Hay que crear un fichero de registro con el siguiente formato:
Windows Registry Editor Version 5.00
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPBKAR32]
“ProcessImageName”=”bpbkar32.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPBRM]
“ProcessImageName”=”bprbrm.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPCD]
“ProcessImageName”=”bpcd.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPCOMPATD]
“ProcessImageName”=”bpcompatd.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPCOMPATD]
“ProcessImageName”=”bpcompatd.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPDBM]
“ProcessImageName”=”bpdbm.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPDM]
“ProcessImageName”=”bpdm.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPINETD]
“ProcessImageName”=”bpinetd.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPJAVA-MSVC]
“ProcessImageName”=”bpjava-msvc.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPJOBD]
“ProcessImageName”=”bpjobd.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPRD]
“ProcessImageName”=”bprd.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\BPTM]
“ProcessImageName”=”bptm.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBCONSOLE]
“ProcessImageName”=”nbconsole.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBEMM]
“ProcessImageName”=”nbemm.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBEVTMGR]
“ProcessImageName”=”nbevtmgr.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBJM]
“ProcessImageName”=”nbjm.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBNOS]
“ProcessImageName”=”nbnos.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBPEM]
“ProcessImageName”=”nbpem.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBPROXY]
“ProcessImageName”=”nbproxy.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBRB]
“ProcessImageName”=”nbrb.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBRMMS]
“ProcessImageName”=”nbrmms.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBSL]
“ProcessImageName”=”nbsl.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBSTERV]
“ProcessImageName”=”nbstserv.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBSVCMON]
“ProcessImageName”=”nbsvcmon.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\NBSVCMON]
“ProcessImageName”=”nbvault.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\DBSRV9]
“ProcessImageName”=”dbsrv9.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\DBSRV11]
“ProcessImageName”=”dbsrv11.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\PBX_EXCHANGE]
“ProcessImageName”=”pbx_exchange.exe”
[HKEY_LOCAL_MACHINE\SOFTWARE\TrendMicro\NSC\TmProxy\WhiteList\MONITOR_SERVER]]
“ProcessImageName”=”monitor_server.exe”