I currently only have the end users running as a Standard User and want to
give them the ability to defragment their C: drive. I figured I could just
place the string "%SystemRoot%System32dfrg.msc" in and give it unsecure
system user rights and have it run the utility. I keep getting a this
isn't a win32 application error even when I place it in the system user
catagory. I am currently running Rogue Process Management and would like
to keep blocking the MMC.exe utility from the end user. And I really don't
want to provide administrative rights just to allow defrag.

Has anyone done this before? Is there any reason I shouldn't be allowing
the end user the ability to run that application?

Thanks for the help.