(TargetFilename:\\AtBroker.exe OR TargetFilename:\\audiodg.exe OR TargetFilename:\\backgroundTaskHost.exe OR TargetFilename:\\bcdedit.exe OR TargetFilename:\\bitsadmin.exe OR TargetFilename:\\cmdl32.exe OR TargetFilename:\\cmstp.exe OR TargetFilename:\\conhost.exe OR TargetFilename:\\csrss.exe OR TargetFilename:\\dasHost.exe OR TargetFilename:\\dfrgui.exe OR TargetFilename:\\dllhost.exe OR TargetFilename:\\dwm.exe OR TargetFilename:\\eventcreate.exe OR TargetFilename:\\eventvwr.exe OR TargetFilename:\\explorer.exe OR TargetFilename:\\extrac32.exe OR TargetFilename:\\fontdrvhost.exe OR TargetFilename:\\fsquirt.exe OR TargetFilename:\\ipconfig.exe OR TargetFilename:\\iscsicli.exe OR TargetFilename:\\iscsicpl.exe OR TargetFilename:\\logman.exe OR TargetFilename:\\LogonUI.exe OR TargetFilename:\\LsaIso.exe OR TargetFilename:\\lsass.exe OR TargetFilename:\\lsm.exe OR TargetFilename:\\msiexec.exe OR TargetFilename:\\msinfo32.exe OR TargetFilename:\\mstsc.exe OR TargetFilename:\\nbtstat.exe OR TargetFilename:\\odbcconf.exe OR TargetFilename:\\powershell.exe OR TargetFilename:\\pwsh.exe OR TargetFilename:\\regini.exe OR TargetFilename:\\regsvr32.exe OR TargetFilename:\\rundll32.exe OR TargetFilename:\\RuntimeBroker.exe OR TargetFilename:\\schtasks.exe OR TargetFilename:\\SearchFilterHost.exe OR TargetFilename:\\SearchIndexer.exe OR TargetFilename:\\SearchProtocolHost.exe OR TargetFilename:\\SecurityHealthService.exe OR TargetFilename:\\SecurityHealthSystray.exe OR TargetFilename:\\services.exe OR TargetFilename:\\ShellAppRuntime.exe OR TargetFilename:\\sihost.exe OR TargetFilename:\\smartscreen.exe OR TargetFilename:\\smss.exe OR TargetFilename:\\spoolsv.exe OR TargetFilename:\\svchost.exe OR TargetFilename:\\SystemSettingsBroker.exe OR TargetFilename:\\taskhost.exe OR TargetFilename:\\taskhostw.exe OR TargetFilename:\\Taskmgr.exe OR TargetFilename:\\TiWorker.exe OR TargetFilename:\\vssadmin.exe OR TargetFilename:\\w32tm.exe OR TargetFilename:\\WerFault.exe OR TargetFilename:\\WerFaultSecure.exe OR TargetFilename:\\wermgr.exe OR TargetFilename:\\wevtutil.exe OR TargetFilename:\\wininit.exe OR TargetFilename:\\winlogon.exe OR TargetFilename:\\winrshost.exe OR TargetFilename:\\WinRTNetMUAHostServer.exe OR TargetFilename:\\wlanext.exe OR TargetFilename:\\wlrmdr.exe OR TargetFilename:\\WmiPrvSE.exe OR TargetFilename:\\wslhost.exe OR TargetFilename:\\WSReset.exe OR TargetFilename:\\WUDFHost.exe OR TargetFilename:\\WWAHost.exe) (-((TargetFilename:C\:\\$WINDOWS.\~BT\\* OR TargetFilename:C\:\\$WinREAgent\\* OR TargetFilename:C\:\\Windows\\SoftwareDistribution\\* OR TargetFilename:C\:\\Windows\\System32\\* OR TargetFilename:C\:\\Windows\\SysWOW64\\* OR TargetFilename:C\:\\Windows\\WinSxS\\* OR TargetFilename:C\:\\Windows\\uus\\*) OR ((Image:\\TiWorker.exe OR Image:\\wuaucltcore.exe) TargetFilename:C\:\\Windows\\Temp\\*) OR ((Image:C\:\\Windows\\system32\\svchost.exe OR Image:C\:\\Windows\\SysWOW64\\svchost.exe) (TargetFilename:C\:\\Program\ Files\\WindowsApps\\* OR TargetFilename:C\:\\Program\ Files\ \(x86\)\\WindowsApps\\* OR TargetFilename:\\AppData\\Local\\Microsoft\\WindowsApps\\*)) OR (Image:C\:\\Windows\\System32\\wuauclt.exe OR Image:C\:\\Windows\\SysWOW64\\wuauclt.exe OR Image:C\:\\Windows\\UUS\\arm64\\wuaucltcore.exe) OR TargetFilename:C\:\\Windows\\explorer.exe OR ((Image:C\:\\WINDOWS\\system32\\msiexec.exe OR Image:C\:\\WINDOWS\\SysWOW64\\msiexec.exe) (TargetFilename:C\:\\Program\ Files\\PowerShell\\7\\pwsh.exe* OR TargetFilename:C\:\\Program\ Files\\PowerShell\\7\-preview\\pwsh.exe* OR TargetFilename:C\:\\Program\ Files\\WindowsApps\\Microsoft.PowerShellPreview\\*)) OR (TargetFilename:C\:\\Windows\\System32\\SecurityHealth\\* TargetFilename:\\SecurityHealthSystray.exe Image:\\SecurityHealthSetup.exe)))