I am currently running ENS 10.6.1.1124 and Threat Prevention 10.6.1.1208 on a number of devices. When I check under ENS settings - Common - Show Advanced - Tasks there is a task called "Default Client Update" which seems to try and do an AMCORE / Defintion update. Is there anyway to remove this at policy level on the EPO?
I believe that mcshield.exe is associated with on access scanning but would this process also run during update? Or, what is the name of the process that runs during update of AMCORE files?
Yes, you can remove this from within the ENS Common policy > Default Client Update
The process running during an AMCORE update is mcscript_inuse and mfetp is also involved
Was my reply helpful? If this information was helpful in any way, or answered your question, will you please select "Accept as Solution" in my reply, or give kudos as appropriate, so together we can help other members?