuninst.exe,SK+NI+NC+ND+NA+NV +tmupgradeui.exe,SK+NI+NC+ND+NA+NV +tmwfpins.exe,SK+NI+NC+ND+NA+NV +updguide.exe,SK+NI+NC+ND+NA+NV +utilpfwinstcond,SK+NI+NC+ND+NA+NV +vsencode.exe,SK+NI+NC+ND+NA+NV +wixupgrade.exe,SK+NI+NC+ND+NA+NV +wofielauncher.e,SK+NI+NC+ND+NA+NV +callmsi.exe,SK+NI+NC+ND+NA+NV +ecls.exe,SK+NI+NC+ND+NA+NV +ecmd.exe,SK+NI+NC+ND+NA+NV +eeclnt.exe,SK+NI+NC+ND+NA+NV +eOPPFrame.exe,SK+NI+NC+ND+NA+NV +speclean.exe,SK+NI+NC+ND+NA+NV +SysInspector.ex,SK+NI+NC+ND+NA+NV +//Bit 9 +parity agent*,SK+NI+NC+ND+TR +agent*,SK+NI+NC+ND+TR +parity.exe,SK+TR+NI+NC+ND +parity.sys,SK +notifier.exe,SK+TR+NI+NC+ND +dascli.exe,SK+TR+NI+NC+ND +crawler.exe,SK+TR+NI+NC+ND +timedoverride.e,SK+TR+NI+NC+ND +Parityserver.ex,SK+TR+NI+NC+ND +Parityreporter.,SK+TR+NI+NC+ND +//Bromium +Br-hostconfig.e,NI+NC+ND+NR+SK+TR +Br-init-a.exe,NI+NC+ND+NR+SK+TR +Br-init-b.exe,NI+NC+ND+NR+SK+TR +Br-init-c.exe,NI+NC+ND+NR+SK+TR +Br-init-l.exe,NI+NC+ND+NR+SK+TR +Br-init-m.exe,NI+NC+ND+NR+SK+TR +Br-init-n.exe,NI+NC+ND+NR+SK+TR +Br-init-p.exe,NI+NC+ND+NR+SK+TR +Br-init-w.exe,NI+NC+ND+NR+SK+TR +Br-uxendm.exe,NI+NC+ND+NR+SK+TR +kdd.exe,NI+NC+ND+NR+SK+TR +uxenctl.exe,NI+NC+ND+NR+SK+TR +uxendm.exe,NI+NC+ND+NR+SK+TR +vhd-util.exe,NI+NC+ND+NR+SK+TR +xenctx.exe,NI+NC+ND+NR+SK+TR +BrConsole.exe,NI+NC+ND+NR+SK+TR +BrDesktopConsol,NI+NC+ND+NR+SK+TR +BrDownloadManag,NI+NC+ND+NR+SK+TR +BrHostDrvSup.ex,NI+NC+ND+NR+SK+TR +BrHostSvr.exe,NI+NC+ND+NR+SK+TR +BrIEHelper.exe,NI+NC+ND+NR+SK+TR +BrIEHelper64.ex,NI+NC+ND+NR+SK+TR +BrInstaller.exe,NI+NC+ND+NR+SK+TR +BrInstallerPopu,NI+NC+ND+NR+SK+TR +BrLauncher.exe,NI+NC+ND+NR+SK+TR +BrLogMgr.exe,NI+NC+ND+NR+SK+TR +BrManage.exe,NI+NC+ND+NR+SK+TR +BrNav.exe,NI+NC+ND+NR+SK+TR +BrPolicy.exe,NI+NC+ND+NR+SK+TR +BrPreCheck.exe,NI+NC+ND+NR+SK+TR +BrProgressDialo,NI+NC+ND+NR+SK+TR +BrRemoteManagem,NI+NC+ND+NR+SK+TR +BrRemoteMgmtSvc,NI+NC+ND+NR+SK+TR +BrReporter.exe,NI+NC+ND+NR+SK+TR +BrSecurityAlert,NI+NC+ND+NR+SK+TR +BrService.exe,NI+NC+ND+NR+SK+TR +BrStatusMonitor,NI+NC+ND+NR+SK+TR +BrWinFile.exe,NI+NC+ND+NR+SK+TR +getcaps.exe,NI+NC+ND+NR+SK+TR +BrDeprivilege.e,NI+NC+ND+NR+SK+TR +Autonomyhelper3,NI+NC+ND+NR+SK+TR +BrExeScanner.ex,NI+NC+ND+NR+SK+TR +dpinst.exe,NI+NC+ND+NR+SK+TR +HostPcapDump.ex,NI+NC+ND+NR+SK+TR +//Compatibility with Cylance +CylanceSvc.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV +CylanceUI.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV +CyUpdate.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV + +// backup engine +wbengine.exe,NI+SK+NC+ND+TR +//Microsoft Windows Backup +sdclt.exe,NI+SK+NC+ND+TR +// volume shadow +vssvc.exe,NI+SK+NC+ND+TR +// Windows GUI +MSASCui.exe,NI+SK+NC+ND+TR +// Windows Defender Malware Detection +mpcmdrun.exe,NI+SK+NC+ND+TR +// Microsoft Update Notification +MusNotification.exe,NI+SK+NC+ND+TR+PR+NPR+NPROC +MusNotificationUX.exe,NI+SK+NC+ND+TR+PR+NPR+NPROC +// adobe 11 reader installer (PECompact on 32 bits segfaults) +reader11_en_xa_install.exe,NI+SK+NC+ND+TR +readerdc_en_xa_install.exe,NI+SK+NC+ND+TR + +// Google Chrome Pre-Install + gccheck_small.exe,NI+SK+NC+ND+TR + +// Win 10 Redstone upgrade +SetupHost.exe,SK+PR,,Microsoft Corporation + +//Skype +SkypeApp.exe,SK+TR+NI+NC+ND+PR +SkypeHost.exe,SK+TR+NI+NC+ND+PR + +// Windows error reporting +// Must use NPR flag +WerFault.exe,NPR+SK+NI+PR,,Microsoft Corporation +WerFaultSecure.exe,NPR+SK+NI+PR,,Microsoft Corporation +wermgr.exe,NPR+SK+NI+PR,,Microsoft Corporation + +// Windows 10 applications that we should skip +consent.exe,SK+NI + +// Oracle VirtualBox and associated programs. +vbox-img.exe,SK+TR+NI+NC+ND+PR +vboxballoonctrl.exe,SK+TR+NI+NC+ND+PR +vboxdtrace.exe,SK+TR+NI+NC+ND+PR +vboxextpackhelperapp.exe,SK+TR+NI+NC+ND+PR +vboxheadless.exe,SK+TR+NI+NC+ND+PR +vboxmanage.exe,SK+TR+NI+NC+ND+PR +vboxnetdhcp.exe,SK+TR+NI+NC+ND+PR +vboxnetnat.exe,SK+TR+NI+NC+ND+PR +vboxsdl.exe,SK+TR+NI+NC+ND+PR +vboxsvc.exe,SK+TR+NI+NC+ND+PR +vboxtestogl.exe,SK+TR+NI+NC+ND+PR +vboxwebsrv.exe,SK+TR+NI+NC+ND+PR +virtualbox.exe,SK+TR+NI+NC+ND+PR + +// Windows Defender Application Guard Manager +hvsimgr.exe,SK+NI+NC+ND+NA+NV+NPR + +// Suppress Noisy Processes to prevent server being flooded with pi data +conhost.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +mavinject32.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +powercfg.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +WmiApSrv.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +wermgr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +splunk.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +splunkd.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MpSigStub.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ngen.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +mscorsvw.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +PresentationFontCache.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ngentask.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOSYNC.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +OSPPSVC.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +OfficeC2RClient.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +OfficeClickToRun.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AdobeARM.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +armsvc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC + +// Tanium processes +TaniumExecWrapper.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TaniumFileInfo.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TaniumDetect.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TaniumEndpoint.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TaniumEndpointIndex.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TaniumClient.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC + +// Microsoft Edge default visibility +browser_broker.exe,NPR,,Microsoft Corporation +MicrosoftEdge.exe,NPR,,Microsoft Corporation +MicrosoftEdgeCP.exe,NPR,,Microsoft Corporation +microsoftedgeupdate.exe,NI+SK+TR+NC+ND+PR+NPR,,Microsoft Corporation + +// Microsoft Edge Chromium default visibility +msedge.exe,NPR,,Microsoft Corporation + +// Microsoft Management Console +mmc.exe,NPR,,Microsoft Corporation + +// MS User-mode font driver +fontdrvhost.exe,NI,,Microsoft Corporation + +// McAfee VirusScan Enterprise +SetupVSE.Exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, Inc. +setup.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, Inc. +MfeFfCoreService.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +MfeFfProxy32.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +mfemactl.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, Inc. +MfeFfCore.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +MFEHCS.EXE,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC + +// McAfee Endpoint Protection +setupEP.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC. +setupCC.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC. +MfeEpAac_mfeprotect.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC. +mfehidin.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +mfehidin64.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +mfemms.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +mfevtps.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +MfeEpAac.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC. +mfeepmpk_utility.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC +mfesysPrep.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, Inc. +mfehidin64.exe,NI+SK+TR+NC+ND+PR+NPR,,McAfee, LLC + +dllhost.exe,NPR +//2024-08-23-16 +//SunloginClient.exe,NI+NPR + +//softcamp DRM +MSOASRestore.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASDOC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASDOCX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASPPT.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASPPTX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASXLS.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASXLSX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASDOCX64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASPPTX64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASXLSX64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_AMSRpcLoc,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_DeleteFil,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_SubmitNot,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOAddIn_HKM,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOAddIn_HKM,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAIBase.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAIBase64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAICommon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAICommon64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_CreateLcl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_Hibernati,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_ADLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_CnPR,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Cros,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Cros,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Edit,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_INSE,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_SetL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Syst,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_LauncherC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_LclsetCha,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OfflineLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OfflineLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OfflineLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OffSendLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PrinterAl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PrinterAl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PrintMark,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PWChangeM,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SubmitNot,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SubmitNot,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SWStorage,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SysInfoUp,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_TrayMenuL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_Unapprove,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_WRMK_CTRL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_WRMK_CTRL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCEncFile.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCEncFile64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPolicy.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPolicy64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_AcroRd_Su,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_CnpCtrlBy,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_CnpCtrlBy,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_InsertShe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_InsertShe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_NormalDoc,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_NormalDoc,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_PdfMenuCo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_SecuSaveA,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_SecuSaveA,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSDKLocalSvr.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSDKLocalSvr6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSWorkPolicy.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSWorkPolicy6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_ZipMngr.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCUser.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCUser64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_HKMC_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_HKMC_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_HKMC_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Hyund,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Hyund,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Hyund,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Hyund,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Hyund,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSConvDocAcce,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSConvDocAcce,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSSendMessage,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSSendMessage,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_CtrlLogin,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DSCertify,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Setu,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_AddIn_Bit,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_AddIn_SCG,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_UpgradeBi,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HKMC_Syst,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HKMC_Syst,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIN_Crash,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Previ,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_SCScr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AutoSaveCtr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AutoSaveEn.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AutoSaveEn6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SSOURL.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ComAgent.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashSender.ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCNTSrv.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSGULdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHLdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSImgVu.EXE,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSJED.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSLSChgr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOHMAN.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLESOM.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dsregist.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSLdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSOMMan.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSvcIns.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSysRun.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSTxtVu.EXE,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MkSom.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +OffSend.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ScanEnc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +scdesktopmode.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCExternalWork,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCIPDSService.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCIPDSService_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMARecorder.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMetroUICtrl.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMsgMngr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPDFViewer.ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_MsgBox.ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWin8Ctrl.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnv.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSHlpr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSIcon.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSILog.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLaunc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLogin.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSMan.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSMkIM.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSMonitor4U.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSShl.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +simplemb.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOM.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomDeletor.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomXLdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +UpgradeBITSCli,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +___Del.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AS4WCore.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ASCore.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AuChange.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ChnResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ChnResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLanghn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLanght.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLangze.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeChs,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeChs,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeDeu,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeDeu,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeEng,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeJpn,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeJpn,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeKor,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeKor,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeRus,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CNTBG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashRpt.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DeuResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DeuResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DLangeu.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSA10WRES.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSADC17WRES.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSADC18WRES.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkCloud.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkPrc.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBLStAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBOHDCAR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSData.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSInfo.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSLink.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSStAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCAgent.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA09D.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA09W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA10R.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA10W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOADCR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCodec.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscodec2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCODOC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCODOCX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOGULVW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOGULVwSub.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH10C.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH10S.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH10W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH14C.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH14S.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH14W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10E.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10P.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13E.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13P.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSComm.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCommPacket.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOOZC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCoPol.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOPPT.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOPPTX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOTR21.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOXLS.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOXLSX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCSAgent.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo04.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo05.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo06.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo07.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo09.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo11.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo16.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCO31.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCoHpt.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCOJU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCommon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCoNX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCOVw03.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSGU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHash.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdInfo.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdrAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHWP14EH.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHWP18EH.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSINI.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSIPCX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSIPMac.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSListAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMKSomCore.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOAddinMgr.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOEHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOEHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOEHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLECON.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOVIcon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSPropex.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSCIcon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShlWrn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSOMInfo.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSTermPr.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSUser.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCCode.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCCtrl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dsxctray.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dsxcttip.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCWDlg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXDCode.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXDStr.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXLCtrl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlg4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlg5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlg7.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlgEC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlgHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlgPE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ELangng.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +EngResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +EngResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +FLangra.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +InjectDLL.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +JLangpn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +JpnResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +JpnResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +KLangor.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +KorResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMCHN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMDEU2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMENG2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMJPN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMKOR2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMRUS2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO07EHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO07EHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO07EHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +PDFViewerDSMgr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Rijndael.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +RLangus.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +RusResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SAPDecCtrl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUChi.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUChi2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUEng2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUGer.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUGer2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUJpn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUJpn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUKor.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUKor2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGURus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGetFileInfo.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXCore.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXLdr.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHPRJ.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScreenWRMK.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScript.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScriptXP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCShare.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCXP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncCHN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncDEU2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncENG2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncJPN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncKOR2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncRus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvChn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvDeu2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvEng2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvJpn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvKor2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvRus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginCHN.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginChn2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginDEU.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginDeu2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginENG.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginEng2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginJPN.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginJpn2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginKor2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginRus2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManChn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManDeu2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManEng2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManJpn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManKor2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManRus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +shieldrpc.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomPntMark.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMPublic.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESCHN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESDEU2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESENG2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESJPN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESKOR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESKOR2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESRUS2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomWrmk.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +sqlite3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SRP_Ctl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SRP_Error.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SRP_INI.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +unlha32.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +VerifyCAgent.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureCrypto.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +yControl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ScreenLock.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMsgBoxRes5x6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOA08,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOADC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOADC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOADC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOH18,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOH18,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOH18,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOH18,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOHNW,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOTRP,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHPRJ_MSO,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHPRJ_MSO,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +scshield.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSCShieldMngr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +scshield64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSCShieldMngr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashSender64.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHLdr64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOHMAN64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLESOM64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSomMgr64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCExternalWork,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomXLdr64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AS4WCore64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ASCore64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashRpt64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkCloud64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkPrc64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBLStAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSData64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSInfo64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSStAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCodec64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10E64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10P64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10W64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13E64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13P64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13W64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSComm64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCommPacket64,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCoPolx64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo05_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo09_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo11_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCommonx64.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHash64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdInfo64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdrAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLECON64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOVIcon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSPropex64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSCIcon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell2_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSOMInfo64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSTermPr64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCCode64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXDCode64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +InjectDLL64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHE64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHP64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHW64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHE64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHP64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHW64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Rijndael64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXCore64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXLdr64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHPRJ64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScreenWRMK64,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScriptx64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +shieldrpc64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomKeyCtrl64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomPntMark64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBConAgent.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBConSRV.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBConSRVAgen,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBLinker.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWSAgt.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Setup.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCGR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ipworks9.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ipworksssl9.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nfapi.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBCon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBEvent.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBLoader.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWSIEToolbarE,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +certutil.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +freebl3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +libnspr4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +libplc4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +libplds4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +msvcr100.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nss3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nssckbi.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nssdbm3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nssutil3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +smime3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +softokn3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +sqlite3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ssl3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBConSRVAgen,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBCon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBEvent64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBLoader64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWSIEToolbarE,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +certutil.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +//anysign +uninst.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AnySign4PC.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AnySign4PCLaun,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Any_setup.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DESDLL.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DllOpenkeyboar,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +KEBSFSC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +KEBSFSC_WR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +KTBDLL.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +mfc80u.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +mfcm80u.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +msvcp80.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +msvcr80.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +NativeMng.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +NativeMngUAC.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nsldap32v50.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TESC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Unzip32.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcASN.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcCMP.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcCodec.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcCRL.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcCrypto,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcCSP.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcCTL.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcIO.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcLDAP.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcPKC.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcPKCS12,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcPKCS5.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcPKCS7.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcPKCS8.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcPVD.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureAcST.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureMacuxCSM,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +xwmfUI.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XWMSmartCard.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +xwm_smartcard.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Zip32.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC + +//Softcamp +MSOASRestore.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASDOC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASDOCX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASPPT.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASPPTX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASXLS.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASXLSX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASDOCX64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASPPTX64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOASXLSX64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSOfficeComAdd,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_AMSRpcLoc,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_CustomToo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_RemovePrt,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_SubmitNot,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSLinkAddin.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOAddIn_HKM,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSScanAddin.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAIBase.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAIBase64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAICommon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAICommon64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_ADAuthBef,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_AddSSOURL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_CnpPolicy,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_CreateLcl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_CustomToo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DecryptMa,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DocHeader,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DSDocLogU,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DSIconCtr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DSVersion,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DS_CnPLvU,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_ExceptOth,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_ForcedRes,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HEC_Decry,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HEC_HideA,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HEC_HwpSa,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HEC_Print,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_Hibernati,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_ADLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_CnPR,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Cros,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Edit,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_INSE,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_SetL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Syst,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_LauncherC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_LclsetCha,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_LoginCtrl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_MOBIS_Exc,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_MSO_ComAd,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OfflineLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OffLoginB,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OffLogin_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_OffSendLo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PKILoginU,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PrinterAl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PrintLogC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PrintMark,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_PWChangeM,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_ScanEnc50,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SDSEncCus,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SecuDocHe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SetDSHead,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SubmitNot,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SvrSide_A,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SysInfoUp,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_TrayMenuL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_Unapprove,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_WRMK_CTRL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCEncFile.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCEncFile64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_AddIn_ECM,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_Addin_Ole,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPolicy.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPolicy64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_AcroRd_Su,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_AppSuppor,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_BypassSAP,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_DocFirstT,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_DSOVIconC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_Exception,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_Extend_Ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_External_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HEC_Adobe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HKMC_WRMK,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HSC_Offic,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HwpMenuCt,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HwpPdfSav,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HwpSaveAs,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_InsertShe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_MSOScreen,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_MSO_Large,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_NormalDoc,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_OfficeAll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_PdfMenuCo,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_PdfOpenSk,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_PPT_Allow,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_SaveBlock,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_SecuSaveA,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_ServerIco,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSDKLocalSvr.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSDKLocalSvr6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSWorkPolicy.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCSWorkPolicy6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCUser.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCUser64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_HKMC_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Hyund,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Login,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDKCodec.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDKCodec64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSConvDocAcce,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSSendMessage,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SecureFileConv,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ubcInterop.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_CtrlLogin,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_DSCertify,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_HKMC_Setu,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_SDSLoginU,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCAI_Undelete_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_AddIn_Bit,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_AddIn_Off,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_AddIn_SCG,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPD_UpgradeBi,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCRA_HKMC_Syst,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIN_Crash,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_DSOpt,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_Previ,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AddIn_SCScr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AutoSaveCtr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AutoSaveEn.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SC_AutoSaveEn6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SSOURL.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ComAgent.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashSender.ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCNTSrv.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSGULdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHLdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSImgVu.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSJED.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSLSChgr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOHMAN.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLESOM.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSRegchecker.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dsregist.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSLdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSOMMan.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSvcIns.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSysRun.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSTxtVu.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MkSom.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +OffSend.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ScanEnc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +scdesktopmode.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCExternalWork,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCIPDSService.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCIPDSService_,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMARecorder.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMetroUICtrl.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMsgMngr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCPDFViewer.ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCprotocolhand,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCTL_MsgBox.ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWin8Ctrl.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnv.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSHlpr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSIcon.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSILog.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLaunc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLogin.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSMan.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSMkIM.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSMonitor4U.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSMonitorU.ex,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSShl.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +simplemb.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOM.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomDeletor.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomXLdr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +UpgradeBITSCli,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +___Del.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AdminWebSafer.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AS4WCore.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ASCore.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AuChange.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ChnResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ChnResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLanghn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLanght.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLangze.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeChs,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeDeu,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeEng,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeJpn,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeKor,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CLGroupTreeRus,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CNTBG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashRpt.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DeuResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DeuResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DLangeu.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSA10WRES.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSADC17WRES.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSADC18WRES.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSADC20WRES.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkCloud.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkPrc.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBLStAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBOHDCAR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSData.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSInfo.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSStAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCAgent.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCGR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscgrglovis2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscgrglovis3.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscgrglovis4.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscgrglovis5.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscgrglovis6.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscgrglovis7.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA09D.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA09W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA10R.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOA10W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOADCR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCodec.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dscodec2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCODOC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCODOCX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOGULVW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOGULVwSub.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH10C.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH10S.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH10W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH14C.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH14S.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOH14W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOHWP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10E.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10P.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13E.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13P.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13W.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSComm.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCommPacket.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCoPol.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOPPro.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOPPT.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOPPTX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOTR21.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOXLS.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOXLSX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCSAgent.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo01.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo04.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo05.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo06.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo07.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo09.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo11.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo16.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo21.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCO31.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCoHpt.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCOJU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCommon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCoNX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCOVw03.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSGU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHash.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdInfo.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdrAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHWP14EH.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHWP18EH.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHWP18EH_A.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHWP20EH.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHWPEH.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSINI.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSIPCX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSIPMac.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSListAg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMKSomCore.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOAddinMgr.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOEHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOEHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSMSOEHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLECON.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOVIcon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSPropex.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSScan.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSCIcon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShlWrn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSOMInfo.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSTermPr.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSUser.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSWebSafer.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCCode.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCCtrl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dsxctray.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dsxcttip.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCWDlg.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXDCode.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXDStr.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXLCtrl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlg4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlg5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlg7.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlgEC.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlgHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXPlgPE.DLL,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ELangng.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +EngResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +EngResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +FLangra.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +JLangpn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +JpnResDll.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +JpnResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +KLangor.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +KorResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMCHN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMDEU2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMENG2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMJPN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMKOR2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MKSOMRUS2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO07EHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO07EHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO07EHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +PDFViewerDSMgr,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Rijndael.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +RLangus.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +RusResDll2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SAPDecCtrl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCCommREST.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUChi.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUChi2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUEng2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUGer.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUGer2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUJpn.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUJpn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUKor.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGUKor2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCDSGURus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGetFileInfo.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGetFileType.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXCore.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXLdr.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHPRJ.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScreenWRMK.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScript.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScriptXP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCShare.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCXP.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncCHN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncDEU2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncENG2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncJPN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncKOR2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEncRus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvChn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvDeu2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvEng2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvJpn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvKor2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSEnvRus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginCHN.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginChn2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginDEU.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginDeu2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginENG.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginEng2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginJPN.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginJpn2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginKor2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSLoginRus2.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManChn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManDeu2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManEng2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManJpn2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManKor2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SDSManRus2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +shieldrpc.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomPntMark.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMPublic.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESCHN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESCHN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESDEU.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESDEU2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESENG.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESENG2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESJPN.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESJPN2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESKOR.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESKOR2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRESRUS2.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomWrmk.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +sqlite3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SRP_Ctl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SRP_Error.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SRP_INI.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TopSec0TKOR.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TopSec1TENG.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TopSec1TKOR.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TopSec2TENG.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TopSec2TKOR.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TopSec3TENG.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +TopSec3TKOR.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +unlha32.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +VerifyCAgent.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +XecureCrypto.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +yControl.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ScreenLock.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MXNChangeDrive,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +QssDlg.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +urirunner.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +wsserver.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +boost_python-v,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ipworksws9.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +python27.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +pywintypes27.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMsgBoxRes5.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMChnRes5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMDeuRes5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMEngRes5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMJpnRes5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMKorRes5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SOMRes5.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMsgBoxRes5x6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOA08,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOADC,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOH18,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOH20,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOHNW,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOM19,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX_DSCOTRP,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE_MSO19,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHPRJ_MSO,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP_MSO19,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHVIS_MSO,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW_MSO16,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW_MSO19,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCLogCollector,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCLCAdminAgent,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCLCClientAgen,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCLCPDWrapper.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGCBRPCAPI.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGCBRPCNODEAP,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCLCDump.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCLCLog.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCLCSysInfo.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScreenRecord,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Listdlls.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +pfsinfo.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ProcessInfoEx.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ProcessInfoEx6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Procmon.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +pslist.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +tlist.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +adplus.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +adplusmanager.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +agestore.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +breakin.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +cdb.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +convertstore.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dbengprx.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dbgrpc.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dbgsrv.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dbh.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dumpchk.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dumpexam.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +gflags.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kd.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kdbgctrl.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kdnet.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kdsrv.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kill.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +list.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +logger.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +logviewer.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ntkd.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ntsd.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +pdbcopy.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +plmdebug.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +remote.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +rtlist.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +symchk.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +symstore.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +umdh.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +usbview.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +vmdemux.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +windbg.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +adplusext.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dbgeng.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dbghelp.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DbgModel.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +decem.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +sqmapi.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +srcsrv.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SymbolCheck.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +symsrv.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +pdbstr.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +srctool.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +dbgcore.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +symproxy.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +bthkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ext.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +gpiokd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +hidkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +jscript9diagdu,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kext.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +logexts.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +rcdrkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +storagekd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +uext.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +usb3kd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +usbkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +wdfkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +acpikd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +exts.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +fltkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kdexts.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ks.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +minipkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ndiskd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ntsdexts.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nvkd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +rpcexts.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +scsikd.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +wmitrace.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +wow64exts.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +wudfext.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +i386kd.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ia64kd.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +kmautofaildbg.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +vssdump.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +vdmexts.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +procdump.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +procdump64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashSender64.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHLdr64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOHMAN64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLESOM64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSomMgr64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SimpleMB64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomXLdr64.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +AS4WCore64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ASCore64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +CrashRpt64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkCloud64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBlkPrc64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBLStAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSData64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSInfo64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSBSStAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCAgent64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCodec64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10E64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10P64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM10W64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13E64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13P64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCOM13W64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSComm64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCommPacket64,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSCoPolx64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo05_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo09_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCo11_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCommonx64.,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSEDCon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHash64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdInfo64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSHdrAg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSINI64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOLECON64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSOVIcon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSPropex64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSScan64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSCIcon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell2_64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSShell64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSSOMInfo64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSTermPr64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSWebSafer64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCCode64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCCtrl64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXCWDlg64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXDCode64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXDStr64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +DSXRATC164.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHE64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHP64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO10EHW64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHE64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHP64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +MSO13EHW64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Rijndael64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGetFileType6,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEX64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXCore64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCGMEXLdr64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHE64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHP64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHPRJ64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCMSOEHW64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScreenWRMK64,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCScriptx64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +shieldrpc64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomKeyCtrl64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SomPntMark64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBConAgent.e,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBConSRV.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBConSRVAgen,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBLinker.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWSAgt.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +Setup.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ipworks9.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ipworksssl9.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nfapi.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBCon.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBEvent.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBLoader.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWSIEToolbarE,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +certutil.exe,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +freebl3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +libnspr4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +libplc4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +libplds4.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +msvcr100.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nss3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nssckbi.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nssdbm3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +nssutil3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +smime3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +softokn3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +ssl3.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBCon64.dll,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBEvent64.dl,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC +SCWBLoader64.d,NI+NC+ND+NR+SK+TR+PR+NPR+NPROC + +//DRM - Softcamp +SCTL_AMSRpcLoca,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +DSCNTSrv.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +DSHLdr.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +DSHLdr64.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +DSSLdr.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +SCGCB.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +SCGCBLdr.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +UpgradeBITSClie,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH + +AuthService.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH + +Taskmgr.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH + +//2023-08-04 caiwu +skfpshell.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH + +//20230817 caiwu +skfp.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH + +//20230907USB->HDMI +udisplay.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH + +//20240111->DBSfer Manager Agent +Enterprise Manager.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH + +//test +//SunloginClient.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+ +// Second Test 2024-08-23 +//SunloginClient.exe,NI+PR +//third test + + +sunloginclient.exe,NI+AG+NV + +//2025-03-14 PCH +//fireeye +AppUIMonitor.exe,SK+NPR +fireeyeagent.exe,SK+NPR +magent.exe,SK+NPR +RemediationWSC.exe,SK+NPR +uncontain.exe,SK+NPR +xagt.exe,SK+NPR +xagtnotif.exe,SK+NPR + +// 2025-03-14 PCH +//PaloAlto Cortex +Cydump.exe,SK+NPR +cyreport.exe,SK+NPR +cyrprtui.exe,SK+NPR +cyserver.exe,SK+NPR +cytool.exe,SK+NPR +cytray.exe,SK+NPR +CyveraConsole.exe,SK+NPR +CyveraService.exe,SK+NPR +CyveraWdg.exe,SK+NPR +GetLogsUtilAgent.exe,SK+NPR +tlaservice.exe,SK+NPR +tlaworker.exe,SK+NPR +twdservice.exe,SK+NPR +xdrhealth.exe,SK+NPR +cyverak.sys,SK +cyvrfsfd.sys,SK +cyvrlpc.sys,SK +cyvrmtgn.sys,SK +tdevflt.sys,SK +tedrdrv.sys,SK +tedrpers*.sys,SK + +//PaloAlto Traps +cyreport.exe,SK+NPR+PR +cyrprtui.exe,SK+NPR+PR +cyserver.exe,SK+NPR+PR +cytool.exe,SK+NPR+PR +cytray.exe,SK+NPR+PR +CyveraConsole.exe,SK+NPR+PR +CyveraService.exe,SK+NPR+PR +CyveraWdg.exe,SK+NPR+PR +GetLogsUtilAgent.exe,SK+NPR+PR +tlaservice.exe,SK+NPR+PR +tlaworker.exe,SK+NPR+PR +twdservice.exe,SK+NPR+PR +cyverak.sys,SK +cyvrfsfd.sys,SK +cyvrlpc.sys,SK +cyvrmtgn.sys,SK +tedrdrv.sys,SK + + +dingtalk.exe,NI+NPR +//wechat.exe,0 +msedge.exe,NPR+NI + +// 2025-03-14 PCH +// Windows Defender +configsecuritypolicy.exe,SK+NPR+PR +mpcmdrun.exe,SK+NPR+PR +mpuxsrv.exe,SK+NPR+PR +msascui.exe,SK+NPR+PR +msascuil.exe,SK+NPR+PR +msmpeng.exe,SK+NPR+PR +nissrv.exe,SK+NPR+PR +wdnsfltr.exe,SK+NPR+PR +offlinescannershell.exe,SK+NPR+PR +mpfilter.sys,SK + +// Windows Defender Advanced Threat Protection +MsSense.exe,SK+NPR+PR +NisSrv.exe,SK+NPR+PR +SecurityHealthService.exe,SK+NPR+PR +sechealthui.exe,SK+NI +sensecncproxy.exe,SK+NPR+PR +sensesampleuploader.exe,SK+NPR+PR +SgrmBroker.exe,SK+NPR+PR +sppsvc.exe,SK+NPR+PR + +// Microsoft Teams 20250429 lihangtian +msedgewebview2.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +ms-teams.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +ms-teamsupdate.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +ms-teams_autostarter.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +teams.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +update.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH +squirrel.exe,NI+SK+NC+ND+TR+NE+PR+NA+NV+NH \ No newline at end of file