<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<assembly xmlns="urn:schemas-microsoft-com:asm.v3" manifestVersion="1.0" copyright="Copyright (c) Microsoft Corporation. All Rights Reserved.">
  <assemblyIdentity name="Windows-Defender-AM-Engine" version="10.0.22621.1" processorArchitecture="amd64" language="neutral" buildType="release" publicKeyToken="31bf3856ad364e35" versionScope="nonSxS" />
  <file name="MpEngine.dll" destinationPath="$(runtime.programData)\Microsoft\Windows Defender\Definition Updates\Default\" sourceName="MpEngine.dll" importPath="$(build.nttree)\DefenderSigs\" sourcePath=".\">
    <securityDescriptor name="WRP_FILE_DEFAULT_SDDL" />
    <asmv2:hash xmlns:asmv2="urn:schemas-microsoft-com:asm.v2" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
      <dsig:Transforms>
        <dsig:Transform Algorithm="urn:schemas-microsoft-com:HashTransforms.Identity" />
      </dsig:Transforms>
      <dsig:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha256" />
      <dsig:DigestValue>StsFnlbJXc0XedchBvW/cQe+/RFjyhT6BpJ5wu19s/w=</dsig:DigestValue>
    </asmv2:hash>
  </file>
  <migration scope="Upgrade,MigWiz,USMT" settingsVersion="1">
    <migXml xmlns="">
      <rules context="System">
        <exclude>
          <objectSet>
            <pattern type="Registry">HKLM\SOFTWARE\Microsoft\Windows Defender\Signature Updates [EngineVersion]</pattern>
          </objectSet>
        </exclude>
      </rules>
    </migXml>
    <supportedComponents>
      <supportedComponent>
        <assemblyIdentity name="_" version="1.0.0.0" />
        <supportedComponentIdentity buildType="release" language="neutral" name="Windows-Defender-AM-Engine" processorArchitecture="amd64" publicKeyToken="31bf3856ad364e35" settingsVersionRange="1" versionScope="nonSxS" xmlns="urn:schemas-microsoft-com:asm.v3" />
      </supportedComponent>
    </supportedComponents>
  </migration>
  <instrumentation>
    <events xmlns="http://schemas.microsoft.com/win/2004/08/events" xmlns:win="http://manifests.microsoft.com/win/2004/08/windows/events" xmlns:xs="http://www.w3.org/2001/XMLSchema">
      <provider guid="{0A002690-3839-4E3A-B3B6-96D8DF868D99}" message="$(string.Microsoft-Antimalware-Engine.provider.name)" messageFileName="%programdata%\Microsoft\Windows Defender\Definition Updates\Default\MpEngine.dll" name="Microsoft-Antimalware-Engine" resourceFileName="%programdata%\Microsoft\Windows Defender\Definition Updates\Default\MpEngine.dll" symbol="MicrosoftAntimalwareEngine" />
      <cmi />
    </events>
  </instrumentation>
  <localization>
    <resources culture="en-US">
      <stringTable>
        <string id="opcode.Stop" value="Stop" />
        <string id="opcode.Start" value="Start" />
        <string id="opcode.Info" value="Info" />
        <string id="level.Informational" value="Information" />
        <string id="Microsoft-Antimalware-Engine.provider.name" value="Microsoft-Antimalware-Engine" />
        <string id="Microsoft-Antimalware-Engine.task._etwtask_SkippedFile.message" value="Skipped file" />
        <string id="Microsoft-Antimalware-Engine.task._etwtask_GenericString.message" value="Message" />
        <string id="Microsoft-Antimalware-Engine.task._etwtask_Cache.message" value="Cache" />
        <string id="Microsoft-Antimalware-Engine.task._etwtask_BehaviorMonitor.message" value="Behavior Monitoring" />
        <string id="Microsoft-Antimalware-Engine.task.VersionTask.message" value="Versions" />
        <string id="Microsoft-Antimalware-Engine.task.StreamScanRequestTask.message" value="Stream scan request" />
        <string id="Microsoft-Antimalware-Engine.task.ScanRequest.message" value="Scan request" />
        <string id="Microsoft-Antimalware-Engine.event.7.message" value="Skipped file" />
        <string id="Microsoft-Antimalware-Engine.event.6.message" value="End of stream scan request" />
        <string id="Microsoft-Antimalware-Engine.event.5.message" value="Start of stream scan request" />
        <string id="Microsoft-Antimalware-Engine.event.2.message" value="End of engine scan request" />
        <string id="Microsoft-Antimalware-Engine.event.1.message" value="Start of engine scan request" />
      </stringTable>
    </resources>
  </localization>
  <trustInfo>
    <security>
      <accessControl>
        <securityDescriptorDefinitions>
          <securityDescriptorDefinition name="WRP_FILE_DEFAULT_SDDL" sddl="O:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464G:S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464D:P(A;;FA;;;S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464)(A;;GRGX;;;BA)(A;;GRGX;;;SY)(A;;GRGX;;;BU)(A;;GRGX;;;S-1-15-2-1)(A;;GRGX;;;S-1-15-2-2)S:(AU;FASA;0x000D0116;;;WD)" operationHint="replace" description="Default SDDL for Windows Resource Protected file" />
        </securityDescriptorDefinitions>
      </accessControl>
    </security>
  </trustInfo>
</assembly>